@andros@twtxt.andros.dev Ahh cool! I’ll try following it again 🤣 Mind @-mentioning/linking@twtxt.net the feed again? 🙏
** HTTP Parameter Pollution: The Dirty Little Secret That Gave Me Full Backend Access ️**
Free Link🎈
[Continue reading on InfoSec Write-ups »](https://infosecwriteups.co … ⌘ Read more
yarnd UI/UX experience (for those that use it) and as "client" features (not spec changes). The two ideas are quite simple:
This expands the usefulness of Twtxt / Yarn.social to:
- Sharing small posts
- Sharing links
- Sharing media
- Having long conversations
- Voting on topics, opinions or decisions
- RSVPing to virtual or physical events
Chaining Bugs Like a Hacker: IDOR to Account Takeover in 10 Minutes
🚀Free Article Link…
[Continue reading on InfoSec Write-ups »](https://infosecwriteups.com/chaining-bugs-like-a-hacker-idor-to-account-takeover-in-1 … ⌘ Read more
**CORSplay of the Century: How I Hijacked APIs with One Misconfigured Header **
Free Link🎈
[Continue reading on InfoSec Write-ups »](https://infosecwriteups.com/corsplay-of-the-century-how-i-hijacked-apis- … ⌘ Read more
Hmmm there’s a bug somewhere in the way I’m ingesting archived feeds 🤔
sqlite> select * from twts where content like 'The web is such garbage these days%';
hash = 37sjhla
feed_url = https://twtxt.net/user/prologic/twtxt.txt/1
content = The web is such garbage these days 😔 Or is it the garbage search engines? 🤔
created = 2024-11-14T01:53:46Z
created_dt = 2024-11-14 01:53:46
subject = #37sjhla
mentions = []
tags = []
links = []
sqlite>
Burp Suite Beyond Basics: Hidden Features That Save Time and Find More Bugs
📌Free Article Link
[Continue reading on InfoSec Write-ups »](https://infosecwriteups.com/burp-suite-beyond-basics-hidden-f … ⌘ Read more
️ Blind XSS Attack in Production: My Favorite Exploit with a Delayed Surprise
Free Article Link
[Continue reading on InfoSec Write-ups »](https://infosecwriteups.com/%EF%B8%8F-bli … ⌘ Read more
What makes Slackware different?
I’m not entirely sure how to link to this properly, but what we have here is a simple, to-the-point text file describing some of the benefits of Slackware, the oldest still maintained Linux distribution. It’s still run by Patrick Volkerding, and focuses on conservative choices and simplicity over ease. I doubt I have to explain the benefits of Slackware to the average OSNews reader, but this simple little text file does serve as a great marketing tool. The fact it’s a … ⌘ Read more
Kagent: Bringing Agentic AI to Cloud Native
Solving Cloud Native Operation Challenges with AI Agents Oh no! Your application is unreachable, buried under multiple connection hops—how do you pinpoint the broken link? How do you generate an alert or bug report from Prometheus… ⌘ Read more
**Click, Recon, Jackpot! ️♂️ How a Subdomain Led Me to an S3 Treasure Trove **
Free Link🎈
[Continue reading on InfoSec Write-ups »](https://infosecwriteups.com/click-recon-jackpo … ⌘ Read more
⚡️Oops, They Logged It! Turning LFI into Remote Shell Like a Pro ⚔️
Free Link🎈
[Continue reading on InfoSec Write-ups »](https://infosecwriteups.com/%EF%B8%8Foops-they-logged-it-turning-l … ⌘ Read more
** Uncovering Hidden APIs: How One Forgotten Endpoint Made Me $500**
🚀Free Article Link
[Continue reading on InfoSec Write-ups »](https://infosecwriteups.com/uncovering-hidden-apis-how-one-forgotten-endpoint-made-me-500-424e6388c … ⌘ Read more
@andros@twtxt.andros.dev Ahh I see 👌
@prologic@twtxt.net Yes, it is a security hole. All dm-echo messages are readable. I intend it to be a debugging tool. Maybe I can include a warning message. If many of you see that it is a serious problem, I can remove the links.
@lyse@lyse.isobeef.org Thanks! Fixed the typos. The links will stay broken for a bit because my online man collection is busted. It’s on the list. :-/
@prologic@twtxt.net I didn’t. Share a link? I would love to watch it!
DOGE Cuts “Move Login Link” Dev Time from 103 Days to 71 Minutes
“This engineer worked with the DOGE team to delete the red tape and accomplished the task in 71 minutes.” ⌘ Read more
SqliteCache backend I'm working on here, what are your thoughts regarding mgirations from old MemoryCache (which is now gone in the codebase in this branch). Do you care to migrate at all, or just let the pod re-fetch all feeds? 🤔
@prologic@twtxt.net I haven’t been tracking these changes or conversation. Can you link me to something so that I can catch up?
oh out of boredom yesterday i made my blog available via markdown files too so you can use charmbracelet/glow to read them in your terminal :)
basically i just set up a file directory on a path of my blog, organized the MD files by year, and so in theory you can navigate to that path and choose a folder, then copy a link to a markdown post and run this:
glow -p https://bubblegum.girlonthemoon.xyz/md/2025/2025-03-31%20premature%20reflections%20on%20sudden%20responsibility.md
and then as long as you have glow installed, you can read my posts from the terminal :D it’s so cool
Doesn’t look like it Hmmm
sqlite> select * from twts where content LIKE '%Linux installation%';
hash = znf6csa
feed_url = https://www.uninformativ.de/twtxt.txt
content = I wonder if my current Linux installation will actually make it to 20 years:
$ head -n 1 /var/log/pacman.log
[2011-07-07 11:19] installed filesystem (2011.04-1)
It’s not toooo far into the future.
