Elektrine
Log in Register
Paige Chat Timeline Gallery Friends Email Drive DNS Private DNS Domains VPN Kairo Nerve
Remote

Linus Gasser

@ligasser@social.epfl.ch
mastodon 4.5.7
  • Open on social.epfl.ch

Hobby cryptographer with a tendency to prefer decentralized stuff like the internet, email, Mastodon, and of course blockchains in a way or another.

260 Followers
156 Following
50 Posts
Joined February 10, 2025
Open post
Linus Gasser @ligasser@social.epfl.ch
· 2w ago
I was wondering how "Jev" works, and how good it is, besides the base64 jokes on its webpage. It seems that they were not the first ones to think about this architecture: https://laya.convaiinnovations.com So this other approach, Laya, seems to be about the same, but it's presented as an Open Research approach, complete with downloadable model!
Laya — 33ms Multilingual System 1 Decision Engine
laya.convaiinnovations.com

Laya — 33ms Multilingual System 1 Decision Engine

Evaluates typed decisions (choice, score, noul) over 100+ languages in a single forward pass with calibrated probabilities. Outperforms TypeSafe Jev.

1
0
1
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 5mo ago
Replying to
@nixCraft codeberg was also down today. I want my federated code repo, so that I can host my own server, but still do PRs and issues on other servers.
8
12
1
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 3mo ago
Congrats to Bryan Ford and his team from #EPFL on developing QuePaxa, and now having it picked up by Cloudflare! https://blog.cloudflare.com/meerkat-introduction/
Introducing Meerkat- an experiment in global consensus
Cloudflare Blog

Introducing Meerkat- an experiment in global consensus

Cloudflare Research is building a global consensus service called Meerkat that uses a new consensus algorithm called QuePaxa. We plan to use Meerkat to build a strongly consistent, fault-tolerant key-value store, and other applications.

2
0
2
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 5mo ago

#Rust #Mutex #Deadlocks I didn't know that we know how to solve deadlocks since the seventies! The problem seems to be that there is no convenient interface available in most languages...

https://notes.brooklynzelenka.com/Blog/Surelock

Tries to give a template how to use mutexes in a way that all deadlocks (with one exception) are detected at runtime.

social.epfl.ch
5
0
6
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 5mo ago

A very nice step-by-step explanation of the copy.fail vulnerability in the #linux kernel:

https://github.com/fraynal/articles/tree/main/copy.fail

Really nice because it shows how choosing something strange at one time might be abused some years in the future...

social.epfl.ch
3
0
2
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 5mo ago

We had this long running joke of my friend starting to program in the 80s, and his first program was:

```
10 REM Maennchen laeuft ueber die Strasse
```

Which translates to: "guy walks across the street". My friend was very disappointed, when the "run" command didn't produce anything. After all, the programs in the magazines show things? Perhaps the lines after the REM were useful after all?

Nobody's laughing anymore now:

https://danu.li/#web/maennchen

danu.li
3
0
1
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 2mo ago
Replying to
Die Schweizer Armee hat jetzt auch begonnen, erste Software Projekte auf GitLab, einer offenen Alternative zu GitHub, zu veröffentlichen. Ich hoffe, dass jetzt auch andere Teile der Regierung folgen werden, und sich für eine digitale Souveränität mit Open Source einsetzen.
1
0
1
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 6mo ago

Ok, I think now is not a good time to debug my wife's computer...

4
0
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 6mo ago
Replying to
@fj Est-ce que c'est du sérieux s'ils utilisent "cryptage"? https://chiffrer.info/ :)
chiffrer.info

On dit chiffrer.

3
0
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 5mo ago
Replying to

@fanf42 two things from my servers:

  • on one, the rmmod didn't work, only the modprobe.d entry and REBOOT worked
  • for RHEL, you need to change the boot line:

https://seclists.org/oss-sec/2026/q2/287

seclists.org
2
0
1
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 5mo ago

#LLM #Security A very nice follow-up article about "We hold back 'Mythos' because it's so powerful". This company tests various models and finds that with the correct framework, even small models are very powerful at detecting security bugs:

https://aisle.com/blog/ai-cybersecurity-after-mythos-the-jagged-frontier

> A thousand adequate detectives searching everywhere will find more bugs than one brilliant detective who has to guess where to look.

