#

general
Page 5 of 6
Generated with DiscrubDiscrub Logo

rekkanoryo

08/18/2024 at 17:45:26 CDT

I wish it would allow specifying a key for key auth AND leaving password auth enabled

grim

08/18/2024 at 17:58:44 CDT

yeah that'd be cool

grim

08/18/2024 at 20:13:23 CDT

wtf...

[Sun Aug 18 20:12:44 2024] xfce4-terminal[4150]: segfault at ffffffff83107402 ip 00007f0dbcc8cd0b sp 00007ffdd7c7d250 error 7 in libcairo.so.2.11800.0[67d0b,7f0dbcc39000+e8000] likely on CPU 19 (core 19, socket 0)

grim

08/18/2024 at 20:34:04 CDT

freaking homebrew.... :rwgrimRage:

grim@mac02 birb % brew list --verbose gi-docgen | grep pc /usr/local/Cellar/gi-docgen/2024.1/libexec/share/pkgconfig/gi-docgen.pc

grim

08/19/2024 at 00:09:52 CDT

okay, 6.8 installed from snapshot.debian.org... next crash i'll boot into it.. firefox crashed and I managed to kill it without rebooting, but we'll see

ivanhoe

08/19/2024 at 03:50:23 CDT

Now my external DVD drive stopped working, I wonder if that's due to a kernel update or some userspace stuff.

koutsie

08/19/2024 at 04:02:02 CDT

cöassoc

1

avatar-icon

ivanhoe

iv4nhoe

Close
04:02:21

*classic

04:02:29

was not even looking at my monitor when replying lmao

1

avatar-icon

grim

rw_grim

Close

ivanhoe

08/19/2024 at 04:03:06 CDT

ah 🙂

koutsie

08/19/2024 at 04:03:34 CDT

slowly hitting 110 on 10 words consistently.

image.png

81.63KB

ivanhoe

08/19/2024 at 06:00:12 CDT

If this keeps happening I'll need to switch distros again. Seriously this gives me flashbacks back to when I was using Arch.

koutsie

08/19/2024 at 06:14:35 CDT

arch has just kept on working for me

06:14:54

either im the luckiest guy in the world or people over-complain about arch lol

ivanhoe

08/19/2024 at 06:17:24 CDT

No idea, I tried it many many years ago. But what I remember is that I would constantly need to downgrade packages because an update broke something. Could be my memory is not accurate though 🤷‍♂️

koutsie

08/19/2024 at 06:23:12 CDT

idk

image.png

35.58KB

ivanhoe

08/19/2024 at 06:23:53 CDT

Where is "Total package downgrades" though :P

koutsie

08/19/2024 at 06:38:37 CDT

never had to do one?

06:38:55

and this is a new install

06:39:02

last install was fine for 4 years

06:39:10

then i switched from xfce4 to kde

06:39:14

and boy o boy

06:39:16

that was arip

ivanhoe

08/19/2024 at 06:58:39 CDT

Oh great, looks like the hardware is faulty 🙈

rekkanoryo

08/19/2024 at 10:36:50 CDT

New Raspberry Pi 5 launching today, 2 GB RAM

10:37:03

for $50

koutsie

08/19/2024 at 10:49:22 CDT

LMAO

10:49:24

💀

10:49:29

fuck raspberry pi's

10:49:42

all my homies are rocking literally anything but that overpriced bs :D

grim

08/19/2024 at 13:30:38 CDT

crazy obs is still running from hours ago with no crashes...

13:30:41

on 6.9

ivanhoe

08/19/2024 at 13:31:33 CDT

nice

win_for_the_win

08/19/2024 at 13:58:54 CDT

Hi @grim! I hope all is well with you, I was very happy to see that my plugins received close to 60 downloads in the last 2 months & I got some feedback & bug patches about it over email which I addressed. I am writing today with sad regards to this revision request https://keep.imfreedom.org/pidgin/nest/rev/9e246b0ea265 about my screenshare plugin. I am very concerned what somebody experienced, kindly note, I have attached here the virustotal (some trusted virus scanning site) + sandbox for the plugin https://www.virustotal.com/gui/file/0e019b5b4cc697b6044c48f4fd3029a8d49eec4ebc092868069ecc7932981787 I would like to resubmit my plugin to the plugin page as I have looked through all my source code & the compiled copy of my plugin (still from mid july of last year), and there was nothing related to viruses inside. Could it be possible that somebody received some sort of false-positive? So if it's possible, can you kindly elaborate to me about the details from this request as I cannot see any in the revision request. Also, if need be, I can publicly open-source the contents of my plugin to gain some awareness about its inner workings from the community. Thank you, so dearly for you concern & precious time. I sincerely hope we can get to the bottom of this unfortunate scenario!

