Discussion
Loading...

#Tag

Log in
  • About
  • Code of conduct
  • Privacy
  • Users
  • Instances
  • About Bonfire
Konrad Hinsen boosted
nullagent
nullagent
@nullagent@partyon.xyz  ·  activity timestamp 2 months ago

Was just going on a grey-beard rant about how Rust give developers a false sense of security.

I didn't even notice the TARMageddon vulnerability until now and well this grey beard really only can say "told you so".

This is -precisely- the class of bugs I was describing, and -exactly- due to the reasons I outlined.

The blast radius of this thing is also freaking epic, almost anything that used tar in Rust is vulnerable to possible RCEs lmao.

https://edera.dev/stories/tarmageddon

#Rust #Cybersecurity #tar

  • Copy link
  • Flag this post
  • Block
nullagent
nullagent
@nullagent@partyon.xyz  ·  activity timestamp 2 months ago

Was just going on a grey-beard rant about how Rust give developers a false sense of security.

I didn't even notice the TARMageddon vulnerability until now and well this grey beard really only can say "told you so".

This is -precisely- the class of bugs I was describing, and -exactly- due to the reasons I outlined.

The blast radius of this thing is also freaking epic, almost anything that used tar in Rust is vulnerable to possible RCEs lmao.

https://edera.dev/stories/tarmageddon

#Rust #Cybersecurity #tar

  • Copy link
  • Flag this post
  • Block
Stefano Marinelli boosted
Dendrobatus Azureus
Dendrobatus Azureus
@Dendrobatus_Azureus@mastodon.bsd.cafe  ·  activity timestamp 4 months ago

And the Fortune said;

RAID is not a backup
The cloud ☁️ is also not a backup!

Tar is a backup Bacula and ZFS with proper hardware configuration also.

Even just `tar -cvfz` would be great with the tar dumped on HDD off site.

WTF Korea now the millions of vital records are gone :(

The damage of this is incalculable

#Cloud #backup #bacula #ZFS #RAID #tar

https://koreajoongangdaily.joins.com/news/2025-10-01/national/socialAffairs/NIRS-fire-destroys-governments-cloud-storage-system-no-backups-available/2412936

The image is a close-up photograph taken in a dark, indoor setting, likely a damaged facility. The focus is on a severely burned and partially destroyed large battery unit. The battery appears to be composed of multiple rectangular modules, heavily charred and exhibiting signs of extreme heat damage. A person’s leg wearing blue jeans and a black shoe is visible on the right side of the frame. The image is accompanied by text that reads: “Officials move a burnt battery at the National Information Service (NIRS) in Daejeon on Sept. 27.” Additionally, there is text at the top of the image: “NIRS fire destroys government’s cloud storage system, no backups available.” Published: 01 Oct. 2025, 17:59 is at the bottom.

Provided by @altbot, generated privately and locally using Gemma3:27b

🌱 Energy used: 0.141 Wh
The image is a close-up photograph taken in a dark, indoor setting, likely a damaged facility. The focus is on a severely burned and partially destroyed large battery unit. The battery appears to be composed of multiple rectangular modules, heavily charred and exhibiting signs of extreme heat damage. A person’s leg wearing blue jeans and a black shoe is visible on the right side of the frame. The image is accompanied by text that reads: “Officials move a burnt battery at the National Information Service (NIRS) in Daejeon on Sept. 27.” Additionally, there is text at the top of the image: “NIRS fire destroys government’s cloud storage system, no backups available.” Published: 01 Oct. 2025, 17:59 is at the bottom. Provided by @altbot, generated privately and locally using Gemma3:27b 🌱 Energy used: 0.141 Wh
The image is a close-up photograph taken in a dark, indoor setting, likely a damaged facility. The focus is on a severely burned and partially destroyed large battery unit. The battery appears to be composed of multiple rectangular modules, heavily charred and exhibiting signs of extreme heat damage. A person’s leg wearing blue jeans and a black shoe is visible on the right side of the frame. The image is accompanied by text that reads: “Officials move a burnt battery at the National Information Service (NIRS) in Daejeon on Sept. 27.” Additionally, there is text at the top of the image: “NIRS fire destroys government’s cloud storage system, no backups available.” Published: 01 Oct. 2025, 17:59 is at the bottom. Provided by @altbot, generated privately and locally using Gemma3:27b 🌱 Energy used: 0.141 Wh

NIRS fire destroys government's cloud storage system, no backups available

A fire at the National Information Resources Service (NIRS) Daejeon headquarters destroyed the government’s G-Drive cloud storage system, erasing work files saved individually by some 750,000 civil servants.
  • Copy link
  • Flag this post
  • Block
Dendrobatus Azureus
Dendrobatus Azureus
@Dendrobatus_Azureus@mastodon.bsd.cafe  ·  activity timestamp 4 months ago

And the Fortune said;

RAID is not a backup
The cloud ☁️ is also not a backup!