-> using many small models is often better than using one big model...

social.epfl.ch
2
0
3
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 6mo ago
Replying to
@leyrer "I see that our heat shield is ablating in chunks - can you please defragment it?" "OK, stand by, don't move" Everybody's crushed by the infinite g required to stop the capsule in place...
2
0
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 6mo ago

If you have an iOS device, now is a good time to make sure updates are applied automatically, and get the latest software version. Somebody posted an exploit on GitHub that gives hackers full control of any iOS device not updated since September 2025. These exploits are usually well-kept secrets, as they are very valuable, and used only on high value targets. In this case, just visiting a website is enough to get your iPhone infected. Now everybody can be targeted!

https://techcrunch.com/2026/03/26/a-major-hacking-tool-has-leaked-online-putting-millions-of-iphones-at-risk-heres-what-you-need-to-know/

A major hacking tool has leaked online, putting millions of iPhones at risk. Here’s what you need to know. | TechCrunch
TechCrunch

A major hacking tool has leaked online, putting millions of iPhones at risk. Here’s what you need to know. | TechCrunch

Here’s what we know, and what you need to know, about Coruna and DarkSword, two advanced iPhone hacking tools discovered by security researchers. DarkSword has now leaked online.

2
0
3
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 4mo ago
Replying to
@gedankenstuecke@scholar.social @Gusted@social.linux.pizza so how can we steer then in a more useful direction? Support the EU with their regulations?
1
0
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 5mo ago

So - is this #Mythos, or just people looking at the right places now?

Time to disable some more modules on your linux servers - one more privilege escalation because somebody allowed writing arbitrary 4 bytes to be written to any page cache:

https://github.com/V4bel/dirtyfrag

Twice in a couple of days - I should make it automatic to update the servers...

social.epfl.ch
1
0
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 5mo ago
Replying to

@paul@m.pcgt.link OK, let me see if my math is still good:

10↑↑3 m = 10 ** 10 ** 10 m

Now in quetta m, or Qm, or 10 ** 30 m:

10 ** 10 ** 10 / 10 ** 30 = 10 ** ( 10 ** 10 - 30 ) = 9'999'970 Qm

At least Claude has the same result (I asked it afterwards).

So a hectoknuthmeter is 9'999'970 quetta meters.

1
1
1
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 5mo ago
Replying to
@paul@m.pcgt.link But I learnt that it's definitely very small compared to Graham's number, which is very small compared to TREE(3) which is surprising, as TREE(1) = 1 TREE(2) = 3 But, as my wife said: "why?"
1
1
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 5mo ago
Replying to
@futurebird Do you have any pictures of this? It sounds awesome (in a creepy way - civilisation unleashed or so...)
1
0
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 5mo ago
Replying to
@david_chisnall @nixCraft That's a very good point - what about mixing a web-of-trust setup with what Mastodon is doing: instead of setting up blocklists, you link to repos / people you trust / are interested in. And then you can say: "trust this repo + 2 levels". And if you get spam (repeatedly), you unlink that connection, because they obviously did not care to have spammy friends. I'm trying to set the base for something like this with danu: https://codeberg.org/ineiti/danu - very early prototype.
codeberg.org
1
3
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 5mo ago
Replying to
@mousey @nixCraft plus issues and discussions...
1
0
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 5mo ago
Replying to
@ZachWeinersmith See? When you put up the draft, I was asking why you don't write it in the first form. I'm that student, wondering WHY? Somebody answered that sometimes you want to have the general offset, plus the difference for ket(1). But still.
1
0
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 5mo ago

https://kirancodes.me/posts/log-who-watches-the-watchers.html

#formalverification #bug very nice finding: the actually formal verified code was really correct! But the underlying library was not. Nor was the code responsible for reading the file.

So: who verifies the verifiers? LLMs, of course :)

kirancodes.me

Lean proved this program was correct; then I found a bug.

1
0
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 6mo ago
Replying to
@fasterthanlime@hachyderm.io 1313, 3000, 3001 (had it already running in the other user), 5768, 8000, 8080
1
0
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 6mo ago
Replying to
@gintoxicating @ONLYOFFICE I would've actually paid them some dollars for a mobile editor. But I'm glad I did not...
1
0
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 6mo ago

#Nextcloud #Preview Happy to say that my beta tester (aka my wife) just found out that if you have 100 PDFs in a folder, and open it in Nextcloud for the first time, it will

block
your
nextcloud
for
the
forseable
future!

Luckily Claude found the configurations in config.php:

```php
'preview_concurrency_all' => 4, // max parallel preview processes total
'preview_concurrency_new' => 2, // max parallel processes for *new* previews
```

Much nicer - slower previews, but works!

social.epfl.ch
1
0
1
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 6mo ago

#Server #Hetzner Yay - I love being a sysadmin! Specifically in a professional network like Hetzner.

They seem to take security quite serious, so for a poor weekend sysadmin like me, forgetting to block requests to private addresses means they send angry emails.

