Skip to main content



From my perspective the spam wave seems to have subsided, or maybe this post brings it in again... What I did:

On Pleroma put the discord invite url and the hashtag in MRF as blocks. On Friendica I don't have MRF, so I unsubscribed from guppe groups. That seems enough, I haven't had to block any domains yet, may do so later if needed.

The hashtag should probably not be blocked forever, as it is the Japanese name of a legitimate business which may be the target not the source of the impersonation/defamation attack, as is the discord. But since I have no Japanese contacts, that's ok for now.

I always have private messages blocked from people I don't follow, and I recently started hiding followers/followed accounts, which I think also helps a bit to limit such waves.

in reply to Gidi Kroon

Forgot to unsubscribe from relays on my Pleroma... So that had still a few posts coming in. On Friendica I see that the gup.pe group I unfollowed, still keeps forwarding me the spam posts...
in reply to Gidi Kroon

By now any server still having fully open registrations and sending spam is clearly running unattended, I've checked some and there seems to be no local activity other than the spam, sometimes with the last local or admin post in 2022. So I've started blocking domains that still come in.


I think the fediverse is still in their naive era, like email and the internet used to be. Still too many ways to do spam multiplication and ddos, too much trusting what other servers do. Too little tools to handle the effects.


Pleroma's MRF feature proved to be really useful in the recent spam wave.


Hardly a 'crafted payload', more like a completely normal payload, just at another address...

Alice: hi, I'm Bob
Mastodon: hi Bob, you look different
Alice: never mind, I'm Bob, and I have changed my security keys. Please use these new ones when you validate a message from Bob, I mean me
Mastodon: will do
Alice: and by the way, if your user Carol sends a private message to Bob, send it to me instead, since I am Bob, as i said
Mastodon: fine, nothing suspicious there

(My simplistic summary of the recent disclosure. What is not stressed in the released details is that it doesn't change the profile of the impersonated user, Bob in the above, as its profile at the source is unaffected.)



It's that day again, the birthday of Stephanie Leonidas!

I choose Crusade in Jeans from my 'Watch for Stephanie' letterboxd list for the birthday rewatch. A long time ago I only knew her sister Georgina Leonidas and knew she was a very talented actress. I saw that her older sister Stephanie was also an actress and thought that even if she only had a fraction of the talent of her younger sister, she would still be worth watching. So I took a punt buying this dvd. That was a very lucky punt... Stephanie turned out to be one of the best actresses ever and I since try to watch everything with her in it!


#StephanieLeonidas #CrusadeInJeans #BirthdayRewatch

letterboxd.com/gidikroon/list/…

in reply to Gidi Kroon

Later of course she was more obviously brilliant in things like Defiance and Mirrormask... She should be the lead everywhere.
in reply to Gidi Kroon

A boy plays and loses a football match with the national team, then drops in on his mother who's building a time machine. He goes back in time trying to win, but ends up in the middle ages and meets love interest girl (winning after all) Jenne in a children's crusade.

The story acknowledges that the crusades as we know them were wrong. This children's crusade is strictly nonviolent.



Lotus: everything is a database table
Exchange: everything is an email
Tcl: everything is a string
Windows: everything is a folder
Linux: everything is a file


Apparently in Windows 11 you need to shift-right-click instead of right-click to keep your sanity.
#NoMoreShowMoreOptions


Today is the birthday (+44 years) of Christina Ricci. I'll be rewatching a film from my 'Watch for Christina' list to celebrate. The top ones I all saw recently and since I quite like to rewatch Sleepy Hollow, that one it is. I think it may also be the first film I saw her in.
#ChristinaRicci #SleepyHollow #BirthdayRewatch

letterboxd.com/film/sleepy-hol…

in reply to Gidi Kroon

The year is 1799. I didn't know they could already record moving images back then. What do you mean, films aren't documentaries? They aren't real?


When you make DNS changes and nothing breaks. Did the changes even persist?

Gidi Kroon reshared this.


Is it time for my big show? Wait... is this not about me??! #SuperbOwl #Superbowl

reshared this


Gidi Kroon reshared this.


I would be remiss if I did not post at least one #SuperbOwl today, and this is the most recent superb owl photo I have.

Taken in El Atteuf, Algeria. I suspect it may be a Pharaoh (or Egyptian) eagle owl, possibly a young one.

#birds #BirdsOfMastodon

reshared this



Miranda Cosgrove / CBS's Mission Unstoppable for the International Day of Women and Girls in Science (no autocomplete, not 'in Scotland') on their Instagram, calling to 'Bridge the gap'. The amount of women in science is nowhere near 50% and that has to change.

