I noticed today that an update to the #Linux #Zoom client has made it start proactively reading _everything_ written to the X11 clipboard.
If you keep interesting secrets in your clipboard – particularly, if a password manager uses it as a means of getting the password to where it needs to be – this might be a thing you need to know about!
If you keep interesting secrets in your clipboard – particularly, if a password manager uses it as a means of getting the password to where it needs to be – this might be a thing you need to know about!
Some details:
This is Linux Zoom 7.1.5. Previously I had 6.6 installed, which didn't do this.
It appears to only care about the CLIPBOARD selection – the one with Windows-ish UX, which you typically copy to explicitly with a keystroke such as ^C, and paste from with ^V (or similar). It doesn't look at PRIMARY, the selection used for trad X11 "just select in this window then middle-click in the other" copy-paste.
It looks as if it's detecting changes of clipboard via the XFIXES extension, and whenever the clipboard is claimed by a new owner, it immediately sends that client a paste request.
I noticed it because I make heavy use of a "one-shot paste" tool which fulfills a single paste request and then terminates. Handy for filling in lots of fields of a web form – queue up pastes of several different things, then go to each form field in turn and just hit paste, bam bam bam. But today, after an apt update, it doesn't work: my one-shot paste tool terminates as soon as it starts, because (I found out after some debugging) Zoom always requests a paste immediately.
(Regular readers might recall that around this time _last_ year I caught Slack doing something similar, but only when focus entered the Slack window, and also, they had a configuration option to turn it off. A one-shot paste tool seems to be a good way to notice weird things going on in the X server!)
This is Linux Zoom 7.1.5. Previously I had 6.6 installed, which didn't do this.
It appears to only care about the CLIPBOARD selection – the one with Windows-ish UX, which you typically copy to explicitly with a keystroke such as ^C, and paste from with ^V (or similar). It doesn't look at PRIMARY, the selection used for trad X11 "just select in this window then middle-click in the other" copy-paste.
It looks as if it's detecting changes of clipboard via the XFIXES extension, and whenever the clipboard is claimed by a new owner, it immediately sends that client a paste request.
I noticed it because I make heavy use of a "one-shot paste" tool which fulfills a single paste request and then terminates. Handy for filling in lots of fields of a web form – queue up pastes of several different things, then go to each form field in turn and just hit paste, bam bam bam. But today, after an apt update, it doesn't work: my one-shot paste tool terminates as soon as it starts, because (I found out after some debugging) Zoom always requests a paste immediately.
(Regular readers might recall that around this time _last_ year I caught Slack doing something similar, but only when focus entered the Slack window, and also, they had a configuration option to turn it off. A one-shot paste tool seems to be a good way to notice weird things going on in the X server!)
RE: https://mastodon.social/@unfa/117269789668648202
This is the only real problem of Kdenlive: lack of GPU acceleration. If it weren't for that, it would be the greatest free (as in freedom and also price) video editor.
This is the only real problem of Kdenlive: lack of GPU acceleration. If it weren't for that, it would be the greatest free (as in freedom and also price) video editor.
Mastodon
unfa🇺🇦 (@unfa@mastodon.social)
Attached: 2 images
Well, that's gonna be a problem...
#Kdenlive
Yes, the video is 1.5 hours long, but some perspective and color correction should not make it take it 2 days... (24 + 19 hours).
5% CPU usage, 0% GPU usage. PEAK PERFORMANCE.
On the plus…
Well, that's gonna be a problem...
#Kdenlive
Yes, the video is 1.5 hours long, but some perspective and color correction should not make it take it 2 days... (24 + 19 hours).
5% CPU usage, 0% GPU usage. PEAK PERFORMANCE.
On the plus…
#Flock worker calls #police on #InvestigateTV reporter filming public camera installation
https://www.investigatetv.com/2026/09/08/flock-worker-calls-police-investigatetv-reporter-filming-public-camera-installation/
#privacy #surveillance #ALPR
https://www.investigatetv.com/2026/09/08/flock-worker-calls-police-investigatetv-reporter-filming-public-camera-installation/
#privacy #surveillance #ALPR
https://www.investigatetv.com/
Flock worker calls police on InvestigateTV reporter filming public camera installation
Questions about privacy and oversight surrounding Flock Safety's national camer network persist
🖕1
#Revolut confirms customer #DataBreach through fake government requests
https://techcrunch.com/2026/09/12/revolut-confirms-customer-data-breach-through-fake-government-requests/
#cybersecurity #privacy
https://techcrunch.com/2026/09/12/revolut-confirms-customer-data-breach-through-fake-government-requests/
#cybersecurity #privacy
TechCrunch
Revolut confirms customer data breach through fake government requests | TechCrunch
Revolut said it notified affected customers and alerted the relevant government agency, law enforcement, and financial regulators.