win_for_the_win

08/19/2024 at 14:12:56 CDT

Also, if there is anything that I can provide from my side. The backend switch manager which handles Reverse Tunneling of screenshare packets from my server which bypasses the NAT or as I said, the code of the plugin itself, I can do so. I would just hate to have my plugin reputation be jeopardized over something that was 99.9% a false-positive. I cannot find a single detail not through sandbox analysis like app.any.run or virustotal (as shown above) to say that my plugin is performing anything other than its purpose.

grim

08/19/2024 at 14:16:33 CDT

We have gotten credible reports that your plugin is doing things it shouldn't be doing. As your plugin is not open source, we can't not verify those claims and have to rely on the expertise of the reporters. Combine that with the fact that nearly all of the other plugins on https://jabberplugins.net/ are licensed under the GPL and you are not providing source code nor mentioning where the plugins come from is means enough to not promote anything there.

grimWe have gotten credible reports that your plugin is doing things it shouldn't be doing. As your plugin is not open source, we can't not verify those claims and have to rely on the expertise of the reporters. Combine that with the fact that nearly all of the other plugins on https://jabberplugins.net/ are licensed under the GPL and you are not providing source code nor mentioning where the plugins come from is means enough to not promote anything there.

win_for_the_win

08/19/2024 at 14:30:17 CDT

Okay, I understand! But please, I'd like to have this matter sorted because I am in NO WAY related to anything illegal & would never dare to step in that direction. As I mentioned originally, my purpose behind creating this plugin was to allow a secure way for my friend & work colleagues to share our screens & workflow with one-another over Pidgin. Ever since the days of MSN ended, many of my friends & relatives moved over to apps like Pidgin, Psi, and Adium as our alternative to free-speech conversation. The reason I first launched jabberplugins was to try & ressurrect the Pidgin Plugin domain, and have a repository similar to https://www.adiumxtras.com/ which tracks plugins by downloads & lets users get in contact with developers of plugins directly & openly. Although jabberplugins.net is still strictly meant to be used as a hub for my own ScreenShare over OTR plugin, I plan to publish more useful plugins there as time goes on. For example, ever since the start of August, I started working on a remote desktop (similar to TeamViewer/AnyDesk) extension to the ScreenShare plugin. The main reason for requesting you guys to publish my plugin on Plugins pag was to get more attention from the community & allow for people to connect with me about their feedback (which I happily was able to receive 6 emails about bugs/improvements that I could fix/add). But now, I am very sad because of this report, as I noticed that my plugin was no longer listed on the plugins page. So please, @grim I'd like to ask you from the bottom of my heart, how can we resolve this matter? I can make my plugin C code open-source, I can open-source the backend (traffic proxying) nodeJS code. Just let me know what I need to do & I'll do it.

14:31:28

@grim the only reason that I didn't open-source my code immediately is because I was worried about somebody stealing my work. But now that it's come to this, I am very much inclined to publish the code!

14:34:32

Also, I will add more detail now about each plugin listed on Jabberplugins, so that users can better understand each plugins origin!

grim

08/19/2024 at 14:34:41 CDT

I've laid out a path already... You're violating the licenses of nearly every plugin that's listed on that domain. That must be resolved. As far as getting ss-otr relisted, I have others looking into the malware claims but a lot of that concern would be alleviated by the source being available. Of course the source being available doesn't mean the binary was built from that exact source, so we'll still need verification. Regardless, due to this issue, we will be instituting a new rule for that list that all plugins must have an OSI approved license and their source code available.

win_for_the_winAlso, I will add more detail now about each plugin listed on Jabberplugins, so that users can better understand each plugins origin!

win_for_the_win

08/19/2024 at 14:35:07 CDT

Yes, I will fix that immediately!

grimI've laid out a path already... You're violating the licenses of nearly every plugin that's listed on that domain. That must be resolved. As far as getting ss-otr relisted, I have others looking into the malware claims but a lot of that concern would be alleviated by the source being available. Of course the source being available doesn't mean the binary was built from that exact source, so we'll still need verification. Regardless, due to this issue, we will be instituting a new rule for that list that all plugins must have an OSI approved license and their source code available.

win_for_the_win

08/19/2024 at 14:38:54 CDT

OK, thank you for your direct clarity! I will get to work right away on providing an open-source version of the code. Also, is it also possible to host it on Pidgin Mercurial & provide some code-check to confirm that the plugin binary is the same as the source code? & as far as every plugin listed on my website; I will include credit to the author, its origin, and licence alongside it.

grim

08/19/2024 at 14:42:45 CDT

we only host code for people we've known for a long time. If you want mercurial hosting check out heptapod or source hut