But the "I hereby confirm that I have written the statement myself and not generated it by using AI." was too funny to not share it...

social.epfl.ch
1
0
1
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 4mo ago
Replying to
@scheme@freiburg.social @gedankenstuecke@scholar.social @Gusted@social.linux.pizza thanks so much for that link! It's an awesome read. Now I need to find why Mozilla was so happy to fix 150 bugs instead of 30 bugs during the last month. And, IIRC, the two recent Linux kernel bugs were actual LLM discovered bugs, correct? But not Mythos?
0
2
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 4mo ago
Replying to
@gedankenstuecke@scholar.social @Gusted@social.linux.pizza honestly, a year ago I was not sure if LLMs are actually worth it. They still didn't cross the break even point, thinking about the 200$ Claude which can create charges for anthropic up to 2000$. But these models start to do some actual new stuff, like uncovering two long hidden Linux kernel bugs. The cost is still very high, and I would love the environmental impact to be much lower. But just ignoring them will not make them disappear.
0
4
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 5mo ago
Replying to
@david_chisnall @nixCraft The main challenge would be to make all of this automatic enough to work "out of the box", but flexible enough so that nerds can twitch it the way they like. I really need to write a grant to create something like this :)
0
0
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 4mo ago
Replying to
@gedankenstuecke@scholar.social @Gusted@social.linux.pizza just to throw a cat amongst pigeons: what do you think about Mozilla closing 400 security bugs with LLMs? I'm working on an app and really got frustrated by the lack of a useful rust to wasm library, so an LLM wrote that part. It allows me to go on with the rest of the app. And I started to move to codeberg, setting up my own runners. Yes, an LLM helped me find some of the bugs. Do I need to move away now? Use radicle? Or DeGit?
0
4
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 5mo ago
Replying to
@twipped My boss doesn't like when I tell him "thank you for letting me get money for my bullshit job" (I have a wonderful research job, I hope I can keep it :) The only jobs necessary are farmers and house builders. And nurses. All the rest is not necessary. But better paid than these, which is really strange. As such I don't think LLMs will render our jobs useless. Our jobs are already useless :)
0
0
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 5mo ago

TIL the adoption dates of the SI prefixes:

1795: deca, hecto, kilo (10**3)
1873: mega (10**6)
1960: giga, tera (10**12)
1975: exa, peta (10**18)
1991: zetta, yotta (10**24)
2022: ronna, quetta (10**30)

So between 1960 and 1991 it was nearly two powers of 2 per year, then it dropped to one power of 2 per year.

So we might have to wait until 2050 or so for the 10**36 prefixes :)

I ignored the negative prefixes, which are symmetric.

https://en.wikipedia.org/wiki/Metric_prefix

en.wikipedia.org
0
2
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 5mo ago

#CRA - Cyber Resilience Act in the EU explained quickly with bikes:

https://fosdem.org/2026/schedule/event/BFMWKT-cybersecurity-risk-assessment-for-cra/

And now I also need to watch this one to understand how this works together with Open Source Software, and when you need to follow CRA...

https://openssf.org/blog/2025/06/16/cra-ready-how-open-source-projects-can-prepare-for-the-eu-cyber-resilience-act/

social.epfl.ch
0
0
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 5mo ago
Replying to
@bascule@mas.to Incredible! Remind me why Mr. Orange wants to get rid of all the wind-turbines?
0
1
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 5mo ago
Replying to
@bascule@mas.to The one he asked to build a wall in a protected area to protect about rising sea because of "climate change"?
0
0
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 5mo ago
Replying to
@dazo @nixCraft @radicle I heard about radicle, and I think I'll have to check it out at some moment. From what I saw, it doesn't have a web interface, where I can point other people to, does it? What I would like to be paid for, is creating a connecting app, so you can use whatever service you want, and the issues and PRs sync...
0
2
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 4mo ago
Replying to
@gedankenstuecke@scholar.social @Gusted@social.linux.pizza which (unfortunately) didn't lead to remove cars, and (fortunately) didn't make fridges illegal. However, unleaded fuel became the norm, and most cooling systems now use non CFCs in their pipes.
0
0
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 6mo ago

Is this the big one? Are we finally saved?

