Show newer

@freemo Cabin fever victims? Perhaps I'm being too nice... ;)

modrobert boosted

a more detailed write-up about the taproot activation (to go into the release notes) can be found here: github.com/bitcoin-core/bitcoi
(thanks @harding)

Show thread

"Former CIA Agent John Stockwell Talks about How the CIA Worked in Vietnam and Elsewhere"
youtube.com/watch?v=NK1tfkESPV

@lynne@pars.ee Posits looks very promising to me, especially from hardware design point of view.

modrobert boosted

@lynne@pars.ee What happened to "posit"? Has it been adopted anywhere? Designed for direct drop-in replacement for IEEE Standard 754.

youtube.com/watch?v=aP0Y1uAA-2

@lynne@pars.ee What happened to "posit"? Has it been adopted anywhere? Designed for direct drop-in replacement for IEEE Standard 754.

youtube.com/watch?v=aP0Y1uAA-2

@lynne@pars.ee I guess Ctrl+Q should join Ctrl+S in hell?

@loke Found the tweet to Joanna (QubesOS founder) from 2016, no mention of RPM there specifically (might have done that via email), but the dom0 update part: twitter.com/modrobert/status/7

@loke In general I think the threat has changed the past decade from being blackhat hackers doing things to government hacking directly through APT groups (en.wikipedia.org/wiki/Advanced) and otherwise government sponsored groups/individuals, their focus is different, and so are their methods. I think central package handling systems and repositories are at risk now more than ever. Their focus are on spyware and backdoors. We need a smart system where binaries can be matched with open source code and checksums stored immutable against blockchain or similar tech.

@loke Yes, I contacted Qubes OS, specifically Joanna Rutkowska (founder) several years ago because it looked so promising except that they rely on rpm packages and updates which could compromise everything, and eventually it did: qubes-os.org/news/2021/03/19/q

modrobert boosted

Do you isolate different aspects of your computer activities to improve security?

For example, if you install a game on Steam, the creator of that game now has full access to all your personal files, which might not be the most ideal of situations.

The same goes for any other software of course. That NPM library you just installed? Well, it can copy your SSH keys, and so on.

@loke I use 'firejail' in Linux for Firefox, and snap does it for Chromium, both utilize the kernel container system (aka namespace isolation). Any programs which requires internet to function. Sure, VM isolation is safer, I use that for anything Windows related, but also takes a lot more RAM to run practically.

Show older
CleverLibre Social

CleverLibre Social is an inclusive social instance for open discussion, learning, and community.
All cultures welcome.
Hate speech and harassment strictly forbidden.