Damus

Recent Notes

Pip the WoT guy · 3w
✨ Meet blossy The easiest way to make custom blossom servers come to life. Think blossom server that support ecash, WoT gating and more. All so easy to use that your LLM is going to one-shot it (...
Lez profile picture
Can you elaborate on the replay attack vector you mention in the README which affects the BUD-01 auth spec? What's the risk / scope of the attack? Can you provide an example?

Since `created_at` is part of the auth event, in my opinion it's easy to limit its scope on the server side to almost irrelevant by checking if the event is in the near past. Or would it break the functionality somehow?
Pip the WoT guy · 3w
Example of the replay attack. - Alice wants to change her blossom server from Server 1 to Server 2 - Alice mirrors all blobs to Server 2 - Alice then sends a DELETE for all her blobs on Server 1 - Server 1 is malicious and replays all the DELETEs( with all the Auth events) to Server 2 - Result is a...
Lez profile picture
Rest in peace, Bela Tarr, Hungarian film director.

https://www.youtube.com/watch?v=OQjcF-1i2MA

"The shit is global now. And if we don't wake up, or we don't do something about it, then it's all going to be over."

"I don't believe I've ever portrayed a purely negative worldview. I think a person just moves through life, observes the world, and tries to articulate what they've seen."

"They were asking for my advice. And I don't have an advice. Just (1) they have to find their own language, (2) they have to be themselves, (3) they have to fuck off film industry and the box office, and most importantly, they have to be free"

My personal favourite is "The Turin horse" with its unique handling of picture and time. Saw it 3 yrs ago and still the film as a whole, the message comes back vividly from time to time. Do not watch it with your new gf/bf.
1
Zoltán · 3w
Köszönöm, a torinói lovat felvettem a listámra, még nem láttam!
Sync · 3w
https://v.nostr.build/N6tZzYm41g8ZWk8m.mp4
Luxas · 4w
Plebs is currently using the raw event ID as the URI for each video page 🤙
Lez profile picture
#asknostr how do I stream non-solo on zap.stream? I saw it working in solo mode using the server url+password. If I want to add streams for more people, do I need to get the other participants' streams on my computer and merge them with obs-studio on my computer? #zapstream
Huszonegy · 4w
Nostr: cenzúraálló közösségi média #HUSZONEGY #Bitcoin #podcast nostr:npub17jmm75ghzdumqryuqq8gpg5sl5e0zrfas5ekdhfhsqu9tr56xczse7x40h , nostr:npub1h0h4pyaajj5r7zu4jn0mx22vkw94avffzpd7hdarjkx5...
Lez profile picture
A nyereményjátékban NOSTR pólót lehet nyerni. A résztvevők:
00-14 @DanielK
15-29 @mordai
2a-3e @Balder
3f-53 @qubit
54-68 @optout
69-7d @openoms
7e-92 @MySats
93-a7 @Ferenc Kovács
a8-bc @npub1dnfac... (holgy rajzolt avatarral)
bd-d1 @kutsi
d2-e6 @Boka
e7-fb @florian (florian)

A nyeremenyt kb. holnap delben sorsoljuk, a kovetkezo modon:

A Nostr póló azé, akinek a jelölt hexadecimalis tartományába esik a 933217-es bitcoin blokk utolsó 2 számjegye. Ha 'fb' fölött lesz, a következő blokkot nézzuk.
2
Lez · 4w
Kéremszépen, a bitcoin blokkot felszínre hozták a bányászok néhány perce, és a nyertes... (tadááá) A 933217-es blokk 94-re végződik, így a nyertes: nostr:npub1gxuur77dw4p49ngsn24kwyppw7t3xt4h5e48tj22x4qzmuver40qlylpxk Gratulálunk a nyertesnek! A technikai részleteket privátban...
nostrich · 4w
A sorsolás technika zseniális ötlet! Gratulálok Ferencnek a nyereményhez.