🤬3🥰2
non è uno scherzo A/I chiude!
organizziamoci, abbiamo pochi giorni:
1. scaricatevi la posta!
2. cambiate l'email su tutti i servizi online (pagamenti, banche, bollette, ...)
3. controllate non solo @autistici.org ma ogni possibile dominio associato, come "anche.no"
4. scaricatevi i dati del vostro noblogs
5. fatelo sapere alle vostre amicizie
#AutisticiInventati #keepitfree #AI
organizziamoci, abbiamo pochi giorni:
1. scaricatevi la posta!
2. cambiate l'email su tutti i servizi online (pagamenti, banche, bollette, ...)
3. controllate non solo @autistici.org ma ogni possibile dominio associato, come "anche.no"
4. scaricatevi i dati del vostro noblogs
5. fatelo sapere alle vostre amicizie
#AutisticiInventati #keepitfree #AI
🍾1
A lot of my colleagues are concerned that #XMPP could kill all of humanity by the end of this decade. This is not a marketing stunt.
DHH says "The number of Linux distros and projects that have these batty Al policies is baffling. Like rejecting the railroad because you like to pet donkeys. Oh well, more tokens for Omarchy!"
Followed by a screenshot of Redox OS's AI policy which forbids LLM generated contributions.
https://gitlab.redox-os.org/redox-os/redox/-/blob/master/CONTRIBUTING.md?ref_type=heads#ai-policy
Followed by a screenshot of Redox OS's AI policy which forbids LLM generated contributions.
https://gitlab.redox-os.org/redox-os/redox/-/blob/master/CONTRIBUTING.md?ref_type=heads#ai-policy
😁14🔥1🤡1🤣1
Anno fottuto dati de clienti svizzeri da na banca inglese usando la PEC daa polizzia nostra... e se sò pure fottuti tutti i carteggi daa polizzia incluse ciat de n'aggente co la su donna!?
Fateme capì: er mondo sta su intelliggenza artificiale e colonizzazzione de lo spazzio, e noi ciavemo er commissario Lo Gatto che manda messaggini a la moje da la PEC ufficiale che cià "password1" come password?!
Lo dico da senpre che dovemo puntà a l'agricolo in sto paese
https://www.open.online/2026/09/15/revolut-iamnotvillain-attacco-hacker/
Fateme capì: er mondo sta su intelliggenza artificiale e colonizzazzione de lo spazzio, e noi ciavemo er commissario Lo Gatto che manda messaggini a la moje da la PEC ufficiale che cià "password1" come password?!
Lo dico da senpre che dovemo puntà a l'agricolo in sto paese
https://www.open.online/2026/09/15/revolut-iamnotvillain-attacco-hacker/
Open
Non solo Revolut, IAmNotVillain: «Abbiamo compromesso le forze dell’ordine italiane». Rivendicati 147 GB di dati, anche le chat…
Il gruppo di cybercriminali sostiene di aver compromesso per mesi sistemi e account riconducibili alle forze dell’ordine. Nel bottino ci sarebbero documenti, dati personali, calendari e conversazioni private, mentre il caso Revolut potrebbe essere solo una…
😁3
Flock ALPR camera (28.55 GB)
Filesystem images of the partitions on an in-use Flock ALPR camera, including custom Android APK files installed on the device, as well as its recorded media. The data reveals how the devices track both vehicles and people, and demonstrates the fundamental security problem with privacy invading devices like those produced by Flock Safety and their competitors.
https://ddosecrets.org/article/flock-alpr-camera
Help us keep publishing: https://donorbox.org/ddosecrets
Filesystem images of the partitions on an in-use Flock ALPR camera, including custom Android APK files installed on the device, as well as its recorded media. The data reveals how the devices track both vehicles and people, and demonstrates the fundamental security problem with privacy invading devices like those produced by Flock Safety and their competitors.
https://ddosecrets.org/article/flock-alpr-camera
Help us keep publishing: https://donorbox.org/ddosecrets
ddosecrets.org
Flock ALPR camera - Distributed Denial of Secrets
Filesystem images of the partitions on an in-use Flock ALPR camera, including custom Android APK files installed on the device, as well as its recorded media. The data reveals how the devices track bo…
👍4❤3
Android 17 QPR1 is the first release since Android Honeycomb (3.x) adding new APIs for app developers without a release to the Android Open Source Project. The new APIs are currently exclusive to the Pixel OS and aren't available to other Android OEMs.
https://developer.android.com/sdk/api_diff/37.1/changes
https://developer.android.com/sdk/api_diff/37.1/changes
Android
API Differences between 37 and 37.1
JDiff is a Javadoc doclet which generates an HTML report of all the packages, classes, constructors, methods, and fields which have been removed, added or changed in any way, including their documentation, when two APIs are compared.
