home.social

#xmlrpc — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #xmlrpc, aggregated by home.social.

fetched live
  1. 🚨 Stop the presses! A cache ratio "detective" discovers 288,493 requests and becomes the Sherlock Holmes of XML-RPC brute force attacks. 🕵️‍♂️🔍 Because apparently, no one else noticed the tsunami of POST requests from a single IP until the cache ratio whispered the secret. 🤦‍♂️🌊
    marcindudek.dev/blog/xmlrpc-br #cachedetective #XMLRPC #brute-force #security #SherlockHolmes #technews #HackerNews #ngated

  2. 🚨 Stop the presses! A cache ratio "detective" discovers 288,493 requests and becomes the Sherlock Holmes of XML-RPC brute force attacks. 🕵️‍♂️🔍 Because apparently, no one else noticed the tsunami of POST requests from a single IP until the cache ratio whispered the secret. 🤦‍♂️🌊
    marcindudek.dev/blog/xmlrpc-br #cachedetective #XMLRPC #brute-force #security #SherlockHolmes #technews #HackerNews #ngated

  3. Ich habe mir vorgenommen, wieder häufiger zu bloggen und bin dabei direkt in ein Problem gelaufen:
    Stolperstein 2FA bei WordPress-Zugriff per XML-RPC (Wordfence)
    schacknetz.de/stolperstein-2fa

    #Wordpress #Wordfence #2FA #XMLRPC #MarsEdit

  4. Ich habe mir vorgenommen, wieder häufiger zu bloggen und bin dabei direkt in ein Problem gelaufen:
    Stolperstein 2FA bei WordPress-Zugriff per XML-RPC (Wordfence)
    schacknetz.de/stolperstein-2fa

    #Wordpress #Wordfence #2FA #XMLRPC #MarsEdit

  5. after working months on API and architecture improvements, I've published version 0.8.0 of `dxr`, my #xmlrpc implementation for #Rust :pensive_party_blob:

    the public API hasn't changed *much*, but it should be nicer to use for some cases. also, internal implementation details no longer leak into the public API - I finally managed to decouple XML de/serialization from the public types 😊

    release notes: codeberg.org/decathorpe/dxr/re

    phew, I'm glad this won't be banging around in my head any more.

  6. after working months on API and architecture improvements, I've published version 0.8.0 of `dxr`, my #xmlrpc implementation for #Rust :pensive_party_blob:

    the public API hasn't changed *much*, but it should be nicer to use for some cases. also, internal implementation details no longer leak into the public API - I finally managed to decouple XML de/serialization from the public types 😊

    release notes: codeberg.org/decathorpe/dxr/re

    phew, I'm glad this won't be banging around in my head any more.

  7. dxr 0.7.0 is out! 🎉

    it's a framework for writing #XMLRPC clients and servers in #Rust, with a modern, ergonomic, and type-safe API - for those of us who still need to Interface with "legacy" systems but don't want to be stuck using "legacy" programming languages too :emoji_wink:

    release notes: github.com/ironthree/dxr/relea

  8. dxr 0.7.0 is out! 🎉

    it's a framework for writing #XMLRPC clients and servers in #Rust, with a modern, ergonomic, and type-safe API - for those of us who still need to Interface with "legacy" systems but don't want to be stuck using "legacy" programming languages too :emoji_wink:

    release notes: github.com/ironthree/dxr/relea

  9. XML-RPC: вызываем все, везде и сразу

    У нас было пятьдесят операционных систем, десяток языков программирования и бесконечное множество библиотек и фреймворков всех сортов и расцветок, а также кофе, немного времени и щепотка здравого смысла. Не то чтобы это был необходимый запас для сетевой разработки, но раз уж начал коллекционировать дичь, то сложно остановиться.. Сделать вызов

    habr.com/ru/articles/837942/

    #java #xmlrpc

  10. We need an #RSS reader with "Reply" and "Repost" buttons. These actions would occur on a blog you connect with #Micropub or #XMLRPC, and use #WebMentions to notify the originating site.

  11. We need an #RSS reader with "Reply" and "Repost" buttons. These actions would occur on a blog you connect with #Micropub or #XMLRPC, and use #WebMentions to notify the originating site.

  12. Just pushed an update to my plugin for restricting admin panel and access to specific countries. You can now totally disable access to XMLRPC if it's not used, which saves from having to do country lookups on any of the traffic hitting it, and thus helps keep you within your free lookups quota 👍

    wordpress.org/plugins/admin-co

  13. “Pingsville"

    I'm working with the garage door open.

    github.com/jsit/pingsville-pin

    A #Deno- and #MongoDB-based #XMLRPC server for blog pings, a la Technorati.

