Avatar
Dr. Hax
d30ea98ea65e953f91ab93f6b30ea51eb33c506f87d49f600a139aef00aa9511
Cypherpunk. Infosec veteran of about 15 years (vulnerability research, exploit development and cryptography). Cypherpunks write code. :-) Signet maintainer. Self-custody your passwords... in hardware! https://hax0rbana.org/signet Want to see wider adoption so Bitcoin can be used as digital cash and not just an investment vehicle. XMR: 44RDkTFmTeSetwAprJXnfpRBNEJWKvA5dBH5ZVXA4DofgoZ9AgjyZdSa2fo7pMD3Qe3pdKga8X22y3Lyn1xYde5kPQPzVUu

There's a difference between knowing the path, and walking the path.

I know traditional #finance and #sustainabilty are #taboo on #nostr, but I maintain that this looks pretty interesting.

https://www.esgtoday.com/green-impact-exchange-files-to-launch-first-ever-sustainability-focused-stock-exchange-in-u-s/

Right now #ESG ratings firms and #investors require all kinds of different reporting paperwork of companies. Having a unified standard would provider better #transparency and cut red tape. It'd also allow the market to determine whether sustainability is important to investors.

It seems like it would only hurt businesses who are unsustainable if sustainability is something investors care about. If not, then removing barriers will not make any difference and the oil and coal companies have nothing to fear.

Huh, I wonder why Tom Nardi thinks there is a plan to run Signal over LoRa mesh network. 🤔

Normally hackaday authors would back up claims like that with a link to their source, so I suspect it's just conjecture, not a plan of someone who contributes code to either Mashtastic or Signal.

I agree it'd be another way to address the issue, but it would also require a gateway to the internet. It would not solve anything for off-grid communications.

I've done security testing for large banks and I can say that they do testing before rolling out updates. Even security updates from Microsoft are not pushed out without testing.

I would be surprised if they were affected.

And if they were, I'd be very interested in knowing how it got by them. It's possible they can't run their own update server like they do with Windows updates, or that they made an exception for security software updates (a policy they'd undoubtedly be reconsidering right now).

The only thing I can say for sure is that they do think about this and have processes and teams of people to mitigate it.

I'm surprised I'm not seeing anyone commenting on the demonstrable risk posed by #centralization in the form of #homogenous #software.

With the #market continuing to consolidate to a small number of dominate players, the impact of mistakes grows.

And if an accidental null pointer exception in one product can ground most flights in the US... just imagine what an intentional #cyberattack could do.

Heck yeah. I just got a couple of nodes working end to end and posted about it earlier today!

I got #meshtastic nodes working as advertised and it's super freaking cool. Here's a picture of my test setup.

Messages come from phone and go to the wifi access point (in my case, a raspberry pi) to the Meshtastic node. That, in turn shoots it through the medh network using LoRa, and it goes from the recipient Meshtastic node to a computer via serial (USB).

Messages are encrypted across the LoRa link by the Meshtastic nodes. My WiFi has WPA encryption to protect it between the phone and the node that is on WiFi, however I believe the router and anyone connected to that access network can see everything in plain text.

Because you can pay a lot closer to market rate when buying on a centralized exchange, without as much fear that the seller will fail to hold up their end of the bargin.

Or was that a rhetorical question?

Okay, I think I got the last coat of paint on each shelf. After it dries in a few hours, I should be able to reassemble it and take a picture either today or tomorrow. Fun!

I just saw someone claim that the New York Times is taking money from Russia, presumably because the paper has been critical of Biden.

I'm not replying to them directly because what's the point? I don't have any evidence they're wrong, and they haven't provided (and probably don't have) any evidence they're right.

So what, it makes sense to argue about it? Nah.

With this strategy, make sure to also have less income so you don't have cash piling up, becoming less valuable.

Why would any big tech companies implement this? Just the idea that it would level the playing field makes it unattractive to them.

And if you don't run your own pod, you're still giving someone access to, not just some, but all of your data. They're likely to have similar provacy policies to everyone else which allows them to share it with partners and monitize it.

I see some advantages to Solid, but if the economics of having customers pay for services and keeping their data private in return were on par with using and monetizing your data, Google, Facebook, and their friends would have switched to it years ago. Instead what we see are a handful of companies like Proton taking this approach,and they are only used by people who REALLY privacy.

I appreciate that Solid exists, but it doesn't seem like it will have a significant impact on silicon valley nor the average person.

Agreed. 💯

I'm happy to say that #Signet circumvents this fuckary be emulating a keyboard. Fight fire with fire. 🤙

Oh, I'm not one of those experts. I also wasn't on scene or talked to anyone on scene, so I've got no facts to ggive anyone.

I know about cybersecurity and a bit about how to secure a building (locks, cameras, etc.), but not things that are relevant for this story.

The news of the assassination attempt the other day really shows the power of the internet.

It connects people so you can easily find commentary from an expert on personal protection, inergovernmental agency operations, and who has inside information about the "why" questions which haven't been answered by anyone investigating the matter by interviewing people on the scene.

Furthermore, with social media, you probably don't even have to go looking for them. They are people you already happen to follow.

I've seen some fantastic comments from these incredible people within the first 24 hours alone. What a time to be alive.

"Doomsday prepping, except instead of doing it by yourself you do it with your neighbors, and instead of building a bunker you build a just, compassionate, and sustainable community."

via https://dice.camp/@tjdungeonmaster/111492226704593887