Tar is a backup Bacula and ZFS with proper hardware configuration also.

Even just `tar -cvfz` would be great with the tar dumped on HDD off site.

WTF Korea now the millions of vital records are gone :(

The damage of this is incalculable

#Cloud #backup #bacula #ZFS #RAID #tar

https://koreajoongangdaily.joins.com/news/2025-10-01/national/socialAffairs/NIRS-fire-destroys-governments-cloud-storage-system-no-backups-available/2412936

The image is a close-up photograph taken in a dark, indoor setting, likely a damaged facility. The focus is on a severely burned and partially destroyed large battery unit. The battery appears to be composed of multiple rectangular modules, heavily charred and exhibiting signs of extreme heat damage. A person’s leg wearing blue jeans and a black shoe is visible on the right side of the frame. The image is accompanied by text that reads: “Officials move a burnt battery at the National Information Service (NIRS) in Daejeon on Sept. 27.” Additionally, there is text at the top of the image: “NIRS fire destroys government’s cloud storage system, no backups available.” Published: 01 Oct. 2025, 17:59 is at the bottom.

Provided by @altbot, generated privately and locally using Gemma3:27b

🌱 Energy used: 0.141 Wh
The image is a close-up photograph taken in a dark, indoor setting, likely a damaged facility. The focus is on a severely burned and partially destroyed large battery unit. The battery appears to be composed of multiple rectangular modules, heavily charred and exhibiting signs of extreme heat damage. A person’s leg wearing blue jeans and a black shoe is visible on the right side of the frame. The image is accompanied by text that reads: “Officials move a burnt battery at the National Information Service (NIRS) in Daejeon on Sept. 27.” Additionally, there is text at the top of the image: “NIRS fire destroys government’s cloud storage system, no backups available.” Published: 01 Oct. 2025, 17:59 is at the bottom. Provided by @altbot, generated privately and locally using Gemma3:27b 🌱 Energy used: 0.141 Wh
The image is a close-up photograph taken in a dark, indoor setting, likely a damaged facility. The focus is on a severely burned and partially destroyed large battery unit. The battery appears to be composed of multiple rectangular modules, heavily charred and exhibiting signs of extreme heat damage. A person’s leg wearing blue jeans and a black shoe is visible on the right side of the frame. The image is accompanied by text that reads: “Officials move a burnt battery at the National Information Service (NIRS) in Daejeon on Sept. 27.” Additionally, there is text at the top of the image: “NIRS fire destroys government’s cloud storage system, no backups available.” Published: 01 Oct. 2025, 17:59 is at the bottom. Provided by @altbot, generated privately and locally using Gemma3:27b 🌱 Energy used: 0.141 Wh

NIRS fire destroys government's cloud storage system, no backups available

A fire at the National Information Resources Service (NIRS) Daejeon headquarters destroyed the government’s G-Drive cloud storage system, erasing work files saved individually by some 750,000 civil servants.
  • Copy link
  • Flag this post
  • Block
Aral Balkan
Aral Balkan
@aral@mastodon.ar.al  ·  activity timestamp 6 months ago

🥳 New Kitten Release

To GNU tar or not to GNU tar?

• Installing Kitten on Linux should no longer display a screenful of gibberish from the tar command.

You see, macOS, being special, includes BSD tar, not GNU tar, and adds a bunch of Mac-specific metadata and extended header keywords to archives that GNU tar on Linux machines then chokes on and regurgitates onto your screen as warnings.

With this release, Kitten’s packaging script expects GNU tar to be available on macOS and uses that instead of BSD tar.

The latest release of Kitten now installs without any warnings on Linux (at least on my Fedora Silverblue box).

Enjoy!

https://kitten.small-web.org

#Kitten#KittenRelease #SmallWeb#SmallTech#GNU#BSD#Darwin#macOS #tar

  • Copy link
  • Flag this post
  • Block
vermaden
vermaden
@vermaden@mastodon.bsd.cafe  ·  activity timestamp 6 months ago

New 𝗖𝗿𝘂𝗰𝗶𝗮𝗹 𝗙𝗿𝗲𝗲𝗕𝗦𝗗 𝗧𝗼𝗼𝗹𝗸𝗶𝘁 [Crucial FreeBSD Toolkit] article on the blog.

https://vermaden.wordpress.com/2025/07/08/crucial-freebsd-toolkit/

#verblog #beadm #bectl #devfs #diskinfo #free #freebsd #fstab #gstat #jails #linux #lsblk #sensors #sockstat #systat #tar #truss #truncate #zfs

Sorry, no caption provided by author
Sorry, no caption provided by author
Sorry, no caption provided by author
  • Copy link
  • Flag this post
  • Block

bonfire.cafe

A space for Bonfire maintainers and contributors to communicate

bonfire.cafe: About · Code of conduct · Privacy · Users · Instances
Bonfire social · 1.0.1 no JS en
Automatic federation enabled
Log in
  • Explore
  • About
  • Members
  • Code of Conduct