Mastering Distributed Tracing by Yuri Shkuro


We have computed the very first chosen-prefix collision for SHA-1. To put it in another way: all attacks that are practical on MD5 are now also practical on SHA-1.

We have reduced the cost of a collision attack from 2^64.7 to 2^61.2, and the cost of a chosen-prefix collision attack from 2^67.1 to 2^63.4.

Demo: The legacy branch of GnuPG (version 1.4) is vulnerable. We have created two PGP keys with different UserIDs and colliding certificates.


Downloading any Kubernetes binary like kubectl, kubelet etc?

Checksum files can be downloaded by appending ".sha512", ".sha256" at the end of file names like this:


Spent some time writing Ansible playbook. I have started liking it more 😁

If you are still stuck with GNU Emacs 26.2 and facing following errors while installing new packages.

1. Failed to download 'gnu' archive. Bad request.

2. Make sure you follow the instructions given in 'Full description' of gnu-elpa-keyring-update package

While disabling few key combinations, found this nice list of all Pre-defined keyboard shortcuts in GNOME

Jessie Frazelle (formerly of GitHub, Microsoft, and Google) just launched a new computer company called Oxide Computer Company


Her blog post about it: blog.jessfraz.com/post/born-in

The Go User Survey 2019:


Let the #golang community know what you like and/or dislike about the language and its development process!