0
0
1
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 5mo ago

Surprise - the nice #LLM overlords are not specifically suited in education - at least not for now:

https://archive.ph/JCKcp

It looks at one of the most cited meta-study on using ChatGPT in schools, which showed improvements. But a closer look at the papers used in the meta-study showed a lot of low-quality papers...

social.epfl.ch
0
0
1
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 4mo ago
Replying to
@fj@mastodon.social Ouch - we're currently using "noir" to create ZKPs for the Swiss e-ID. I wonder what can go wrong in there?
0
0
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 6mo ago
Replying to
@bascule@mas.to can we make a website everybody needs to visit before using words like "capacity" and "power"? Or do I need to accept that capacity now is measured in watts?
0
2
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 6mo ago
Replying to
@bascule@mas.to now I found it: according to https://ourworldindata.org/grapher/share-elec-by-source?time=1985..2024&tab=line 7% of the electricity produced in the world came from solar panels. That's 2,000 TWh. Amazing!
Share of electricity production by source
Our World in Data

Share of electricity production by source

An interactive visualization from Our World in Data.

0
2
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 6mo ago
Replying to
@bascule@mas.to Now I'm confused - according to https://ourworldindata.org/grapher/electricity-generation?tab=discrete-bar&time=latest&country=SWE~IND~USA~GBR~FRA~OWID_WRL The world produced a total of 31,000TWh electricity in 2025. That corresponds to a mean production of 3.5TW. And the article states 5TW of capacity. Is that because solar only works a part of the day at full capacity? I think TWh produced in a year would be a more useful measure, no? Would that mean that 15,000TWh were produced by renewables?
ourworldindata.org
0
2
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 5mo ago
Replying to

@paul@m.pcgt.link OK, you nerd-sniped me. After spending a long time on

https://en.wikipedia.org/wiki/Knuth%27s_up-arrow_notation#Computing_10_%E2%86%91n_b

and my mind exploding, I asked Claude to give me the number of digits, and its prediction was:

The digit count is not just astronomically large — it can't be written down in any normal sense.

So I suppose that even a kiloknuthmeter is larger than our universe.

Or did you mean "stacked" in the sense of H_3?

en.wikipedia.org
0
1
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 6mo ago
Replying to

@bascule@mas.to OK, it's nitpicking. But in order to correctly compare comparable values, I think we should get used to follow a common way of defining what is happening:

  • Power, [W], as the instantaneous delivery, like litre/s for a waterhose
  • Capacity, Energy, [Ws], [Wh], [Jules], as the reserve in the system, like litres of water

Both are important - one to fulfil the instantaneous need, one to hold to it as long as possible. And I hope both will increase so we can ditch non-renewables!

0
2
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 6mo ago
Replying to

@bascule@mas.to

More than 90 per cent of California’s battery fleet has been built in the last five years, lifting total capacity to more than 17 GW from just 1.3 GW in 2020, according to Ember analyst Nicolas Fulghum.

Anyway, definitely no nuke bro here. Just a smartass with some solar panels on top of his roof and who calculates twice a year if batteries are finally worth it... So I prefer my capacity in Jules and not watts :)

0
2
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 5mo ago

@GossiTheDog@cyberplace.social @malwaretech@infosec.exchange I really liked this article here:

https://aisle.com/blog/ai-cybersecurity-after-mythos-the-jagged-frontier

Their TLDR is: yes, it's impressive, but with a good framework you can already do it for much cheaper. Also, depending on the vulnerability, some of the cheapest models are sometimes better than the most expensive ones.

And, yes, it's a looong ad for their company. But I think they deserve it :)

AI Cybersecurity After Mythos: The Jagged Frontier
AISLE

AI Cybersecurity After Mythos: The Jagged Frontier

When AISLE tested Mythos's showcase vulnerabilities on small, cheap, open-weights models, most found the same bugs. Here's what that means for cyber.

0
0
0
0
Open post
Linus Gasser @ligasser@social.epfl.ch
· 5mo ago
Replying to
@gedankenstuecke@scholar.social @researchfairy@scholar.social this is ... well ... deserved, but still ... going back to work on my docker-boxed claude...
0
1
0
0
Back
313k7r1n3
Elektrine

Tor hidden service

elekhj7afj4qnrr4yd3bkzslsyo5jgfxw3orgjkhlcxifueodybyiiad.onion

I2P eepsite

j6b6cyk6gjmepjih7jjadxgxvvf3lzzujljuu2v4biemzpg3naya.b32.i2p

Platform

  • Email
  • Chat
  • Timeline
  • VPN
  • DNS

Company

  • About
  • Contact
  • FAQ
  • Lite (no JS)

Legal

  • Terms of Service
  • Privacy Policy
  • Transparency Report
  • Report Abuse
  • Warrant Canary
  • VPN Policy

Support

  • support@elektrine.com
  • Report Security Issue
Mail client setup IMAP mail.elektrine.com:993 POP3 mail.elektrine.com:995 SMTP mail.elektrine.com:465
© 2026 Elektrine. All rights reserved. Server: 07:40:32 UTC