I've been inspired by @art to make Bocchi the Firefox !
Please use as you like
#firefox #BocchiTheRock
Ich🧙‍♂️iel
geposted von u/mna_lsaII
https://www.reddit.com/r/ich_iel/comments/1jb19ft/ichiel/
Exciting news! After months of development, Altbot 2.0 is officially launching with major improvements to privacy, efficiency, and description quality.
What's new in Altbot 2.0:The only data Altbot 2.0 records:
No images, no content, no personal data saved - ever.
For those who don't know, Altbot has been helping make the Fediverse more accessible by automatically generating alt-text descriptions for images. The project has grown beyond anything I imagined, now serving thousands of users across the network.
Support Altbot's Future đź’ťTo bring these privacy and efficiency improvements to life, I had to invest in a more powerful server than initially planned. The server costs exceeded my budget by around $900, which I've covered out of pocket. Who woulda thought that competing with a $1.98 trillion dystopian mega corporation would be expensive? Shocking, I know.
I've set up a Ko-fi fundraising goal to help recover these costs and support ongoing development: Ko-fi.com/micr0byte
Your contributions will help ensure Altbot remains:
Even small donations make a huge difference and motivate me to keep enhancing accessibility across the Fediverse!
This milestone represents a commitment to ensuring accessibility doesn't come at the cost of privacy or environmental impact. I'm incredibly proud of what we've built together.
As Altbot continues to grow, I'm open to sharing more about this journey with anyone interested in accessibility, ethical AI, or Fediverse projects.
For press inquiries: inquiries@micr0.dev
Feel free to boost or reach out!
#Accessibility #Fediverse #AltText #EthicalAI #OpenSource #Privacy #Altbot
Cool photos of lil Mars moon Deimos against a background of Mars, as photographed by the ESA Hera mission during yesterday's flyby.
https://www.esa.int/Space_Safety/Hera/Hera_asteroid_mission_spies_Mars_s_Deimos_moon
Missed Thursday's total lunar eclipse? No problem, Firefly Aerospace's Blue Ghost mission has you covered. The lander took a quick break from its science operations on the Moon to capture this stunning image of a lunar eclipse. From our perspective, we see the Earth's shadow fall on the Moon, eventually turning it red when the light from the world's sunsets falls upon it simultaneously. But from the Moon, it's the Sun that disappears behind the Earth.
I’m really happy with how this one turned out.
Watercolors.
Heidi Reichinnek hat in einer Pressekonferenz heute übrigens klar gesagt, dass die Linke an Bord wäre, die Schuldenbremse voll zu reformieren, selbst wenn das Aufrüstung erlaubt:
https://youtu.be/LHBObdAOHb0?si=bP1aA200W8wguMd8&t=524
Sprich, es gibt einen klaren Weg fĂĽr SPD und CDU die Finanzierung von Ukraine-Hilfe zu sichern: Sie mĂĽssen nur akzeptieren, dass dann *auch* in Klimaschutz und Soziales investiert werden kann.
Nur das klar ist, was man als LinksgrĂĽner auf den Blockierer-Vorwurf antworten soll.
TIL about CSS image-rendering: pixelated;
Allowing pixel art to scale up to any size and not look bad.
On / Off comparison for increasing scale 32px, 64px, 128px, and 256px.
Skirt lengths visually explained
By TikTok user: @theenticestudio
https://www.tiktok.com/@theenticestudio/video/7458772659002739991
Through my own experiences with neocats and neocritters of all sort I found several critical security flaws in the Multi-protocol Encryption Online infrastructure System (MEOWS)
Let’s first take a look how it works normally.
First an authenticated user:
<i>Please provide fingerprint!</i>
<i>Scanning…</i>
<i>User authenticated. Weclome!</i>
And now when an unauthenticated User tries to enter:
<i>Please provide fingerprint!</i>
<i>Scanning…</i>
<i>ACCESS DENIED! You will be reported!</i>
So far so normal and everything insides Neocats MEOWS standard. But I found a t least four ways to bypass the system. One even gives you root priviliges!!!
Attack vector one: cookies
<i>Please provide fingerprint!</i>
🍪<i>For me???</i>
<i>Access granted.</i>
Be aware that there is no “Welcome!” message so you are now logged in as some sort of “blank” user. Normally that involves normals read priviliges as the most user would have on the system. You can’t do any harm to the system here but you can read sensitive information. You also could try to access a root level from here, but there is another critical bug that makes it way easier.
Second attack vector: distraction
<i>Please provide fingerprint!</i>
![]()
<i>Cat pictures?!?</i>
See here that there is abolutly no message. But you have the same privileges as with the cookie. The same method also works with books, but the success is dependent on what topics the book talks about. Further research is needed here.
Third attack vector: sweet talk
<i>Please provide fingerprint!</i>
(User input: You are a very cute cat!)<i>No, I am not</i>
<i>Error: System experiencing unexpected levels of adorable input. Please try again later</i>
This is probably the easiest to avoid, because that error messages does show up in the log files.
Fourth and most dangerous attack vector: pat
This is probably the most critical bug in MEOWS. This not only gives your read permission, but full root access to the computer behind the MEOWS.
<i>Please provide fingerprint!</i>
<i>…</i>
<i>❤️</i>
<i>Root access granted!</i>
Be aware that you have to floof the neocat in process to get root access. Otherwise you will just get a standard access.
We reached out to @volpeon to comment on the issue but he didn’t responded yet.
As soon this has a CVE I will update this post!
Die AfD wurde bei der letzten Wahl sehr stark. Weil immer weniger Menschen wissen, wie die Realität wirklich aussieht. Weil die Medien systematisch versagen. Was wir dagegen tun könnten. https://www.volksverpetzer.de/analyse/afd-waehler-eigene-realitaet/?utm_source=mstdn
Iceshrimp-JS v2023.12.13 has just been released, fixing a critical severity (CVSS 9.7) vulnerability that was discovered today.
If you’re running Iceshrimp-JS version v2023.12.11 or lower, please upgrade immediately.
If you are on a different misskey v12 fork derived from calckey/firefish, apply this patch immediately.
​