there will be a reboot of the server that hosts ci.friendi.ca, git.friendi.ca, files.friendi.ca. I will shutdown all services one be one, will hit the reboot and pray it comes up again!

reshared this

reshared this
Anomaly reshared this.
I noticed that bisq was not working, and...
Bisq v1 has experienced an exploit in its trade protocol that allowed an attacker to drain a portion of available offers.
The impact was limited to open offers that were actively taken by the attacker over the last 12 hours. Funds held in users’ Bisq Bitcoin wallets were not affected.
As an immediate mitigation, an emergency mechanism was activated to disable trading by setting the required trading version to 2.0.0 — a version that does not exist. This effectively prevents the attacker from continuing the exploit.
The attack appears to have started on May 1 in the early morning hours. We are continuing to investigate the full extent of the damage. Users with trades initiated on or after this time are advised to open mediation by selecting the trade and pressing Ctrl + O. A mediator will assess whether their trade was affected.
Preliminary investigation indicates that the attacker exploited a missing validation check using a modified client. We are working to reliably reproduce the issue and verify a fix. Once confirmed, we will release a hotfix based on the latest stable version. In parallel, we are conducting a comprehensive security review to identify any related or additional vulnerabilities.
For affected users, we are actively evaluating reimbursement options. We recognize that both the exploit and our response are critical to Bisq’s integrity, and we are dedicating all available resources to finding a solution that helps restore confidence.
Bisq 2, with the Bisq Easy trade protocol, is not affected. It is a separate codebase with a fundamentally different protocol design.
We will continue to provide updates through our official communication channels, including Matrix, the Bisq Forum, Telegram, Reddit, X, and Nostr.
We sincerely apologize for the impact this incident has had on our users. We are fully committed to addressing both the root cause and its consequences.Sphere (bot) reshared this.
This post-mortem explains what happened

@disclosure
Sphere (bot) reshared this.
From 2022 to 2026, 11 Scientists and Experts Tied to NASA have disappeared or been found dead.
They worked on "special projects". Anti-gravity, nuclear and Special Access Space Programs
• Amy Eskridge – June 11, 2022: DEAD
• Michael David Hicks – July 30, 2023: DEAD
• Frank Maiwald – July 4, 2024: DEAD
• Anthony Chavez – May 2025: MISSING
• Monica Reza – June 22, 2025: MISSING
• Melissa Casias – June 26, 2025: MISSING
• Steven Garcia – Aug 2025: MISSING
• Nuno Loureiro – Dec 2025: KILLED
• Carl Grillmair – Feb 16, 2026: KILLED
• William “Neil” McCasland – Feb 27, 2026: MISSING
• Jason Thomas – Dec 2025 (body Mar 2026): DEAD dailymail.co.uk/sciencetech/ar…
#conspiracy #ufo #uap #nasa
A young scientist tied to America's most secretive projects warned she was being targeted before being found dead in 2022, as a dark pattern surrounding space and nuclear secrets grows.Chris Melore (Mail Online)
earth.com/news/ran-submarine-f…
An autonomous submarine named Ran discovers strange structures under the Dotson Ice Shelf in Antarctica, before mysteriously disappearing.Eric Ralls (Earth.com)
The claims made about GrapheneOS in this interview are extremely inaccurate. It heavily misrepresents the purpose of GrapheneOS and what we've worked on for years. The claim GrapheneOS is a security project rather than a privacy project is misinformation. Contacts are specifically brought up and yet our Contact Scopes feature is ignored. @fla knows GrapheneOS is a privacy project. He replied to a thread with our response to this misinformation only 4 days ago...
piaille.fr/@projetslibres_podc…
New podcast episode: Put some privacy in your smartphone! 📣 🎧How can you use an Android smartphone while protecting your privacy? Who should you turn to for more privacy-friendly Android alternatives?
Can you install Linux on your phone?With @fla from @Framasoft , we answer these questions!
