Skip to content
  • Hjem
  • Seneste
  • Etiketter
  • Populære
  • Verden
  • Bruger
  • Grupper
Temaer
  • Light
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Kollaps
FARVEL BIG TECH
  1. Forside
  2. Ikke-kategoriseret
  3. Cloudflare just published a vibe coded blog post claiming they implemented Matrix on cloudflare workers.

Cloudflare just published a vibe coded blog post claiming they implemented Matrix on cloudflare workers.

Planlagt Fastgjort Låst Flyttet Ikke-kategoriseret
103 Indlæg 71 Posters 0 Visninger
  • Ældste til nyeste
  • Nyeste til ældste
  • Most Votes
Svar
  • Svar som emne
Login for at svare
Denne tråd er blevet slettet. Kun brugere med emne behandlings privilegier kan se den.
  • h5e@tech.lgbtH h5e@tech.lgbt

    @JadedBlueEyes They updated their post, it now says Synapse instead of Tuwunel.

    jadedblueeyes@tech.lgbtJ This user is from outside of this forum
    jadedblueeyes@tech.lgbtJ This user is from outside of this forum
    jadedblueeyes@tech.lgbt
    wrote sidst redigeret af
    #86

    @h5e https://tech.lgbt/@JadedBlueEyes/115968861622285804

    h5e@tech.lgbtH 1 Reply Last reply
    0
    • jadedblueeyes@tech.lgbtJ jadedblueeyes@tech.lgbt

      Cloudflare just published a vibe coded blog post claiming they implemented Matrix on cloudflare workers. They didn't, their post and README is AI generated and the code doesn't do any of the core parts of matrix that make it secure and interoperable. Instead it's littered with 'TODO: Check authorisation' and similar

      https://blog.cloudflare.com/serverless-matrix-homeserver-workers/

      amd@gts.amd.imA This user is from outside of this forum
      amd@gts.amd.imA This user is from outside of this forum
      amd@gts.amd.im
      wrote sidst redigeret af
      #87

      @JadedBlueEyes thank you for your work on continuwuity. An actually good matrix implementation.

      1 Reply Last reply
      0
      • jadedblueeyes@tech.lgbtJ jadedblueeyes@tech.lgbt

        Cloudflare just published a vibe coded blog post claiming they implemented Matrix on cloudflare workers. They didn't, their post and README is AI generated and the code doesn't do any of the core parts of matrix that make it secure and interoperable. Instead it's littered with 'TODO: Check authorisation' and similar

        https://blog.cloudflare.com/serverless-matrix-homeserver-workers/

        gossithedog@cyberplace.socialG This user is from outside of this forum
        gossithedog@cyberplace.socialG This user is from outside of this forum
        gossithedog@cyberplace.social
        wrote sidst redigeret af
        #88

        @JadedBlueEyes lol

        1 Reply Last reply
        0
        • jadedblueeyes@tech.lgbtJ jadedblueeyes@tech.lgbt

          @h5e https://tech.lgbt/@JadedBlueEyes/115968861622285804

          h5e@tech.lgbtH This user is from outside of this forum
          h5e@tech.lgbtH This user is from outside of this forum
          h5e@tech.lgbt
          wrote sidst redigeret af
          #89

          @JadedBlueEyes oh sorry I missed that!

          h5e@tech.lgbtH 1 Reply Last reply
          0
          • h5e@tech.lgbtH h5e@tech.lgbt

            @JadedBlueEyes oh sorry I missed that!

            h5e@tech.lgbtH This user is from outside of this forum
            h5e@tech.lgbtH This user is from outside of this forum
            h5e@tech.lgbt
            wrote sidst redigeret af
            #90

            @JadedBlueEyes ah we posted around the same time. I did check 😅

            1 Reply Last reply
            0
            • jadedblueeyes@tech.lgbtJ jadedblueeyes@tech.lgbt

              Cloudflare just published a vibe coded blog post claiming they implemented Matrix on cloudflare workers. They didn't, their post and README is AI generated and the code doesn't do any of the core parts of matrix that make it secure and interoperable. Instead it's littered with 'TODO: Check authorisation' and similar

              https://blog.cloudflare.com/serverless-matrix-homeserver-workers/

              eflex@social.spejset.orgE This user is from outside of this forum
              eflex@social.spejset.orgE This user is from outside of this forum
              eflex@social.spejset.org
              wrote sidst redigeret af
              #91

              @JadedBlueEyes I am so glad we are well invested, giving all of the moneys to Cloudflare.

