So, if you ask me what my takeaway from the Crowdstrike issue is, I'd say: boot counting/boot assessment/automatic fallback should really be a MUST for today's systems. *Before* you invoke your first kernel you need have tracking of boot attempts and a logic for falling back to older versions automatically. It's a major shortcoming that this is not default behaviour of today's distros, in particular commercial ones.

Of course systemd has supported this for a long time:

systemd.io/AUTOMATIC_BOOT_ASSE

Let's cut the bullshit and spell out a few things. The IT security industry is about as trustworthy as the food supplement and vitamin industry, but somehow they escaped the same reputation. Their products are overwhelmingly based on flawed ideas, and the quality of their software is exceptionally bad. And while not everyone will agree with the harshness of my words, I'll say this: Essentially everyone in IT security who knows anything in principle knows this.

Ah yes, let's ship a kernel driver that parses update files that are pushed globally simultaneously to millions of users without progressive staging, and let's write it in a memory unsafe language so it crashes if an update is malformed, and let's have no automated boot recovery mechanism to disable things after a few failed boots. What could possibly go wrong?

🤦‍♂️

@tomasv haha indeed. Or who needs to target XZ, when you could target security software.

Feels like a good day to be a Linux Desktop user :)

@badlogic as in a device which speaks some prerecorded messages as random?

@badlogic

Anything under 12V its very hard to do any damage, except to your wallet.

Don't get too hung up on component values, most simple electronics is a lot more forgiving than people think. We often only care about being within an order of magnitude, or the rule of thumb.

@badlogic I'd start with an idea, what do you want to make?

Once you have that, it's way easier to make it happen, since you'll want to do it, despite it maybe being hard.

A lot of the same logic from software applies in hardware, the gratification cycle is somewhat slower and longer, with bigger highs and deeper lows, in my experience.

Failing that, pick up a RPi Pico, some basic kits of components, a breadboard and a reel of single core wire. Then give your idea a go.

Schedule Published For PGDay UK 2024 - @postgresuk

We're excited to publish the scheduled for this years PGDay UK PostgreSQL conference.

The schedule offers a wide range of talks covering different topics, which I'm sure will appeal to a wide audience.

Take a lot of the schedule:

pgday.uk/events/pgdayuk2024/sc

And get yourself a ticket to the UK's best PostgreSQL Conference.

Programmers using LLMs:

I type in a comment and poof, new code appears! I am productive.

Programmers not using LLMs (like me):

I sometimes re-type code carefully that's similar to what's already in the codebase because the act of typing it out helps me bond with the concepts I'm expressing in code.

----

The thing is, we're not just arguing about tools.

*We're arguing about how to be artists.*

My code is the same as my music, photography, and writing.

Why are you outsourcing your art?

We renamed the #PathToCitusCon monthly #podcast & the new name is #TalkingPostgres!

If you're already subscribed, everything should just work. & if you've not yet listened to the podcast about #PostgreSQL, maybe it's time? People say they like it 🙏 & that makes me happy, will keep making it useful & interesting ❤️

Boosts appreciated...

techcommunity.microsoft.com/t5
#Postgres #community #OpenSource #Microsoft #database

You can join us for the next LIVE recording of the #TalkingPostgres #podcast (Ep17, formerly called #PathToCitusCon), with a parallel live text chat (it's fun!) 👋

🗓️ Wed July 10 @ 10:00am PDT
🎙️ Guest: the awesome Pino de Candia (& former co-host)
✅ Topic: Podcasting about Postgres
📣 Cal invite w/instructions on how to join the Discord: aka.ms/TalkingPostgres-Ep17-ca

#discord #OpenSource #community #PostgreSQL #Postgres #database #Microsoft

The final countdown! Our #CfP closes in 12 hours from now! Get all your talk proposals in or be square 🟦: 2024.pgday.nl/call-for-papers/

Vague subtoot:
The aversion to “politics” is a pathology of the tech scene. It's an extension of our denigration of “soft skills”.

Politics describes the process by which a group of two or more people make decisions.

Rejecting a PR to make documentation language gender-neutral is a political decision. Accepting such a PR is a political decision.

But! Accepting or rejecting a PR that adds a command line option is also a political decision! The difference is that this sort of PR is¹ less contentious.

¹: probably! There are plenty of examples of extremely contentious PRs.

Thanks 🙏 to suggestions by our #PostgreSQL listeners, we have renamed Path To Citus Con!

The new #podcast name is "Talking Postgres" 👋, what do you think? ❤️

Find all past & future episodes of #TalkingPostgres here!

🎧 talkingpostgres.com
📺 On YouTube: aka.ms/TalkingPostgres-playlis

Please tell your friends, boosts appreciated!

#Postgres #community #OpenSource #database #Microsoft #PathToCitusCon

@popey bring on the crazyness of Ed Davey and Keir Starmer, I'm sure it'll be a wild ride.

A very nice end to an otherwise bad week.

And then hop on over to PGDay Lowlands in Amsterdam the day after.

Where you can get double the database fun, tickets available now too:

2024.pgday.nl/

Show thread

For DBA Appreciation Day, why not treat yourself to some early September database fun.

By coming along to PGDay UK 2024 in London, you can get yourself a ticket now:

2024.pgday.uk/

Show older
Mastodon

Time for a cuppa... Earl Grey please!