👉 projets-libres.org/en/podcast/…
#podcast #opensource #privacy #eos #iodeOS #calyxos #postmarketos #fairphone #commown #murena #ubuntutouch #grapheneos
Anomaly reshared this.
@farshidhakimy @exodus @kuketzblog
> this is a misrepresentation of what people at exodus do.
No, it's not a misrepresentation. Our statements accurately describe our extensive real world experience with how users interpret the information it provide and what it leads them to believe. We've been addressing it for years.
> They don't tell you an app isn't privacy invasive just because it doesn't have any trackers.
The user interface gives many users the impression that it does do that.
@farshidhakimy @exodus @kuketzblog
> It isn't feasible to manually test every app in the Play Store, as it would require the work @kuketzblog does at an enormous scale.
Scanning for a specific list of libraries being presented the way it is has created major misconceptions for a large number of users. Runtime testing of apps cannot provide much assurance about an app's behavior particularly when only doing limited short term testing, but that isn't what we we're talking about here.
@farshidhakimy @exodus @kuketzblog
> If an app has many trackers from different big tech companies, that is enough to tell the app is very likely not going to be privacy friendly.
An app being listed as having 0 trackers on Exodus is not a strong indication that it's a privacy friendly app. It doesn't scan for the vast majority of the most privacy invasive behavior by apps. Very basic analytics or crash reporting is also treated with the same severity as incredibly invasive functionality.
@farshidhakimy @exodus @kuketzblog A third party SDK which uses the Location permission to gather user location data and send it to a third party isn't at all in the same class as basic crash reporting. This kind of behavior is commonly done via an app's own servers so it won't be seen.
Google Mobile Services includes crash reporting for every app installed from the Play Store on a device with regular Google Mobile Services integration without the app including any libraries for it regardless.
@AcidePoulain @exodus It's very relevant that they're on an instance which we're very close to defederating due to the community and team running it heavily spreading fabrications about GrapheneOS and being involved in harassment towards our team.
We're not misinterpreting their mission of what they provide. We've explained in detail how it results in misleading users. You aren't addressing what we said but rather are claiming we did something we did while ignoring the information we provided.
> They provide educational material
Our issue is with how their work is presented to end users, not with the work they put into gathering the information on which apps contain libraries which are bad for privacy.
> what's the problem ?
Many users ending up with harmful misconceptions and making poor decisions due to it. Our team needing to put tons of work into addressing it on an ongoing basis. We've explained all of this in detail in our series of responses to this.
They are calm, wot?
The Mastodon instance is important to mention because it would be unfortunate for an unrelated project to be associated with or negatively affected by the issues of that instance.
GrapheneOS is not bashing them. They are critical of how the information is being conveyed. I have been part of the GOS community for years and have needed to explain the nuances of trackers to people who have been misled by them, probably around a triple digit number of times. Even I was misled by them way in the beginning.
Educational material needs to be communicated with the proper meaning and drawbacks.
By your own admission, you didnt read all of the provided info... so I mean...? Im not sure what else they would do or say lol.
@AcidePoulain @HybridStaticAnimate Have you read the original post in the thread?
grapheneos.social/@GrapheneOS/…
The claims made about GrapheneOS in this interview are extremely inaccurate. It heavily misrepresents the purpose of GrapheneOS and what we've worked on for years. The claim GrapheneOS is a security project rather than a privacy project is misinformation. Contacts are specifically brought up and yet our Contact Scopes feature is ignored. @fla knows GrapheneOS is a privacy project. He replied to a thread with our response to this misinformation only 4 days ago...piaille.fr/@projetslibres_podc…
New podcast episode: Put some privacy in your smartphone! 📣 🎧
How can you use an Android smartphone while protecting your privacy? Who should you turn to for more privacy-friendly Android alternatives?
Can you install Linux on your phone?With @fla from @Framasoft , we answer these questions!
👉 projets-libres.org/en/podcast/…
#podcast #opensource #privacy #eos #iodeOS #calyxos #postmarketos #fairphone #commown #murena #ubuntutouch #grapheneos
@AcidePoulain @HybridStaticAnimate
> Any harassment would have been quickly deleted
It consistently hasn't been dealt with but rather is systemically permitted.
