toad.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
Mastodon server operated by David Troy, a tech pioneer and investigative journalist addressing threats to democracy. Thoughtful participation and discussion welcome.

Administered by:

Server stats:

227
active users

#filezilla

1 post1 participant0 posts today

I love using #Linux, but sometimes it can be a right pain in the ass, Having installed #fedora on a third PC at home, I just wanted to share a folder to drop some files from my #arch set up to it. Create a shared folder I said to my self, but after more than ten minutes trying to do a #smb shared folder with no luck. I gave up and just used #filezilla, got that working in about one minute 👍sharing a folder in Linux, over complicated, grrrr 😱

FileZilla Client 3.69.1 was released on April 23, 2025. This release comes with bug fixes and minor changes.

FileZilla is a free, open-source FTP client and server software. It allows users to transfer files between their local computer and remote servers, primarily used for website uploads and downloads.

There are discussions going on about potential issues with FileZilla, including a malware alert and concerns about password storage.

filezilla-project.org/

Replied in thread

@Edent It looks like #FileZilla is available in the repositories of all major distributions. Why are you bothering with Flatpak? The bloat of Flatpaks (or any containerized package) can be quite extreme, so that would be my last resort.

#Fedora is now only one release behind upstream, which is understandable given that FileZilla 3.69 was just released a few days ago.

Why does #qbittorrent for Windows open a http link in the browser after you click "yes" when it notifies you of an update? Why doesn't it just open a magnet link, downloading the update as a torrent from within qbittorrent? That would be much more convenient IMHO. When there is a #Filezilla for Windows update and you click "yes", it just opens an FTP link within the running Filezilla instance, then closes Filezilla and runs the installer, qbittorrent should do it like that, only with a magnet link to a torrent, of course.

Dear Friends of NOT giving up,

There I was, trying to set up a virtual server #instance with a hosting company. I am so niave, out of touch, etc, that I thought I would get access
to an area allowing me to run a mastodon instance...

No!?

#Krystal (hosting company) say I need root access?
Surely I just need an FTP set up (#Filezilla in my #Linux case)
and can upload the required stuff (a technical term)? :blobcatgooglytrash:

So far I have uploaded a test webiste. A Cpanel program (that is very good, apart from a horrible commercial at the base)

It does not really feel like my space at all. :ablobcatlurk:

I will be sobbing and screaming into a cushion for a while. 😿

=== krystal email, pertinent bits:

You have a shared hosting package, which means you share a server with other users.

To set up a Mastodon server, you require root access to run/install certain packages - that is not available on our shared hosting servers because that would impact other users.

To host websites/emails/databases, your current package is more than suitable. However, in specific use cases like setting up a Mastodon server, you will require a server that is not shared with other users (VPS):

krystal.io/cloud-vps

krystal.ioVirtual Private Server Hosting | Krystal HostingCloud and managed virtual private server hosting on 100% SSD servers from our UK data centre with UK-based support and unlimited bandwidth.

CVE-2024-31497: Secret Key Recovery of NIST P-521 Private Keys Through Biased ECDSA Nonces in #PuTTY Client

PuTTY client and affected components generate biased ECDSA nonces for NIST P-521 (due to first 9 bits of nonce being zero). Assuming ~60 signatures signed by the same secret key can be collected the attacker may be able to recovered the associated private key.

Affected:
- PuTTY 0.68 - 0.80

In addition the following software packages are also affected:
- #FileZilla 3.24.1 - 3.66.5
- #WinSCP 5.9.5 - 6.3.2
- #TortoiseGit 2.4.0.2 - 2.15.0
- #TortoiseSVN 1.10.0 - 1.14.6
(this list may be incomplete)

openwall.com/lists/oss-securit #CVE202431497 #vulnerability #infosec #cybersecurity

www.openwall.comoss-security - CVE-2024-31497: Secret Key Recovery of NIST P-521 Private Keys Through Biased ECDSA Nonces in PuTTY Client

The DFIR Report provides a case study of a ransomware incident in February to late March 2023 where the initial access was Microsoft OneNote files to deliver IcedID malware. Cobalt Strike and AnyDesk were used to target a file server and a backup server. After exfiltrating data with FileZilla, Nokoyawa ransomware was executed. The DFIR Report provides everything from attack chain, to IOC, to MITRE ATT&CK and also Diamond Model. 🔗 thedfirreport.com/2024/04/01/f

The DFIR Report · From OneNote to RansomNote: An Ice Cold Intrusion - The DFIR ReportKey Takeaways We provide a range of services, one of which is our Threat Feed, specializing in monitoring Command and Control frameworks like Cobalt Strike, Metasploit, Sliver, Viper, Mythic, Havoc, … Read More