home.social

#exec — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #exec, aggregated by home.social.

fetched live
  1. Das ist so ein Scheiß… da spielt man mit dem Runden von Sensordaten für SSI mit dc auf dem lokalen Raspi-Webserverchen rum, und es wird draußen schneller wärmer als ich die Outputs verarbeiten kann…
    <--!#exec cmd='echo "1 k `cat /sys/bus/w1/devices/28-00000448xxxx/temperature` 50 + 1000 / p" | dc' --> hat dann funktioniert.

  2. Oh, so you're tired of #the trusty fork() and exec() combo, huh? 😴 Well, let's reinvent the #wheel and complicate what's been working for decades. 🙄 Bravo, #LWN, for shedding light on the truly #groundbreaking idea of doing the same thing, but... differently. 😂 Thanks, but no thanks.
    lwn.net/SubscriberLink/1076018 #fork #exec #reinventing #tech #satire #ideas #HackerNews #ngated

  3. Oh, so you're tired of #the trusty fork() and exec() combo, huh? 😴 Well, let's reinvent the #wheel and complicate what's been working for decades. 🙄 Bravo, #LWN, for shedding light on the truly #groundbreaking idea of doing the same thing, but... differently. 😂 Thanks, but no thanks.
    lwn.net/SubscriberLink/1076018 #fork #exec #reinventing #tech #satire #ideas #HackerNews #ngated

  4. Mini-Shell: Часть 2 — Pipes, фоновые процессы и управление задачами

    Это продолжение серии. Если вы не читали первую часть, рекомендую начать с неё: habr.com/ru/articles/1000766/

    habr.com/ru/articles/1007988/

    #shell #fork #exec #wait #системные_вызовы #процессы #linux #c++

  5. Does it really matter who ends up owning Warner Bros.? Media exec Tom Rogers breaks it down

    misryoum.com/us/economy/does-i

    Paramount Skydance CEO, David Ellison and CEO of Warner Bros. Discovery, David Zaslav.David A. Grogan | US News Hub MISRYOUM| Patrick T. Fallon | AFP | Getty Images |It is extremely rare for a merger and acquisition story to break...

    #Does #really #matter #who #ends #owning #Warner #Bros #Media #exec #Tom #Rogers #breaks #down #US_News_Hub #misryoum_com

  6. UFC White House event to cost 'upwards of $60 million,' exec says

    misryoum.com/us/sports/ufc-whi

    NEWYou can now listen to US News Hub articles! This year is full of momentous sporting events in the United States, including the first-of-its-kind UFC card at the White House. However, the event, which is scheduled for June 14, will...

    #UFC #White #House #event #cost #upwards #million #exec #says #US_News_Hub #misryoum_com

  7. @seulavecvous

    On a joué avec #Exec et #LaSécurité il y a quelques mois
    Bah c'était une trop chouette soirée !
    Et les canadiens repassent en France en juin
    lasecurite.bandcamp.com/music

    @hiddenbayrec

  8. Я пишу свой терминал с нуля, чтобы понять как работает компьютер

    Что происходит, когда вы вводите ls в терминале? Как 2 буквы превращаются в список файлов на экране? Я решил разобраться и написал свой терминал с нуля на C++. В этой статье я объясняю через метафору ресторана, как работают три магических системных вызова — fork() , exec() и wait() — которые лежат в основе любого терминала. Вы узнаете, почему cd нельзя сделать обычной программой, как работает перенаправление > , и какой коварный баг я поймал из-за непонимания процессов. Без сложной теории — только практика и понятные объяснения.

    habr.com/ru/articles/1000766/

    #shell #fork #exec #wait #системные_вызовы #процессы #linux #c++

  9. Just because the ruling class is "technically" a part of a marginalized community, it doesn't absolve them of their shitty behavior.

    Anthropic Exec Forces AI Chatbot on Gay Discord Community, Members Flee

    404media.co/anthropic-exec-for

    #Anthropic #Exec #AI #Chatbot #LGBTQIA #Discord #Community #Tech

  10. Just because the ruling class is "technically" a part of a marginalized community, it doesn't absolve them of their shitty behavior.

    Anthropic Exec Forces AI Chatbot on Gay Discord Community, Members Flee

    404media.co/anthropic-exec-for

    #Anthropic #Exec #AI #Chatbot #LGBTQIA #Discord #Community #Tech

  11. Allarme Apache: falle SSRF e credenziali NTLM esposte. Admin, aggiornate subito!

    Un aggiornamento significativo è stato distribuito dalla Apache Software Foundation per il diffuso Apache HTTP Server, correggendo un totale di cinque vulnerabilità di sicurezza distinte. È raccomandato che gli amministratori eseguano questo aggiornamento il prima possibile al fine di assicurare che la loro infrastruttura web sia protetta contro i vettori individuati.