              1 Reply Last reply
              0
              • jadedblueeyes@tech.lgbtJ jadedblueeyes@tech.lgbt

                This is a core part of the protocol, that's not exactly simple (https://spec.matrix.org/v1.17/server-server-api/#authorization-rules)

                They just have TODO comments, and happily accept anything, even if it's blatantly forged

                joshbal4@m.fa.glJ This user is from outside of this forum
                joshbal4@m.fa.glJ This user is from outside of this forum
                joshbal4@m.fa.gl
                wrote sidst redigeret af
                #92

                @JadedBlueEyes it’s post-quantum security: if you observe it it’s not there

                1 Reply Last reply
                0
                • jadedblueeyes@tech.lgbtJ jadedblueeyes@tech.lgbt

                  Cloudflare just published a vibe coded blog post claiming they implemented Matrix on cloudflare workers. They didn't, their post and README is AI generated and the code doesn't do any of the core parts of matrix that make it secure and interoperable. Instead it's littered with 'TODO: Check authorisation' and similar

                  https://blog.cloudflare.com/serverless-matrix-homeserver-workers/

                  lappenjammerdiezweite@social.vivaldi.netL This user is from outside of this forum
                  lappenjammerdiezweite@social.vivaldi.netL This user is from outside of this forum
                  lappenjammerdiezweite@social.vivaldi.net
                  wrote sidst redigeret af
                  #93

                  @JadedBlueEyes Is this "blue screen of death" cloudflare?

                  1 Reply Last reply
                  0
                  • ddritter@neopaquita.esD ddritter@neopaquita.es

                    @JadedBlueEyes From "vibe coding" to "vibe security".

                    bumbervevo@easymode.imB This user is from outside of this forum
                    bumbervevo@easymode.imB This user is from outside of this forum
                    bumbervevo@easymode.im
                    wrote sidst redigeret af
                    #94

                    @DDRitter@neopaquita.es @JadedBlueEyes@tech.lgbt puts a paper plate on top of your server
                    Yeah that feels secure enough

                    1 Reply Last reply
                    0
                    • bitofabother@swingset.socialB bitofabother@swingset.social

                      @petunia @JadedBlueEyes so like, on an emotional level I understand why people hate ORMs, but on a "people are very bad at databases" level ..................

                      womble@infosec.exchangeW This user is from outside of this forum
                      womble@infosec.exchangeW This user is from outside of this forum
                      womble@infosec.exchange
                      wrote sidst redigeret af
                      #95

                      @bitofabother in fairness, people are also very bad at ORMs...

                      1 Reply Last reply
                      0
                      • tauon@possum.cityT tauon@possum.city

                        @JadedBlueEyes@tech.lgbt

                        I’m not gonna be trusting anything Cloudflare after this.
                        as if you should've been doing this in the first place

                        apophis@kill-corporations.enterprisesA This user is from outside of this forum
                        apophis@kill-corporations.enterprisesA This user is from outside of this forum
                        apophis@kill-corporations.enterprises
                        wrote sidst redigeret af
                        #96
                        @tauon @JadedBlueEyes true but this is the giant rock excavator hitting a whole new substrate of rock bottom
                        1 Reply Last reply
                        0
                        • jadedblueeyes@tech.lgbtJ jadedblueeyes@tech.lgbt

                          Cloudflare just published a vibe coded blog post claiming they implemented Matrix on cloudflare workers. They didn't, their post and README is AI generated and the code doesn't do any of the core parts of matrix that make it secure and interoperable. Instead it's littered with 'TODO: Check authorisation' and similar

                          https://blog.cloudflare.com/serverless-matrix-homeserver-workers/

                          fsoc@infosec.exchangeF This user is from outside of this forum
                          fsoc@infosec.exchangeF This user is from outside of this forum
                          fsoc@infosec.exchange
                          wrote sidst redigeret af
                          #97

                          @JadedBlueEyes

                          Thank you for bringing your attention to this matter.

                          This #slopshard

                          1 Reply Last reply
                          0
                          • jadedblueeyes@tech.lgbtJ jadedblueeyes@tech.lgbt

                            Oh look, they’re trying to cover up what they did too

                            https://github.com/nkuntz1934/matrix-workers/commit/2d3969dd5e795caa3641d0e237e2b52ca0502463

                            Archive link for posterity:

                            https://web.archive.org/web/*/https://github.com/nkuntz1934/matrix-workers/commit/2d3969dd5e795caa3641d0e237e2b52ca0502463

                            bredroll@mas.toB This user is from outside of this forum
                            bredroll@mas.toB This user is from outside of this forum
                            bredroll@mas.to
                            wrote sidst redigeret af
                            #98

                            @JadedBlueEyes did anyone fork thier repo?

                            1 Reply Last reply
                            0
                            • jadedblueeyes@tech.lgbtJ jadedblueeyes@tech.lgbt

                              For those of you that don't know, I develop https://continuwuity.org - a Rust based Matrix homeserver that actually works, and that you can run on a Raspberry Pi, rather than someone else's centralized cloud infrastructure

                              ariadne@social.treehouse.systemsA This user is from outside of this forum
                              ariadne@social.treehouse.systemsA This user is from outside of this forum
                              ariadne@social.treehouse.systems
                              wrote sidst redigeret af
                              #99

                              @JadedBlueEyes does it scale? does it have the ability to delete CSAM when stupid edgelords device to upload it to your homeserver and then get you swatted?

