#proto — Public Fediverse posts
Live and recent posts from across the Fediverse tagged #proto, aggregated by home.social.
-
Как я посадил WireMock.Net на gRPC стероиды
WireMock.Net умеет мокать gRPC . Но для этого он заставляет разработчика таскать .proto файлы и поддерживать лишнюю конфигурацию. Я контрибьютил в проект несколько месяцев, разобрался в кишках и написал своё расширение WireMock.Grpc.Protobuf Пакет предлагает gRPC моки через типизированные контракты Google.Protobuf . Получилось короче, надёжнее и заметно удобнее. В статье покажу, почему мой способ удобнее стандартного, как всё устроено под капотом и зачем вашему проекту пакет WireMock.Grpc.Protobuf Кстати, подобные инженерные разборы, open-source и внутренности .NET я регулярно публикую в Telegram-канале StepOne . Если статья зайдёт — заглядывайте. dotnet add package WireMock.Grpc.Protobuf
https://habr.com/ru/articles/1063162/
#grpc #proto #protobuf #wiremock #google #csharp #dotnet #nuget #github #mock
-
Illustration by Giovanni Battista Bracelli, from Bizzarie di Varie Figure (1624).
Source: US National Gallery of Art
https://pdimagearchive.org/images/f97c0aa7-fc7b-408e-af90-fe5811129279
#proto-cubism #abstract #shapes #art #publicdomain
-
[€]
@alexanderroth hat da eine ganz eigenartige Geschichte um einen offenbar als private Feier getarnten Auftritt des extrem rechten #RechtsRap-Duos #Proto (Kai Naggert) und #Kavalier (Dominik Raupbach) im Juli in #Winnenden, OT Birkmannsweiler aufgetan.
Fazit: Findet jetzt nicht statt. Gut so!
https://www.zvw.de/lokales/winnenden/neonazi-rapper-in-birkmannsweiler-gro%C3%9Fer-wirbel-um-angeblich-geplanten-auftritt_arid-1089644 -
Starlite Occident Marbella hará brillar este verano a Deep Purple el 9 de julio
✨
La mítica banda británica de hard rock aterriza por primera vez en la cantera. Con más de 100 millones de discos vendidos, harán sonar clásicos eternos como “Smoke on the Water”.https://collectorseriesdiy.blogspot.com/2026/06/deep-purple-el-9-de-julio-descargara-en.html
#Hard-rock #Blues-rock #Proto-metal
#heavy-metal #rock-progresivo
#Rock-psicodélico #press #culture #rock #rockandroll #gigs #tours #lives #deeppurple -
Hubble Captures Detailed Images of Largest Known Chaotic Planet-Forming Disk
📰 Original title: NASA’s Hubble reveals a giant chaotic planet nursery unlike anything seen before
🤖 IA: It's clickbait ⚠️
👥 Users: It's clickbait ⚠️ -
Illustration by Giovanni Battista Bracelli, from Bizzarie di Varie Figure (1624).
Source: US National Gallery of Art
https://pdimagearchive.org/images/48c54e06-d253-467c-b2ef-5d4b640008bf
#proto-cubism #abstract #shapes #armor #swords #art #publicdomain
-
Illustration by Giovanni Battista Bracelli, from Bizzarie di Varie Figure (1624).
Source: US National Gallery of Art
Available to buy as a print.
https://pdimagearchive.org/images/381bb871-1bd0-40f9-b8d1-8e0ca9c04b40
#proto-cubism #abstract #shapes #art #publicdomain
-
Illustration by Giovanni Battista Bracelli, from Bizzarie di Varie Figure (1624).
Source: US National Gallery of Art
Available to buy as a print.
https://pdimagearchive.org/images/78c10f8a-4241-48e6-97f7-d085730a605a
#proto-cubism #abstract #shapes #art #publicdomain
-
Illustration by Giovanni Battista Bracelli, from Bizzarie di Varie Figure (1624).
