#OpenBSD's
downloading malo firmware for openbsd
April 18, 2026 at 12:53 AM
OpenBSD's pledge(2) and unveil(2) are developer-friendly, study finds www.undeadly.org/cgi?action=a... #openbsd #security #pledge #unveil #development #programming
OpenBSD's pledge(2) and unveil(2) are developer-friendly, study finds
www.undeadly.org
July 8, 2026 at 5:57 AM
Spooky season has arrived! 🔪🎃

Share something spooky, scary, or creepy to kick off the month 🖤
October 2, 2026 at 1:58 AM
Bring OpenBSD’s Pledge to Linux for better security. 🔒🐧
From OpenBSD to Linux: How Pledge can Enhance Linux Security
BSD's pledge() system call forces the current process into a restricted-service operating mode. A Linux port is now available..
itsfoss.com
March 10, 2025 at 3:48 AM
I appreciate OpenBSD's attitude to these things more all the time.
September 16, 2024 at 7:14 PM
Deshittification of your Smart TV at Home using OpenBSD pf and Unbound: block Ad Networks and Telemetry while keeping apps like Netflix and Smart TVs working flawlessly - Detailed Article by Lari Huttunen @svimes.inform.social #OpenBSD #Privacy fabricati-diem.inform.social/post/deshitt...
Deshittification as a Service: Reclaiming Privacy and Performance with OpenBSD pf and Unbound
How to use OpenBSD's Packet Filter and Unbound to build a zero-trust network sandbox that neutralizes Smart TV telemetry—and inadvertently speeds up streaming across your entire home network.
fabricati-diem.inform.social
September 30, 2026 at 7:05 AM
Spurred by a report by Franz Bettag, Theo de Raadt has shared some interesting commentary on isakmpd(8), OpenBSD's older IKEv1 protocol daemon.

marc.info?l=openbsd-cv...

marc.info?l=openbsd-cv...

Users are advised to switch to better options such as IKEv2 iked(8) if possible.

#IPSec
October 3, 2026 at 6:05 AM
a subtractive sandbox starts from a position of ambient authority and voluntarily reduces that authority before executing code in the sandbox.

subtractive sandboxes are built with things like seccomp, openbsd's pledge and landlock.
April 10, 2026 at 1:42 AM
OpenBSD Rulez!

#openbsd #photography #photo Puffy
August 2, 2026 at 5:42 PM
what if I messed with openbsd's source code and made all of its shared libraries static instead :3c
August 23, 2026 at 6:27 PM
OpenBSD's ports tree keeps GPL coreutils and rejects uutils (Rust rewrite) https://lobste.rs/s/vmmq7g ##openbsd ##rust
OpenBSD's ports tree keeps GPL coreutils and rejects uutils (Rust rewrite)
www.mail-archive.com
September 30, 2026 at 7:55 AM
I've started publishing semi-daily updates on my website of my hacking on the Pomera DM250 to try to get OpenBSD running on it. First up is getting u-boot updated and working enough to be able to boot OpenBSD's armv7 EFI loader, then I guess it's endless driver porting.

jcs.org/2025/03/14/d...
Pomera DM250 Tinkering
jcs.org
April 14, 2025 at 4:46 PM
"Game of Trees", OpenBSD's version control system.
June 10, 2026 at 1:17 PM
August 2, 2026 at 5:45 PM
It is now possible to load files from the ESP (EFI System Partition) instead of an #OpenBSD filesystem.

For example, you can copy both OpenBSD's BOOTX64.efi and a kernel (e.g: bsd.rd) to your ESP, and then boot it from there.

boot> boot esp0a:bsd.rd

marc.info?l=openbsd-cv...
November 29, 2025 at 4:01 AM
Mark Kettenis' has added support for newer "MA" models of Intel AX Wi-Fi 6 devices to #OpenBSD's iwx(4) driver in -current.

OpenBSD's iwx(4) driver currently supports up to 11ac speeds, with seamless roaming between APs.
November 8, 2024 at 8:42 PM
OpenBSD's pledge(2) and unveil(2) are developer-friendly, study finds
www.undeadly.org
July 8, 2026 at 5:57 AM
𝗥𝗲𝘀𝗲𝗮𝗿𝗰𝗵 𝗪𝗼𝗿𝘁𝗵 𝗥𝗲𝗮𝗱𝗶𝗻𝗴 - 𝗪𝗲𝗲𝗸 𝟭𝟬, 𝟮𝟬𝟮𝟲
A great mix of content this week!

🔒 𝗜𝗿𝗼𝗻𝗖𝘂𝗿𝘁𝗮𝗶𝗻: 𝗔 𝗣𝗲𝗿𝘀𝗼𝗻𝗮𝗹 𝗔𝗜 𝗔𝘀𝘀𝗶𝘀𝘁𝗮𝗻𝘁 𝗕𝘂𝗶𝗹𝘁 𝗦𝗲𝗰𝘂𝗿𝗲 𝗳𝗿𝗼𝗺 𝘁𝗵𝗲 𝗚𝗿𝗼𝘂𝗻𝗱 𝗨𝗽
Niels Provos (from OpenBSD's systrace) is sharing a new tool to sandbox your AI assistant: www.provos.org/p/ironcurtai....
March 8, 2026 at 9:01 PM
PFL: a from-scratch implementation of OpenBSD's pf (Packet Filter) as a Rust program compiled to eBPF and attached to the Linux XDP hook - Detailed Article by Scott Ullrich (founder of pfSense) #Network #Firewall #XDP #OpenBSD blog.nfsensei.org/the-packet-f...
Reimplementing pf as an eBPF/XDP Dataplane on Linux — nfSensei Blog
An engineering report on PFL: a from-scratch reimplementation of OpenBSD's pf — its configuration language and packet-processing semantics — as a Rust/eBPF program on the Linux XDP hook.…
blog.nfsensei.org
September 23, 2026 at 7:10 PM
.... also,, i wonder how hard it would be to replace openbsd's versions of some stuff with the busybox versions (which are in many cases nicer, especially vi for example).........
August 24, 2026 at 2:34 AM
yeah, grub kopenbsd boot can break anytime we change the bootargs struct, not a good idea to bypass openbsd's native bootloader.
June 8, 2026 at 11:14 PM
OpenBSD's iperf3 port now uses pledge(2) and unveil(2), depending on options significantly reduces or entirely drops filesystem access at runtime.

And it's been submitted upstream. Nice.

marc.info?l=openbsd-po...
October 31, 2023 at 4:31 AM
#pkgconf git now has full support for pledge(2) and unveil(2) usage on OpenBSD. I have pointed the OpenBSD folks at the commits they should pull in to their local copy in the base system.

So hopefully OpenBSD's pkgconf-lite (the one in base) will get these changesets soon.
May 18, 2025 at 7:04 AM