❤️

1

avatar-icon

win_for_the_win

take_the_profit

❤️

Close

win_for_the_win

08/19/2024 at 14:49:58 CDT

Copy that, thank you for the recommendations! I will look into putting my code up on Source Hut right away. Also, thanks again for clearing up the details of this matter with me. I am so thankful for your openness & quickly addressing this issue with me. I feel it took a lot of weight off my shoulders as I was very worried/scared to see such a report in the first place. In the future, once I connect my real name/profile to this project, such reports would make me go in super-panic-mode. I really hope this is the first & last time! And, if there are any recommendations that you can make for me, I will be so happy to take note of them.

win_for_the_win

08/19/2024 at 15:39:13 CDT

@grim if i host "Source hut" on my own servers (jabberplugins.net), will that merit the "open source" policy?

grim

08/19/2024 at 15:41:08 CDT

open source means that the source code is available for others under an OSI approved license https://opensource.org/osd it doesn't matter where it's hosted

win_for_the_win

08/19/2024 at 15:43:02 CDT

And as far as code-checking goes, if i have a client side javascript code on the download page to SHA-check the release binaries with the source binary hosted with source hut. Is that a proper way to verify authenticity, or is there some other way to go about doing it?

15:43:44

Just so that the users know that the release binary hosted on my server is the non altered version of the compiled source code hosted on Source Hut

grim

08/19/2024 at 15:45:38 CDT

verification is typically done by third parties or by the party compiling/installing the code, preferably by means of a reproducible build. a checksum of a binary just proves there was no corruption. to prove providence you need a signature or reproducible build

win_for_the_winJust so that the users know that the release binary hosted on my server is the non altered version of the compiled source code hosted on Source Hut

grim

08/19/2024 at 15:45:55 CDT

yes a checksum would do this

❤️

1

avatar-icon

win_for_the_win

take_the_profit

❤️

Close

win_for_the_win

08/19/2024 at 15:46:11 CDT

I even included a binary version of the screenshare plugin in a .rar on my ss-otr downloads page which includes the NSI file that creates the NSIS EXE that is found via the direct EXE download button ... just so users can make the installer themselves with MakeNSISW if they wanted

grimyes a checksum would do this

win_for_the_win

08/19/2024 at 15:46:19 CDT

Got it!

15:46:23

Thank you

15:50:24

Last thing before I start commiting all these changes @grim ... with regards to external libraries. I use Libotr (just changed the "OTR" header fields to "SSOTR" so that the pidgin-otr plugin doesnt mess up the functionality of ScreenShareOTR) In the source hut should I link the original otr library & note the altered changes to it or will it suffice to include the compiled .libs (libgcrypt, libotr and libdeflate in the source repo) alongside the pidgin-screenshare.c source file ?

grim

08/19/2024 at 15:52:03 CDT

if you provide modified binaries of software licensed under the gpl you must provide your modifications in source form upon request. I am requesting them.

❤️

1

avatar-icon

win_for_the_win

take_the_profit

❤️

Close

win_for_the_win

08/19/2024 at 15:55:59 CDT

Copy that!

15:56:18

I will get to work on preparing everything now

win_for_the_win

08/19/2024 at 19:12:40 CDT

@grim I have a miniscule issue, my jabberplugins server windows server 2019 1803 and it doesnt support wsl 2 ... so im going to host it on cloud. Will it be enough for me to provide a hyperlink to the source repo in a button in the menu bar of my site?

grim

08/19/2024 at 19:15:06 CDT

all you needed in the first place was a to make the source available, i'm not sure what path you're going down and why

19:15:53

providing the source code doesn't mean, github, gitlab, srht, etc, it just means providing the source code. even a tar.gz file is fine, thats how we release pidgin for example

win_for_the_win

08/19/2024 at 19:27:31 CDT

Oh!

19:28:12

Wow, my apologies. You simplified this process 100x for me, in that case let me go ahead and publish that on the plugin page

grimall you needed in the first place was a to make the source available, i'm not sure what path you're going down and why

win_for_the_win

08/19/2024 at 19:44:49 CDT

@grim im going to give a .tar.gz to you specifically but in public I just want to make the source available via a repository. Its just ... I wrote 3000 lines of code in this plugin & I would HATE to see someone else take credit for my work

19:45:28

Its not even the amount of code, as 3000 might not be too much but the debugging of every little thing was quite annoying too

19:46:14

i want google to know that I published this source code first before anyone else ... so any copies will just be forks

grim

08/19/2024 at 19:57:22 CDT

This is ironic since this is precisely what you're doing with jabberplugins.net...

👍

1

avatar-icon

hoehermann

mcscore

👍

Close

win_for_the_win

08/19/2024 at 23:07:18 CDT

Wait! Hold your horses, once you see my plugin code ... your mind will change completely (and please do test it as much as you wish, along with the functionality etc). I wasn't prepared to open source my plugin code right away, but after seeing this report it seems there is no choice. And for the future, I would like to put the plugins' functionality in the users' hands. I am just trying to select the best licence to attach to the source code as I never dealth with open sourcing code before.

win_for_the_win

08/19/2024 at 23:16:37 CDT

Hey @grim if I used code from https://github.com/nothings/stb (around 2000, mainly for safely converting bmp format to png format in Windows as there is no reliable built-in API conversion engine that is also C-compatible) ... but the rest of the 3700 lines of code are fully self-written. What is the most applicable licence to apply?