Source: US National Gallery of Art
https://pdimagearchive.org/images/4e9c89a4-c376-4ba2-a897-2b32db352d58
#proto-cubism #abstract #shapes #diamonds #art #publicdomain
-
Ganz offenbar gibt's im Hause #NeuerDeutscherStandard / #NDS von Kai #Proto Naggert schon wieder Ärger:
Julian 'Makss Damage' Fritsch hat vorhin auf Instagram verkündet, dass sein neues Album nur noch exklusiv bei ihm persönlich (bei Interesse PM) erhältlich ist.
#WennNazisStreiten -
It didn’t take long: CVE-2025-55182 is now under active exploitation
On December 4, 2025, researchers published details on the critical vulnerability CVE-2025-55182, which received a CVSS score of 10.0. It has been unofficially dubbed React4Shell, as it affects React Server Components (RSC) functionality used in web applications built with the React library. RSC speeds up UI rendering by distributing tasks between the client and the server. The flaw is categorized as CWE-502 (Deserialization of Untrusted Data). It allows an attacker to execute commands, as well as read and write files in directories accessible to the web application, with the server process privileges.
Almost immediately after the exploit was published, our honeypots began registering attempts to leverage CVE-2025-55182. This post analyzes the attack patterns, the malware that threat actors are attempting to deliver to vulnerable devices, and shares recommendations for risk mitigation.
A brief technical analysis of the vulnerability
React applications are built on a component-based model. This means each part of the application or framework should operate independently and offer other components clear, simple methods for interaction. While this approach allows for flexible development and feature addition, it can require users to download large amounts of data, leading to inconsistent performance across devices. This is the challenge React Server Components were designed to address.The vulnerability was found within the Server Actions component of RSC. To reach the vulnerable function, the attacker just needs to send a POST request to the server containing a serialized data payload for execution. Part of the functionality of the handler that allows for unsafe deserialization is illustrated below:
A comparison of the vulnerable (left) and patched (right) functionsCVE-2025-55182 on Kaspersky honeypots
As the vulnerability is rather simple to exploit, the attackers quickly added it to their arsenal. The initial exploitation attempts were registered by Kaspersky honeypots on December 5. By Monday, December 8, the number of attempts had increased significantly and continues to rise.The number of CVE-2025-55182 attacks targeting Kaspersky honeypots, by day (download)
Attackers first probe their target to ensure it is not a honeypot: they run whoami, perform multiplication in bash, or compute MD5 or Base64 hashes of random strings to verify their code can execute on the targeted machine.
In most cases, they then attempt to download malicious files using command-line web clients like wget or curl. Additionally, some attackers deliver a PowerShell-based Windows payload that installs XMRig, a popular Monero crypto miner.
CVE-2025-55182 was quickly weaponized by numerous malware campaigns, ranging from classic Mirai/Gafgyt variants to crypto miners and the RondoDox botnet. Upon infecting a system, RondoDox wastes no time, its loader script immediately moving to eliminate competitors:
Beyond checking hardcoded paths, RondoDox also neutralizes AppArmor and SELinux security modules and employs more sophisticated methods to find and terminate processes with ELF files removed for disguise.
Only after completing these steps does the script download and execute the main payload by sequentially trying three different loaders: wget, curl, and wget from BusyBox. It also iterates through 18 different malware builds for various CPU architectures, enabling it to infect both IoT devices and standard x86_64 Linux servers.
In some attacks, instead of deploying malware, the adversary attempted to steal credentials for Git and cloud environments. A successful breach could lead to cloud infrastructure compromise, software supply chain attacks, and other severe consequences.
Risk mitigation measures
We strongly recommend updating the relevant packages by applying patches released by the developers of the corresponding modules and bundles.
