-
A couple days ago, I got a DM from a #Bonfire user.
Watching Ignoring Scheduled Pinned Locked Moved Fediverso hollo fedify bonfire fedidev fediverse hackerspub activitypub0 Votes3 Posts2 Views
Gli ultimi otto messaggi ricevuti dalla Federazione
-
EoL nei sistemi ICS: il caso USR-W610 accende i riflettori e il CISA Avverte
📌 Link all'articolo : https://www.redhotcyber.com/post/eol-nei-sistemi-ics-il-caso-usr-w610-accende-i-riflettori-e-il-cisa-avverte/
#redhotcyber #news #cybersecurity #vulnerabilita #sicurezzainformatica #endofLife #EoL #dispositivivulnerabili #furtocredenziali
-
@elena@aseachange.com Thanks! 🥰
-
@stefano buongiorno Stefano! Spero che tutti i problemi si risolvano presto
-
@hongminhee not all heroes wear capes... thank you for your phenomenal work!!!
-
A couple days ago, I got a DM from a #Bonfire user. I happily replied and sent
a follow request—but the Accept never came back, even though they hadn't
enabled manuallyApprovesFollowers. My DM reply probably never arrived either. Classic interop bug.I checked out the Bonfire source and dug in. Turns out Bonfire hasn't implemented RFC 9421 yet, so it was silently discarding any activity signed with it. That alone would be workable, except for one more issue: Bonfire was responding 200 OK even when signature verification failed, instead of 401 Unauthorized.
This matters because Fedify implements a double-knocking mechanism—if a request signed with RFC 9421 fails, it retries with the older draft cavage signature. But since Bonfire returned 200 OK on the failed first knock, #Fedify had no reason to send a second one.
I filed two issues on the Bonfire #ActivityPub repo—one requesting RFC 9421 support, and one about returning 401 on invalid signatures. For the latter, I also sent a PR, which got merged pretty quickly: bonfire-networks/activity_pub#9.
That said, individual Bonfire instances won't pick up the fix until they actually deploy it. So in the meantime, I patched Hollo and Hackers' Pub to use draft-cavage-http-signatures-12 as the firstKnock, so Bonfire instances can at least understand the first request.
One last thing: Fedify caches whether a given server supports RFC 9421, and the Bonfire servers I'd already talked to were cached as “supports RFC 9421”—because they'd been returning 200 OK. I had to manually clear that cache on both hollo.social and hackers.pub before everything finally worked.
After all that, the mutual follow went through and my DM reply landed. Worth it.
#fedidev #fediverse #Hollo #HackersPub
-
Quando l’IA commette un reato: chi è davvero responsabile?
📌 Link all'articolo : https://www.redhotcyber.com/post/investigare-lintelligenza-artificiale-tra-nuovi-reati-e-analisi-tecnica/
#redhotcyber #news #intelligenzaartificiale #informaticaforense #investigazionipenali #deepfake #droni #analisi dati #responsabilità #proveaffidabili
-
@stefano it'll be a fine day, I'm sure 👋 😎
-
@edendestroyer It was bullshit then and it’s bullshit now. Zionism is – and has always been – a colonial, genocidal, and, furthermore, an antisemitic project.
https://en.wikipedia.org/wiki/Zionism_as_settler_colonialism
Post suggeriti
-
EoL nei sistemi ICS: il caso USR-W610 accende i riflettori e il CISA Avverte
Watching Ignoring Scheduled Pinned Locked Moved News redhotcyber news cybersecurity vulnerabilita sicurezzainformatica endoflife eol dispositivivulnerabili
1
0 Votes1 Posts1 Views -
A couple days ago, I got a DM from a #Bonfire user.
Watching Ignoring Scheduled Pinned Locked Moved Fediverso hollo fedify bonfire fedidev fediverse hackerspub activitypub0 Votes3 Posts2 Views -
Good morning, #BSDCafeGood morning, #illumosCafeGood morning, #Fediverse
Watching Ignoring Scheduled Pinned Locked Moved Fediverso bsdcafe illumoscafe fediverse goodmorning0 Votes7 Posts2 Views -
Quando l’IA commette un reato: chi è davvero responsabile?
Watching Ignoring Scheduled Pinned Locked Moved News redhotcyber news intelligenzaartificial informaticaforense investigazionipenali deepfake droni analisi
1
0 Votes1 Posts2 Views