dade
banner
0xda.de
dade
@0xda.de
Hacker, Rapper, Developer, dade.

https://0xda.de
Just had a moment of realization for my feelings about the push by VC-backed AI sycophants to "vibe code business apps"

They have not yet learned that lines of code go in the liability column, not the asset column. And they may never learn, because they've forfeited cognition to the machine.
February 11, 2026 at 7:02 AM
Reposted by dade
There is no protocol like it in the world, because it was created in a different one. And every other world died.

SMTP.

Email is the final gasp of the original dream of electronic sovereignty. Of a federated world of peer communication. It's the final one. The last protocol.
February 11, 2026 at 5:53 AM
I would appreciate if @1password.bsky.social would let me set it so that it strictly matches subdomains across my whole vault. I have like a dozen subdomains and dozens of service users I track for services in my homelab and I have to scroll ten years to find the correct thing when I'm logging in
February 11, 2026 at 3:15 AM
The “World Wide Web” was a great name, in hindsight. I’ve been trapped here for decades.
February 8, 2026 at 6:34 PM
Reposted by dade
Apps that get DNS verification functionality wrong really cause a lot of pain for their users.

Having explained the problem a number of times, I finally decided to write it down so now I can just share a link.
Stop Telling Users Their DNS Is Wrong
If you’re like me, you’ve had the experience where you add a DNS record for a service. You triple check it. The app still says it’s invalid. You wait. You check again. Still invalid. You start wonderi...
jacob.gold
February 7, 2026 at 6:02 PM
I've been working in a Microsoft Shop for the last 3 months and basically every single day I find a new horror in Entra/Office365/etc.

I long for the days that I was complaining about Okta and Google Workspace.
February 7, 2026 at 12:56 AM
An interesting thing about this is that even if Hannah hadn’t used TouchID on her work laptop, the FBI probably could have compelled the company to use MDM controls to provide access to the device. Password need not be revealed, so no compelled speech.
New court record from the FBI details the state of the devices seized from Washington Post reporter Hannah Natanson: phone was on w/Lockdown Mode; personal laptop was off; work laptop was on w/Touch ID; several Signal chats used disappearing messages. storage.courtlistener.com/recap/gov.us...
February 1, 2026 at 4:07 AM
They should make a Fast & Furious spinoff solely focusing on Han.

It’s time for Han’s Solo era.
January 14, 2026 at 3:54 AM
Sooo I think I accidentally lost my mastodon Postgres database. That’s probably bad, right?
January 13, 2026 at 6:18 AM
Reposted by dade
semi-regular reminder that ICE was only created in 2003

when you are asked to imagine a world without ICE, you're basically being asked to remember where you were when Lilo & Stitch came out
January 12, 2026 at 8:04 PM
I am following up on the interesting thing where `truecrypt.org` was purchased in early 2025. It looks like it is basically the same as it was before it went to auction, but the footer has this weird Trump comment in it.
January 12, 2026 at 4:39 AM
I'm prepping to blow away my Windows 10 machine and probably abandon Windows forever, and I found this "exploit.bat" in my documents folder that had been sitting there for 6 years.

Could probably get a CVE for this in 2026...
January 11, 2026 at 3:15 AM
Tangentially related to my maintenance woes today, did you know that you can subscribe to the releases feed for a github project via appending `/releases.atom` to the end of the repo url? Kind of sick. Poor man's supply chain notifications.

github.com/mail-in-a-bo...
github.com
January 10, 2026 at 9:53 PM
Upgraded my mailinabox server today to ubuntu 24.04 before I learned that ubuntu 24.04 is not supported by mailinabox. The mail sending and receiving part still works but I'd be willing to bet a bunch of other random things are going to be broken that I won't notice bc the web dashboard is broken
January 10, 2026 at 9:23 PM
I don't remember any of the context on why I made this, but found it again today in my projects folder, and it remains true today.
December 30, 2025 at 4:56 PM
The people of California are clearly demanding high speed efficient transportation options. If only such a thing existed where they could go fast AND play on their phones the whole time. Anyone heard of any technology like this?
December 29, 2025 at 11:49 PM
I can’t wait to see Stewie Griifin’s Principal Shepherd’s Ruth’s Chris’ Baz Luhrmann’s William Shakespeare’s Romeo and Juliet at Donald J Trump’s John F Kennedy’s Memorial Center for the Performing Arts
December 20, 2025 at 10:19 PM
Google should try delivering useful search results again.
Google launches CC, an experimental AI assistant that delivers a personalized daily "Your Day Ahead" briefing email based on users' emails and calendar (Robert Hart/The Verge)

Main Link | Techmeme Permalink
December 16, 2025 at 8:47 PM
Reposted by dade
Tinker Swift, Taylor Swift, Soldier Swift, Spy Swift
December 11, 2025 at 9:25 PM
Honestly this Fedora LPE (unpatched but public) is incredible. I read it last night and woke up this morning thinking of the galaxy brain move of using $PWD to bypass input filtering for the character “/“

initblog.com/2025/abrt-ro...
Privilege Escalation in Fedora Linux: Exploiting ABRT for Root
In October 2025, I discovered CVE-2025-12744, a local privilege escalation affecting Fedora Linux. This post details how I chained a 12-byte command injection in the ABRT daemon into a three-stage exp...
initblog.com
December 4, 2025 at 4:36 PM
Reposted by dade
who decided to call it Secret Santa when Nondisclosure Claus was right there
December 1, 2025 at 10:55 PM
Reposted by dade
Connection to the users and their desire paths is the most important path of working in security and nobody goddamn does it. You are gonna make compromises. And they're all gonna be worth it. Because you understand what they want and you're gonna deliver it and they're gonna stop doing stupid shit.
November 26, 2025 at 2:47 AM
Reposted by dade
getting my kid a book about rust for christmas that way when they unwrap it i can tell them they arent following best practices
November 20, 2025 at 12:16 AM
Reposted by dade
cloudflare's on-duty IT staff bangs on the doors which I have padlocked from the inside as I calmly break open lava lamp after lava lamp and drink the contents
November 18, 2025 at 1:59 PM