Vulnerable versions of React Server Components:- react-server-dom-webpack (19.0.0, 19.1.0, 19.1.1, 19.2.0)
- react-server-dom-parcel (19.0.0, 19.1.0, 19.1.1, 19.2.0)
- react-server-dom-turbopack (19.0.0, 19.1.0, 19.1.1, 19.2.0)
Bundles and modules confirmed as using React Server Components:
- next
- react-router
- waku
- @parcel/rsc
- @vitejs/plugin-rsc
- rwsdk
To prevent exploitation while patches are being deployed, consider blocking all POST requests containing the following keywords in parameters or the request body:
- #constructor
- # proto
- #prototype
- vm#runInThisContext
- vm#runInNewContext
- child_process#execSync
- child_process#execFileSync
- child_process#spawnSync
- module#_load
- module#createRequire
- fs#readFileSync
- fs#writeFileSync
- s#appendFileSync
Conclusion
Due to the ease of exploitation and the public availability of a working PoC, threat actors have rapidly adopted CVE-2025-55182. It is highly likely that attacks will continue to grow in the near term.We recommend immediately updating React to the latest patched version, scanning vulnerable hosts for signs of malware, and changing any credentials stored on them.
Indicators of compromise
Malware URLs
hxxp://172.237.55.180/b
hxxp://172.237.55.180/c
hxxp://176.117.107.154/bot
hxxp://193.34.213.150/nuts/bolts
hxxp://193.34.213.150/nuts/x86
hxxp://23.132.164.54/bot
hxxp://31.56.27.76/n2/x86
hxxp://31.56.27.97/scripts/4thepool_miner[.]sh
hxxp://41.231.37.153/rondo[.]aqu[.]sh
hxxp://41.231.37.153/rondo[.]arc700
hxxp://41.231.37.153/rondo[.]armeb
hxxp://41.231.37.153/rondo[.]armebhf
hxxp://41.231.37.153/rondo[.]armv4l
hxxp://41.231.37.153/rondo[.]armv5l
hxxp://41.231.37.153/rondo[.]armv6l
hxxp://41.231.37.153/rondo[.]armv7l
hxxp://41.231.37.153/rondo[.]i486
hxxp://41.231.37.153/rondo[.]i586
hxxp://41.231.37.153/rondo[.]i686
hxxp://41.231.37.153/rondo[.]m68k
hxxp://41.231.37.153/rondo[.]mips
hxxp://41.231.37.153/rondo[.]mipsel
hxxp://41.231.37.153/rondo[.]powerpc
hxxp://41.231.37.153/rondo[.]powerpc-440fp
hxxp://41.231.37.153/rondo[.]sh4
hxxp://41.231.37.153/rondo[.]sparc
hxxp://41.231.37.153/rondo[.]x86_64
hxxp://51.81.104.115/nuts/bolts
hxxp://51.81.104.115/nuts/x86
hxxp://51.91.77.94:13339/termite/51.91.77.94:13337
hxxp://59.7.217.245:7070/app2
hxxp://59.7.217.245:7070/c[.]sh
hxxp://68.142.129.4:8277/download/c[.]sh
hxxp://89.144.31.18/nuts/bolts
hxxp://89.144.31.18/nuts/x86
hxxp://gfxnick.emerald.usbx[.]me/bot
hxxp://meomeoli.mooo[.]com:8820/CLoadPXP/lix.exe?pass=PXPa9682775lckbitXPRopGIXPIL
hxxps://api.hellknight[.]xyz/js
hxxps://gist.githubusercontent[.]com/demonic-agents/39e943f4de855e2aef12f34324cbf150/raw/e767e1cef1c35738689ba4df9c6f7f29a6afba1a/setup_c3pool_miner[.]shMD5 hashes
0450fe19cfb91660e9874c0ce7a121e0
3ba4d5e0cf0557f03ee5a97a2de56511
622f904bb82c8118da2966a957526a2b
791f123b3aaff1b92873bd4b7a969387
c6381ebf8f0349b8d47c5e623bbcef6b
e82057e481a2d07b177d9d94463a7441 -
CW: Macro/micro, paws, sweat
Sneaking around some macro's place isn't exactly a smart idea when you are micro. This time tho Mocha Latte happened to be found by Kai The Proto. So now the lil llama has a warm toe cave to stay at :3
#macrofurry #protogen #macro #sizedifference #macromicro #paws #size_difference #proto #micro #macrofur #paw
-
Proto, by Laura Spinney
I interrupted the sequence of novels I’ve been reading recently to absorb a non-fiction book, Proto by Laura Spinney (left). I find linguistics a fascinating subject and when I saw a review of this recently and couldn’t resist. I’m glad I bought it because it’s absolutely fascinating. It is the story – or at least a very plausible account of the story of the lost ancestor of the Indo-European languages, the methods that have been used to reconstruct “Proto”, and why it was the spark that generated so many other languages across Europe, Eurasia and India.