    La versione 2.4.66, appena rilasciata, rappresenta una correzione complessiva di problematiche che includono sia loop infiniti durante il rinnovo dei certificati sia possibili perdite di credenziali NTLM su sistemi operativi Windows.

    Due delle vulnerabilità individuate, classificate come “moderate”, costituiscono rischi specifici per le configurazioni di hosting condiviso che impiegano suexec e per gli ambienti Windows, mentre le restanti tre sono etichettate come “bassa” gravità.

    Tra le correzioni più significative di questo aggiornamento figura il CVE-2025-59775, una falla di sicurezza relativa alla falsificazione delle richieste lato server (SSRF) che interessa Apache HTTP Server in esecuzione su Windows. Questa vulnerabilità, considerata di gravità moderata, si verifica a causa dell’interazione tra le impostazioni AllowEncodedSlashes On e MergeSlashes Off.

    Secondo quanto affermato nella nota, questa configurazione “consente di divulgare potenzialmente hash NTLM a un server dannoso tramite SSRF e richieste o contenuti dannosi”. Ciò potrebbe consentire agli aggressori di raccogliere credenziali dall’ambiente server, rendendola una patch prioritaria per gli amministratori Windows.

    La seconda falla di gravità moderata, il CVE-2025-66200, riguarda l’interazione tra mod_userdir e suexec. Questa vulnerabilità consente di aggirarla tramite la direttiva AllowOverride FileInfo. Il report osserva che “gli utenti con accesso alla direttiva RequestHeader in htaccess possono causare l’esecuzione di alcuni script CGI con un ID utente inaspettato”. Ciò interrompe di fatto l’isolamento previsto della funzionalità suexec, fondamentale per la sicurezza in ambienti multiutente.

    L’aggiornamento risolve ulteriori tre problemi di lieve gravità che, sebbene meno critici, potrebbero interrompere le operazioni o creare comportamenti imprevisti:

    • Ciclo infinito (CVE-2025-55753): un bug in mod_md (ACME) può causare un overflow durante i rinnovi di certificati non riusciti. Questo crea un potenziale scenario di esaurimento delle risorse.
    • Problema relativo alla stringa di query (CVE-2025-58098): riguarda i server che utilizzano Server Side Includes (SSI) con mod_cgid. L’avviso afferma che il server “passa la stringa di query con escape della shell alle direttive #exec cmd=’…'”.
    • Variable Override (CVE-2025-65082): questa falla riguarda “variabili impostate tramite la configurazione di Apache che sostituiscono inaspettatamente le variabili calcolate dal server per i programmi CGI”.

    Si consiglia agli utenti di aggiornare alla versione 2.4.66 , che risolve il problema

    L'articolo Allarme Apache: falle SSRF e credenziali NTLM esposte. Admin, aggiornate subito! proviene da Red Hot Cyber.

  12. Allarme Apache: falle SSRF e credenziali NTLM esposte. Admin, aggiornate subito!

    Un aggiornamento significativo è stato distribuito dalla Apache Software Foundation per il diffuso Apache HTTP Server, correggendo un totale di cinque vulnerabilità di sicurezza distinte. È raccomandato che gli amministratori eseguano questo aggiornamento il prima possibile al fine di assicurare che la loro infrastruttura web sia protetta contro i vettori individuati.

    La versione 2.4.66, appena rilasciata, rappresenta una correzione complessiva di problematiche che includono sia loop infiniti durante il rinnovo dei certificati sia possibili perdite di credenziali NTLM su sistemi operativi Windows.

    Due delle vulnerabilità individuate, classificate come “moderate”, costituiscono rischi specifici per le configurazioni di hosting condiviso che impiegano suexec e per gli ambienti Windows, mentre le restanti tre sono etichettate come “bassa” gravità.

    Tra le correzioni più significative di questo aggiornamento figura il CVE-2025-59775, una falla di sicurezza relativa alla falsificazione delle richieste lato server (SSRF) che interessa Apache HTTP Server in esecuzione su Windows. Questa vulnerabilità, considerata di gravità moderata, si verifica a causa dell’interazione tra le impostazioni AllowEncodedSlashes On e MergeSlashes Off.

    Secondo quanto affermato nella nota, questa configurazione “consente di divulgare potenzialmente hash NTLM a un server dannoso tramite SSRF e richieste o contenuti dannosi”. Ciò potrebbe consentire agli aggressori di raccogliere credenziali dall’ambiente server, rendendola una patch prioritaria per gli amministratori Windows.