(I can't post video here, so the link's it)
#MirandaCosgrove #Science #IDWGS



Loving the SuperbOwl news today, but for a little bit of some actual SuperBowl thing in between: Jenna Ortega is going to be in an hilarious advert for Doritos Dinamita, see here.
#JennaOrtega #Doritos


Happy Birthday Chloë Grace Moretz!

It's her 27th birthday and I'll be celebrating rewatching a recent film of hers, Shadow in the Cloud, from my 4k blu-ray. It's such a powerful performance!
#ChloëGraceMoretz #ShadowInTheCloud #BirthdayRewatch

in reply to Gidi Kroon

It's all Chloë Grace Moretz... This is such a thrill throughout to get such a masterclass acting performance...

Love the ending and what it says. (But telling would be spoilers)

in reply to Gidi Kroon

And she got to do her English accent again, which she so effectively used to trick the director of Hugo to hire her.

Gidi Kroon reshared this.


Some people will have you believe that Nirvana's Smells Like Teen Spirit is the most 90s song of all time, but they're wrong

The most 90s song is Mazzy Star's Fade Into You

Not up for debate, so don't even try it

Gidi Kroon reshared this.

in reply to healyn

youtube.com/watch?v=GJ5NxBnMnz…

Give You My Lovin’ was my favorite Mazzy Star which is quite similar but happier?

Very quintessential cross-over Fade Into You though



Apparently you can't cancel or change a preorder at Amazon even more than a month before release, despite what they suggest. Chat bot/human just says it already started shipping. I don't believe that, with an estimated arrival listed in April... Is it coming by snail?

Guess I'll have the blu-ray and the dvd then.


Gidi Kroon reshared this.


I'm giving the keynote at Sunshine Cyber Con!
"Past, Present, Predictions"
A look into AI, psyops, deep fakes and the upcoming elections.
Hope to see you there!

@cybersecurityfl

Amazing Photo by:
@gabrielabarrantesphoto

Gidi Kroon reshared this.



Open APIs and endpoints should not have side effects on other servers. Like retrieving previews from websites or referred-to (replied-to, boosted, quoted) posts from other ActivityPub servers. This should be limited to other parties you trust.


Jenna Ortega's book It's All Love will be released in a German translation on 15 February 2024. That's years after she wrote it and years after it originally came out in English. I guess we can thank Wednesday for that.
#JennaOrtega #ItsAllLove

Gidi Kroon reshared this.


categorizing software based on whether it feels like it was written by people who read their email using a terminal client, a GUI client, or webmail

Gidi Kroon reshared this.



Jenna Ortega is going to be in a new film called Klara and the Sun.

Her film Beetlejuice 2 will be in the cinema 6 September 2024.

Both bits of news just shared by Jenna's mother.


#JennaOrtega #Beetlejuice #KlaraAndTheSun

feld reshared this.

in reply to Gidi Kroon

Though I guess the joke is that it isn't going to be called Beetlejuice 2, but Beetlejuice Beetlejuice...
in reply to Gidi Kroon

Apparently it's Beetlejuice Beetlejuice 2024 A.D. in full, according to this Deadline article. And this is the article about Klara and the Sun. Jenna plays a robot designed to prevent loneliness and when she finds that a little girl has a mystery illness goes on a quest which causes her to learn about human love. This sounds great!
#JennaOrtega #Beetlejuice #BeetlejuiceBeetlejuice2024AD #Beetlejuice2 #KlaraAndTheSun


Stephanie Leonidas is filming a new film called Marching Powder. She just posted photos from the set.

IMDb says her film A Very Venice Romance was released last year (it doesn't list as available for me) and 5lbs of Pressure is still to come.
#StephanieLeonidas #MarchingPowder



Miranda Cosgrove just announced that her film Mother of the Bride will be on Netflix globally on 9 May!


#MirandaCosgrove #MotherOfTheBride


Gidi Kroon reshared this.


Ah yes, the Greek god of exercise and transportation: Bicycles.
in reply to Ren Haelwenn /элвэн/ :triskell: reshared this.

I'm also a fan of the Greek god of programming art, Demoscenes.


Copied my followed tags into a "Followed tags" channel and copied my followed searches into a "Followed searches" channel. This works quite well. I think this is going to be useful. Channels maybe a quite powerful new Friendica feature.

It's starting to feel like tumblr again, except tumblr would occasionally just delete all tags alphabetically after 'k'.

in reply to Gidi Kroon

Also thanks to Samsung's smart-select text extraction feature of the s-pen, otherwise this would have been a lot of typing.


