A reminder that biometric auth security is not based on secrecy (#biometrics aren't secret), but on the difficulty of making a copy that can trick a sensor. Now there's an app for that. #infosec
Out from his basement, greybeard's voice did ring Seems he was troubled by just one thing Checked his shell PID, and shook his fist and said: "Whatever happened to my well-configured zsh?"
It's now just bash, the default shell is bash The default bash, on Debian it's dash It's now just bash, it'll catch on in a flash It's now just bash, the default shell is bash
From my infrastructure in the US-east To the master bedroom where my bedtime ceased The DDoS came from some IoT nodes And gave my front-end some error codes
They made it crash, they made the website crash The website crash, it was production SaaS They made it crash, I logged on in a flash They made it crash, they made the website crash
I was working in Gitlab, late one night When my eyes beheld an eerie sight For the RAM used in a tab, began to rise And suddenly to my surprise
It made it crash, Slack made the browser crash That browser crash, it caused a keyboard smash Slack made it crash, it made me lose my cache It made it crash, Slack made the browser crash
I always thought it would be interesting to see the lawsuits and other aftermath in cop movies when the hero and villain destroy half the town in the car chase and final standoff: "Police Owe Nothing To Man Whose Home They Blew Up, Appeals Court Says" https://n.pr/2JuLI8f
Data isn't gold, it's uranium. Companies stockpile and refine it because of the great power it creates. But the industry is largely unregulated and creates hazardous by-products. When it spills it's almost impossible to clean up and when it explodes it leaves a wasteland behind.
@mwoliver@purism I used to have the same addiction (before Librem 13 I had an X200s and a Unicomp w/ trackpoint), but I found it was even better to move to a keyboard-centric workflow, especially since a lot of the time my laptop is connected to a full-size Model M keyboard and regular mouse. You get used to the multi-touch mouse pretty quickly.
Many people don't know that @purism offers an anti-interdiction service for laptop orders. In this post I describe what the service is and some of the measures we put in place, including some new ones based on our PureBoot tamper-evident boot process. https://puri.sm/posts/anti-interdiction-services/
@aral@purism Yes we had a very limited supply although, hmm, there's a chance as the Librem 5s continue to roll out that some internal devkits might free up. I can't promise anything but if one did, would you still be interested?
Two interesting tidbits: 1. Actual enforcement of the penalty clause for abusing DMCA takedowns. 2. He could use DMCA takedowns to get a person's home address!
I've gotten some questions about Packagekit and why we don't provide interactive signing during package updates. I talk at length about some of the challenges with that approach here: https://github.com/osresearch/heads/issues/533
I wrote an article about best practices (including travel tips) for PureBoot, @purism 's #FOSS tamper-evident boot firmware that allows the user to control all of the keys and secrets used for the signing process. Check it out here: https://puri.sm/posts/pureboot-best-practices/