Skip to content

Piero Bosio Social Web Site Personale Logo Fediverso

Social Forum federato con il resto del mondo. Non contano le istanze, contano le persone
  • 0 Votes
    1 Posts
    0 Views
    I'm joining @cheri_alliance@cheri_alliance@infosec.exchange as an ambassador, working to transform cybersecurity at its foundation.Memory safety bugs cause 70% of cyber vulnerabilities, leading to disasters like OpenSSL Heartbleed and the 2024 CrowdStrike outage ($5.4 billion in losses). CHERI technology, developed over 15 years by Cambridge University and SRI International, prevents these attacks through hardware-enforced memory protection rather than endless software patches.The momentum is extraordinary. The UK government invested £80 million alongside £200 million from industry, with backing from DSIT, NCSC/GCHQ, DSTL, and DARPA. Industry giants Google, Microsoft, and Arm have joined alongside BT Group and Siemens, recognizing that hardware-level security is no longer optional.I'm particularly excited about our working groups porting critical operating systems to CHERI. FreeBSD, FreeRTOS, Zephyr, and seL4 have all been ported to run on CHERI hardware, with teams actively developing and maintaining these implementations. This ecosystem work ensures CHERI can protect everything from embedded IoT devices to enterprise servers, making memory safety accessible across the entire computing stack.Microsoft found CHERI would have prevented two-thirds of their 2019 vulnerabilities. The technology is practical too – existing software often needs less than 0.03% code changes to become memory-safe. As we deploy AI and connect critical infrastructure, we can't afford to keep patching symptoms. CHERI addresses the root cause.Join us in building secure-by-design systems. The Alliance welcomes all who share this vision. Let's stop playing defense and fundamentally solve memory safety.#Cybersecurity #CHERI #MemorySafety #SecureByDesign

Gli ultimi otto messaggi ricevuti dalla Federazione
  • @pfefferle Something inbetween a classic pingback / traceback and the same presentation as a normal “retweet” / “retoot” / “share”

    I don’t think it should appear as a comment as it isn’t a directly reply to the post, it’s merely a mention / sharing of it

    It could chronologically appear among the comments, but like pingback / traceback and such it should not appear as a style of a comment.

    And if one shows the number of shares a post have gotten, then a quote should for sure increase that one.

    read more

  • @pfefferle -- it's not a trackback because whole threads can develop.

    be careful about these decisions because they will be hard to undo and may determine the character of the product.

    i chose "wait for the reader," which makes me very much want to know what the reader will look like and how can we bridge it into the rss world which is where my new reader is running. ;-)

    also feedland runs in that world too of course. you could be the hub for activitypub, not just a client.

    read more

  • @pfefferle My suggestion is to show a quote post as a highlighted comment, along with the quoted section. Some blogs like the @verge highlight comments, although I think those are reserved for admins & users.

    Another alternative is to have quoted post highlighted in the comments or a icon put next to the profile picture in the comments (maybe a small square toward the right side or have the symbol appear next to the profile picture in the comments).

    read more

  • Happy Monday, fediverse!

    Quick question. How well do you know the people you follow? Would you recognize them from their bios?

    https://data.stefanbohacek.com/projects/fediverse-follows

    read more

  • @pfefferle I don't know enough about the topic to comment. I'd have to follow developments more closely to get a good idea of what is being prepared. I know that I want to pivot back towards social networks, rather than social media. It's good to have focused attention for individual blog posts. As I said, I need to spend more time following the conversation to give useful answers.

    read more

  • @pfefferle @Sascha @cyclingrichard

    Theme implementation is a crucial point. I remember that I once wrote an article how to separate comments and pingbacks in "The Morning After" theme back in 2008.

    How comments and pingbacks look in Twenty Twenty-Four nowadays (see below).

    Furthermore - for me - a comment / reply continues a conservation. A quote starts a new conservation.

    read more

  • @pfefferle @Sascha @NickBohle @cyclingrichard The `send quoteRequest to` field sounds like a good approach.

    read more

  • @pfefferle The QuoteRequest activity is similar to a Pingback with an extended interactionPolicy, and I believe it should treat the quoted content as a remote object rather than displaying it directly within a comment. A quote is not a comment, after all.

    If you really want to support it, I think it would make the most sense to post it under a post/quote subpage.

    read more
Post suggeriti