mutual_ayed

joined 19 hours ago
[–] mutual_ayed@sh.itjust.works 1 points 2 minutes ago

The more people that short the stock....the better for everyone.

[–] mutual_ayed@sh.itjust.works 1 points 7 minutes ago

Hell is other people especially in FOSS.

[–] mutual_ayed@sh.itjust.works 1 points 10 minutes ago* (last edited 10 minutes ago)

https://medium.com/sessionstack-blog/how-javascript-works-cryptography-how-to-deal-with-man-in-the-middle-mitm-attacks-bf8fc6be546c

I still don't see how

swap to a modified JS that exfiltrates the e2ee key

or

add additional keys

Wouldn't significantly change the recieved hash and break the stream thus ending comms. Also unless you're hosting and building it yourself you have to trust the recipient and the cloud host.

I agree if an attacker owns the server comms can be compromised. I thought that was the benefit of the ephemeral nature. It's for quick relay of information. Best practices would probably include another cypher within the messages themselves like a one time pad or some such.

https://www.itstactical.com/intellicom/tradecraft/uncrackable-diy-pencil-and-paper-encryption/

https://github.com/muke1908/chat-e2ee

[–] mutual_ayed@sh.itjust.works 2 points 24 minutes ago* (last edited 21 minutes ago) (2 children)

What's going on over there?

https://www.theregister.com/2025/02/13/ashai_linux_head_quits/

https://marcan.st/2025/02/resigning-as-asahi-linux-project-lead/

I just wanna run fedora on an M4 already

Edit: I hope she feels safe and is able to put whatever it was behind her. She's a brilliant engineer.

https://asahilinux.org/2022/12/gpu-drivers-now-in-asahi-linux/

[–] mutual_ayed@sh.itjust.works 3 points 30 minutes ago

Cool, now they can correct the "mistake" made regarding Army Maj. Gen. Charles C. Rogers ....

https://www.opb.org/article/2025/03/18/pentagon-website-removes-then-restores-page-honoring-black-medal-of-honor-recipient/

[–] mutual_ayed@sh.itjust.works 2 points 45 minutes ago

Recouping losses from stagnant inventory by burning cars may lead to a short term bounce. However, and I say this with my full chest. Fuck Musk.

[–] mutual_ayed@sh.itjust.works 1 points 1 hour ago

Yes, that's great for me and mine, but not for others. I don't like to support or platform/promote applications that require a subscription for any access at all.

The problem is Plex aren't Netflix in my usecase. I'm sharing my library with my friends.

Now if they'd like to charge for the content they host. Great more power to 'em, but I feel icky with a payment or subscription model that charges to deliver my collection to my friends and family.

So, like I said. I'll likely start migrating to jellyfin and start the conversation with people in how to get the jellyfin app on whatever device they have.

[–] mutual_ayed@sh.itjust.works 1 points 1 hour ago* (last edited 1 hour ago)

It has. Strangely enough they posted a code of conduct after that feedback and started weilding the ban hammer. However I cannot speak to outside forums like XDA or Reddit or even comms here. I tend to stick to their forums or github

https://discuss.grapheneos.org/t/general

https://github.com/GrapheneOS/os-issue-tracker/issues

[–] mutual_ayed@sh.itjust.works 1 points 1 hour ago (2 children)

Fragility is by design as it's ephemeral comms. Swapping the js decryption doesn't make sense as wouldn't the client just fail or refuse the message stream as the decrypt/encrypt changed? It's an interesting problem. Thanks for giving me something to noodle on.

[–] mutual_ayed@sh.itjust.works 17 points 1 hour ago

Fuck your pipeline

https://www.hcn.org/issues/54-9/indigenous-affairs-social-justice-questions-about-the-landback-movement-answered/

Also. there were demonstrations against DAP in 2008 way before Greenpeace got there.

[–] mutual_ayed@sh.itjust.works 2 points 3 hours ago (4 children)

Can you expand more on the key management? I thought https://chat-e2ee-2.azurewebsites.net/ passes a PSK Through the header and sets that as a cookie in the browser to sign further comms. I could be mistaken of course.

[–] mutual_ayed@sh.itjust.works 1 points 3 hours ago (1 children)

A lot of flatpaks early on wouldn't survive a major point release upgrade or worst case would hold on to dependencies and the user would end up with an unbootable mess after an upgrade.

I haven't seen that recently though.

However I regularly run appimages on my fedora silverblue system so take what I say with a grain of salt.

view more: next ›