The topic is very complex and I won’t attempt to describe it all in depth here; each chapter could be a book in itself because each family of languages within the Indo-European group – including lost ones such as Tocharian – has its own fascinating story. There are chapters focussing on the origins of language itself, the possibilities surround Proto (a language that was never written and probably exists in many dialects), Anatolian, Tocharian, Celtic, Germanic and Italic, the Indo-Iranian group (based on Sanskrit), Baltic and Slavic, and Albanian, Armenian and Greek. The last of these is fascinating because it used a method of writing borrowed from a non-Indo-European source that became the origin of the European alphabet.
The story of which all these are subplots begins around the Black Sea shortly after end of the last Ice Age. In this area there lived mesolithic hunter-gatherers who had survived the ice who interacted with farmers moving up from the direction of modern day Syria. Their languages would have merged in some way to allow them to describe things that their neighbours had that they didn’t. Hunter-gatherers would not have words for, e.g., ploughing or millet while farmers would have fewer words for spears and other equipment. Into this mix, the argument goes, came a third group, a fully nomadic culture called the Yamnaya people. These people subsequently underwent vast migrations across the continent and were responsible for spreading the Proto-Indo-European languages. That’s a hypothesis, not a proven fact, but it is plausible and has a reasonable amount of evidence in its favour.
Recent progress in this field has been driven not only by linguists but also by archaeologists and geneticists, with each aspect of this triangulation vital. It was reading about archaeology in this book that prompted me to write a post about the Nebra Sky Disc. There are some fascinating snippets from palaeogenetics, too. Full DNA sequences are now known for about 10,000 individuals who lived in prehistoric times.
One extraordinary find involves two burials of individuals who both lived about 5,000 years ago. Their DNA profiles match so well that they were probably second cousins or first cousins once removed. The thing is that one of them was buried in the Don Valley, north-east of Rostov in modern-day Russian, while the other was found 3,000 km away in the Altai mountains. Assuming they were both buried where they died, the implications for the distance over which people could move in a lifetime are remarkable.
Another fascinating genetic snippet applies to Irish, a Celtic language. The Celtic languages derive from a proto-Celtic source that probably arose about 1000 BC. Around 2450 BC one of the cultures preceding the Celts arrived in Britain and Ireland, now called the Beaker People because of their taste in pottery. The genetic record shows that the DNA of the Beaker folk replaced about 90% of the previous local gene pool, and all of the Y chromosomes; for some reason men of the earlier culture stopped fathering children. A similar change happened in Ireland, about 200 years later.One possible inference is that there was a violent conquest involving the erasure of the male population, but we don’t know for sure that it was sudden and catastrophic.
Whatever language the Beaker people brought with them was not Celtic (though it may have been Indo-European). The fascinating conundrum is that when Celtic languages arrived in Ireland whoever brought them left not a trace in the genetic record. This is unlike any of the similar changes in language use throughout European pre-history. Either the population responsible has not been identified or the language was spread through communication (e.g. for trade) rather than settlement. Irish may be a Celtic language, but there is little evidence of significant numbers of Celts settling here and bringing it with them.
Some time ago I wrote a post about the Celtic languages, which you might want to look at if you’re interested in this topic. A lot of that post I now realize to be very simplistic, but to add one other snippet I should mention that the name of Turkish football team Galatassaray translates to “Palace of the Celts” after the Celtic-speaking people who settled in Anatolia; these were the Galatians to whom Paul addressed his Epistle.
I thoroughly recommend this fascinating book. It made me want to find out more about so many things.
