オキヌケ船長:
昔と変わらず甘えん坊なかぐやさん(8000歳)と、10年でスパダリに磨きがかかりまくった酒寄彩葉さん(28歳)
https://twitter.com/namaedousiyoka/status/2029149857496396001
昔と変わらず甘えん坊なかぐやさん(8000歳)と、10年でスパダリに磨きがかかりまくった酒寄彩葉さん(28歳)
https://twitter.com/namaedousiyoka/status/2029149857496396001
Forwarded from 雀巢咖啡厅
ECH 加密握手协议通过 IETF 全部审批,RFC 9849 于今天发布
历经七年、25 次草案修订,TLS 加密客户端握手协议(Encrypted Client Hello,ECH)已于 2026 年 3 月 4 日正式发布。
与此相关的 RFC 9848 也同时发布。
https://datatracker.ietf.org/doc/html/9849
https://mailarchive.ietf.org/arch/msg/ietf-announce/5MiqV8pQUAIGS1HvdOCh-yDw0hE/
历经七年、25 次草案修订,TLS 加密客户端握手协议(Encrypted Client Hello,ECH)已于 2026 年 3 月 4 日正式发布。
与此相关的 RFC 9848 也同时发布。
https://datatracker.ietf.org/doc/html/9849
https://mailarchive.ietf.org/arch/msg/ietf-announce/5MiqV8pQUAIGS1HvdOCh-yDw0hE/
IETF Datatracker
RFC 9849: TLS Encrypted Client Hello
This document describes a mechanism in Transport Layer Security (TLS) for encrypting a message under a server public key.
🎉9❤1
论兽耳娘的渊源与内涵:东亚文学视角下的“亚人类”与反殖民斗争
https://shitjournal.org/preprints/3ba9a854-fc16-4910-b586-8c68dd4cffb9
这篇绝对学术过端了吧!
https://shitjournal.org/preprints/3ba9a854-fc16-4910-b586-8c68dd4cffb9
这篇绝对学术过端了吧!
🤯11🔥1
This media is not supported in your browser
VIEW IN TELEGRAM
鈴@Rin.System:
いろかぐ
とある写真を見て、この構図が描きたくなった
#超かぐや姫
https://twitter.com/RinSystem/status/2020321685485023357
いろかぐ
とある写真を見て、この構図が描きたくなった
#超かぐや姫
https://twitter.com/RinSystem/status/2020321685485023357
🐳5🥰1
Forwarded from Hacker News
10% of Firefox crashes are caused by bitflips (Score: 150+ in 1 day)
Link: https://readhacker.news/s/6P5V5
Comments: https://readhacker.news/c/6P5V5
Link: https://readhacker.news/s/6P5V5
Comments: https://readhacker.news/c/6P5V5
mas.to
Gabriele Svelto (@gabrielesvelto@mas.to)
A few years ago I designed a way to detect bit-flips in Firefox crash reports and last year we deployed an actual memory tester that runs on user machines after the browser crashes. Today I was looking at the data that comes out of these tests and now I'm…
🤯10
Forwarded from 层叠 - The Cascading
🔴 Cline 2.3.0 用户可能被安装了 OpenClaw;不需要的话可以卸载。
- 2/17 晚至 2/18 凌晨安装了 Cline 的用户可能受到影响 [1]。
- 研究者利用了 GitHub Actions cache 可以跨分支共享、可以被投毒,以及 cache 的解压并未对路径进行检查的漏洞 [2]。
- 虽然未经用户允许安装,但 OpenClaw 本身并非恶意软件。
1. GHSA-9ppg-jx86-fqw7
2. adnanthekhan.com/~
Fixed-in: 2.4.0
#Cline #OpenClaw #GitHub
- 2/17 晚至 2/18 凌晨安装了 Cline 的用户可能受到影响 [1]。
- 研究者利用了 GitHub Actions cache 可以跨分支共享、可以被投毒,以及 cache 的解压并未对路径进行检查的漏洞 [2]。
- 虽然未经用户允许安装,但 OpenClaw 本身并非恶意软件。
1. GHSA-9ppg-jx86-fqw7
2. adnanthekhan.com/~
Fixed-in: 2.4.0
#Cline #OpenClaw #GitHub
GitHub
Unauthorized npm publish of Cline CLI cline@2.3.0 with modified postinstall script to install openclaw
### Description
On February 17, 2026 at 3:26 AM PT, an unauthorized party used a compromised npm publish token to publish an update to Cline CLI on the NPM registry: cline@2.3.0. The published pac...
On February 17, 2026 at 3:26 AM PT, an unauthorized party used a compromised npm publish token to publish an update to Cline CLI on the NPM registry: cline@2.3.0. The published pac...
😁17🤔2
&'a ::rynco::UntitledChannel
拿哥发新专辑了!!!! 22首歌!!!!
声明:本人从未在互联网上诋毁过拿不拿,本人实际上是拿不拿十年老粉,经过长时间的思考,我发现夜鹿才是 jpop 的希望。至于可惜夜,祝他们的新专一切顺利。本人从未诋毁过拿不拿,也从未批评过夜鹿不摇滚,望周知!
❤8
Solidot 纯净版
小行星 2024 YR4 撞击月球概率上升至 1/25 #月球 小行星 2024 YR4 基本不可能撞击地球,但 2032 年 12 月撞击月球的概率提高到了 1/25。若撞击真的发生,预估将在月球表面形成一个约 1 公里直径的新撞击坑。虽然月球本身无需防御,撞击也不会对月球轨道运行有任何影响。但撞击所造成的抛射物有可能进入地球同步轨道范围,对部分卫星系统造成干扰风险。这也提醒我们,太空防御的范畴不应限于地球,整个地月系统的安全亦不可忽视。 www.esa.int/Space_Safety/Planet…
FixupX
European Space Agency (@esa)
JUST IN: Asteroid 2024 YR4 will not impact the Moon in 2032!
New observations from the NASA/ESA/CSA James Webb Space Telescope have confirmed that the object will pass safely at a distance of more than 20 000 km.
This result was made possible by a close…
New observations from the NASA/ESA/CSA James Webb Space Telescope have confirmed that the object will pass safely at a distance of more than 20 000 km.
This result was made possible by a close…
😭8👏3🥰2
Forwarded from Lobste.rs
grith.ai
A GitHub Issue Title Compromised 4,000 Developer Machines
A prompt injection in a GitHub issue triggered a chain reaction that ended with 4,000 developers getting OpenClaw installed without consent. The attack composes well-understood vulnerabilities into something new: one AI tool bootstrapping another.