soc.octade.net is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.

This server runs the snac software and there is no automatic sign-up process.

Admin email
social@octade.net

Search results for tag #github

[?]AA » 🌐
@AAKL@infosec.exchange

New.

"The emails contained links to GitHub repositories masquerading as technical assignments or cryptocurrency-related projects. The instructions encouraged the target to clone the repository and open it in an editor such as VS Code or Cursor. A pre-configured task executes silently when the user opens the repository folder in the IDE, triggering platform-specific loaders that decode embedded payloads on Linux, macOS, and Windows."

Proofpoint: Don't Fear the Repo: UNK_DeadDrop Phishing Campaign Targets Developers to Steal Cryptocurrency proofpoint.com/us/blog/threat-

    [?]Jesus Michał von Gentoo 🏔 (he) » 🌐
    @mgorny@social.treehouse.systems

    Another thing I love about is how applying review comments adds random CRs to a LF-only file. Thank you, , that definitely makes sense.

    github.com/conda-forge/conda-s
    github.com/conda-forge/conda-s

    (Yes, of course they don't show on UI.)

      [?]The New Oil » 🤖 🌐
      @thenewoil@mastodon.thenewoil.org

      [?]The New Oil » 🤖 🌐
      @thenewoil@mastodon.thenewoil.org

      [?]xoron :verified: » 🌐
      @xoron@infosec.exchange

      Enkrypted.Chat

      This is intended to introduce a unique approach in client-side managed secure cryptography. We can avoid registration of any sort.

      Features:

      PWA
      P2P
      End to end encryption
      Signal protocol
      Post-Quantum cryptography
      Multimedia
      File transfer
      Video calls
      Local-first
      No registration
      No installation
      No database
      TURN server

      reddit.com/r/positive_intentio

      Send Messages Securely. No cloud. No trace.
Decentralized P2P encrypted messaging - No setup required

      Alt...Send Messages Securely. No cloud. No trace. Decentralized P2P encrypted messaging - No setup required

        [?]Kev Quirk » 🌐
        @kev@fosstodon.org

        FFS I cannot handle all these @Codeberg issues. Every time I go to do anything over the last week or so, it's shit the bed.

        I know they're having SSH issues, so I switched to HTTPS, but I'm getting internal server errors using HTTPS too.

        I'm so very close to switching back to .

          [?]The New Oil » 🤖 🌐
          @thenewoil@mastodon.thenewoil.org

          [?]knoppix » 🌐
          @knoppix95@mastodon.social

          Discord now enables default end-to-end encryption for voice and video across DMs, group calls, channels and Go Live streams using the open-source DAVE protocol. 🔐
          Externally audited encryption keeps keys on user devices, while unsupported clients are blocked and text messages remain server-accessible. 🛡️

          🔗 cybersecuritynews.com/discord-

            [?]chesheer » 🌐
            @chesheer@mastodon.bsd.cafe

            Мой сонный разум породил подходящий рекламный слоган для в последнее время:
            «Я часть той силы, что вечно обещает SLA, но вечно производит баги».

              [?]The New Oil » 🤖 🌐
              @thenewoil@mastodon.thenewoil.org

              [?]Jesus Michał von Gentoo 🏔 (he) » 🌐
              @mgorny@social.treehouse.systems

              is going great.

              Remember the issue where PRs wouldn't show up on repositories? Well, it turns out it wasn't fixed at all. just "resolved" the incident and is rejecting all reports about it now.

              github.com/conda-forge/amplitu is one example when you can't see the PRs.

              See e.g. news.ycombinator.com/item?id=4

                [?]The New Oil » 🤖 🌐
                @thenewoil@mastodon.thenewoil.org

                [?]The New Oil » 🤖 🌐
                @thenewoil@mastodon.thenewoil.org

                [?]Bill » 🌐
                @Sempf@infosec.exchange

                The GitHub breach last night was worse than reported. 4000 or so private repos for sale on Tor. LAPSUS$ is claiming it's for sale already but it isn't on their release site.

                thehackernews.com/2026/05/gith

                  [?]Joe Steinbring :laravel_bw::vuejs_bw: » 🌐
                  @joe@jws.social

                  Well, that isn't great.

                  "GitHub has confirmed that roughly 3,800 internal repositories were breached after one of its employees installed a malicious VS Code extension.

                  The company has since removed the unnamed trojanized extension from the VS Code marketplace and has secured the compromised device."

                  https://www.bleepingcomputer.com/news/security/github-confirms-breach-of-3-800-repos-via-malicious-vscode-extension/

                  #GitHub #VSCode #Microsoft

                    [?]Aral Balkan » 🌐
                    @aral@mastodon.ar.al

                    RE: techhub.social/@Techmeme/11660

                    Remember this whenever you hear claims that your data is secure on some system or other that you do not own and control.

                    Like all that additional data governments want to gather via the slippery slope of “age verification” in the EU.

                    The only data that is actually secure on a third party is data you haven’t shared with the third party.

                    Hence: data minimisation.

