Matt Pavlovich
@mattrpav
Followers
347
Following
844
Media
33
Statuses
980
CTO at HYTE / hybrid messaging / hybrid microservices / Created https://t.co/YudT7NJ3wP / hiking cycling mountain biking
Austin, TX
Joined April 2009
Can we just skip passkeys and go straight to ssl keys (or gpg)?
0
0
1
I recall reading that Loom favors ReentrantLock vs synchronize. Not sure if that will be the case when finalized, but worth looping back on.
@omniprof The only way ReentrantLock helps is using tryLock(), otherwise it has the same behaviour.
0
0
0
Slack private GitHub repo compromised https://t.co/rQbDuWqMoN We moved to private hosting with #gitea on Kubernetes
0
1
1
Happy Kubernetes 1.25 Release Day. I’ll be cutting the release today and I couldn’t be more excited.
4
19
137
Security— https|ssh key git repos. ldaps authn and authz. GPG signed commits.
0
0
1
If you still have Log4j questions, especially surrounding Apache ActiveMQ, you'll want to check out this security bulletin from HYTE. #log4j #log4shell #activemq
https://t.co/XWO74tANtb
0
1
1
HYTE Technologies, Inc. latest information on Log4Shell information and impacts to HYTE MQ and Apache ActiveMQ #log4shell #activemq #hytemq
https://t.co/uwlIlSAM6v
0
0
0
Proceed with caution when using externally hosted services promising you an easy way to find out whether you're affected by #Log4Shell. Wouldn't be surprised to see kind of "reverse honeypots" popping up, aiming at harvesting addresses of vulnerable systems. #log4jRCE
2
16
52
Ignore the custom Java Agents and the "hot fix" java classes. Set the property at startup to mitigate the security issue: -Dlog4j2.formatMsgNoLookups=true. #log4j #log4j2 #CVE-2021-44228 #log4shell
0
0
0
@egonwillighagen @NewsOsgi @BridgeDbProject @sonatype There are several ways. I prefer to use bnd-maven-plugin like this: https://t.co/EgLHfoidYG In a multi module project you only do that on the parent and use bnd.bnd files to configure the bundles.
0
2
5
I enjoyed the round table with fellow @ApacheActiveMQ committers on @feathercast
https://t.co/bg4hW1LVXD
0
2
2
This +1000. Adding this would also drastically improve the value of static code analysis.
Everyone knows the C standard library is full of minefields and bad decisions from 40 years ago. Adopting a few hundred new functions that have been battle-tested, and making them standard for everyone should be far easier, and possibly more valuable, than language tweaks.
0
0
0