👎9
Know your rights, know your consumer rights!
They're now all available offline 👇
https://browse.library.kiwix.org/#lang=eng&q=consumer+rights
They're now all available offline 👇
https://browse.library.kiwix.org/#lang=eng&q=consumer+rights
❤2
How the U.S. Shut Down an Italian Privacy Collective
https://tube.kockatoo.org/w/q8hZmJV5iZsLUPf2qzMjip
https://tube.kockatoo.org/w/q8hZmJV5iZsLUPf2qzMjip
Kockatoo Tube
How the U.S. Shut Down an Italian Privacy Collective
Here's this video as an article: https://thelibre.news/autistici-inventati-us-sanctions/ Links: Autistici/Inventati — Who we are: https://www.inventati.org/about U.S. Treasury designation: https://...
🆒2
KDE's goodies 🧸 shop opens its doors!
https://tube.kockatoo.org/w/wNSDG2dYZFALMoX79dVpU4
Check out what will soon be your one-stop location for all KDE-themed merch.
https://merch.kde.org
Our first item, the adorable Konqi soft toy is already available for pre-ordering (if you solved the riddle, congrats! You already know this, but for everybody else...):
https://merch.kde.org/products/konqi-plushie
#merch #toys #plushies #konqi #FreeSoftware
https://tube.kockatoo.org/w/wNSDG2dYZFALMoX79dVpU4
Check out what will soon be your one-stop location for all KDE-themed merch.
https://merch.kde.org
Our first item, the adorable Konqi soft toy is already available for pre-ordering (if you solved the riddle, congrats! You already know this, but for everybody else...):
https://merch.kde.org/products/konqi-plushie
#merch #toys #plushies #konqi #FreeSoftware
Kockatoo Tube
The Konqi Plushy is here!
KDE's goodies 🧸 shop opens its doors! Check out what will soon be your one-stop location for all KDE-themed merch! Our first item, the adorable Konqi soft toy is already available for pre-ordering ...
❤3
Companies have turned just about everything into subscription services that users have to pay for. “They get the subscription and our data,” EFF's @ktrendacosta@mstdn.social said. “It's a win-win for them and a lose-lose for us.” https://www.wired.com/story/people-are-pissed-off-and-ready-to-own-their-shit/
WIRED
People Are Pissed Off and Ready to Own Their Shit
A grassroots live tour by YouTuber Louis Rossmann highlights growing resistance to companies that keep people from controlling their devices.
I wouldn't be where I am today without the formative experiences I had growing up in IRC/forums.
Interacting with people across the world, sharing projects, making friends...
I am also old and wise enough to understand that the nature of the internet has changed and that while some old places still exist, that is not where today's youth are spending time.
But it is not the responsibility of society to contort the web into absurd shapes so some can avoid parenting.
RE: https://digital-strategy.ec.europa.eu/en/news/eu-kids-act-restrict-social-media-platforms-access-children-eu
Interacting with people across the world, sharing projects, making friends...
I am also old and wise enough to understand that the nature of the internet has changed and that while some old places still exist, that is not where today's youth are spending time.
But it is not the responsibility of society to contort the web into absurd shapes so some can avoid parenting.
RE: https://digital-strategy.ec.europa.eu/en/news/eu-kids-act-restrict-social-media-platforms-access-children-eu
Shaping Europe’s digital future
EU KIDS Act to restrict social media platforms’ access to children in the EU
Today, the European Commission has adopted the EU KIDS Act to enhance the online safety of children throughout the Union.
❤5
Scommettiamo che a quest'ora stavate pensando a come organizzare un Linux Day 🥰 👇
https://www.linuxday.it/2026/howto/
@linux @opensource
#Linux #LinuxDay #LinuxDay2026
https://www.linuxday.it/2026/howto/
@linux @opensource
#Linux #LinuxDay #LinuxDay2026
Linux Day
Linux Day 2026: Organizza
Giornata Nazionale per il Software Libero
The #EU #KidsAct proposes #banning #socialmedia for children #under13 and requiring #parentalsupervision for 13- and 14-year-olds. It would also require platforms to remove addictive features and implement age verification. The Act aims to protect minors’ #mentalhealth but faces #criticism regarding #ageverification and potential duplication of existing legislation. https://www.engadget.com/2261071/europes-eu-kids-act-would-ban-social-media-access-for-children-under-13/?eicker.news #tech #news #ainews
Engadget
Europe's EU Kids Act would ban social media access for children under 13 - Engadget
It's the most sweeping proposal yet to limit kids' access to social media.