    La seconda falla di gravità moderata, il CVE-2025-66200, riguarda l’interazione tra mod_userdir e suexec. Questa vulnerabilità consente di aggirarla tramite la direttiva AllowOverride FileInfo. Il report osserva che “gli utenti con accesso alla direttiva RequestHeader in htaccess possono causare l’esecuzione di alcuni script CGI con un ID utente inaspettato”. Ciò interrompe di fatto l’isolamento previsto della funzionalità suexec, fondamentale per la sicurezza in ambienti multiutente.

    L’aggiornamento risolve ulteriori tre problemi di lieve gravità che, sebbene meno critici, potrebbero interrompere le operazioni o creare comportamenti imprevisti:

    • Ciclo infinito (CVE-2025-55753): un bug in mod_md (ACME) può causare un overflow durante i rinnovi di certificati non riusciti. Questo crea un potenziale scenario di esaurimento delle risorse.
    • Problema relativo alla stringa di query (CVE-2025-58098): riguarda i server che utilizzano Server Side Includes (SSI) con mod_cgid. L’avviso afferma che il server “passa la stringa di query con escape della shell alle direttive #exec cmd=’…'”.
    • Variable Override (CVE-2025-65082): questa falla riguarda “variabili impostate tramite la configurazione di Apache che sostituiscono inaspettatamente le variabili calcolate dal server per i programmi CGI”.

    Si consiglia agli utenti di aggiornare alla versione 2.4.66 , che risolve il problema

    L'articolo Allarme Apache: falle SSRF e credenziali NTLM esposte. Admin, aggiornate subito! proviene da Red Hot Cyber.

  13. Kraków był nasz! Relacja z Mega Sekurak Hacking Party 2025

    Mega Sekurak Hacking Party znów rozbiło bank! 20 października 2025 roku Centrum Kongresowe ICE w Krakowie ponownie stało się mekką dla pasjonatów cyberbezpieczeństwa. Rekordowa frekwencja onsite – ponad 1400 uczestników – oraz solidna reprezentacja online (400+) potwierdziła, że to nie jest zwykła konferencja, jakich wiele, a prawdziwa „rodzinna impreza” dla...

    #Aktualności #Exec #Hackingparty #Konferencja #MegaSekurakHackingParty #Mshp #Sekurak

    sekurak.pl/krakow-byl-nasz-rel

  14. Kraków był nasz! Relacja z Mega Sekurak Hacking Party 2025

    Mega Sekurak Hacking Party znów rozbiło bank! 20 października 2025 roku Centrum Kongresowe ICE w Krakowie ponownie stało się mekką dla pasjonatów cyberbezpieczeństwa. Rekordowa frekwencja onsite – ponad 1400 uczestników – oraz solidna reprezentacja online (400+) potwierdziła, że to nie jest zwykła konferencja, jakich wiele, a prawdziwa „rodzinna impreza” dla...

    #Aktualności #Exec #Hackingparty #Konferencja #MegaSekurakHackingParty #Mshp #Sekurak

    sekurak.pl/krakow-byl-nasz-rel

  15. [Перевод] Парадокс безопасности локальных LLM

    Команда AI for Devs подготовила перевод исследования о парадоксе безопасности локальных LLM. Если вы запускаете модели на своём сервере ради приватности, эту статью стоит прочитать. Эксперименты показывают: локальные модели вроде gpt-oss-20b куда легче обмануть, чем облачные аналоги. Они чаще вставляют вредоносный код, не замечая подвоха, и превращаются в идеальную цель для атак.

    habr.com/ru/articles/960132/

    #LLM #безопасность #локальные_модели #атаки #бекдор #eval #exec #RedTeaming #приватность #разработка

  16. Upcoming features for #tracexec

    #Exec backtrace and jump to parent

    In next release, the #TUI will support gathering the exec #backtrace of any exec event, which will greatly simply debugging experience.

    The exec backtrace shows the history of a specific event and indicates any ancestor spawns or directly tears itself down and becomes the new process.

    Jump to parent is a lighter alternative to backtrace, where you just press `U` to jump to the parent exec evt.

    #Linux #eBPF #ptrace #execve

  17. tracexec 0.11.0 released with new timestamp feature and O_CLOEXEC file descriptors are now hidden by default.

    #eBPF #linux #ptrace #exec #execve #trace

    github.com/kxxt/tracexec/relea

  18. Honest question: What are use-cases for performing exec while multi-threaded? Seriously, if I were to add a patch that prevents calling exec while multi-threaded in the kernel what possible use-case would break?