    If this area is of interest to you, please fork and play around with this.

    #Pingsville

  14. “Pingsville"

    I'm working with the garage door open.

    github.com/jsit/pingsville-pin

    A #Deno- and #MongoDB-based #XMLRPC server for blog pings, a la Technorati.

    If this area is of interest to you, please fork and play around with this.

    #Pingsville

  15. I have a tiny node server running that correctly receives weblogUpdates.ping and logs the values to the console.

    Next to save them into a database of some kind, then write a frontend that does something with it.

    #blogging #xmlrpc

  16. I have a tiny node server running that correctly receives weblogUpdates.ping and logs the values to the console.

    Next to save them into a database of some kind, then write a frontend that does something with it.

    #blogging #xmlrpc

  17. What the fuck, #XMLRPC plugin?

    Worse, it seemed to have been enabled by default...

    #wordpress #rss

  18. What the fuck, #XMLRPC plugin?

    Worse, it seemed to have been enabled by default...

    #wordpress #rss

  19. @fuzzix I have bad news for you: #SOAP came out of that same era. It was an over-engineered adaptation by #Microsoft and @w3c of @davew’s #XMLRPC

    Mind you, the entire #XML-based #WebServices stack of standards is being re-accreted on top of #JSON with efforts like #OpenAPI and JSON Schema. The final and once-again neglected piece is automated service discovery à la #UDDI

  20. Okay, so anyone know a good tool for importing your #twitter archive to #Wordpress via the #wordpresss #xmlrpc or #REST api? I loved the idea of @shawnhooper's tool, but putting on #DreamHost & running it via command line times out cos my archive is too big and the format is not great for me. (haven't found a good theme that will format tweets)

    I would love a tool that allows me to run it remotely from terminal in my macos with my data local and feeds it into a remote wordpress installation.

  21. Okay, so anyone know a good tool for importing your #twitter archive to #Wordpress via the #wordpresss #xmlrpc or #REST api? I loved the idea of @shawnhooper's tool, but putting on #DreamHost & running it via command line times out cos my archive is too big and the format is not great for me. (haven't found a good theme that will format tweets)

    I would love a tool that allows me to run it remotely from terminal in my macos with my data local and feeds it into a remote wordpress installation.

  22. Fail2WP 1.2.0 for WordPress is out, supporting WP 6.1 and PHP 8.1. New features include login IP-blocking and XMLRPC protection 😊🤟🔒

    wordpress.org/plugins/fail2wp

    #wordpress #wordpressplugin #fail2ban #fail2wp #cybersec #cybersecurity #xmlrpc #ddos #dos #foss #oss #opensource

  23. Fail2WP 1.2.0 for WordPress is out, supporting WP 6.1 and PHP 8.1. New features include login IP-blocking and XMLRPC protection 😊🤟🔒

    wordpress.org/plugins/fail2wp

    #wordpress #wordpressplugin #fail2ban #fail2wp #cybersec #cybersecurity #xmlrpc #ddos #dos #foss #oss #opensource

  24. My little #Patchfox server just passed #XMLRPC validation...

    This is a from scratch rewrite of Patchfox #SSB client as a RPC server. Currently supporting both XML-RPC and JSON-RPC.

    #SecureScuttlebutt

  25. My little #Patchfox server just passed #XMLRPC validation...

    This is a from scratch rewrite of Patchfox #SSB client as a RPC server. Currently supporting both XML-RPC and JSON-RPC.

    #SecureScuttlebutt

  26. Ha! Implemented my own metaWeblog API server so that I can use desktop apps such as Mars Edit to post to my static-generated blog.

    andregarzia.com/2022/05/Got-me

    Yay! AMA

    #xmlrpc #metaweblog #blogging

  27. Onto implementing decoding for the structs today.

    #Golang #XMLRPC

  28. #XMLRPC Implementation in #Golang: Figured out a way to implement custom Unmarshaler for dynamic values with user-given datatypes. I'm kinda proud of it 😅.

    I implemented the decoding for primitive datatypes, just need to implement structs and arrays now.

  29. For decoding #XMLRPC, I want to expose functionality for caller to specify a list of parameter types to parse the values into. But I don't know how to implement it by implementing the Unmarshaller interface alone.

    #golang