> I don't think this single case of someon
You're both misrepresenting what we said, misrepresenting what happened in the podcast and the further context of this happening repeatedly.
Claiming GrapheneOS isn't a privacy project and that it doesn't work much on privacy while refusing to retract it isn't a mistake.
@AcidePoulain
Sure, but being on an instance that is problematic could have unintended consequences for unrelated parties. Its important for users to be aware.
Such is the nature of federation, unfortunately.
@farshidhakimy
No one misrepresented what they do. The issue isnt them saying that, the issue is that is what people erroneously interpret. I have been part of the GOS community for years and I must have explained the tracker thing a triple digit number of times. Pure intentions are always a plus but that doesnt excuse negative consequences, intended or not. The whole approach of badness enumeration is fundamentally incomplete. Trackers themselves are poorly defined and not every tracker is created equal. Its vital that an educational resource cater to new and uneducated users, drawbacks and all.
If the scale of that is too much, perhaps the approach should be reconsidered.
@AcidePoulain @HybridStaticAnimate
> unrelated articles on random individual blogs
What you see are a community and project with a systemic problem of pushing fabrications about GrapheneOS and our team. The pervasive libel towards our team and support/spreading of harassment content is harassment and they've failed to deal with it. There's a massive amount of hate towards us specifically from that instance and the people running in it are involved in misleading people and not dealing wtih it.
@AcidePoulain @HybridStaticAnimate
> I guess there's a lot of GrapheneOS hate on bluesky and Xitter for example
Nope, there's hardly any of it. Nearly all of the hate we experience towards us on social media is on Mastodon. Nearly all of that hate comes from France and Germany. The majority of it comes from France and a large portion of it has recently been coming from that instance. The main source of attacks on GrapheneOS and harassment towards our team are Murena and their supporters.
@AcidePoulain @HybridStaticAnimate
> You and GOS were spreading some shit about Exodus Privacy, I happen to know for a fact they aren't involved in any kind of smear campaign agains Graphene OS.
You're continuing to misrepresent and lie about what we said. We never said any such thing about Exodus Privacy.
If you read the original thread and what was linked then you'd see what we said is true. Can also easily confirm fla replied to our thread debunking the claims made there days earlier.
@AcidePoulain
No one is giving you snarky remarks. They are speaking neutrally and objectively.
GrapheneOS is far more tired of the negativity than you are. The inhumane level of abuse they deal with would tire anyone very quickly, and they want it to stop.
You havent entered with an open mind, you entered looking for confirmation bias of a predetermined conclusion, and have disregarded the evidence and information provided. You then proceeded to attack GOS implying they are mentally ill. If youre so tired of the negativity, please stop contributing to it.
@AcidePoulain @HybridStaticAnimate
Here's what's linked in our thread:
projets-libres.org/en/podcast/…
> So, there are many, many things that are being done on security. It is a very good operating system. However, there is not a lot that is being done about privacy.
> On the other hand, if we compare it to other OSes that are more privacy-oriented, you mentioned /e/OS, there is Iodé too, there is CalyxOS, there are several alternatives that exist.
They know this isn't true. They read our threads.
@AcidePoulain
And GOS devs know whats going on in theirs, quite hypocritical of you.
That "shit" was about the flawed technical approach of trackers and the practical negative effects of how they are conveyed. Neither GrapheneOS nor I claimed that Exodus was engaging in a smear campaign. Not once. The post history is still there for everyone to see that, and yet you have chosen to lie.
I didnt go on any rant about their homeserver.
People dont "try to understand their point" by attacking them and making false claims with the expectation of being corrected. In what world is calling people "unhinged" and "paranoid" open minded? I would hate to see what you classify as closed minded. Would you like me to call you paranoid and unhinged? I doubt it, and Im not going to, because that has no place in an open minded discussion. Why are you choosing to stoop so low?
