Skip to main content



Too much open-source AI is exposing itself to the web


As if AI weren't enough of a security concern, now researchers have discovered that open-source AI deployments may be an even bigger problem than those from commercial providers.

Threat researchers at SentinelLABS teamed up with internet mappers from Censys to take a look at the footprint of Ollama deployments exposed to the internet, and what they found was a global network of largely homogenous, open-source AI deployments just waiting for the right zero-day to come along.

175,108 unique Ollama hosts in 130 countries were found exposed to the public internet, with the vast majority of instances found to be running Llama, Qwen2, and Gemma2 models, most of those relying on the same compression choices and packaging regimes. That, says the pair, suggests open-source AI deployments have become a monoculture ripe for exploitation.




Evening in Stockholm - 1945




in reply to ☆ Yσɠƚԋσʂ ☆

I swear to god it's so easy to stop CIA psyops I could do it with my eyes closed, yet libs need this kind of shit and will still doubt it.
in reply to ghost_laptop

The libs are truly the most propagandized people to ever live on this planet. They embody everything they project onto people living in China and DPRK.
This entry was edited (3 hours ago)






LFS drops support for System V, citing workload problems and upstream dependencies on systemd


It sucks to hear that a project like LFS is forced to drop System V support. I never was a fan of systemd, so this is a bit dissapointing, albeit understandable.
in reply to PenguinJazz

Wow. Linux From Scratch needs Systemd because of ... Gnome? Whose general tooling (like simple-scan, pavucontrol) doesn't even work outside of Gnome anymore? Why does LFS need to run Gnome? Systemd and Gnome are as far away from from scratch as you can get.

And distros should stop cathering to Gnome whims. Leave them to their own, doing their Gnome things.

Edit: i mean, i don't say SysV is good or that i like it. I don't even know it. But i do know s6, Runit and Dinit.

This entry was edited (3 hours ago)
in reply to PenguinJazz

Wow, that surprises me. I did LFS with Sys-V (didn't continue to use it after I set up X11 as I couldn't be bothered with package maintenance/mostly did it as an exercise rather than for the sake of the finished system) and found it a fun project.

I wonder how many LFS users use GNOME or something that depends on systemd...



Linux newbie needs help with solaar


Hello I'm a Linux newbie and I need some help. I'm running fedora on my laptop and I want to connect my Logitech mouse. I got solaar installed but I need to manually install the udev rule. I'm following the Instructions here

So I understand that I need to copy rules.d/42-logitech-unify-permissions.rules from the solaar GitHub and place it in /etc/udev/rules.d the thing I don't know how to do is get there. I'm not super familiar with the terminal

in reply to johnyreeferseed

You're not a dumbass, you've just been taught to use a computer wrong by the bad operating system.

This is a useful lesson for linux newbies in general: when you want to install a program, go to your package manager first, not your web browser.


in reply to asg101

Some good news at least. Pattison has pulled out of the sale of their warehouse to ICE.
in reply to TheFeatureCreature

Yeah, I was relieved to see that. I would have boycott Save-On if they did sell to ICE, but it would have sucked as I like some of their Western Family products.
in reply to Coyote

Jimmy Pattison is a billionaire and got there by being a colossal asshole. His loyalties are not with you or me. He’s a net negative for BC. I avoid as many of the Pattison assets as I can, but it’s hard to track all of them. The Buycott app helps me trace ownership.
in reply to TheFeatureCreature

You would think that a reputable journalist would know that... you know, update their articles once new information comes to light?
This entry was edited (10 hours ago)


"content curation"


don't like this

in reply to BB84

Let people do a bad job of running their own instance. Its their instance. So long as everyone is informed on how it works, who cares?
This entry was edited (1 hour ago)
in reply to BB84

"Anticommunists" aka people who dare to be critical of Russia and China


"content curation"


in reply to BB84

Even putting aside my grievances with tankies, this just reads as bad faith bs.
in reply to obre

It's likely a bug the OP has identified, nothing deliberate.






Is it possible to sort out news


I know this is a broad question, and dont expect to be able to filter everything. Is there a way to filter out news on Lemmy so I can just scroll saving my mental health at times?
in reply to SpacePanda

Yes, you can block users, communities, or use the subscribed view and don't subscribe to them.