Buenos dรญas!
Monday assorted links:
GitHub - jonasstrehle/supercookie: โ ๏ธ Browser fingerprinting via favicon!
Supercookie uses favicons to assign a unique identifier to website visitors. Unlike traditional tracking methods, this ID can be stored almost persistently and cannot be easily cleared by the user.
๐ https://github.com/jonasstrehle/supercookie
bordalix
bordalix@joaobordalo.com
npub1vt80...8cxv
Moving pixels @ArkLabs
Notes (20)
ะะพะฑัะฐะต ัะฐะฝััะฐ!
Sunday assorted links:
How to \officially\ deprecate methods with Node.js utilities
If you maintain a Node.js library or framework that's consumed by people downstream, you know the pain of introducing breaking changes and deprecating existing functionality. People get mad very quickly and the only solution is to communicate very early that things might change or will disappear in a future version.
๐ https://www.stefanjudis.com/today-i-learned/deprecate-method-in-node-js/
Guten Morgen!
Saturday assorted links:
Search the Epstein Files
Search the Epstein Files
๐ https://searchepsteinfiles.com/
---
PUBPAY.me - Request and receive Lightning payments on Nostr
Whether you're collecting donations, splitting bills, or selling services, PubPay lets you create payment requests that can be paid with just a few clicks.
๐ https://pubpay.me
---
Handy
Handy is a cross platform, open-source, speech-to-text application for your computer
๐ https://handy.computer/
---
Publish Youtube Music track as music status on nostr via NIP7 extension
Just paste this code into your browser console
๐ https://gist.github.com/v0l/8b205248fd670018d60711d7d58edb0a
Good Morning!
Friday assorted links:
GitHub - jermanuts/bad-opsec: Collection of links on bad opsec
The best way to learn about opsec is to learn how people fail.
๐ https://github.com/jermanuts/bad-opsec
---
Randomness Testing Guide
Test the randomness of random number generators.
๐ https://random.tastemaker.design/
Namaste!
Wednesday assorted links:
Pikaday
A friendly guide to front-end date pickers!
๐ https://pikaday.dbushell.com/
---
The overengineered Solution to my Pigeon Problem :: Max Nagy
TL;DR: I built a wifi-equipped water gun to shoot the pigeons on my balcony, controlled over the internet by a python script running openCV reading the camera image of my old iPhone.
๐ https://maxnagy.com/posts/pigeons/
Buenos dรญas!
Tuesday assorted links:
Recommend | book.sv
Input books you've read and receive recommendations on what to read next from our model. Only books that meet a popularity threshold are included in the search results and generated recommendations
๐ https://book.sv/
---
S2, the durable stream API
The serverless API for unlimited, durable, real-time streams
๐ https://s2.dev/
Bonjour!
Monday assorted links:
Image Compare Web Component
A tiny, zero-dependency web component for comparing two images using a slider. Built with a focus on accessibility, performance, and progressive enhancement.
๐ https://image-compare-component.netlify.app/
---
iOS Icon Gallery
Showcasing beautiful icon designs from the iOS App Store
๐ https://www.iosicongallery.com/
---
PingStalker โ Advanced Network & Port Scanner
PingStalker is the ultimate toolkit for the Wi-Fi and network engineer.
๐ https://www.pingstalker.com/
Buenos dรญas!
Sunday assorted links:
Mapped: Writing Systems of the World
The Latin alphabet dominates global use with over 4 billion users. But what other writing systems exist around the world?
๐ https://www.visualcapitalist.com/mapped-writing-systems-of-the-world/
Bom dia!
Saturday assorted links:
MuSig 2 Explained
Schnorr multisignatures in 2 rounds instead of 3 -> no malleability, DoS-resistant, and secure against rogue-key attacks.
๐ https://stacker.news/items/1277093
---
GitHub - archistico/ShadeOfColor2
A simple cross-platform tool to hide files inside PNG images
๐ https://github.com/archistico/ShadeOfColor2
Good Morning!