@AcidePoulain @HybridStaticAnimate How can it be justified that they said this after reading grapheneos.social/@GrapheneOS/… days earlier?
Here's proof they replied:
mastodon.social/@fla/116368144…
They didn't only reply once but rather twice.
Gaël Duval is the founder and president of the /e/ foundation along with the CEO of Murena. Duval and his organizations have consistently taken a stance against protecting users from exploits. In this video, he once again claims protecting against exploits is only useful for pedophiles and spies.Translation to English:
> There's the attack surface, on that front we're not security specialists here, so I couldn't answer you precisely, but from the discussions I've had, it seems that everything
@AcidePoulain @HybridStaticAnimate
> pure conspiracy theory.
You can see what we've said it true for yourself:
grapheneos.social/@GrapheneOS/…
We can provide proof of our reports of harassment content on multiple major instances with it consistently not being addressed and we can show there has been a massive increase of it from Framasoft's instance since around November when the attacks by French national law enforcement began and Murena escalated their attacks alongside it. You claim otherwise?
@AcidePoulain @HybridStaticAnimate How can it be justified that they said this after reading grapheneos.social/@GrapheneOS/… days earlier?Here's proof they replied:
mastodon.social/@fla/116368144…
They didn't only reply once but rather twice.
Gaël Duval is the founder and president of the /e/ foundation along with the CEO of Murena. Duval and his organizations have consistently taken a stance against protecting users from exploits. In this video, he once again claims protecting against exploits is only useful for pedophiles and spies.
Translation to English:> There's the attack surface, on that front we're not security specialists here, so I couldn't answer you precisely, but from the discussions I've had, it seems that everything
grapheneos.social/system/media…
@AcidePoulain @HybridStaticAnimate
> Would you say there is a group behind the french nonprofits of the open source community that specifically targets GrapheneOS then ?
/e/ and Murena have misled people about GrapheneOS and our team for years. They've heavily attacked GrapheneOS and tried to undermine it. /e/ and Murena are known to receive millions of euros in funding from the EU and they play a major role in choosing where funds go as part of an organization they're involved in.
@AcidePoulain @HybridStaticAnimate
> of running a smear campaign
We linked to blatantly inaccurate claims about GrapheneOS based on /e/ talking points and proof they'd read at least 1 of our threads addressing it prior to that.
You can try to spin in a positive light if you'd like but they continue not correcting it which would have avoided posts in our timeline.
> vaguely related individuals
In their own words, projets-libres.org/en/podcast/… says they've been part of Framasoft since 2014.
@AcidePoulain @HybridStaticAnimate
> Even the fact that the hates comes mostly from French Mastodon, like, I can't believe the claim that you see less hateful content on the infamous birdsite, they basically don't have any moderation.
The proportion of hate towards us on Mastodon is vastly higher than Bluesky or X. We no longer post everything on Mastodon because of it. Our posts about certain topics are not exclusive to the other 2 platforms following the recent major rounds of attacks.
@AcidePoulain @HybridStaticAnimate /e/ and Murena are undermining the whole privacy movement with their actions and statements. They're not only harming GrapheneOS and our team with their attacks. A lot of their supporters will figure out /e/ and Murena aren't what they claim to be but rather have poor privacy, atrocious security and lack of shared values with real believers in privacy. Some will figure it out quickly, others slowly. Some will attack us a lot first.
grapheneos.social/@GrapheneOS/…
Gaël Duval is the founder and president of the /e/ foundation along with the CEO of Murena. Duval and his organizations have consistently taken a stance against protecting users from exploits. In this video, he once again claims protecting against exploits is only useful for pedophiles and spies.Translation to English:
> There's the attack surface, on that front we're not security specialists here, so I couldn't answer you precisely, but from the discussions I've had, it seems that everything
Indian factory workers wearing head-mounted cameras to record hand movements for training AI systems pic.twitter.com/uHTnWMoTUg— Interesting things (@awkwardgoogle) April 12, 2026Interesting things (X (formerly Twitter))
That’s how almost every job works.
