How and why I made a zine
jvns.ca
jvns.ca
[1] https://en.wikipedia.org/wiki/Tom_Jennings
[2] https://en.wikipedia.org/wiki/FidoNet
You can make little zine booklets -- which I find especially satisfying -- from a single sheet of computer paper using the following instructions: http://staycalmcomic.com/how-to-zine
When I was in junior high and high school one of my best friends and I started producing a 'zine in Cleveland around the punk and hardcore music scenes. We interviewed bands, made crazy art work, she wrote some poetry, and it was a very fun, very satisfying collaboration. We used a mac at the time to do all of our layout and then went to Kinkos to assemble it.
Because of the relationships we developed we started producing concerts for the bands we liked. Basically, we were able to corral enough people to pay for a show we wanted to see by bands that weren't otherwise coming to Cleveland.
Kathleen Hanna had a big hand in this movement [0] and if you want to see/listen then watch "The Punk Singer" ~ http://www.youtube.com/watch?v=zMbLzaVkn2s
# imagemagick is the best thing in the world
Unfortunately, the number of vulnerabilities in ImageMagick has earned it another name, ImageTragick.Adding to that, ImageMagick had it's first release in 1990! That's half a decade before the first release of Apache. It's no surprise some of the code in ImageMagick make it unfit for unfiltered use in web apps, when it was written before graphics-capable webservers, even graphics-capable browsers, were a thing.
What we really need is for someone to write a security-focused universal wrapper, that plugs straight into existing frameworks, so everyone can get the benefit of best-practices, and can report vulns and get them secured quickly.
So really, blaming ImageMagick is not that far from blaming Python for having vulnerabilities if you run a Django app taking unsanitized form input and doing subprocess.Popen() with it.
(That's not to say the "imagetragick" folks are wrong for alerting the community, using that moniker to increase awareness.)
On the other hand, CLI image display and edition doesn't mean it'll only face trusted content, it's not rare to download a file and display it or further manipulate it.