e5
waterball
e5f6be6f8c45ce730b3a40b15cd5751cc48f3a87a131284381d4b8bae941b319
I'm a water ball

One year ago, I was a frequent consumer of American right-wing alternative media, like Dave Rubin, Jordan Peterson, Steven Crowder, Tucker Carlson. I mostly agreed with most of the issues they were talking about. I was concerned about woke cancel culture and the loss of free speech. I also listened to Alan Dershowitz (life-long democrat), Redacted News, Kim Iversen, Glenn Greenwald, Matt Taibbi, Viva Frei and some other non-right-wing sources.

After Al-Aqsa flood on Oct 7 where Hamas successfully executed a well planned military operation in Israel, where I saw a deeply long-term and continually oppressed people finally get a modicum of revenge on the people oppressing them and also strategically capture some hostages (Israel had about 3000 Palestinian hostages at the time, so tit-for-tat) --- because I knew the context well before the event happened --- they (the American right) instead saw horrible terrorist sub-human violent people out-of-the-blue raping, incinerating and cutting heads off of babies (which I couldn't believe, so I watched many hours of videos to see what actually happened, and that was propaganda - the vast majority killed were military).

Anyhow, I couldn't stomach listening to Dave Rubin, Jordan Peterson (who tweeted "Glass Gaza"), Steven Crowder or Alan Dershowitz after that (and many others) despite believing that we should try to listen to all sides, I just couldn't stomach it. And I'm consuming less social media video content overall which is a good thing. I still listen to Tucker Carlson who I haven't heard push the Zionist stuff.

But I guess I'm moving towards the left on more than just the Israel issue (or maybe I'm standing still and they are moving). What I thought I knew about immigration and culture clash I don't think I believe anymore. And this video shifted my thinking more substantially than most videos do. Many of you may disagree with this, but it will get you thinking nonetheless: https://rumble.com/v5bbf0t-uk-headed-for-civil-war-whos-behind-it-all-redacted-w-natali-and-clayton-mo.html

Historically I've felt like I was on Tommy Robinson's side, because I was on the side of free speech. But the situation is more complicated than just one political issue.

Watch James O Brien from LBC. He's amazing!

An interview of him with Nigel Farage, also responsible for the attack you mentioned in UK:

https://m.youtube.com/watch?v=-pyYoL9ngtE

One year ago, I was a frequent consumer of American right-wing alternative media, like Dave Rubin, Jordan Peterson, Steven Crowder, Tucker Carlson. I mostly agreed with most of the issues they were talking about. I was concerned about woke cancel culture and the loss of free speech. I also listened to Alan Dershowitz (life-long democrat), Redacted News, Kim Iversen, Glenn Greenwald, Matt Taibbi, Viva Frei and some other non-right-wing sources.

After Al-Aqsa flood on Oct 7 where Hamas successfully executed a well planned military operation in Israel, where I saw a deeply long-term and continually oppressed people finally get a modicum of revenge on the people oppressing them and also strategically capture some hostages (Israel had about 3000 Palestinian hostages at the time, so tit-for-tat) --- because I knew the context well before the event happened --- they (the American right) instead saw horrible terrorist sub-human violent people out-of-the-blue raping, incinerating and cutting heads off of babies (which I couldn't believe, so I watched many hours of videos to see what actually happened, and that was propaganda - the vast majority killed were military).

Anyhow, I couldn't stomach listening to Dave Rubin, Jordan Peterson (who tweeted "Glass Gaza"), Steven Crowder or Alan Dershowitz after that (and many others) despite believing that we should try to listen to all sides, I just couldn't stomach it. And I'm consuming less social media video content overall which is a good thing. I still listen to Tucker Carlson who I haven't heard push the Zionist stuff.

But I guess I'm moving towards the left on more than just the Israel issue (or maybe I'm standing still and they are moving). What I thought I knew about immigration and culture clash I don't think I believe anymore. And this video shifted my thinking more substantially than most videos do. Many of you may disagree with this, but it will get you thinking nonetheless: https://rumble.com/v5bbf0t-uk-headed-for-civil-war-whos-behind-it-all-redacted-w-natali-and-clayton-mo.html

Historically I've felt like I was on Tommy Robinson's side, because I was on the side of free speech. But the situation is more complicated than just one political issue.

I was also into right wing stuff and Libertarism made me see the sides of Palestinians better. It was their private property till 1948 (actually 92% of it, 8% not) and whoever takes it by stealing is a robber.

Now I'm also mostly right, but left for Israel Palestine, and see all those "free market" people with more caution

It works from ditto.pub.

Would you consider doing Ditto with Bun TS? it's a drop in replacement for Node, but quicker and easier to use.

I'm curious to learn Bun, but need a project and Ditto seeks cool enough!

nostr:nprofile1qqsqgc0uhmxycvm5gwvn944c7yfxnnxm0nyh8tt62zhrvtd3xkj8fhgprdmhxue69uhkwmr9v9ek7mnpw3hhytnyv4mz7un9d3shjqgcwaehxw309ahx7umywf5hvefwv9c8qtmjv4kxz7gpzemhxue69uhhyetvv9ujumt0wd68ytnsw43z7s3al0v

I tried to use cobrafuma.com via Fedilab Mastodon app.