                              as always I want to believe there is a usable matrix homeserver... but it seems there is always a catch.

                              1 Reply Last reply
                              0
                              • jadedblueeyes@tech.lgbtJ jadedblueeyes@tech.lgbt

                                Cloudflare just published a vibe coded blog post claiming they implemented Matrix on cloudflare workers. They didn't, their post and README is AI generated and the code doesn't do any of the core parts of matrix that make it secure and interoperable. Instead it's littered with 'TODO: Check authorisation' and similar

                                https://blog.cloudflare.com/serverless-matrix-homeserver-workers/

                                peturdainn@mastodon.socialP This user is from outside of this forum
                                peturdainn@mastodon.socialP This user is from outside of this forum
                                peturdainn@mastodon.social
                                wrote sidst redigeret af
                                #100

                                @JadedBlueEyes I stopped reading after:
                                "But there is a "tax" to running it. Traditionally, operating a Matrix homeserver has meant accepting a heavy operational burden. You have to provision virtual private servers (VPS), tune PostgreSQL for heavy write loads, manage Redis for caching, configure reverse proxies, and handle rotation for TLS certificates. It’s a stateful, heavy beast that demands to be fed time and money, whether you’re using it a lot or a little."

                                Mine runs on a small NAS 🤷‍♂️

                                1 Reply Last reply
                                0
                                • jadedblueeyes@tech.lgbtJ jadedblueeyes@tech.lgbt

                                  Cloudflare just published a vibe coded blog post claiming they implemented Matrix on cloudflare workers. They didn't, their post and README is AI generated and the code doesn't do any of the core parts of matrix that make it secure and interoperable. Instead it's littered with 'TODO: Check authorisation' and similar

                                  https://blog.cloudflare.com/serverless-matrix-homeserver-workers/

                                  saikoujya@mastodon.socialS This user is from outside of this forum
                                  saikoujya@mastodon.socialS This user is from outside of this forum
                                  saikoujya@mastodon.social
                                  wrote sidst redigeret af
                                  #101

                                  @JadedBlueEyes internet is dead

                                  1 Reply Last reply
                                  0
                                  • jadedblueeyes@tech.lgbtJ jadedblueeyes@tech.lgbt

                                    Cloudflare just published a vibe coded blog post claiming they implemented Matrix on cloudflare workers. They didn't, their post and README is AI generated and the code doesn't do any of the core parts of matrix that make it secure and interoperable. Instead it's littered with 'TODO: Check authorisation' and similar

                                    https://blog.cloudflare.com/serverless-matrix-homeserver-workers/

                                    legit_spaghetti@mastodo.neoliber.alL This user is from outside of this forum
                                    legit_spaghetti@mastodo.neoliber.alL This user is from outside of this forum
                                    legit_spaghetti@mastodo.neoliber.al
                                    wrote sidst redigeret af
                                    #102

                                    @JadedBlueEyes So, in layman's terms, does this mean they claimed they did a thing but did not actually do the thing, and no one checked whether they did the thing before they published the blog claiming they did the thing?

                                    1 Reply Last reply
                                    0
                                    • joepie91@fedi.slightly.techJ joepie91@fedi.slightly.tech

                                      @JadedBlueEyes This is almost a minor criticism in comparison to all the other crap, but I am so sick of companies calling things 'serverless' when what they really mean is "servers, but only ours and they're really opaquely billed and impossible to replace with someone else's servers so you're stuck with us, and also they're managed in a totally custom way so none of your normal sysadmin skills are portable to it but you still have to learn how to manage it"

                                      lunaphied@provably.onlineL This user is from outside of this forum
                                      lunaphied@provably.onlineL This user is from outside of this forum
                                      lunaphied@provably.online
                                      wrote sidst redigeret af
                                      #103

                                      @JadedBlueEyes @joepie91 we've just gone back to managed databases again: overpriced, billed by metrics that aren't easy to price, and totally impossible to manage.

                                      1 Reply Last reply
                                      0
                                      • simonjust@mstdn.dkS simonjust@mstdn.dk shared this topic
                                      Svar
                                      • Svar som emne
                                      Login for at svare
                                      • Ældste til nyeste
                                      • Nyeste til ældste
                                      • Most Votes


                                      • Log ind

                                      • Har du ikke en konto? Tilmeld

                                      • Login or register to search.
                                      Powered by NodeBB Contributors
                                      Graciously hosted by data.coop
                                      • First post
                                        Last post
                                      0
                                      • Hjem
                                      • Seneste
                                      • Etiketter
                                      • Populære
                                      • Verden
                                      • Bruger
                                      • Grupper