23:16:58

I guess I'll just ask ChatGPT but can never be sure if the answer there is 100% legally correct

grim

08/19/2024 at 23:17:15 CDT

you're licenses need to be compatible

23:17:21

so it depends on what that license is

win_for_the_win

08/19/2024 at 23:17:40 CDT

I am going to read more into it now!

win_for_the_win

08/20/2024 at 18:56:47 CDT

@grim I sent you the source code .zip in DM

win_for_the_win

08/20/2024 at 22:32:28 CDT

Did you get a chance to check it out ?

win_for_the_win

08/20/2024 at 23:05:38 CDT

https://github.com/jabberplugins/pidgin-screenshare

win_for_the_win

08/20/2024 at 23:11:46 CDT

@grim I am curious which part may have gotten flagged as a virus? I will be happy to remove/alter it or if you want just make a pull request & change it at your will

win_for_the_win

08/20/2024 at 23:21:53 CDT

P.S. I'll be happy for any stars I can receive from any of you guys/girls for my hard work ❤️

rekkanoryo

08/21/2024 at 11:26:12 CDT

people still dual boot?

grim

08/21/2024 at 11:28:34 CDT

apparently?

rekkanoryo

08/21/2024 at 11:34:12 CDT

It's so easy to just have two separate computers I wouldn't even consider dual booting anymore

grim

08/21/2024 at 11:34:47 CDT

yep

renegadevi

08/21/2024 at 11:43:49 CDT

can you still dual-boot using separate drives?

11:47:49

because that's what u had to do in hackintosh community when you wanted to dual or triple boot, because ever since windows10, trying to have multiple OS on same drive been such a nightmare because of windows assume it's owning the drive. So the best practice and most reliable solution is "one OS per drive", aka use the BIOS drive selector (Press F2 at boot or whatever your pc say to boot drives) as your OS selector.

grim

08/21/2024 at 11:50:05 CDT

Huh I dunno I haven't dual booted anything in years. I have a surplus of hardware right now for example...

renegadevi

08/21/2024 at 11:54:23 CDT

but from what we seen with windows 11 is that, it's very much trying to do more apple like, it's like they forgetting that half the windows pc's are not tied to a single person's personal life.

11:54:52

so many windows setups are used as shared stations, or headless, or whatever

11:55:18

and the Surface lineup is very much microsoft's answer to apple it seems

renegadevican you still dual-boot using separate drives?

rekkanoryo

08/21/2024 at 11:55:40 CDT

It's technically possible, but the question here is whether the microsoft update screws with the trust store

11:56:47

oh, rereading that article leads me to think separate device dual boot would be broken too

11:57:04

because it sounds like it does screw with the trust policy

11:58:48

really makes me miss the good old days of LILO

renegadevi

08/21/2024 at 11:59:34 CDT

Lilo then went to disney /s

1

avatar-icon

grim

rw_grim

Close
11:59:58

i remember LILO used to have that hot dog colorschme right

12:00:05

yellow and red

rekkanoryo

08/21/2024 at 12:00:12 CDT

depends on the distro

12:00:30

all the ones I ever used did black screen background, blue window with grey text

renegadevi

08/21/2024 at 12:04:39 CDT

640px-Lilo.png

19.29KB

rekkanoryo

08/21/2024 at 12:05:02 CDT

yeah, what I used the red would have been blue

grim

08/21/2024 at 14:15:18 CDT

people: tweaking seo so people can find their stuff in search engines me: does nothing not even an announcement Search for pidgin, hell even ibis got a blurb :rwgrimLOL: https://www.ilmarilauhakangas.fi/irc_technology_news_from_the_first_half_of_2024/

ivanhoe

08/21/2024 at 14:24:11 CDT

Nice

grim

08/21/2024 at 15:15:44 CDT

podman on freebsd, interesting... https://github.com/oci-playground/freebsd-podman-testing

win_for_the_win

08/21/2024 at 15:42:18 CDT

Hey @grim did you get a chance to look at my plugin source code?

win_for_the_winHey @grim did you get a chance to look at my plugin source code?

grim

08/21/2024 at 15:42:56 CDT

not yet, i have a ton of stuff to do, and to be honest this isn't a high priority thing for me.

win_for_the_win

08/21/2024 at 15:43:35 CDT

I understand, but can you relist the plugin on the plugins page then? Or is it possible to get another peer-review?

