Brion Vibber's blog

Brion Vibber's picture

StatusNet 0.9.6 release

StatusNet 0.9.6 is ready to download:

http://status.net/download
http://status.net/wiki/StatusNet_0.9.6

This version is now live on status.net hosted sites and identi.ca, and is a recommended upgrade with bug fixes and improved client authentication.

Brion Vibber's picture

StatusNet 0.9.6 release candidate: OAuth API changes

StatusNet 0.9.6 release candidate 1 is ready to download: http://statusnetdev.net/rc/statusnet-0.9.6rc1.tar.gz

We'll be pushing this up to status.net hosted sites and identi.ca, and releasing the general 0.9.6 download, later this week.

OAuth authentication for the Twitter-compatible API has been updated significantly, which may require some client apps to change their behavior for new users to sign in:

Brion Vibber's picture

StatusNet 0.9.4 released

It's that time again -- we've packaged together the latest bug fixes and minor feature enhancements, and are pushing out StatusNet 0.9.4 (codename: "Orange Crush"). For best compatibility with client software and site federation, and a lot of bug fixes, it is highly recommended that all public sites upgrade to the new version.

Brion Vibber's picture

Security update: OpenID, OAuth library issues

A potential security vulnerability was recently announced affecting many implementations of the OpenID and OAuth authentication protocols, including the open-source libraries used by StatusNet.

As a precaution, OpenID has been temporarily disabled on StatusNet cloud-hosted sites while we confirm the situation and get a proper fix installed. We recognize this may be an inconvenience to some users but prefer to err on the side of caution; OpenID should be re-enabled within a day or two at most to minimize disruption. OAuth access to the API is still enabled, which has a lower threat profile as private account settings and major administrator functions cannot be accessed this way.

As always we are doing our best to work with other open-source projects and are submitting our provisional fixes to the authors of the libraries we use; details and links to patches are below the fold.

Brion Vibber's picture

StatusNet 0.9.3 released

It's that time again -- we've packaged together the latest bug fixes and minor feature enhancements, and are pushing out StatusNet 0.9.3 (codename: "Half a World Away"). The software is available for download immediately. For best compatibility with client software and site federation, and a lot of bug fixes, it is highly recommended that all public sites upgrade to the new version.

Brion Vibber's picture

StatusNet 0.9.2 released

A few weeks after the release of version 0.9.1 of StatusNet, we've packaged together bug fixes and minor feature enhancements to post StatusNet 0.9.2 (codename: "King of Birds"). The software is available for download immediately.
 

Brion Vibber's picture

Dev introduction: Brion Vibber

Originally posted to statusnet-dev mailing list last week.

Hi all --

As Evan announced a couple weeks ago, I'm joining StatusNet as senior architect to lead development as we push towards the 1.0 release and form

Brion Vibber's picture

New Summer Intern

Hello. My name is Christopher Vollick. (@cvollick)

I'm a student who will be spending my time with Control Yourself this summer.

For the first little bit I'll be going through the various bug systems and cleaning them out. Finding and consolidating duplicates, removing any spam, deleting any non-bugs and categorizing / assigning the actual bugs.

After that, who knows? We'll figure out what I'll be doing then when we get there.