Avatar
Tyler Burns
6c5fbbb2ed7c3a8df0f17376ad38167bef90ad337d0cc46d26f0ca68620b9a71
Retired InfoSec Analyst - Cypherpunk - Vegan β“‹ 🌱 - Animal Rights - Bitcoin - Privacy Proponent - Frugality>Consumption

I have hundreds of trades on Bisq and haven't had a single trade that went bad. Ya, I can vouch for it.

Replying to Avatar Seth For Privacy

I've overhauled and updated my "Privacy First Steps" guide, including adding a section on email aliasing services ✍️

https://sethforprivacy.com/posts/privacy-first-steps/

If you haven't read through it before, this post is how I would approach the journey towards personal privacy (even down to the order!) if I could do it all over again. I think this is one of my most actionable and helpful pieces of content, so I'm glad to be able to share it with Nostr for the first time!

Would love to hear any feedback you all have, or if you'd do things differently!

Great list of suggestions. One thing I would add to your list that is super easy to start doing right away is to switch your email message viewing to text-only instead of HTML by default with your email client. This will prevent tracking when viewing emails and also make phishing links easier to spot. Most of the time you can get what you need from an email with text-only viewing.

Sometimes you might have to view an email as HTML to be readable, but usually there should be an option to not load remote content when doing so in your email client.

Text-only email by default is a great privacy preserving step that is also easy to do.

ChatGPT is the real big brother. πŸ˜…

#[0]

Definitely feel you. I've had my fair share of ear infections and they're no fun. Hope it clears up for you soon.

Wait, the guy who made Damus doesn't pronounce Nostr like Nostradamus?? Tell me it ain't so #[4] ! πŸ˜†

Good group of guys! Enjoy!

Right. I am not doing full db backups on my node at the moment. Just have a mirrored drive to protect from single drive failure which is sufficient for my lowly node.

I used to have quite a bit of funds on my routing node but have since toned it down to just a few channels and few million sats for my own spending purposes.

After having to actually go through the nerve-wracking recovery process using the static channel backup, I realized I either need to change my setup drastically or adjust the amount of funds I'm being #reckless with. I chose the latter for now.

I've been playing around with cashu this morning and reading up on it. It is pretty cool. The privacy aspects of it are very nice. Even just being able to temporarily utilize satoshis on an entirely different lightning node/mint and being able to pay invoices privately from that node/mint is a cool privacy use case.

Replying to Avatar Warren Togami

According to Google Project Zero they discovered 0-day "Internet-to-baseband remote code execution" affecting many millions of Samsung and Pixel 6+ modems.

Read it for yourself. It sounds very bad. If you have an affected phone you may want to turn off your SIM card because the recommended "turn off VoLTE and WiFi calling" is impossible for many of these phones after they removed the VoLTE option back in 2021.

Only thing you can do is turn it off and put pressure on the vendors to fix it.

https://googleprojectzero.blogspot.com/2023/03/multiple-internet-to-baseband-remote-rce.html

The writer claims it's already patched by Google in the March 2023 patch level. Unfortunately that patch had been withheld from Pixel 6* due to bugs so the blog is incorrect about this already being fixed for Pixel owners.

It sounds like Samsung has a much bigger mess due to the wider variety of phones, firmwares, and providers for which they must now rush an update without breaking it. Not an easy task but they must do it.

Don't blame Google for releasing this advisory. Samsung had months to respond in a timely manner.

Do blame Google for failing to protect their own customers prior to their own advisory. I like Pixel and I want them to do better.

This is why I won't buy a Samsung phone because of their proprietary VoLTE implementation.

My wife is a teacher. I don't know how she does it. Her stories make me glad I work with computers. lol

Yup, just hosting your own always-on node gives you a ton of different mobile wallet options after that.

Apparently Docker is going to be purging all images with their free tier that they're hosting? Seems like a rushed decision with poor communication. This will impact a ton of projects that are widely used.

https://github.com/docker/hub-feedback/issues/2314

Awesome! Nice work!

I have a feeling there are going to be a lot of "I survived...bitcoin fixes this" badges.