lingo.lol is one of the many independent Mastodon servers you can use to participate in the fediverse.
A place for linguists, philologists, and other lovers of languages.

Server stats:

65
active users

#linuxsecurity

0 posts0 participants0 posts today

NEW - 🛡️ 🖥️ 🛡️

DCG Brace Build 2025/04/04 - 1

Release Note: Fix bluetooth on F42

🦜
🐻
Toolkit compatible with multiple Linux distros that allows for installation of handpicked applications, along with corresponding configs that have been tuned for reasonable privacy and security.

🌳
Compatibility:
Arch Linux
CentOS 9/Stream
Debian 12
Fedora 39/40/41 (preferred)
openSUSE Tumbleweed
🌳
codeberg.org/divested/brace

#divested
#DivestedComputingGroup
🌳
#fsf #FUTO #Fedora #codeberg #hardening #linuxtech #cybersec #cybersecurity #infosec #antivirus
#opensource #linuxsecurity #vulnerabilities #vulnerability #alpinelinux #skynet #foss #freeyourmind

Summary card of repository divested/brace
Codeberg.orgbraceToolkit compatible with multiple Linux distros that allows for installation of handpicked applications, along with corresponding configs that have been tuned for reasonable privacy and security.

NEW - ⛸️🧱🖥️

DCG Domain Blocklist available - last updated 2025/04/01

1688453 - Domains blocked with that build !

🦜
🐻
Supercharging your content blocker to increase privacy and security.

All available lists:
- uBlockOrigin
- Hosts format & Hosts format with wildcards
- dnsmasq with wildcards

🌳
Ready to use lists combined from many permissively licensed sources.

divested.dev/pages/dnsbl

#divested #DivestedComputingGroup

#DCG

#fsf #FUTO #Fedora #codeberg #hardening #linuxtech #cybersec #cybersecurity #infosec #antivirus #hackernews
#opensource #linuxsecurity #vulnerabilities #vulnerability #alpinelinux #router #skynet #foss #freeyourmind

divested.devDnsbl - Divested Computing

Submitted my proposal for the @nluug conference in May! It is about #systemd and how to leverage it for improved #LinuxSecurity.

Do you also have something to share about #OpenSource, #OpenStandards or anything related? Submit your proposal: cfp.nluug.nl/nluug-voorjaarsco

If you are a speaker at #FOSDEM or #cfgmgmtcamp, then most likely you are a good match 😉

cfp.nluug.nlNLUUG voorjaarsconferentie 2025Schedule, talks and talk submissions for NLUUG voorjaarsconferentie 2025

Another improvement: on the command pages is now a list of tools that are related to the current command.

With this functionality you can find an alternative or a related tool that might just provide you with the right information or perform the task at hand. Also great for discovering additional tools for your #linux toolkit.

Example: linux-audit.com/system-adminis

Linux Audit · capsh commandThe Linux command capsh provides a capability shell wrapper to set, test, and assist in debugging issues related to Linux capabilities.

With #systemd extending the unit settings, I can't stay behind and add them to the blog. Updated list: linux-audit.com/systemd/settin

This time the PrivatePIDs setting has been added. It allows a service to run in a separate PID namespace. Yes, including PID 1!

linux-audit.com/systemd/settin

When I got my hands on a #Linux system running 257, I will definitely be testing that. Shame it can't be added to services with the type of 'forking', but still, it might be useful for those others.

Linux Audit · Settings for systemd unitsSystemd units can be configured with a lot of fine-grained settings. This overview shows which settings are available and what they do.

Using #nginx and #systemd on a system is more common nowadays. Did you already check out this #linuxsecurity hardening profile for nginx?

linux-audit.com/systemd/harden

It's a set of parameters that sandbox nginx. The best part of implementing is that you really start to learn what a process does or does not need very quickly. Good for your #linux knowledge 💪

Also interesting, unit settings: linux-audit.com/systemd/settin

If you implemented the profile, love to hear how you like it! Anything missing?

Linux Audit · Nginx hardening profileHarden the nginx configuration with the help of this predefined profile that implements systemd sandboxing capabilities and restricting resources.

Very very... scary news in #Linuxsecurity

Seems like the at least one of the devs that contributed to #xz in the last 2 years has intentionally placed a backdoor in the package, shipped on almost all Linux distros.

arstechnica.com/security/2024/

(seems like this is already blowing up on mstdn)

Ars Technica · Backdoor found in widely used Linux utility breaks encrypted SSH connectionsMalicious code planted in xz Utils has been circulating for more than a month.