#archaeology #BeakerPeople #CelticLanguages #Genetics #LasuraSpinney #liguistics #Proto #ProtoIndoEuropeanLanguage #YamnayaCulture
-
Breakout Boards for the Blind - Connecting an LED to a battery seems trivial. If you have any knowledge of using b... - https://hackaday.com/2025/08/29/breakout-boards-for-the-blind/ #visualimpairment #accessibility #breakoutboard #toolhacks #braille #blind #proto
-
#Wissenschaft - Sprachgeschichte
Der Urknall unserer Sprache.
Vor 5.000 Jahren wurde die Mutter der meisten europäischen #Sprachen geboren: das #Proto-#Indoeuropäische. In “Der Urknall unserer Sprache” erklärt Laura #Spinney, wie #Linguistik, #Archäologie und #Genetik die #Geschichte des Indoeuropäischen neu erzählen.https://www.deutschlandfunkkultur.de/laura-spinney-der-urknall-unserer-sprache-100.html
#Podcast -
#Books and #stories for #JulyReads. | Tag to mute: #BokBooks
Thirteen novels:
●●●●○ A Half-Built Garden - Ruthanna Emrys #hopepunk
●●●◐○ Murderer Invisible - Philip Wylie #vintage
●●●◐○ Vengeance - Jennifer Foehner Wells {Confluence 5}
●●●◐○ The Crossing {Assiti Shards} - Kevin Ikenberry
●●●○○ Survivors - Terry Nation
●●●◐○ Dark Futures {New John Connor Chronicles 1} - Russell Blackford
●●●●○ Up-Time Pride and Down-Time Prejudice {Ring of Fire} - Mark H. Huston
●●●○○ The Invaders {Invaders 1} - Keith Laumer #TieIn
●●●●○ The Surrogate Affair {Stewart Grant 01} - Jack Dearborn #detective
●●●◐○ An Evil Hour {New John Connor Chronicles 2} - Russell Blackford
●●●●○ Lock In {Lock In 1} - John Scalzi
●●●●○ Miles Grant, Private Investigator {Miles Grant 01}- Jack Dearborn #mystery
●●●◐○ Enemies from Beyond {Invaders 2} - Keith Laumer #TieInOne novella:
●●●○○ Unlocked {Lock In 0.5} - John ScalziOne novelette:
●●◐○○ Project Time Machine {Agent Adams 1} - Tim TolbertTwenty-four stories:
●●◐○○ Death and the Senator - Arthur C. Clarke
●●●○○ Martian Quest - Leigh Brackett
●●●○○ At the Bottom of New Lake {Warmer 6} - Sonya Larson
●●●◐○ Rump-Titty-Titty-Tum-TAH-Tee - Fritz Leiber #classic
●●●◐○ Seventh Victim - Robert Sheckley
●●●○○ The Little Man Who Wasn't All There - Robert Bloch {Lefty Feep}
●●●○○ The Hillside - Jane Smiley {Warmer 7}
●●●○○ Naked Ghost Story - P.A. Choi
●●●○○ Old Ventures, New Partners - Nicolas Wilson
●●●◐○ Never Stop to Pat a Kitten - Miriam Allen deFord
●●●◐○ One Long Ribbon - Florence Engel Randall
●●●○○ The Golden Opportunity of Lefty Feep - Robert Bloch
●●●○○ A Big Man with the Girls - Judith Merril and Frederik Pohl
●●●◐○ Ugly Earthling - Elizabeth Chater
●●●◐○ The Maze - A. Bertram Chandler
●●●●◐ Small Moments in Time - Jack Campbell [John Hemry]
●●●○○ Second Variety - Philip K. Dick
●●●○○ A Naked Wish - P.A. Choi
●●●◐○ The Case of the Dow Twins - Edward Page Mitchell #proto
●●●○○ Poor Little Saturday - Madeleine L’Engle
●●●◐○ Youth - Isaac Asimov
●●○○○ 108 Stitches - Tony Bertauski
●●●○○ Lefty Feep and the Sleepy-Time Gal - Robert Bloch
●●●◐○ Helen O'Loy - Lester del Rey━━━━━━━━━━━
2025-07: 24 ss | 01 nvt | 01 nva | 13 nov
2025-06: 26 ss | 03 nvt | 00 nva | 12 nov
2025-05: 24 ss | 06 nvt | 01 nva | 13 nov
2025-04: 29 ss | 06 nvt | 00 nva | 11 nov
━━━━━━━━━━━The Miles Grant and Stewart Grant detective novels are interesting, in that they seem to be doing a "case worthy of a book" per year, and after 24 years, Miles retires and Stewart takes over as detective.