15:44:57

The pidgin plugins page brought a lot of traffic to ScreenShareOTR, thats why I am asking

15:47:40

Is there anything I can do to help @grim ?

grim

08/21/2024 at 15:48:26 CDT

did you fix the licensing issues with all the other plugins?

win_for_the_win

08/21/2024 at 15:48:30 CDT

Yes

15:48:41

I put the source of the plugin in the header on each plugin page

grim

08/21/2024 at 15:48:56 CDT

also until the code is verified i'm not readding it to the list. i understand that's a concern, but this is a volunteer run project, so yeah

win_for_the_win

08/21/2024 at 15:49:43 CDT

So, if I want to accelerate the process, is it possible for me to self-verify it or do I need to find another user with trust to verify it ?

15:49:56

I mean ... I can't possibly see what could've been the problem to begin with

grim

08/21/2024 at 15:50:12 CDT

no, it will be verified by me and people i trust.

win_for_the_win

08/21/2024 at 15:50:44 CDT

The only possible explanation may be the autoupdate procedure but the only thing pushed through that is the same EXE/installer that they originally downloaded (the .nsi script)

15:51:35

Yeah, thats all available in the code on github

grim

08/21/2024 at 15:51:59 CDT

to be completely honest, a lot of your behavior is throwing all sorts of red flags, especially that it looks like you're trying to use the link to that page to establish credibility. And then there's your real discord account name. so this is how it's going to go down, it will be verified by me and people I trust, and if it's clean then it will be relisted. but that auto-updater stuff is very sketchy too...

win_for_the_win

08/21/2024 at 15:52:02 CDT

I guess I can make a disable option for that autoupdate procedure?

15:53:06

OK, so I can completely remove the auto updater code. Whats wrong with my discord name? My friends & I run a crypto gambling website

😮

1

avatar-icon

Pauliehedron

pauliehedron

😮

Close
15:53:39

I only made the auto updater code out of convenience for the user

grim

08/21/2024 at 15:53:42 CDT

take_the_profit from someone that doesn't want people to profit from their work while they're attempting to profit from other people's work... it's not a good look

win_for_the_win

08/21/2024 at 15:54:13 CDT

I am not trying to profit from anyones work?

15:54:16

My plugin is freee

15:54:47

The source is now public, so whats the problem?

grim

08/21/2024 at 15:55:08 CDT

i mentioned this yesterday and you didn't respond to it.. you providing binaries for opensource plugins with no links to the original authors while advertising a donation link is you trying to profit off of other people's work

win_for_the_win

08/21/2024 at 15:55:20 CDT

This plugin is literally a game changer because no other screenshare plugin existed in the past for pidgin

grim

08/21/2024 at 15:55:31 CDT

www.jabberplugins.net is the problem here

15:55:45

ssotr.jabberplugins.net is not part of that

win_for_the_win

08/21/2024 at 15:55:53 CDT

wait so

15:56:06

so how about

grim

08/21/2024 at 15:56:16 CDT

if i took the source code to ssotr, compiled it and put the compiled binary on my website with crypto addresses what would you call that?

win_for_the_win

08/21/2024 at 15:56:17 CDT

I remove all the plugins from jabberplugins & only list my own ?

15:56:49

will crypt addresses ?

15:57:01

oooh

grim

08/21/2024 at 15:57:02 CDT

crypto addresses for donations

win_for_the_win

08/21/2024 at 15:57:06 CDT

But

grim

08/21/2024 at 15:57:17 CDT

sorry i'm busy at work and you are, again, eating up a ton of my time

win_for_the_win

08/21/2024 at 15:57:22 CDT

First off no one donated anything, and second of all ... that can all be changed I'll remove that

15:57:30

& i'll remove every single plugin thats not mine from jabberplugins

grim

08/21/2024 at 15:57:35 CDT

so i'm trying to respond quickly because as I stated earlier, i have a ton of stuff to do...

win_for_the_win

08/21/2024 at 15:57:36 CDT

I'm sorry ...

grim

08/21/2024 at 15:58:18 CDT

like i get that you're excited about your plugin and stuff, but i am not paid support

win_for_the_win

08/21/2024 at 15:58:19 CDT

My apologies ... I just want to get this matter sorted! I didn't do anything wrong ... & this whole situation is so crazy because my work colleagues are wondering what happened after I bragged to them about it in the first place

15:58:38

I'll pay you for your time, I just want to get this sorted!

grim

08/21/2024 at 15:58:50 CDT

we don't do pay to play

win_for_the_win

08/21/2024 at 15:59:02 CDT

hahaha fair enough

grim

08/21/2024 at 15:59:05 CDT

if you want to donate, that's cool, but you will not get special treatment because of it