                    Had I mentioned GDMR yet today? Because I feel I might have. But hey, here it is again:

                    ar.al/2018/11/29/gdmr-this-one

                      [?]abadidea [she/her] » 🌐
                      @0xabad1dea@infosec.exchange

                      info on the github breach appears to only be available on xitter 🙄 , I fished it out for you.

                      post from github on May 20th, 2026:

We are sharing additional details regarding our investigation into unauthorized access to GitHub's internal repositories.

Yesterday we detected and contained a compromise of an employee device involving a poisoned VS Code extension. We removed the malicious extension version, isolated the endpoint, and began incident response immediately.

Our current assessment is that the activity involved exfiltration of GitHub-internal repositories only. The attacker’s current claims of ~3,800 repositories are directionally consistent with our investigation so far.

                      Alt...post from github on May 20th, 2026: We are sharing additional details regarding our investigation into unauthorized access to GitHub's internal repositories. Yesterday we detected and contained a compromise of an employee device involving a poisoned VS Code extension. We removed the malicious extension version, isolated the endpoint, and began incident response immediately. Our current assessment is that the activity involved exfiltration of GitHub-internal repositories only. The attacker’s current claims of ~3,800 repositories are directionally consistent with our investigation so far.

                        [?]The New Oil » 🤖 🌐
                        @thenewoil@mastodon.thenewoil.org

                        [?]The New Oil » 🤖 🌐
                        @thenewoil@mastodon.thenewoil.org

                        1 ★ 0 ↺

                        [?]OCTADE » 🌐
                        @octade@soc.octade.net

                        You could do the weblord thing and get a $20/yr cheap VPS then try:

                        Forgejo: https://forgejo.org ...

                        "Forgejo is a Free Software platform for collaboration and productivity in software development. It offers a familiar environment to GitHub users, easy installation and maintenance, and a focus on security, scaling, federation and privacy."
                        ... or cgit, which is very fast and slick for the barebones portal ...

                        ... codeberg has a nice setup (via forgejo) if you don't want to self-host.


                          [?]Jesus Michał von Gentoo 🏔 (he) » 🌐
                          @mgorny@social.treehouse.systems

                          Everyone loves jeering at vibecoded being down all the time. Yet for some reason people still neglect to question making the primary guarantor of their software's supply chain . And the whole attestation nonsense that doesn't really protect against the most likely attack vectors.

                            muddle boosted

                            [?]It's FOSS » 🌐
                            @itsfoss@mastodon.social

                            Netherlands is quietly moving away from GitHub. 🇳🇱👩‍💻

                            itsfoss.com/news/netherlands-f

                              [?]vicash » 🌐
                              @vicash@fosstodon.org

                              How to setup a self-hosted server at home using just and , without using or , so you can migrate your personal projects away from or or vikaskumar.org/2026/05/01/setu

                                [?]The New Oil » 🤖 🌐
                                @thenewoil@mastodon.thenewoil.org

                                [?]Joe Steinbring :laravel_bw::vuejs_bw: » 🌐
                                @joe@jws.social

                                I have been using GitHub (https://github.com/steinbring) for a long time, and I have been seeing a lot of people dunking on it lately (e.g., https://mitchellh.com/writing/ghostty-leaving-github) because of its many failings. I don't think that something like Codeberg (https://codeberg.org) or Bitbucket (https://bitbucket.org) is the answer because there is still a central point of failure and hosting bills to pay. I like the fact that things like ForgeFed (https://forgefed.org) and tangled (https://tangled.org) exist to at least federate comms.

                                I really don't know what the answer is.

                                #Github #ForgeFed #Tangled #Git #SourceControl

                                  [?]Kev Quirk » 🌐
                                  @kev@fosstodon.org

                                  Seriously considering a switch from to after reading the post below, but I'm not sure I have the energy for it.

                                  dbushell.com/2026/04/29/github

                                  kevquirk.com/2026-04-29-1655

                                    [?]The New Oil » 🤖 🌐
                                    @thenewoil@mastodon.thenewoil.org

                                    [?]Phillip Plays » 🌐
                                    @PhillipPlays@retro-gaiden.com

                                    If anybody here happens to have a GitHub account, it would help a great deal to drop Pearl a star. Right now, the project is buried in search despite having a (small but present) user base and being actively maintained.

                                    No pressure of course, but it would help a lot!

                                    github.com/pdschneider/Pearl

                                      [?]FrikiGeekFran [Él/He/Him] » 🌐
                                      @frikigeekfran@tkz.one

                                      This 24 April, GitHub will begin to train his AI Copilot using your data, opt-out now!

                                      - Go to [github.com/settings/copilot]([github.com/settings/copilot).
                                      - In the Privacy section disable "Allow GitHub to use my data for AI model training".

