Skip Navigation

InitialsDiceBearhttps://github.com/dicebear/dicebearhttps://creativecommons.org/publicdomain/zero/1.0/„Initials” (https://github.com/dicebear/dicebear) by „DiceBear”, licensed under „CC0 1.0” (https://creativecommons.org/publicdomain/zero/1.0/)GN
Posts
0
Comments
255
Joined
2 yr. ago

  • Nothing, someone who never needed access to the RHEL snapshot source is butt hurt that it only exists as part of centOS stream, making it harder for community rebuilds to exist.

    It's no big deal for 95% of users, truly a nonissue. That last 5% can buy RHEL for production or use it for free for personal hosting or development.

  • American salads made of jelly or mayonnaise are fucking wild. I remember seeing the Mayo and gummy bear salad on how I met your mother and thinking no way that shit is real, surely it's an absurd joke...

  • With the amount of inbreeding in Tasmania, it's probably more Alabama than Queensland... Which probably should have been marked Florida - if you've ever been to the Gold Coast

  • Nuke from orbit might be an overreaction, if you need that machine perhaps disable ssh or turn the machine off until later next week when the postmortems happen. If you need that trusted machine now, then yes fresh install

  • Perhaps it was a poorly worded way of suggesting that invalidating host keys would invalidate all client keys it could potentially generate? Either way it's a lot of speculation.

    Resetting the keys and SSH config on any potentially compromised host is probably not a terrible idea

  • some people in my mastodon feed are suggesting that the backdoor might have connected out to malicious infrastructure or substituted its own SSH host keys, but I can't find any clear confirmation. More info as the investigation progresses.

    I guess at this point if you're on Fedora 40 or rawhide clear / regen your host keys, even after xz version rollback