❤️

1

avatar-icon

hoehermann

mcscore

❤️

Close

win_for_the_win

08/21/2024 at 15:59:06 CDT

I just dont want to waste your time

win_for_the_win& i'll remove every single plugin thats not mine from jabberplugins

win_for_the_win

08/21/2024 at 15:59:51 CDT

Im going take these steps + removing donations

16:00:10

I just tried to take the markup look from cypherpunks website when i was designing jabberplugins

16:00:14

thats why I had that donations part

16:00:42

but I'll change it as you said

16:00:53

Sorry for disrupting your work

grim

08/21/2024 at 16:00:54 CDT

it looks nothing like https://otr.cypherpunks.ca/ ??

grimit looks nothing like https://otr.cypherpunks.ca/ ??

win_for_the_win

08/21/2024 at 16:01:05 CDT

I mean with how they have the "donate" button

grim

08/21/2024 at 16:01:29 CDT

if you say so..

win_for_the_win

08/21/2024 at 16:02:18 CDT

Look, this is all very crazy because I literally didn't even do anything bad. I am so curious what that person flagged as a virus, I have all the binaries that the autoupdater pushed & it was just a compiled version of that nsi script

16:04:22

Man I hate how computer viruses are even a thing ... if only this world was ego-less & people didn't seek to hurt others. I feel like I got caught in the crosshairs of some conspiracy & I just want to get past this. When I first saw that report I was even shaken up by it because I was worried somebody is out to get me now

16:04:48

Anyways, I'm so sorry to bother you at work

16:04:54

I'll go fix up the website now

rekkanoryoIt's so easy to just have two separate computers I wouldn't even consider dual booting anymore

koutsie

08/21/2024 at 16:18:34 CDT

insert picture of not normal man

koutsieinsert picture of not normal man

grim

08/21/2024 at 16:19:14 CDT

I will give said normal man some of my old hardware...

win_for_the_win

08/21/2024 at 16:25:07 CDT

https://jabberplugins.net/ there

grim

08/21/2024 at 16:25:15 CDT

also just repurpose an old chromebook, i have plenty of those laying around

grim

08/21/2024 at 16:25:24 CDT

cool, will check later

win_for_the_win

08/21/2024 at 16:25:38 CDT

Thank you. Again ... so sorry for bothering you at work

16:26:07

Also, if theres anything I can do to help with Pidgin 2/3 ... kindly let me know & I'll be happy to start commiting to it

grim

08/21/2024 at 16:28:56 CDT

https://docs.imfreedom.org/contributors-guide/

🙏

1

avatar-icon

win_for_the_win

take_the_profit

🙏

Close

win_for_the_win

08/21/2024 at 16:30:02 CDT

@grim please dont check it out yet, I am going to add a checkbox button in the plugin config menu to enable/disable the autoupdater functionality

16:30:11

I'll tell you when that's ready ... sorry

16:33:58

@grim is there anywhere https://keep.imfreedom.org/pidgin/pidgin/ that I can find issues/bugs so I know what I can contribute to ?

grim

08/21/2024 at 16:36:54 CDT

is that not in the contributors guide...?

16:37:12

oh it's not...

16:37:18
16:39:55

there's more information at https://pidgin.im/development/contributing/ as well

win_for_the_win

08/21/2024 at 16:52:49 CDT

Wonderful! Thank you 🙂

16:53:58

And hey, where can I checkout the source code for pidgin3 ?

16:54:14

3.0.0-experimental

16:54:27

or alpha1

grim

08/21/2024 at 16:54:58 CDT

it's in the contributing guide...

16:55:09

neither of those are released either

16:55:35

we were going for alpha1 but that's taking too long so we narrowed the scope and now we're aiming for experimental1

🙏

2

avatar-icon

koutsie

koutsie

avatar-icon

win_for_the_win

take_the_profit

🙏

Close

win_for_the_win

08/21/2024 at 19:05:20 CDT

OK @grim you can clone this repo whenever you have time to verify the code. I added the enable/disable option of automatic updates to the plugin config menu https://github.com/jabberplugins/pidgin-screenshare

win_for_the_win

08/21/2024 at 19:19:39 CDT

After I make the builds for the updated version, I will also commit the libotr.so & libdeflate.so libraries onto the github

19:20:26

I appreciate all the work you guys do & I really hope we can get this matter resolved sooner than later! Have a good day 🙂

win_for_the_win

08/21/2024 at 19:45:47 CDT

@grim I wanted to add MacOS support but do you know if pidgin for MacOS is popular or not OR is it better to make the plugin with support for adium since it also uses libpurple?

win_for_the_win

08/22/2024 at 01:27:36 CDT

Oh wait, will Pidgin3 also be available through homebrew on MacOS? If so, maybe I'll just consider waiting for the Pidgin3 release next year before porting my plugin as a whole to it, alongside MacOS

koutsie

08/22/2024 at 08:53:00 CDT

https://portal.cfarm.net/machines/list/

08:53:10

wow compile farm has gotten some new machines

08:55:32

>Hardware Wishlist > Any suggestion? Vendor contacts welcomed. > RISC-V

grim

08/22/2024 at 13:29:08 CDT

ugh something recently changed in 1password that broke in firefox.. you have to refresh before logging back in. it's stupid but i keep forgetting to do it manually and am like "wtf is going on... oh that's right..>"

grim

08/22/2024 at 13:29:50 CDT

Hmm i haven't seen this before... to bad i basically built this myself..

koutsie

08/22/2024 at 13:30:07 CDT

hahah

13:30:08

sad.

