Linux User Space podcast

Episode 4:18: Open Source Isn't Safe!

0:00
1:21:58
Spol 15 sekunder tilbage
Spol 15 sekunder frem
Coming up in this episode * Does it do Passkeys tho? * So What Happened to Xz anyway? * How do we fix the internet? The Video Version (https://www.youtube.com/watch?v=I3bN3PRmHJY) https://www.youtube.com/watch?v=I3bN3PRmHJY Timestamps 0:00 Cold Open 1:36 Amazingly Self-Hosted 34:13 The History of Xz and the Hack*! 49:58 How to Fix Open Source 1:15:56 Next Time 1:20:42 Stinger 💻Self Hosting and Passkeys🔑 Audiobookshelf (https://www.audiobookshelf.org/) Immich (https://immich.app/) Tailscale (https://tailscale.com/) What are Passkeys - Tom's Guide (https://www.tomsguide.com/news/what-are-passkeys) Passkeys - FIDO Alliance (https://fidoalliance.org/passkeys/) 📣Announcements📣 This program was made possible by: * 📺️Youtube (https://youtube.com/linuxuserspace) * 📽️TILvids (https://tilvids.com/a/linuxuserspace) * And by contributions to your L-U-S station by Patrons (https://patreon.com/linuxuserspace) like you 😍 📖The History of XZ🦜 LZMA (https://web.archive.org/web/20121109182343/http://sourceforge.net/projects/sevenzip/forums/forum/45797/topic/1025556) Andrey Markov (https://en.wikipedia.org/wiki/Markov_chain) LZ77 and LZ78 (https://en.wikipedia.org/wiki/LZ77_and_LZ78) 7zip history (https://7-zip.org/history.txt) Slackels (https://web.archive.org/web/20060202151612/https://tukaani.org/) LZMA in the form of the GCC compiled LZMA SDK (https://web.archive.org/web/20060213143853/http://tukaani.org/lzma/history) Tukanni Linux Project was officially gone (https://web.archive.org/web/20071011030325/http://tukaani.org/) LZMA Utils was left behind (https://web.archive.org/web/20090830051503/http://tukaani.org:80/xz) in favor of the similarly LZMA-backed Xz Utils. version 5.0 (https://web.archive.org/web/20101201065849/http://tukaani.org/xz/) is the transition from LZMA to XZ. Some distributions would eventually migrate to using Z Standard compression, including Arch (https://archlinux.org/news/now-using-zstandard-instead-of-xz-for-package-compression/) in 2019 and Fedora (https://fedoraproject.org/wiki/Changes/Switch_RPMs_to_zstd_compression) and Ubuntu would make the switch in 2020. A new face, Jigar Kumar, shows up (https://www.mail-archive.com/[email protected]/msg00565.html). January 7th, 2023, Jia Tan was finally able to merge their own commits (https://github.com/tukaani-project/xz/pull/7) to Xz on Github. Jia tries to convince (https://github.com/google/oss-fuzz/pull/10667) the OSS-Fuzz team to accept a patch that disabled Indrect Function. Adding the test files (https://git.tukaani.org/?p=xz.git;a=commitdiff;h=cf44e4b7f5dfdbf8c78aef377c10f71e274f63c0) which weren't test files at all. Andres Freund's Mastodon post (https://mastodon.social/@AndresFreundTec/112180083704606941) On April 2nd, 2024, Collin adds a page to his tukaani.org (https://tukaani.org/xz-backdoor/) domain. 📣More Announcements📣 Want to have a topic covered or have some feedback? - send us an email, [email protected] OR jump on over to the open forum on Lemmy (https://lemmy.linuxuserspace.show/c/forum) 🧹Housekeeping🧹 Catch these and other great topics as they unfold on our Subreddit or our News channel on Discord. * 🗞️ Linux User Space Lemmy (https://lemmy.linuxuserspace.show) * 📰 Linux User Space subreddit (https://linuxuserspace.show/reddit) * ⌨️ Linux User Space Discord Server (https://linuxuserspace.show/discord) * 📲 Linux User Space Telegram (https://linuxuserspace.show/telegram) * ✉️ Linux User Space Matrix (https://linuxuserspace.show/matrix) * 📽️ Linux User Space Twitch (https://linuxuserspace.show/twitch) * 🐘 Linux User Space Mastodon (https://linuxuserspace.show/mastodon) * 📜 Linux User Space Twitter (https://linuxuserspace.show/twitter) * 📺️ Linux User Space TILVids (https://linuxuserspace.show/tilvids) ⚒️How To Fix Open Source🛠️ Heartbleed (https://heartbleed.com/) I'm not a supplier (https://www.softwaremaxims.com/blog/not-a-supplier) XKCD 2347 (https://xkcd.com/2347/) 🔭Next Time🔭 We plan to explore your feedback and some other topics. Our final history episode of the season will be Gentoo (https://www.gentoo.org/). Come back in two weeks for more Linux User Space Stay tuned 📡 and interact with us on Lemmy, Twitter, Mastodon, Telegram, Matrix, Discord whatever. Give us your suggestions on our subreddit r/LinuxUserSpace Join the conversation. Talk to us, and give us more ideas. All the links in the show notes and on linuxuserspace.show. We would like to acknowledge 🤩 our top patrons. Thank you 🙏 for your support! Producer Bruno Dave John Johnny Visaggio & Co Co-Producer --verbose Tim GrouchyM Super User A.J. Advait CubicleNate Eduardo S. Hausken Jeff3ix Jefferson Jill and Steve Larry LiNuXsys666 Livet Musical Coder Nicholas Nick pjol sleepyeyesvince The Saigoneer Tobias

Flere episoder fra "Linux User Space"