@Tuta
I notice a difference in my mails shown to me in the Linux desktop app and the Android app. The former shows only one mail, the latter shows all mails that checking via a browser shows. I've checked that the filter is set to 'all emails' for all.

It seems related to the 'local data' setting which for both apps is on the default of one month and all missing mails are older than one month. So I've changed this to 366 days for both clients.

However, the old mails still do not show up in the desktop app. Is there another filter I'm missing?

How can I use the desktop client to see all mails I can see via the browser?

@Tuta
in reply to Gidi Kroon

Cold you report this to support via email? Then the tech team can look into this!

Gidi Kroon reshared this.


No you misheard me, I don't use Discord I use this cord.

Holds up a string attached to two plastic cups

reshared this



This, about RAM, is a much misunderstood bit about monitoring resource usage.

Also: cpu usage. When someone comes to me with 'panic, panic, your application is using 100% cpu', I'm like 'great, call me when it doesn't', for then there's a bottleneck elsewhere.


I'm not saying there's no such thing as software bloat (there is) but the reason that your computer magically always seems to use 80-90% of the ram no matter how much ram you install is that the computer understands empty ram doesn't do anything but ram being used to cache files makes your user experience much faster

this is a good thing! if your computer stopped doing this everything would suddenly feel very sluggish and stuttery!



Gidi Kroon reshared this.


This entry was edited (10 months ago)

Gidi Kroon reshared this.

in reply to Lesley Carhart :unverified:

Some good nuggets of wisdom in there. Being polite, without exception, has paid more dividends than anything else in my experience. And it costs nothing.


Not sure what improvement this new 'night posting' icon is on Mastodon...

I don't think the old term 'unlisted' covered what it does (as it does more than unlist a post), but the current terms and icon aren't much better.

(I'm still thinking 'real unlisted' posts have a purpose)



"Heatwave"

That's the title of this Roswell episode.

The episode has a theme of temptation and giving in to desire and this opening scene with Shiri Appleby captures it so well in the non-obvious way.

That box is tempting...

But why resist?
#ShiriAppleby #Roswell

in reply to Gidi Kroon

Photos from my tv, so quality and framing are not original. Also Mastodon people are not going to get it, not having images within the post.

Friendica Support reshared this.


!Friendica Support
Recently I started following a prolific account that advises Mastodon followers to put them on a list and then exclude the list from the normal timeline. I wanted to do something similar in Friendica using circles, channels and channel frequency settings.

I added them in a new circle. That works fine.

My normal timeline is 'Latest posts', but I can't create a channel based on that. There is however 'Network' which I think is similar, so I used that. It seems to use 'Latest creation' sorting instead, but that's ok for now.

I set the account's channel frequency to never show in a channel (last option). They still show in their circle, so that's great.

I found I have to go to 'Settings' -> 'Display' -> 'Timelines' to actually enable the new channel for it to show up. Now I can see the new channel, great!

But, the prolific account still shows in the channel, so my experiment failed. Could this be because they always use reshare (boost) to fill their feed and maybe reshares aren't taken into account when applying the channel frequency?

How else can I achieve this?

in reply to Michael Vogel Friendica Support reshared this.

@Michael Vogel
Ok, thanks for the reply. So it also wouldn't work for Friendica groups, I guess.

I've thought of another work-around: creating a new account on my server and follow them from there. Then switch accounts to see that timeline. My normal saved hashtag searches should surface anything I want to see under my normal account.

in reply to Gidi Kroon Friendica Support reshared this.

We handle groups differently in channels. There is the search time group:... especially for them.


Artists have placed an artwork in front of my flat and it's one of those things where you'd accidentally and without intending any malice ask the artist when they are going to finish it.
in reply to Gidi Kroon

They placed two more pieces and I think it may be finished now.

Gidi Kroon reshared this.


Hard to believe Norman Rockwell predicted the internet

Gidi Kroon reshared this.


For many years, DSL/Cable routers by German company AVM, sold under the Fritz!Box brand, did some internal dns tweaking so that when you typed in fritz.box it would lead you to the config page of the router in your network. Now, years later, there actually is a .box TLD (Top Level Domain) and AVM forgot to register the fritz.box domain. Someone else did. And activated Certificate Pinning (HSTS). #Oops

UPDATE 2024-01-27: Their dns entries are flaky ATM, sometimes there, mostly not.

#oops
This entry was edited (10 months ago)

reshared this

in reply to Jan Wildeboer 😷:krulorange: Gidi Kroon reshared this.