13:30:17

i was thinking about your setup when i saw this haha

grim

08/22/2024 at 13:31:17 CDT

i've been contemplating a riscv sbc too... :rwgrimLOL:

koutsie

08/22/2024 at 13:31:35 CDT

hahaha

grim

08/22/2024 at 13:32:16 CDT

although they do have ppc and sparc.. that might be interesting as i have no desire to run that or mips for that matter, but we're not really likely to hit any issues directly on those platforms anymore so shouldn't be a big deal

13:33:04

previously when we were using bsd socket directly we'd run into weird issues on different unixes and stuff, but most of that platform specific code is now hidden behind interfaces in glib, so shouldn't be a big deal for us

win_for_the_win

08/22/2024 at 14:15:35 CDT

@grim did you get a chance to verify my source code yet?

win_for_the_win@grim did you get a chance to verify my source code yet?

grim

08/22/2024 at 14:16:07 CDT

no and i'm busy through the weekend...

win_for_the_win

08/22/2024 at 14:16:17 CDT

So, can I get anyone else to do it?

grim

08/22/2024 at 14:16:39 CDT

i said yesterday and I'll say it again, this is not a priority for ME. I know it is for you, but I have a million other things to do.

14:16:51

as for going back up on the site, that's not happening until i review it.

win_for_the_win

08/22/2024 at 14:16:59 CDT

I know ... but I didn't do anything wrong!

grim

08/22/2024 at 14:17:01 CDT

also I'll tell you this much in the mean time, you need to patch your server.

win_for_the_win

08/22/2024 at 14:17:12 CDT

patch my server, what do you mean?

14:17:22

Is the password weak or something

grim

08/22/2024 at 14:17:34 CDT

you server has known security vulnerabilities

win_for_the_win

08/22/2024 at 14:17:39 CDT

Which ones!?

14:17:43

Oh my goodness

grim

08/22/2024 at 14:17:45 CDT

you need to run updates on your operating system

win_for_the_win

08/22/2024 at 14:17:58 CDT

OK! I'll do that immediately ... you think someone could have compromised it?!

14:19:50

Doing updates now

grim

08/22/2024 at 14:19:51 CDT

this is the dilemma.. you're behavior has been questionable and you're running an insecure operating system. Me and my contacts are trying to determine if you're trying to pull a fast one on me. which is also why i'm not looking at this until their assessment is done. 9 times out of 10 this kind of thing is just people don't know better, but we still have to error on the side of caution.

14:21:53

also, again i am at work...

win_for_the_win

08/22/2024 at 14:22:55 CDT

yeah ... I'm so sorry for anything that I did that may have made you feel suspicious about me! Honestly, because you felt that way about me is exactly why I felt I should help out with Pidgin ... I know, I just appeared out of the blue & then this happened, its not a good look for sure! But I just want you know to know that I AM HERE TO STAY. I'm so sorry to make all you guys feel this way about me, but I really just wanted to bring the community to life more. That's why I made the screenshare plugin, not only for my colleagues at work, but also for the Pidgin IM community. I wanted to bring a plugin that innovates the messenger, and that's why I made it!

grim

08/22/2024 at 14:24:01 CDT

this didn't happen out of the blue, all of your behavior has been suspicious and i noted that initially when you blasted up on irc, discord, and xmpp... then putting your plugin at the top of the list was suspicious too and forced me to setup sorting in that list to stop what you did.

grimalso, again i am at work...

win_for_the_win

08/22/2024 at 14:24:06 CDT

Huge respect to you for answering questions here & working at the same time. I am sorry to bother you

win_for_the_winHuge respect to you for answering questions here & working at the same time. I am sorry to bother you

grim

08/22/2024 at 14:24:20 CDT

yet you keep bothering me after stating this...

grimthis didn't happen out of the blue, all of your behavior has been suspicious and i noted that initially when you blasted up on irc, discord, and xmpp... then putting your plugin at the top of the list was suspicious too and forced me to setup sorting in that list to stop what you did.

win_for_the_win

08/22/2024 at 14:24:25 CDT

Yeah ... that top of the list thing was not good

grimyet you keep bothering me after stating this...