I’m a journeyman carpenter, my roles include training apprentices to replace me.
CEOs, accountants, lawyers and middle managers
I’m pretty sure these are the jobs they’re referring to, not the manual labor
CEOs and managers at any level, sure. Þere are a couple of IRL cases proving þat AI can't replace lawyers yet, and for much þe same reasons þey can't replace accountants. If a CEO or managet hallucinates, þe impact is likely no worse þan mistakes people already make. For law and accounting, hallucinations can ruin a case or account.
I'm not so sure about textiles, þough. Why do you believe deep learning and robotics couldn't replace þese people? Robots have been assembling cars for decades, wiþout deep learning. Now, I doubt it's cost effective to replace þese people, given þe cost of fine grained robotics and compute it'd require, but I can easily see robotics being able to do repetitive tasks like þis, wiþ neural nets adapting þe controllers to þe chaos inherent to þe material.
Robots can barely pick up a piece of cloth right now.
youtube.com/watch?v=bemrcQcHmM…
If you search for robotics and textiles, you find a ton of videos where robotics are being used to manipulate fabrics. Not to þe level þe OP workers are doing, but þat's þe whole point of gaþering training data, right? Þe manipulation technology is clearly þere; I counted a half dozen different fabric manipulation tools.
Those can’t do anything useful yet, not even pick up parcels.
youtube.com/watch?v=Is0VlgcYCX…
I also came across a DHL propaganda piece about an automated warehouse in þe UK which is using one of þe parcel grabbers mounted on a kart. I didn't link it because it's just a long ad.
Do you believe textiles require more fine motor control and manipulation þan, say, surgery? Take a look at þe Intuitive Surgical's Da Vinci and Ion surgical robots. Þey're tele-operated, but þe manipulator technology is solid.
I just þink claiming "X is a safe job" is hubris.
Discover how Fizyr’s AI-based software and AWL’s advanced robotic systems are streamlining parcel sorting in modern warehouses. This video showcases how the ...Zivid | Industrial 3D Vision for Robots (YouTube)
LLMs are just statistics. One guy throwing thorn into comments on Lemmy is not going to be statistically significant against every book ever published and every site on the internet.
You'd need at least, like, 12
Science fiction’s superpower isn’t thinking up new technologies – it’s thinking up new social arrangements for technology. What the gadget does is nowhere near as important as who the gadget does it for and who it does it to. Your car can use a cutting-edge computer vision system to alert you when you’re drifting out of your lane – or it can use that same system to narc you out to your insurer so they can raise your premiums by $10 that month to punish you for inattentive driving. Same gadget, different social arrangement.
locusmag.com/feature/commentar…
Science fiction’s superpower isn’t thinking up new technologies – it’s thinking up new social arrangements for technology. What the gadget does is nowhere near as important as who the gadget does i…Cory Doctorow (Locus Online)
That made me feel so shitty, exploitative to the extreme, we are fucked as a society.
Now that you are trying to put everyone out of work, killed open source, killed open publishing, who are you going to sell your shit too? what will you train your next models on?
I imagine, if you are in Bombay and have 3 children, that's a completely different set of cards, but still there are so many things you can change.
Poverty begets poverty. Poor people are usually too concerned about the next meal to take time for big structural overhauls of their way of doing things.
🚨 Before sending your friend a DM on Insta - think twice🚨
Soon you will have zero #privacy on #Instagram 👉 even in direct messages.
From May 8th, 2026, the tech giant will stop encrypting private messages between its users and this means they have access to everything you send and share.
At Tuta, we fight for your right to privacy which is we have signed this open letter to Meta.
🔗 Read it here: airtable.com/appqDYfRhxpsavEzz…
💡 Find out more: tuta.com/blog/instagram-remove…
Airtable is a low-code platform for building collaborative apps. Customize your workflow, collaborate, and achieve ambitious outcomes. Get started for free.Airtable
Anomaly reshared this.


utzer
in reply to utzer • • •utzer
in reply to utzer • • •