Friday assorted links:
I may have found a way to spot U.S. at-sea strikes before theyโre announcedโusing public satellite heat data : OSINT
Over the last month the U.S. has carried out several interdiction strikes on narco-trafficking boats in the Eastern Pacific and Caribbean. These are usually acknowledged the next day, described vaguely as โin international waters,โ with no coordinates. Iโve been experimenting with NASAโs VIIRS thermal anomaly feed (FIRMS) to see if any of these events are visible as they happen.
๐ https://old.reddit.com/r/OSINT/comments/1opjjyv/i_may_have_found_a_way_to_spot_us_atsea_strikes/
---
HTML Slides with notes
HTML Slides with notes ... in 22 lines of JavaScript
๐ https://nbd.neocities.org/slidepresentation/Slide%20presentation%20about%20slides
ะะพะฑัะฐะต ัะฐะฝััะฐ!
Thursday assorted links:
BitcoinScoresby โ Bitcoin Posters
Retro movie posters turned into Bitcoin ads?!?!
๐ https://bitcoinscoresby.com/
Nว hวo!
Wednesday assorted links:
Your privacy friendly ISP and Domain Registrar | IncogNET
IncogNET is a privacy-focused ISP and Domain Registrar with a commitment to free speech and privacy. Explore our web hosting, VPN, domain registration, and email hosting services today. Accepts Lightning
๐ https://incognet.io/
---
Njalla โ Worlds most notorious privacy provider for domains, VPS' and VPNs.
Accepts Lightning
๐ https://njal.la/
---
Suites | Unit Testing Framework for Dependency Injection
Suites automates mocking and simplifies test setup for dependency injection frameworks like NestJS and InversifyJS, reducing boilerplate code.
๐ https://suites.dev/
Namaste!
Tuesday assorted links:
Pagefind | Pagefind โ Static low-bandwidth search at scale
Pagefind is a fully static search library that aims to perform well on large sites, while using as little of your usersโ bandwidth as possible, and without hosting any infrastructure.
๐ https://pagefind.app/
---
a11y.cssโ documentation | a11y.css
Pronounced \Alix\. This CSS file intends to warn developers about possible risks and mistakes that exist in HTML code. It can also be used to roughly evaluate a site's quality by simply including it as an external stylesheet.
๐ https://ffoodd.github.io/a11y.css/
---
Port of Linux to WebAssembly
The Linux kernel, booting in your browser, powered by WebAssembly (Wasm). The included programs (shell and standard commands) are provided by BusyBox, backed by a musl libc implementation. The terminal emulator is provided by Xterm.js. This is a proof-of-concept to get a discussion started, not a stable nor a secure system.
๐ https://joelseverin.github.io/linux-wasm/
---
A heatmap diff viewer for code reviews
Pull request viewer that color-codes every diff line/token by how much human attention it probably needs
๐ https://0github.com/
Buenos dรญas!
Monday assorted links:
Youโre loading fonts wrong (and itโs crippling your performance) - Jono Alderson
Fonts are one of the most visible, most powerful parts of the web. And yet: almost everyone gets them wrong.
๐ https://www.jonoalderson.com/performance/youre-loading-fonts-wrong/
---
The Naked Man Problem and the Secret to Never Forgetting Numbers
Crap. Where did I put my stuff? Every time I go to the gym, itโs the same thing - a sea of identical lockers. And I have no idea which is mine. I canโt solve this by picking a favorite, because thereโs always a potential naked man standing next to...
๐ https://ninjasandrobots.com/the-naked-man-problem-and-the-secret-to-never-forgetting-numbers
---
Your URL Is Your State
A deep dive into how thoughtful URL design can enhance usability, shareability, and performance. Learn what state belongs in URLs, common pitfalls to avoid, and practical patterns for modern web apps.