It would be crazy … 20 years without reinstalling once … phew. 🥴
created = 2025-04-07T19:59:51Z
subject = (#znf6csa)
mentions = []
tags = []
links = []
@prologic@twtxt.net, from IRC:
- Saving preferences is failing. Specifically trying to save “Open Links” on the same window. For sure it isn’t happening. Check errors on browser’s console.
- Search results pagination is broken. Search for “twtxt.net” and see it. Also, picking oldest/newest makes no difference on that search query.
An even better Komoot alternative? – OsmAnd
After quickly trying out Outdooractive, I think I found an alternative that fits my needs a bit better and is also more inline with my values: OsmAnd. ⌘ Read more
10 Historical Connections That Don’t Seem Real but Are
Are you ready to have your minds blown? When we look at historical events, we generally like to group them into categories that our brains can handle. Historic happenings in one realm (like war) are often linked to those in similar realms (like politics) in a bid to show cause and effect. Similarly, events are […]
The post [10 Historical Connections That Don’t Seem Real but Are](https://listverse.com/2025/03/31/10-historica … ⌘ Read more
Firefly Automation Controller Adds Industrial Control Capabilities to Raspberry Pi Compute Module
CrowdSupply recently featured the Firefly Automation Controller, a platform combining Raspberry Pi Compute Module-compatible modules with the STM32H7 microcontroller for industrial applications. With IO-Link Class B channels, it supports communication and control of sensors and actuators. The STM32H7 microcontroller, running at up to 480 MHz, manages … ⌘ Read more
The Mastodon admins say that it’s probably because of the size of my account (~600 MB), so the export process times out. And I understand that. Here on twtxt, I always use auto-expiring links when I post images or videos. It just gets too much data otherwise. I think I’ll just set my Mastodon account to auto-delete posts after ~180 days or something like that. Nobody cares about old posts anyway.
An even better Komoot alternative? – OsmAnd
After quickly trying out Outdooractive, I think I found an alternative that fits my needs a bit better and is also more inline with my values: OsmAnd. ⌘ Read more
Komoot alternative: Outdooractive
I’ve found a potential alternative to Komoot: Outdooractive, another German app that offers many similar features. I’m surprised it flew under my radar for so long. ⌘ Read more
[ANN] MoneroTop - Spasm-powered XMR forum
Most Monero-related discussions happen on slave tech platforms, which are vulnerable to censorship and surveillance. It’s time to embrace freedom tech. You can now sign messages with your private keys and submit them to different networks at MoneroTop forum, which is powered by Spasm - the future of social media.
Links:
degenrocket (Session) ⌘ Read more
@andros@twtxt.andros.dev Hm, looks correct to me. The image to be displayed is a thumbnail and this links to the full-sized image. The thumbnail (JPG) is auto-generated from the full image (PNG), hence the two extensions.
What does look strange, though, is that your client came up with the hash pqsmcka, while it should have been te5quba. 🤔
[ANN] Cypher Stack published FROSTLASS security proofs and Eagen’s divisors review
Links:
n/a ⌘ Read more
[ANN] Intercambio.app SimpleX trading bot
It uses the no KYC aggregator Intercambio.app to do swaps without leaving the private messenger SimpleX. The bot will also monitor your trade and send you messages with updates when the trade status is changed.
Link: https://farside.link/libreddit/r/Monero/comments/1jdczws/
orangefren.com ⌘ Read more
[AFH] [$1/hr] can help you level up your Toram online character
i can help you level up your Toram online. 1 Dollar per hour. i’m open for a negotiation. i can be your squad or your bodyguard.
Link: https://xmrbazaar.com/listing/EbDA/
AdditionalRabbit31 (XMRBazaar) ⌘ Read more
[AFH] Hungarian - English translation
Native Hungarian speaker. I can both translate from and to English. The pricing is flexible.
Link: https://xmrbazaar.com/listing/FNqv/
hungry (XMRBazaar) ⌘ Read more
[ANN] CypherGoat launch - crypto exchange aggregator + giveaway
It is a crypto swap aggregator it automatically finds the best exchange rates from our partnered exchanges at no extra cost. You can then perform the swap on that exchange, without ever leaving our website! We currently support 12+ exchanges.
Links:
[ANN] Monero, Arti, and I2P Apps for TrueNAS Scale
As part of our efforts to support critical cryptocurrency infrastructure and privacy, MAGIC Grants has implemented Monero, Arti, and I2P apps for TrueNAS Scale.