    #linux #kernel #exec

  19. Honest question: What are use-cases for performing exec while multi-threaded? Seriously, if I were to add a patch that prevents calling exec while multi-threaded in the kernel what possible use-case would break?

    #linux #kernel #exec

  20. #Linux #FIndOperations #Find #Exec #Replace #Files #FIndReplace

    Here's a cool #Bash trick you might not know but might find use for sometime.

    Say you edit a file that's in multiple locations, and you want your edit to appear in those multiple locations because it makes sense to do so. But you have no real means of doing that quite easily. Try this.

    NOTE: In my situation, a simple expression like this is effective. I do not claim it might work for anything much beyond that complexity. There's no reason it shouldn't but I didn't try employing regex or anything.
    :D

  21. #Linux #FIndOperations #Find #Exec #Replace #Files #FIndReplace

    Here's a cool #Bash trick you might not know but might find use for sometime.

    Say you edit a file that's in multiple locations, and you want your edit to appear in those multiple locations because it makes sense to do so. But you have no real means of doing that quite easily. Try this.

    NOTE: In my situation, a simple expression like this is effective. I do not claim it might work for anything much beyond that complexity. There's no reason it shouldn't but I didn't try employing regex or anything.
    :D

  22. You can debug programs with this TUI! 🔥

    🕵️‍♂️ traceexec: Trace execve{,at} and pre-exec behavior.

    🚀 Now supports GDB launcher: github.com/kxxt/tracexec/blob/

    🦀 Written in Rust & built with @ratatui_rs

    ⭐ GitHub: github.com/kxxt/tracexec

  23. You can debug programs with this TUI! 🔥

    🕵️‍♂️ traceexec: Trace execve{,at} and pre-exec behavior.

    🚀 Now supports GDB launcher: github.com/kxxt/tracexec/blob/

    🦀 Written in Rust & built with @ratatui_rs

    ⭐ GitHub: github.com/kxxt/tracexec

    #rustlang #ratatui #tui #trace #exec #gdb

  24. Ok, can someone help me with Anatolix(codeberg.org/GNUAn/Anatolix)?

    This is how you contribute
    1. Read CONTRIBUTING file in Anatolix repo
    2. Fork repo
    3. Make some changes
    4. Create pull request

    #osdev #os #dev #development #operatingsystem #mastodon #Anatolix #fork #exec #execv

  25. ‘Strap yourselves in’ — Bull market coming early 2024, say crypto exchange heads - The heads of Australia’s largest crypto exchanges say a bull run ... - cointelegraph.com/news/bull-ma #bullmarket #australia #binance #crypto #exec #etf

  26. ‘Strap yourselves in’ — Bull market coming early 2024, say crypto exchange heads - The heads of Australia’s largest crypto exchanges say a bull run ... - cointelegraph.com/news/bull-ma #bullmarket #australia #binance #crypto #exec #etf

  27. Oh, you want to know what I'm working on?

    I just told a current vendor he might have to beat his price next year or someone else is going to take his contract.

    It used to be hard to have those money conversations. A pandemic and extractive capitalism have beaten that reticence out of me.

    #Nonprofit #Exec
    #Leadership
    #AtLeastImInStretchyPants

  28. Oh, you want to know what I'm working on?

    I just told a current vendor he might have to beat his price next year or someone else is going to take his contract.

    It used to be hard to have those money conversations. A pandemic and extractive capitalism have beaten that reticence out of me.

    #Nonprofit #Exec
    #Leadership
    #AtLeastImInStretchyPants

  29. #madness

    What if I don't provide command line options?

    I embed a #scheme interpreter and let the user provide functions through the command line or stdin?

    e.g.

    $ find . -type f -iname \*.jpg -delete

    becomes

    $ find "(pwd) (pattern "*.jpg" #:case-sensitive) #exec (λ (p) (run "rm -f" p) ) #type file"

    Internally, it simply transforms the passed string to a function call (find ..........)

    It has 2 fixed parameters → search path & pattern.

    Some optional parameters like

    * #exec provides a function to be called for each path found.
    * #type for file type filtering.

    Pros
    * Infinite flexibility.
    * The need to design and parse command options is completely eliminated!

  30. @Azure @softwareAnarchist And don't just exec it in your ~.xinitrc, do it this way
    #exec $HOME/.local/bin/dwm
    while true; do
    # Log stderr to a file
    $HOME/.local/bin/dwm 2> ~/.dwm.log
    done

    this allows you to recompile and install an updated binary without losing your Xsession.