The number of novels per month is going up. It used to hover around nine: two per week, with one in the partial week. But I've been reading some shorter books lately, which has boosted the number. Novellas remain rare.
Finally finished all the stories in Pioneering Women of Science Fiction, Christopher Broschell's collection of stories from the 1940s and 1950s.
-
Right now, the Dallas Winds play #Barnes #Proto & #Bernstein with Daniels and more in #Dallas https://www.worldconcerthall.com/en/schedule/the_dallas_winds_play_barnes_proto__bernstein_with_daniels_and_more_in_dallas/88388/ #wch
-
In 20 minutes, the Dallas Winds play #Barnes #Proto & #Bernstein with Daniels and more in #Dallas https://www.worldconcerthall.com/en/schedule/the_dallas_winds_play_barnes_proto__bernstein_with_daniels_and_more_in_dallas/88388/ #wch
-
Today, the Dallas Winds play #Barnes #Proto & #Bernstein with Daniels and more in #Dallas https://www.worldconcerthall.com/en/schedule/the_dallas_winds_play_barnes_proto__bernstein_with_daniels_and_more_in_dallas/88388/ #wch
-
🌊💧 Behold, a groundbreaking revelation: "water" has #ancient roots! Who knew #languages evolved? 🙄 Dive deep into #Proto-Indo-European #trivia while we thirst for #content with actual substance. 🍸🚰
https://jamesgill.net/waterword/ #water #evolution #HackerNews #ngated -
Und passenderweise sehe ich gerade, dass vorhin sämtliche ( = ALLE!) Kanäle von Kai #Proto Naggert auf #youtube UND auf #Spotify rausgekickt worden sind 🥳
#IchFeiereDasSehr
#rechtsrapptnicht -
Für die Sächsische Zeitung habe ich letzte Woche lange mit Fionn Klose über Kai #Proto Naggert, Dominik #Kavalier Raupbach und das Label #NeuerDeutscherStandard gesprochen 👇
https://www.saechsische.de/lokales/bautzen-lk/bautzen/weifa-mit-rap-und-partymusik-gegen-das-gesellschaftssystem-der-brd-6P4ADECD4NBZTP363J46ICT55M.html
#rechtsrapptnicht
#rechtsrocktnicht -
1) Angestoßen von @hoywoj ein paar kritische Gedanken zur #stern-Reportage #BrauneKinderzimmer am Beispiel von Kai #Proto Naggert und Dominik #Kavalier Raupbach vom extrem rechten Label #NeuerDeutscherStandard 👇
-
Rechtsrapper Jann #Azatro Blumhoff hatte gestern mit viel Gedöns ein neues Musikvideo angekündigt. Allzu lange blieb das allerdings nicht online, "aufgrund einer Beschwerde wegen Urheberrechtsverletzung".
Der #RechtsRap-Beef zwischen Blumhoff und Kai #Proto Naggerts #NDS geht also weiter 🍿
#rechtsrapptnicht -
1|2 Der #RechtsRap -Auftritt von Kai #Proto Naggert & Dominik #Kavalier Raupbach fand gestern abend dann doch nicht im 'Lokal 18' statt, sondern in der Gaststätte #Burgblick in #Saaleck (gut zu erkennen an den Häusern gegenüber des Biergartens des 'Burgblick').
Ausweislich verschiedener Posts auf social media war es nur mäßig voll, ca. 40-50 Leute würde ich schätzen.