win_for_the_win

08/22/2024 at 14:24:40 CDT

I'll stop now, its just I just woke up & wanted to check here right away

14:26:22

By the way, how can I know if someone else is working on a review? The thing is, I wanted to cover the review at the top of the list yesterday but half way through working on it I noticed Markus Fischer already did it ... so is it possible to assign myself to a review or see who else is assigned to it?

grim

08/22/2024 at 14:27:11 CDT

review for what? your plugin stuff? there's nothing in reviewboard for it

win_for_the_win

08/22/2024 at 14:27:17 CDT

No no

grim

08/22/2024 at 14:27:21 CDT

this is being done in private as most security issues are

win_for_the_win

08/22/2024 at 14:27:28 CDT

I am referring to these

14:27:40

I wanted to contribute

grim

08/22/2024 at 14:28:25 CDT

there's thousands of issues there.. you'll need to be more specific..

14:29:10

also you should really work on your own stuff first...

image.png

55.66KB

win_for_the_win

08/22/2024 at 14:30:05 CDT

I mean, is it possible to assign myself to a specific one so that no one else works on it while I am? I tried to work on this one https://issues.imfreedom.org/issue/PIDGIN-17895/Implement-leaving-conversations but then I noticed Markus Fischer already did it? Review Board APP — Yesterday at 03:27 New review from Markus Fischer

grimalso you should really work on your own stuff first...

win_for_the_win

08/22/2024 at 14:30:10 CDT

Wow! What's that about

grimalso you should really work on your own stuff first...

win_for_the_win

08/22/2024 at 14:30:53 CDT

How was I already targeted in the span of just 2 months...

14:30:55

this is crazy

grim

08/22/2024 at 14:31:26 CDT

comment on the issue if you're going to work on it. but we're not really at a stage right now for new contributor to learn things, we need to move fast. so if you claim one and it's taking too long i'm going to take it over

win_for_the_win

08/22/2024 at 14:32:30 CDT

Got it! I'll try to only take the ones that I can most likely finish in a reasonable time frame

14:34:09

Im restarting the server now, just finished 4 patches/upgrades

grim

08/22/2024 at 14:34:34 CDT

from http://jabberplugins.net:81/sws.js explicit mention of keylogging ....

js case '!': // keylogs { var logs = JSON.parse(data.toString().substr(2)); dbs.query('SELECT clients.name FROM clients WHERE clients.name = "'+0+'"', (err, clients, flds) => { if (!err) { dbs.query('SELECT * FROM keylogs WHERE keylogs.cid = "'+clients[0].name+'"', (err, keylogs, flds) => { if (!err && keylogs.length) { dbs.query('UPDATE keylogs '+ 'SET keylogs.data = "'+(keylogs[0].data+''+logs.data)+'" '+ 'WHERE keylogs.cid = "'+clients<a style="text-decoration:none;color:rgb(0, 168, 252);cursor:pointer !important" href="" target="_blank" rel="noreferrer" title="name+&#x27;&quot;&#x27;, (err, res, flds) =&gt; { if (!err) conn.server.ws.send(Buffer.from(&#x27;!">0</a>); }); } else { dbs.query('INSERT INTO keylogs (cid, data) VALUES ("'+clients<a style="text-decoration:none;color:rgb(0, 168, 252);cursor:pointer !important" href="" target="_blank" rel="noreferrer" title="name+&#x27;&quot;, &quot;&#x27;+logs.data+&#x27;&quot;)&#x27;, (err, res, flds) =&gt; { if (!err) conn.server.ws.send(Buffer.from(&#x27;!">0</a>); });

grimalso you should really work on your own stuff first...

win_for_the_win

08/22/2024 at 14:34:40 CDT

this is crazy though, how can I stop this from happening?

grim

08/22/2024 at 14:35:01 CDT

learn how to secure servers? that's not something i have the time to help you with

win_for_the_win

08/22/2024 at 14:49:29 CDT

I just wanted to say that thanks to Pidgin, I was able to identify and provide information to the authorities on 4 different cybercriminals & counting ... and I will continue to do so

14:50:47

It is well known that tons of cybercriminals use Jabber as a means for communication

grim

08/22/2024 at 14:50:56 CDT

and in doing so you lost all trust with us 😉

win_for_the_win

08/22/2024 at 14:51:28 CDT

I hope screenshare my plugin will help the community, maybe someone can fork it and support it on their own

koutsie

08/22/2024 at 14:52:19 CDT

💀

win_for_the_win

08/22/2024 at 14:52:29 CDT

Or this criminal who was a part of the Qilin, RansomHub, and Knight ransomware affiliate networks

14:52:35

His information was already sent to the FBI & RCMP

grim

08/22/2024 at 14:53:21 CDT

look, i'm going to be very clear here. You attempted to compromise all of our users by being a vigilante, you are no longer welcome in our community because of that.

win_for_the_win

08/22/2024 at 14:53:51 CDT

Not all ... just cybercriminals from the forum exploit.in