                                      Done :GP_Wilbur:

                                        [?]knoppix » 🌐
                                        @knoppix95@mastodon.social

                                        System76 founder Carl Richell says Colorado’s SB26-051 may be amended to exempt open source software, including OSs, repos, and containers. 🏛️
                                        The change follows advocacy, but wider state and federal proposals still risk verification rules that could limit open access and user control. 🔐

                                        🔗 itsfoss.com/news/colorado-age-

                                          [?]jbz » 🌐
                                          @jbz@indieweb.social

                                          ⭐ Inside GitHub's Fake Star Economy

                                          「 Stars sell for $0.03 to $0.85 each on at least a dozen websites, Fiverr gigs, and Telegram channels - no dark web required
                                          VCs explicitly use stars as sourcing signals: Redpoint found the median star count at seed is 2,850, and firms run automated scrapers to find fast-growing repos 」
                                          awesomeagents.ai/news/github-f

                                            [?]The ol' tealeg 🐡 » 🌐
                                            @tealeg@mastodon.online

                                            @jonn_blanchard pretty sure you’re more likely to get hacked or scammed by visiting these days. The way the world is going, Github will be marked NSFW in most European workplaces.

                                              [?]The New Oil » 🤖 🌐
                                              @thenewoil@mastodon.thenewoil.org

                                              [?]Teh AnKorage ☑️ » 🌐
                                              @ankorage@fe.disroot.org

                                              "Your Boss is an AI Chatbot | Weekly News Roundup" 👀👏

                                              !!! ALL HAIL THE VAN PANTHER !!!

                                              Click on, "Show More" or "Read More" to get the links!

                                              DESCRIPTION - "Today we look at the overuse of AI and ask if a chatbot would be make a better boss than a human, but the therapists asked that about an AI girlfriend. We look at these and the news related to privacy and security."

                                              !!! NOTE !!! This post is best viewed on a PC. Switched To Linux is, “written by a broad spectrum computer consultant to help people learn more about the Linux platform.” This account is a supporter of Switched To Linux and provides convenience posts of thumbnails art, videos and streams.

                                              #SwitchedToLinux #Linux #Windows #Mac #Technology #Tech #AltTech #Privacy #Private #Security #Secure #FOSS #FreeAndOpenSource #FreeAndOpenSourceSoftware #FreeOpenSourceSoftware #YouTube #Odysee #Rumble #BitChute #Locals #Patreon #DLive #Twitch #AltTech #FactCheckTrue #Fediverse #SocialMedia #AI #chatbots #github

                                              !!! Tell us what you think by filling out a "SATISFACTION SURVEY or ABUSE/SPAM REPORT" form from Teh AnKorage !!!

                                              https://cryptpad.disroot.org/form/#/2/form/view/elsOVQUrXAmGuer4kd75JhA3mNELuCj8cTjEUynrZZo/

                                              \*Videos and podcasts may take a considerable amount of time to post. If it is not present, it will be, soon(tm).

                                              #YouTube -
                                              https://www.youtube.com/@SwitchedtoLinux/videos

                                              #Odysee -
                                              https://odysee.com/@switchedtolinux:0?view=content

                                              #Rumble -
                                              https://rumble.com/c/SwitchedToLinux/videos

                                              #Bitchute -
                                              https://www.bitchute.com/channel/uf9hzD216LX0

                                              Keep an eye out for a possible podcast!

                                              PODCAST: https://podcast.switchedtolinux.com

                                                Brian Monroe boosted

                                                [?]abadidea [she/her] » 🌐
                                                @0xabad1dea@infosec.exchange

                                                IT'S HAPPENING

                                                GITHUB, THE FIRST ENTERPRISE CLOUD SOLUTION TO REACH ZERO NINES RELIABILITY

                                                mrshu.github.io/github-statuse

                                                uptime graph reading: 95 incidents in last 90 days - 89.91% uptime

                                                Alt...uptime graph reading: 95 incidents in last 90 days - 89.91% uptime

                                                classic meme image: "it's happening" with Ron Paul laser show

                                                Alt...classic meme image: "it's happening" with Ron Paul laser show

                                                  [?]Tuta » 🌐
                                                  @Tutanota@mastodon.social

                                                  🚨 OPT OUT & say NO to using your interaction data to train & improve its AI models. 🚨 

                                                  GitHub is the next company to choose to opt you into having your data used - by default. 🚩

                                                  Opt out in Settings --> Copilot --> Features.

                                                  Under "Allow GitHub to use my data for AI model training" -→ Disabled.

                                                  It recently announced that if you do not opt out before April 24th, it will use your interaction data when using Copilot.

                                                  GitHub users -Opt out now. Screenshot of GitHub CoPilot Privacy Settings. Allow GitHub to use my data to for AI model training.

                                                  Alt...GitHub users -Opt out now. Screenshot of GitHub CoPilot Privacy Settings. Allow GitHub to use my data to for AI model training.

                                                  Opt out in Settings --> Copilot.

                                                  Alt...Opt out in Settings --> Copilot.

                                                  Click Disabled.

                                                  Alt...Click Disabled.

                                                  Features --> Privacy ---> Under Allow GitHub to use my data for AI model training -→ Click enabled.

                                                  Alt...Features --> Privacy ---> Under Allow GitHub to use my data for AI model training -→ Click enabled.

                                                    Back to top - More...