IanTwenty
@IanTwenty@piefed.social
- Comment on Self-Host Weekly (25 September 2026) by @eshol 6 days ago:
One of the newswire articles is a great read
https://blog.colinbreck.com/i-dont-want-to-read-what-you-didnt-write/
Perhaps the laziest and most offensive use of AI writing I have seen: I had someone use AI to summarize my comments on their proposal as their response to me! Thanks! I couldn’t have said it better myself!
- Comment on Issue #64 that was blocking DNS-PERSIST-01 has been resolved 1 week ago:
So if I understand: hosters will be able to provide the proof at a time/schedule of their choosing. On actual servers a simpler, automated cert renew process without the need for them to hold nameserver API credentials.
- Comment on Is Authelia enough without fail2ban or crowdsec? 2 weeks ago:
Say that new authelia exploit looks like one fail2ban already recognises or relies on timing/brute-force then you’re covered even before a patch is available.
Here’s a real authelia vuln:
https://app.opencve.io/cve/CVE-2026-47203
allowing an attacker to circumvent login throttling or account lockouts by simply altering the case of their credentials.
I think fail2ban would help protect authelia here?
- Comment on My Homelab Got Hacked - A Postmortem – Phunky Cafe 3 weeks ago:
Firewalling containers’ outbound access seems to be rare but another powerful layer of protection