Link: https://magicgrants.org/2025/03/11/truenas-monero-arti-i2p.html
u/SamsungGalaxyPlayer (Reddit) ⌘ Read more
[LTH] [Bounty] [0.1 XMR] Stack Wallet - Add missing icons for swap providers
Link: https://bounties.monero.social/posts/184/
b4n6_b4n6 (Github) ⌘ Read more
[ANN] Buying Monero P2P - MONERO MONTHLY 03
Welcome back to Monero Monthly, where Max and Seth dive into the past month in the world of Monero. They cover key topics, exciting updates, and questions from the community, delivering top-notch information with a touch of misfit flair.
Link: https://serve.podhome.fm/episodepage/ugmf/buying-monero-p2p-monero-monthly-03
ungovernablemisfits.com ⌘ Read more
[ANN] Public audit of XMR reserves on April 18th - MoneroRun
Withdraw your XMR coins before April 18th and keep them in your own wallet at least for the whole day! (UTC time) … and this way celebrate Monero’s 11th birthday
Link: https://farside.link/libreddit/1j7t8cm/
u/MoneroFox (Reddit) ⌘ Read more
[ANN] MT #343: Marketing Monero to Save Souls from Technological Totalitarianism w/ Monero Master
In this episode Douglas Tuman interviews Sean Bradford about Monero, Christianity, and privacy-focused marketing initiatives. Sean Bradford, who recently emerged in the Monero community, discusses his various projects including the Monero Masters podcast and surveillance resistance campaign.
Links:
[ANN] More vitamins for Monero with Carrot - part 2: History
Before I go deeper into technical details regarding important aspects of Carrot with further posts, I present you, as something like an “interlude”, a history of Monero privacy technologies. One aim is to show you how we arrived at the point where we are now with FCMP++ and Carrot.
Link: https://farside.link/libreddit/r/Monero/comments/1j745kf/
u/rbrunner7 (Gith … ⌘ Read more
[ANN] We finally have a real Monero casino!
Link: https://xmr.gg/
u/Lumpy-Initiative-779 (Reddit) ⌘ Read more
[ANN] Launching a new design initiative for Monero
The dream is to bring designers, developers, and creatives together to shape the future of Monero’s ecosystem and I’d love for others to jump in! To build resources and help craft great design. If you’re a designer, developer, illustrator, or just someone passionate about Monero and good design sensibility reach out. Let’s build together!
Links:
[ANN] Monero Meetup Prague - Fri, 14 Mar @ 20:00
Link: https://monero.town/pictrs/image/0d914eb7-c7ed-453a-b8eb-8d7408dcf2be.jpeg
ajs-xmr (Github) ⌘ Read more
[ANN] [Bounty] Generate Feather icon for desktop entry in local dir
Icon missing when “creating .desktop entry” after reboot on Tails. Creating it the icon in .local would fix this issue.
Link: https://bounties.monero.social/posts/183/
n/a ⌘ Read more
[ANN] How Monero Fulfilled Satoshi’s Promise
Links:
- https://zola.ink/blog/posts/how-monero-fulfilled-satoshis-promies
- https://news.ycombinator.com/item?id=43290408
@basses:matrix.org ⌘ Read more
[ANN] Monero Konferenco 2025: Call for Presentations!
Monerokon 5 will take place on 20th - 22nd June and we are still looking for people who want to speak at the event! If you are interested, please make sure to not miss the submission deadline: 24 March 2025 @ 17:00 CET
Link: https://cfp.twed.org/mk5/cfp
u/monerobull (Reddit) ⌘ Read more
[WTB] [$5K+] Seeking Monero Supplier (Cash>XMR)
Link: https://farside.link/libreddit/r/Monero/comments/1j45xkp/
u/Legitequities (Reddit) ⌘ Read more
[ANN] OFAC Specially Designated Nationals List Update on 2025 March 4th - An individual together with Bitcoin and Monero addresses
Link: https://farside.link/libreddit/r/Monero/comments/1j3xou6/
u/ArticMine (Reddit) ⌘ Read more
Redox continues adding dynamic linking support
These months are coming and going way too fast, for a whole variety of reasons, so we’ve got another month of improvements for Redox, the operating system written in Rust. I February, January’s work on dynamic linking continued, adding support for it to the recipes for Cargo, LLVM, Rust, libssh2, OpenSSL, zlib, COSMIC Terminal, NetSurf, libpng, bzip2, DevilutionX, and LuaJIT, as well as to the project’s Rust and OpenSSL forks. Relibc also … ⌘ Read more
[AFH] [0.13 XMR] Anonymous Web development for landing page - No Logs, No Tracking, Just Code.
I offer minimalist landing pages, personal portfolios, and business profile websites with a strong focus on privacy and anonymity. No tracking, no Google Analytics, and no sensitive data collection. delivery can take times depending how complex the website is.
Link: https://xmrbazaar.com/listing/QyQR/
AdditionalRabbit31 (XMRBazaar) ⌘ Read more