I just don't get it. Why does a game studio care about, and have better hardware attestation than most nation states?
moonpiedumplings
Guix does not have that same churn by any stretch, but, would still offer all the wonderful features of NixOS if you are willing to do the work of setting up any packages yourself, that do not already exist, and that is not at all removed from my to do list
One of Guix's strengths, and one of the things that appeals to me over Nix, is importers:
https://guix.gnu.org/manual/1.5.0/en/html_node/Invoking-guix-import.html
You can import packages from go, ruby, python, rust, or a few other languages really easily. Just guix import packagerepo and boom you have a package. This makes it significantly easier to get packages from those ecosystems.
Now, Nix has unofficial equivalent functionality... but it's a mess and spread over 30 different projects, many of which would frustratingly only work with flakes (which are "experimental" and "not officiallly supported" despite the fact their extreme popularity), or only work with channels.
I remember this pain point when trying to import a python package with nix. The only "just works" way of doing it that only worked via channels... and was deprecated, with the repo being archived. There was this new, non deprecated way by the same group of people... that didn't support a specific feature I needed to get the python package to work. And to the best of my understanding, still doesn't.
Guix may not move as fast as Nix when it comes to packaging or innovation, but they have a certain "coherency", where everything is together, integrated, well documented, and guaranteed to work.
I feel obligated to give some context about why they are excited, since the article seems to be targeting people who understand. Specifically, this part:
"blue screen of the death" or "Oops"... except that it's just an error! It doesn't take your whole system away with it, only the particular operations that was going on.
There are two theoretical kernel architectures: Microkernel, and monolithic kernel.
The primary advantage of a monolithic kernel is performance. All modern operating systems a monolithic kernels [1]. The big advantage of a microkernel is security.
With a monolithic kernel, almost everything runs privileged, in the kernel. Hardware interactions, drivers, firewalls, various processes. The big disadvantage of this, is that if any of those components have a bug and crash, it bluescreens.
The best example was the crowdstrike blue screen of death issues: https://en.wikipedia.org/wiki/2024_CrowdStrike-related_IT_outages . Crowdstrike runs at the kernel level (kind of like kernel level anticheat), and it had a bug, causing BSOD's everywhere. Of course, this is a fairly drastic example. Anecdotally, I have noticed in an increase in random BSOD's from people who have kernel level anticheat installed. Of course, the average user never whines and you have to pull this out of them, they just treat this as "normal".
With a microkernel, things are different. Everything is separated out, running as less privileged processes. This has big security implications since, it means that pwning one component of the Linux kernel, wouldn't own the whole kernel. That has been how so many of the recent Linux kernel root exploits have happened, where subsystems, rather than the entire kernel are vulnerable. With a microkernel, the possibility of an exploit in say, the containerization/sandboxing features, wouldn't lead to a root exploit on the host. SImilarly, components like device or filesystem drivers could be put in userspace as well, enabling much better security and isolation.
[1], well, sometimes people try to argue that the difference between a microkernel and a monolithic kernel is about codebase organization, optimizing for development velocity. Windows, and Mac are called "hybrid kernels", because the core kernel code is separated from things like drivers, enabling people to develop them separately. This used to be a bigger deal back in the day, since it enabled faster development for things like peripherals.
But there is no security or correctness benefit, so I consider them a monolithic kernel. In addition to that, "true" monolithic kernels (like Linux) have since innovated. While being open source may not be a big deal to us today, it was an innovation on it's own, that enabled people to include the firmware/drivers in the kernel directly (albeit, sometimes as binary blobs distributed in linux-firmware). In addition to that, there is also dkms for loading out of tree kernel modules, or epbf which enables you to run arbitrary code with ring 0 level privileges... but in such a way that it also doesn't hard crash the system when there is a bug.
Idk..
Maybe you can use a VPN that acts a public ipv4 address so you can get to ipv4 only stuff reliably?
or you can use one of the public free 6to4 gateways?
Could it be that rubygems does not support ipv6?
Some sites, even big sites don't support it: https://areweipv6yet.com/
According to the above, Github doesn't properly support it yet.
-
Preinstall wine
-
Enable wine as the default app to open exes,.
then, when you double click on an exe you downloaded in your file explorer, it will launch and open.
Many of the user friendly Linux distros do this.
Of course there are caveats, in that if you run an installer, it might not show up in your desktop or so on. And any programs that need admin or have heavy drm also won't run.
Im addition to that, I dislike the model of downloading exes from the internet. Here is the other comment with my thoughts: https://programming.dev/post/48941029/23338730
There is the excellent chess programming wiki, but unfortunately it does error 503 for me right now.
Here is the archive: https://web.archive.org/web/20250302091125/https://www.chessprogramming.org/Main_Page
Main site: https://www.chessprogramming.org/Main_Page
It has some pretty good resources to get started, and all the techniques being used.
EDIT: It's back!!! And Lichess is doing the hosting.
Debian has a policy of only cherry picking security updates, or critical bugfixes, in order to ensure maximum system stability. In general, they don't do entire program updates or additional features. For the 4 year lifecycle of a Debian release, it will behave the same as it did yesterday.
As of today, current version of rsync in Debian's stable's packages is 3.4.1: https://packages.debian.org/stable/rsync (archive).
The versions with significant LLM assistance are 3.4.3 and later.
If you don't have internet, which you may need for some of the fixes mentioned here, you can try tethering, which is where you share a phone's internet with a computer over a wired connection.
https://wiki.archlinux.org/title/Android_tethering
https://wiki.archlinux.org/title/IPhone_tethering
Although, these might depend on NetworkManager, although they might not.
Debian has old software and doesn’t support some newer hardware. Even the latest version, Trixie, is still very far behind. I realize this now.
Debian has backports, which enable you to get select versions of newer software. Relevant to your case, you can get a newer version of the kernel, drivers, and other things relevant to hardware support.
Might be a bug, so we can troubleshoot to try to figure it out.
If you visit about:processes, is there any website or extension taking up a lot of system resources?
In addition to that, you can try launching firefox in safe/troubleshooting mode. 3 bars in the top right > Help > Troubleshooting mode
This restarts firefox with all addons, extensions, and themes disabled.
For further troubleshooting, also try:
Go to about:profiles, and create and launch a new one. This is a more complete reset, since it also resets all settings, about:config options, and similar.
After creating a new profile, you can play around with rebuilding your current firefox config, adding extensions and changing settings.

Illuminae. It's an epistolary novel, so it's narrated in the standard sense. They are often told via letters from protaganists to another chatlogs, or other documents. From wikipedia about Illuminae:
(I did not quote it in full because I'm trying to keep it as spoiler free as possible. I remember having a lot of fun when I read it without knowing anything, I just picked it up from the library and started reading.)
This book definitely wins for uniqueness of form, although I now understand what type of book it is and how to find more like that. But I've only ever read one book like that.
Although House of Leaves also counts a little bit as epistolary fiction but we've all heard of House of Leaves so that one doesn't count.
Though, 17776 - wikipedia, is even more unique and also epistolary speculative fiction, but that's not a book, but is instead online articles (which means it can include videos!).
You can start reading that one, right now, here: https://www.sbnation.com/a/17776-football