It asks me something related to bunker and I have no idea of what to do.

I have Amber to use with Amethyst..is it possible to use it for cobrafuma?

Besides, it would be nice I'd the screen which talks about the bunker app to recommend one also, as I don't want end up using one which will steal my keys.

Thanks

I'm Brazilian and I love this!! Haha

Thanks!! Now I see the person from mastodon I answered to will never see my posts unless I go to their profile and tell them to follow me.

But this has low chance of success and will take my anonymity out

Maybe we sound read Macchiaveli, the Prince.

If we are still believing we are clever for finding out hypocrisy, it means we are just too inexperienced

South Africa is doing something about it. What South Africa did no other Arab or Muslim country did before.

I think Erdogan is just trying to get attention and will also do nothing concrete about it.

South Africa rocks!

Unions are interested groups. There are interested groups of industries and employers, so why not also for workers.

As long as they are not mandatory, it's legitimate

This will also screen shot your passwords, specially the ones in your KeePass or the ones you are creating now. It will also screenshot credit cards and industrial secrets.

What a dumb Idea!

#GrapheneOS uncovers leaked documentation for smartphone exploits by Cellebrite.

XRY and Cellebrite say they can do consent-based full filesystem extraction with iOS, Android and #GrapheneOS. It means they can extract data from the device once the user provides the lock method, which should always be expected. They unlock, enable developer options and use ADB.

Cellebrite's list of capabilities provided to customers in April 2024 shows they can successfully exploit every non-GrapheneOS Android device brand both BFU and AFU, but not GrapheneOS if patch level is past late 2022. It shows only Pixels stop brute force via the secure element.

Cellebrite has similar capabilities for iOS devices. This is also from April 2024. We can get the same information from newer months. In the future, we'll avoid sharing screenshots and will simply communicate it via text since to prevent easily tracking down the ongoing leaks.

Pixel 6 and later or the latest iPhones are the only devices where a random 6 digit PIN can't be brute forced in practice due to the secure element. Use a strong passphrase such as 6-8 diceware words for a user profile with data you need secured forever regardless of exploits.

Pixels are doing a bit better on the secure element front and iPhones are doing a bit better against OS exploitation, but not by much.

As always, this shows the importance of our auto-reboot feature which gets the data back at rest after a timer since the device was locked.

Our focus in this area is defending against exploitation long enough for auto-reboot to work. It's set to 18 hours since the device was locked by default, but users can set it as low as 10 minutes. Since around January, we massively improved security against these attacks.

By default, our recently added USB-C port control feature disallows new USB connections in AFU mode after the device is locked and fully disables USB data at a hardware level once there aren't active USB connections. Users can set it to also do this in BFU or even when unlocked.

Users with a high threat model can fully disable USB including USB-PD/charging while the OS is booted to only allow charging while powered off or booted into the fastboot/fastbootd/recovery/charging modes.

GrapheneOS on 8th gen Pixels is ideal due to hardware memory tagging.

Consent-based data extraction (FFS) is not in the scope of what we're trying to defend against beyond shipping our secure duress PIN/password implementation to replace insecure approaches via apps. Data users can backup is inherently obtainable with consent, which is nearly all.

Within the past 24 hours, there has been an attack on GrapheneOS across social media platforms misrepresenting consent-based data extraction as GrapheneOS being compromised/penetrated. The person doing it is pretending to be multiple people and falsely claiming we covered it up.

GrapheneOS is the only OS having success defending against these attacks. We could do more with a successful hardware partnership such as having encrypted memory with a per-boot key instead of relying on our kernel memory zeroing combined with auto-reboot and fastbootd zeroing.

New versions of iOS and Pixel OS often invalidate their existing exploits, but devices in AFU are stuck in AFU mode waiting for new exploits.

Random 6 digit PIN is only secure on a Pixel/iPhone and only due to secure element throttling. Use a strong passphrase to avoid this.

If you wonder why duress PIN/password is taking so long, it's because we aren't doing it for show like existing implementations. It needs to work properly and guarantee data will be unrecoverable with no way to interrupt it. Slowly rebooting to recovery to wipe isn't acceptable.

See https://x.com/GrapheneOS/status/1775305179581018286 for our thread covering the firmware improvements we helped get implemented in the April 2024 release for Pixels. It doesn't currently really help the stock Pixel OS because they haven't blocked the OS exploits that are being used yet but it helps us.

Our hope is that our upcoming 2-factor fingerprint unlock feature combined with a UI for random passphrase and PIN generation will encourage most users to use a 6-8 diceware word passphrase for primary unlock and fingerprint + random 6-digit PIN for convenient secondary unlock.

Cellebrite documentation and has stated they'll upload future versions of it if you want to look at the rest of it:

https://discuss.grapheneos.org/d/12848-claims-made-by-forensics-companies-their-capabilities-and-how-grapheneos-fares/4

We have info on XRY, Graykey and others but not the same level of reliable details as this.

Is GRAPHENE OS using Rust to avoid memory exploits?