#KeyID
This has been very helpful, thank you @vercel.com

vercel.com/guides/corep...
How to Fix “Cannot Find Matching Keyid” Errors or “Corepack/PNPM Not Found” on GitHub Actions
How to debug and address this corepack issue with GitHub Actions.
vercel.com
February 5, 2025 at 4:37 AM
Node.js 22.14.0 is out, the first LTS release that includes the Corepack patch that fixes the "Cannot find matching keyid" error that has been impacting pnpm users recently. Full changelog and download info at nodejs.org/en/blog/rele...
Node.js — Node v22.14.0 (LTS)
Node.js® is a JavaScript runtime built on Chrome's V8 JavaScript engine.
nodejs.org
February 11, 2025 at 4:00 PM
`Cannot find matching keyid` error with latest pnpm?

Upgrade to Node.js v22.14.0, which updates to the fixed Corepack 0.31.0 version:

Windows: choco upgrade nodejs # or nodejs-lts

macOS: brew upgrade node # or node@22

Ubuntu: sudo apt-get --only-upgrade install nodejs
February 11, 2025 at 11:47 AM
The next sample was also Cladonia digitata #lichen. This one had more pronounced name giving "fingers" on the podetia.

Here is the link to the excellent ITALIC site:
italic.units.it/flora/index.php?procedure=view_external4&keyId=3975&species=1059&currentLead=68
May 9, 2024 at 9:50 PM
This does end up advancing, with Speaker Arch deciding to cast the 25th vote.
March 5, 2025 at 5:56 PM
this keyid juss fayuul, bacub
November 27, 2024 at 10:18 PM
Or where the keyId & serviceId match?
February 6, 2026 at 1:51 AM
corepack で pnpm 使おうとするとエラー出る
Error: Cannot find matching keyid
古いバージョンを入れれば問題なさそう

corepack install -g pnpm@9.14

10 や 9.15 はダメみたい

issue があったけど報告から1週間ほどあってまだオープンのままだし解決は先そう?
github.com/nodejs/corep...
February 3, 2025 at 1:42 PM
I am mostly on Mastodon: infosec.exchange/@bontchev I use Bluesky mostly for posting snide comments.
VessOnSecurity (@bontchev@infosec.exchange)
4.5K Posts, 52 Following, 1.17K Followers · Anti-virus, malware and infosec expert, crypto amateur, privacy advocate and general annoyance. PGP keyID: 0x365697c632dd98d9
infosec.exchange
January 7, 2025 at 8:52 AM
I mostly post on Mastodon these days:

infosec.exchange/@bontchev

Although, when I update my blog, I post about it on Twitter, BlueSky, LinkedIn, and Facebook too.
VessOnSecurity (@bontchev@infosec.exchange)
10.1K Posts, 51 Following, 1.54K Followers · Anti-virus, malware and infosec expert, crypto amateur, privacy advocate and general annoyance. PGP keyID: 0x365697c632dd98d9
infosec.exchange
August 26, 2026 at 2:12 PM
@cocoa_vrc 大まかに言うと以下の通りです。

1. アクティビティの`actor`を照会します。
2. 照会したアクターオブジェクト内の`publicKey`属性を照会します。
3. 公開鍵のid属性が`keyId`と一致するか確認します。

March 15, 2025 at 6:01 AM
How does it work

One proposed solution relies on HTTP Message Signatures (RFC 9421). Bots sign the host of the request they are making, add a validity window, and send the signature with the request.
See the demo http-message-signatures-example.research.cloudflare.com.
May 15, 2025 at 3:24 PM
CVE-2026-52769: YesWiki 4.6.2–4.6.6 SSRF via HTTP Signature keyId in public API. Unauthenticated attacker forces server-side GET to arbitrary URLs. CVSS 8.3. Unpatched—update to 4.6.6 or restrict access now. Details: https://www.valtersit.com/cve/CVE-2026-52769/ #CVE #YesWiki #in
September 8, 2026 at 7:40 AM
Jianjie Luo, Yiming Zhong, Haoming Shen, Yupeng Xiao, Zhenguo Yang
KeyID: Decoupled Drafting and Keyframe Editing for Identity-Preserving Video Generation
https://arxiv.org/abs/2608.16154
August 18, 2026 at 7:06 PM
Jianjie Luo, Yiming Zhong, Haoming Shen, Yupeng Xiao, Zhenguo Yang: KeyID: Decoupled Drafting and Keyframe Editing for Identity-Preserving Video Generation https://arxiv.org/abs/2608.16154 https://arxiv.org/pdf/2608.16154 https://arxiv.org/html/2608.16154
August 18, 2026 at 6:42 AM
CVE-2026-18859 - ESAFENET CDG usbkey;logindojojs sql injection
CVE ID : CVE-2026-18859

Published : Aug. 5, 2026, 1:16 a.m. | 1 hour ago

Description : A vulnerability was identified in ESAFENET CDG up to 20260615. Affected is an unknown function of the file /CDGServer3/uk...
CVE-2026-18859 - ESAFENET CDG usbkey;logindojojs sql injection
A vulnerability was identified in ESAFENET CDG up to 20260615. Affected is an unknown function of the file /CDGServer3/ukey/usbkey;logindojojs. Such manipulation of the argument keyid leads to sql injection. The attack may be performed from remote. The exploit is publicly available and might be used. The vendor was contacted early …
cvefeed.io
August 5, 2026 at 2:24 AM
going through my semiannual gpg / yubikey rotation and finding a ton of gpg tutorials / cheatsheets that suggest doing:

`gpg --export-secret-keys --armor $KEYID > masterkey.asc`

That file is unencrypted!

Correct approaches to backing up & moving keys: vhs.codeberg.page/post/moving-...
Moving GPG Keys Privately
How to privately move your GPG keys from one machine to another.
vhs.codeberg.page
November 29, 2024 at 10:31 PM
Making use of an encryption keyid overflow vulnerability. http://pastebin.com/evD7EgtE
February 11, 2024 at 6:41 AM