If you accidentally visit the “real” fritz.box outside the home network, you can’t use that domain inside the home network anymore to access the router admin interface: the “real” website has HSTS enabled and the Fritz!Box of course doesn’t have a valid certificate for the domain.
in reply to Fynn Becker

hahaha the amount of fuckery by avm.
Well sure, they could not have known back in the day that .box will be a tld some day. But they could have changed the setup when it became available and they could not register it themselves
This entry was edited (10 months ago)
in reply to Chris

uhm sorry, no. The idea to use some tld that does not exist was a bad idea to begin with and exactly the reason why .home.arpa was introduced back in the days. this mess is a result of hanging on to a fancy idea that was probably never changed for marketing reasons or some other stupid internal company politics.

They even made it extra hard to change this! Failing to grab the official domain just adds to this. Many did see this coming for years. I did.

Same for .local for different reasons

This entry was edited (10 months ago)
in reply to Beko Pharm (deprecated)

@bekopharm @cy agreed that it was a bad idea to begin with, but AVM's use of fritz·box predates RFC 8375 (even most if not all "new" TLDs), and ICANN frowns upon the use of "private" (i.e., unregistered) domains for good reasons. (They don't have any say in what the IETF does with .arpa, though.)

What I request from AVM is to make the domain their DHCP provides configurable while keeping the DHCP and DNS of the Fritzbox.

in reply to o'wolf

@woelfisch even without that RFC was it only a question of time. Really anyone working in this has seen this coming.

AVM may be huge in Germany but international? cmon. Am Deutschen Wesen mal wieder, oder was?

Yeah, the ability to change this is long overdue. It's possible afair by downloading the config, set it there, recalculate the totally secret checksum and re-upload the config.

Or at least it was. I didn't keep taps. Using my own service for DNS ignoring this for years.

in reply to Beko Pharm (deprecated)

@bekopharm oh, it isn't (wasn't? I haven't dealt with any other home routers for quite some years...) only AVM doing that.

IIRC the whole thing started when .local was hijacked for mDNS in 2000, which was used by numerous home router vendors previously. AVM (foolishly) decided to use .box instead, though they should've registered a dedicated second-level domain under an existing TLD.

But hey, I bet marketing just loved "fritz·box"...

in reply to Fynn Becker

I believe you can remove your browser's knowledge of hsts by removing all data it knows of that site. Also you can install your own certificate on your router to make it valid, or just mark the router's generated certificate as valid. The latter you would need to redo after each restart of your router I think.
#FritzBox

Gidi Kroon reshared this.



Two girls see themselves on screen, except it's not themselves, but the other girl who is completely identical. They didn't know they were twins. It uncovers a long running scandal in Georgia. Story by BBC News.

Georgia's stolen children: Twins sold at birth reunited by TikTok video - bbc.co.uk/news/world-europe-68…

Clara Listensprechen reshared this.



US people: reminder that Miller's Girl, a film with Jenna Ortega in the lead role, is in your theaters tomorrow. I think it's going to be a good one!

For people in NL like me, we wait until 14 March.
#JennaOrtega #MillersGirl


Gidi Kroon reshared this.


Morena Baccarin ('Firefly', 'Gotham', 'Deadpool') will guest star as a Sheriff's Deputy in an upcoming Season 2 episode of CBS drama "Fire Country" which will serve as a backdoor pilot for a potential spin-off series in which she would be a regular.
#MorenaBaccarin #FireCountry #CBS #ParamountPlus #Television #Streaming

Gidi Kroon reshared this.



I have the boxset of The Shannara Chronicles, another one of these series they keep disappearing from the streaming services. It features two absolutely great actresses: Ivana Baquero and (from season two) Melise. Both are utterly cool here, which is sort of what this show is about.

Ivana was the little girl in Pan's Labyrinth and also as an adult she impresses a lot. Melise is an actress and singer who previously played 'rock chick' Lucy Stone in Big Time Rush. I was playing one of her songs just today.

Starting my rewatch of the show now.
#IvanaBaquero #Melise #TheShannaraChronicles

in reply to Gidi Kroon

From the makers of Wednesday apparently, I didn't know that. It does mean that getting a premonition is signalled by the actress suddenly and violently looking up to the sky.
in reply to Gidi Kroon

It is set in a time after our time, when nature has mostly recovered from us and everything is overgrown with lush forests. The story starts in the Kingdom of the Elves and with a premonition showing the end of times and the destruction of all life.

It takes a while to establish the main characters, in fact you're introduced first to some Elf characters that will not be that important in the long run.