๐ https://alfy.blog/2025/10/31/your-url-is-your-state.html
---
Security vulnerabilities in AI-powered web browsers
AI-enabled browsers add an agentic layer across email, calendars, and connected apps. Or just allow mechanisation of a web browser via AI. Having been a routine user of web browser automation tools since 15+ years, I appreciate the new potential. However, it is important to note that the web platform, and web browsers, are complicated beasts. The effect on user's security and privacy is that the threat model shifts: attacks pivot on how intent is parsed and which inputs the agent trusts.
๐ https://blog.lukaszolejnik.com/security-vulnerabilities-in-ai-powered-web-browsers/
Buenos dรญas!
Sunday assorted links:
Start implementing view transitions on your websites today - Piccalilli
The View Transition API allows us to animate between two states with relative ease. I say relative ease, but view transitions can get quite complicated fast.
๐ https://piccalil.li/blog/start-implementing-view-transitions-on-your-websites-today/
---
GitHub - jofpin/brash:
Chromium Browser DoS Attack via document.title Exploitation
๐ https://github.com/jofpin/brash
Namaste!
Friday assorted links:
GitHub - dtonon/fevela
A Nostr social client that give you back full control of your attention and time with a innovative interface - dtonon/fevela
๐ https://github.com/dtonon/fevela
---
ekoAcademic
ekoAcademic is a small tool that generates short, accessible audio summaries of recent academic papers.
๐ https://www.wadamczyk.io/projects/ekoacademic/index.html
Namaste!
Thursday assorted links:
Using Homebrew to Distribute Early Access Binaries from Private Github Repositories :: LGUG2Z
๐ https://lgug2z.com/articles/using-homebrew-to-distribute-early-access-binaries-from-private-github-repositories/
---
Recovering a Wallet from an Incomplete Seed Phrase | 0xkato
๐ https://www.0xkato.xyz/Recovering-Wallet/
---
TEE.fail: Breaking Trusted Execution Environments via DDR5 Memory Bus Interposition
In this work, we show that the security guarantees of modern TEE offerings by Intel and AMD can be broken cheaply and easily, by building a memory interposition device that allows attackers to physically inspect all memory traffic inside a DDR5 server
๐ https://tee.fail/
Buenos dรญas!
Wednesday assorted links:
GeoUtil โ Free Online Map & Geography Tools
All-in-one online geography toolkit. Measure distance & area, convert GeoJSON, TopoJSON, JSON, merge or minify files, and more โ fast, free, and browser-based.
๐ https://geoutil.com/
---
The Linux Boot Process: From Power Button to Kernel | 0xkato
๐ https://www.0xkato.xyz/linux-boot/
---
FilePizza โข Your files, delivered.
Peer-to-peer file transfers in your web browser.
๐ https://file.pizza/
---
Springs and Bounces in Native CSS โข Josh W. Comeau
The โlinear()โ timing function is a game-changer; it allows us to model physics-based motion right in vanilla CSS! That said, there are some limitations and quirks to be aware of. Iโve been experimenting with this API for a while now, and in this post, Iโll share all of the tips and tricks Iโve learned for using it effectively.
๐ https://www.joshwcomeau.com/animation/linear-timing-function/
---
402.markets | API marketplace
API marketplace powered by Lightning Network and Cashu tokens
๐ https://402.markets/
ะะพะฑัะฐะต ัะฐะฝััะฐ!
Tuesday assorted links:
GitHub - willybrauner/interpol
Interpolates values with a GSAP-like API ~ 3kB
๐ https://github.com/willybrauner/interpol
---
Advancements in Bitcoin and Lightning Wallets
๐ https://opensats.org/blog/advancements-in-bitcoin-and-lightning-wallets
Bom dia!
Monday assorted links:
The Bitcoin Whitepaper Footnotesโ
Examining Satoshi's References and beyond for breadcrumbsย
๐ https://stacker.news/items/1265795
---
The present and potential future of progressive image rendering - JakeArchibald.com
Let's dive straight into the kinds of progressive rendering that are currently available natively in browsers.
๐ https://jakearchibald.com/2025/present-and-future-of-progressive-image-rendering/