Do Not Put Your Site Behind Cloudflare If You Don’t Need To

At the time of writing 12:43 UTC on Tue 18 Nov, Cloudflare has taken many sites down. I’m trying to browse the web, but about half of the sites show an error: Most of these sites are not even that big. I expect maybe a few thousand visitors per month. This demonstrates again a simple […]
GoSign Desktop RCE flaws affecting users in Italy
Pasquale “sid” Fiorillo discovered a critical vulnerability in GoSign Desktop = 2.4.0 that allows an attacker to execute arbitrary code on the system through insecure updates and a TLS bypass. The exploit leverages the deactivation of TLS certificate verification when a proxy is configured, together with an update mechanism based on unsigned manifests. The vendor, […]
Cloudflare Global Network experiencing issues

Subscribe to updates for Cloudflare Global Network experiencing issues via email and/or text message. You’ll receive email notifications when incidents are updated, and text message notifications whenever Cloudflare creates or resolves an incident. VIA SMS: Enter mobile number
Cloudflare Global Network experiencing issues
Ahmedabad, India – (AMD) Operational Almaty, Kazakhstan – (ALA) Operational Bangalore, India – (BLR) Operational Bangkok, Thailand – (BKK) Operational Bandar Seri Begawan, Brunei – (BWN) Partial Outage Cebu, Philippines – (CEB) Operational Chandigarh, India – (IXC) Operational Changde, China – (CGD) Operational Chennai, India – (MAA) Operational Chittagong, Bangladesh – (CGP) Operational Colombo, Sri […]
Gemini 3 Pro Model Card [pdf]
Download PDF
The Miracle of Wörgl

Wörgl was the first in town in Austria that effectively managed to eliminate the extreme unemployment caused by the Great Depression. Its local currency experiment was such a success that it gained worldwide attention. That effort became known as the “Miracle of Wörgl .” For the full details, go here. Here is the summary of […]
Okta’s NextJS-0auth troubles

In October, I reported two security issues to Okta’s auth0/nextjs-auth0 project, here and here. The latter bug, an oauth parameter injection, allows for a range of types of abuse, like scoping tokens for unintended services, setting redirect_uri and scope to arbitrary values to leak tokens, and so on. The patch was simple enough, so I […]
How Quake.exe got its TCP/IP stack
How quake.exe got its TCP/IP stack Nov 17, 2025 How quake.exe got its TCP/IP stack Released in June 1996, Quake had to ride three technological shock-waves during its lifetime. Besides the emergence of 3D hardware accelerator cards and the growth of the Internet, an operating system shift put game developers in a tough position. With […]
Langfuse (YC W23) Hiring OSS Support Engineers in Berlin and SF

You need to enable JavaScript to run this app.
The surprising benefits of giving up

Explore You might’ve been told to “hang in there” throughout your childhood, as illustrated by a kitten dangling from a rope. But it turns out that quitting might often be your healthiest option. Researchers have long sought to understand how persistence is linked to personal well-being and human evolution more broadly. One poorly supported theory […]