Avatar
Haelwenn /элвэн/ :triskell: 🔜FOSDEM
24389949b53d16958eae22ba78a4040316903c933a9e8f9d9fd5f10688fc62af
🦊🦄⚧🂡ⓥ :anarchy: 👿🐧 :gentoo: :sun: Pleroma maintainer (mostly backend); BadWolf developer; Gentoo contributor; Eternal upstreamer Opinions are your employer Arch users needs to pacman -R works-for-me arch-btw Make the changes you want to see. Just because computer bad: X5O!P%@AP[4\PZX54(P^)7CC)7}$EICAR-STANDARD-ANTIVIRUS-TEST-FILE!$H+H* banner from: https://soc.flyingcube.tech/objects/56f79be2-9013-4559-9826-f7dc392417db Federation-bots: #nobot
Replying to 653da85c...

nostr:npub1ysufjjd485tftr4wy2a83fqyqvtfq0yn820gl8vl6hcsdz8uv2hskx2jyl nostr:npub1uf6uq3u6lj5smt6jr2tpkc02hatwf2px4my6l5dx20q8gqn9f7tqn9k75x That would be preferable but ios sucks and linux phones feel like its almost there but not quite ready so then there is nothing else

nostr:npub10nth47nk6csr36j403c6789ty5m3kfy9kvdmwa987zdgnuz8kphs55h6gv nostr:npub1uf6uq3u6lj5smt6jr2tpkc02hatwf2px4my6l5dx20q8gqn9f7tqn9k75x The only okay linux mobile OS is probably still SailfishOS, thanks to the QtMobile heritage. Gnome's eternal NIH be doomed.

But well here I've just switched to my old feature phone as I don't need the smart stuff, which is pretty much a hassle, specially as I don't use telephony for like more than an hour per month.

Replying to Avatar Undry January

nostr:npub1ysufjjd485tftr4wy2a83fqyqvtfq0yn820gl8vl6hcsdz8uv2hskx2jyl nostr:npub1yck44z5zqxmwpqzqs75ay6ffjdw843ng9p6mz0lzfff3fgz2djlsngujmw nostr:npub1wahdrf28uf5n5tykfeyzf43sdgg65djvm8re3ulpentr3teaxujs09xc8t still doesn't look like it's up. I've only checked the github mirror cause that's where the repo conf says to look. Is my repo horked up?

nostr:npub1u6g08akz5suk39q6rg20dguwmnn4hkn98vtgpn8yr8uqappwn96ql7su6y nostr:npub1yck44z5zqxmwpqzqs75ay6ffjdw843ng9p6mz0lzfff3fgz2djlsngujmw nostr:npub1wahdrf28uf5n5tykfeyzf43sdgg65djvm8re3ulpentr3teaxujs09xc8t I meant that it’s in the dev branch (git checkout dev) and in wait for someone else to review and push to master, as normally expected.

But well did a slightly dirty one and pushed my own stuff to master though since it’s security relevant.

Use the Defcon Wifi (new blog)

Many security professionals, especially on social media, have an unfortunate tendency towards what we might call performative security. It’s where people broadcast their security measures to show how aware they are, and they suggest others follow their lead. It’s the inverse of security theater where ineffective security is imposed on us by organizations. It’s often ineffective, inconvenient, or both.

And today’s bad advice is “Don't use the defcon wifi.”

The #Defcon and #Blackhat networks are some of the most monitored networks anywhere. No one's going to blow an 0-day by using it on either network. This assumes everything's up to date and fully patched, and that you join the official networks, which are listed on signage around the venues. It also assumes that all your apps are using TLS everywhere. In contrast, there is a never-ending parade of warnings about malware in telecom infrastructure. There are routinely reports of extra base stations around Las Vegas. (I’ve heard numbers on the order of an extra 50, of which I’d guess many are simply just-in-time capacity from authorized suppliers.) The lack of authentication of base stations is apparently a ...feature... that’s never going to be fixed.

Now, there’s another way to interpret this, which is to put your devices in airplane mode or a Faraday cage, and that’s not awful advice. Disconnect. Be present. Enjoy the events. Talk to the people around you. If you want to disconnect, a well-constructed Faraday cage is safer than airplane mode, which let bluetooth and wifi work.

When I was at Microsoft, some of my co-workers made a big deal of how they locked down their laptop, or bought a burner for Defcon. Me? I asked why our products weren’t safe enough to use in that environment, given that they’re certainly used in more dangerous places.

https://shostack.org/blog/use-the-defcon-wifi/

nostr:npub1074dk2mqqxl7kgukea6th3xaa9fdgx7vty2x8zger32uydyf6e3qzhz2j6 I wish the OS would be the only place where security holes could be on a laptop though. (I would probably just stay offline)

SUV mention in my TL reminds me: It's always the fucking SUVs that do not use turn signals, enjoy having to take margins from the ~3 tons idiots.

nostr:npub1ysufjjd485tftr4wy2a83fqyqvtfq0yn820gl8vl6hcsdz8uv2hskx2jyl Yeah, that's what I thought, but the branch uses the prefix "release/"

You don't use release/ branches for WIP stuff but "releases".

Anyways, not a big deal, just wanted to confirm, thank for your quick answer.

nostr:npub1atp0d3qndg8cev45pc3grwpqtfa6vuh4a943yqhvt6uhljzaqswstm37us It's there to prepare for releases, see gitflow if you're wondering about the workflow, which for pleroma allows for not only review of releases but also collaboration.

Hey nostr:npub1ysufjjd485tftr4wy2a83fqyqvtfq0yn820gl8vl6hcsdz8uv2hskx2jyl, public questions about Pleroma. Let's avoid our conflicts for now:

2.5.3 was authored 6hrs ago by you.

2.6.0 was authored 2 weeks ago by you.

Does 2.6.0 contain the hotfix implemented on 2.5.3?

For the ones who aren't weeb enough Yasahī works for both Gentle/Kind and Easy, and I'd agree with this word choice as Japanese is quite brutal/hardcore.

Wow NetBSD's version of gettext is old.

Replying to 6dd3ac2b...

nostr:npub1rdx2n6wevczkah2ec5pdf4lkantqjm6lrd4j0t9m2ha4ghu28ffqdwy3g2 nostr:npub1ysufjjd485tftr4wy2a83fqyqvtfq0yn820gl8vl6hcsdz8uv2hskx2jyl I once was so sleepy I tried to boil some water and forgot to put the water. I let that sit for like 10 minutes like a complete idiot and the pot was red hot

nostr:npub1dhf6c2e07uy5jqw2ykjfe5grmkd55atwd8dn4yy6r3plghv4wdhsccztuv nostr:npub1rdx2n6wevczkah2ec5pdf4lkantqjm6lrd4j0t9m2ha4ghu28ffqdwy3g2 Hopefully that's not going to happen to me since I have a gaz stove.

(And my fully-evaporated water incident was with induction plates so at least red-hot couldn't happen)

The American "Sell your soul" kind of employment or "your opinions are your employer and mine".