There have been multiple accounts created with the sole purpose of posting advertisement posts or replies containing unsolicited advertising.

Accounts which solely post advertisements, or persistently post them may be terminated.

@IlliteratiDomine@infosec.pub cover
@IlliteratiDomine@infosec.pub avatar

IlliteratiDomine

@[email protected]

This profile is from a federated server and may be incomplete. Browse more on the original instance.

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

There’s more to a government than the president. Congress votes on funding like this.

About that

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

It could happen. In China, among many other places, same-sex hand holding isn’t uncommon among friends and doesn’t indicate a romantic attachment. I dont imagine Biden and Xi have that kind of relationship, though.

IlliteratiDomine , (edited )
@IlliteratiDomine@infosec.pub avatar

There are many ways to setups full disk encryption on Linux, but the most common all involve LUKS. Providing a password at mount (during boot, for a root partition or perhaps later for a “data” volume) is a but more secure and more frequently done, but you can also use things like smart cards (like a Yubikey) or a keyfile (basically a file as the password rather than typed in) to decrypt.

So, to actually answer your question, if you dont want to type passwords and are okay with the security implementations of storing the key with/near the system, putting a keyfile on removable storage that normally stays plugged in but can be removed to secure your disks is a common compromise. Here’s an approachable article about it.

Search terms: “luks”, " keyfile", “evil maid”

Call recorder (both VoIP and phone call)

Does anyone know any call recorder that works well on Android 12? I have tried several but the one that seems to work the most is Cube ACR, which because Google changed the Android policies is no longer possible to work as it used to, and in my case I can hear my own voice in calls and not the other person’s, which in my use...

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

If you’re rooted, the BCR magisk module is an option. Working great on my Pixel.

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

The difference, as I understand it, is Beeper hasn’t claimed to not be doing that. Sunbird/Nothing touted E2EE and that was a lie.

Ukraine blows up main railway connection between Russia and China (www.politico.eu)

Ukraine’s security service blew up a railway connection linking Russia to China, in a clandestine strike carried out deep into enemy territory, with pro-Kremlin media reporting that investigators have opened a criminal case into a “terrorist attack.”...

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

That doesn’t look like contradictory information to me.

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

Have you considered the possibility that you’re replicants?

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

OP isn’t trying to install into the downloads folder; they’re trying to grant an app access to the downloads folder to read and write data.

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

You’ve got it all backwards. Einstein’s corpse is now energy and fast AF.

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

This article describes the contents of a few kits, but it’s pretty typical emergency stuff. A first aid kit, whistle, flashlight, some calories dense foods, maybe a Google-branded water bottle.

A lot of societies problems would be solved if they taught about forming healthy relationships in school.

Right now there is a loneliness epidemic throughout the world. More and more people aren’t entering relationships. Gen Z men are having significant trouble dating while there are some economic factors in the mix. From my own view and experiences combined with what I’ve read most Gen Z men are lack the social and...

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

That tends to be how things develop when you’re talking about systems. There’s not a cackling Bad Guy engineering these things, but a system of socioeconomic carrots and sticks that, right now, favor exploitation. Schools and education happen within that incentive structure so its natural that they would take on it’s characteristics.

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

Often, if an rss link isn’t on the page, there’s still a feed available. /rss and /feed are the most common places to find it.

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

Most self-hosters are probably using dns services through their registrar, but you don’t have to. A registrar with poor api support might still be a good choice, if that was the only negative.

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

I made that move and had no issues. You can copy/paste your way through DNS setup and the rest is just configuring your proton account how you want.

You’ll want to be familiar with proton and some of the tradeoffs in its privacy model, but it’s most likely more feature-full than a hosting provider. Dreamhost, for one, is quite basic.

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

Interesting. I set an adblocking dns via DHCP and, as far as I know, the Roku respects it. Ads are blocked and I can see it failing to delivery telemetry in my dns logs (most persistent thing on the network).

I set a rule to catch outside dns to see if anything, the roku included, has been misbehaving.

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

Well, I’m back and can confirm the sneaky DNS resolver. I have two roku devices and they both were making requests to 8.8.8.8.

Thanks for this post! TIL.

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

DNS blocking (Pihole, adaware, nextdns…) Can take care of those ads on dedicated streaming boxes.

US ad revenue at Musk's X declined each month since takeover -data (www.reuters.com)

US ad revenue at Musk’s X declined each month since takeover -data::Monthly U.S. ad revenue at social media platform X has declined at least 55% year-over-year each month since billionaire Elon Musk bought the company formerly known as Twitter in October 2022, according to third-party data provided to Reuters.

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

Here’s twitters ad revenue by quarter from 2013 to 2022Q2

There’s a spike in 2021 and then things started to come back to earth, but its an overall upward trend throughout that time.

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

konsole is low-key a great terminal. It’s really snappy, supports ligatures, and looks good. It’s one of my favorite KDE applications and the one I miss most when it’s not available.

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

Yes, wget is available, along with pretty much everything else you’d expect from a linux environment.

No, root isn’t required.

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

We did a “bring your dog to work day” at my workplace and this is pretty much how it went. By noon, all the dog-bringers had taken their pets home.

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

If you have a phone number on the account, you can do an SMS reset. If not, I guess it’s “open a ticket with a throwaway” time.

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

Red Ventures [a private equity-backed marketing firm that owns CNET] has applied a ruthless SEO strategy to its slate of outlets, which also includes The Points Guy, Healthline, and Bankrate.

Whoa, how did my search engine blocklist end up in a Verge article?

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

They’ve certainly become a lot more…

Nope, not gonna do it.

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

Same. I recently got a new phone and considered hopping into the Apple ecosystem, but call recording kept me on Android.

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

I’m using the BCR magisk module for recording on a Pixel 7. BCR seems to be pretty universal, but some dialers (OnePlus dialer is one) have recording disabled via config and can be reenabled with adb.

Proper method to share and access lemmy links that avoids login problems?

It often happens that a given lemmy link didn’t match with my own login from another instance. This causes troubles to comment and participate in the thread. This is what I have learned so far. Is there a better method of doing this? Browser extension suggestions are welcome....

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

There are a few browser plugins that do this sort of thing for mastodon. I imagine some dev work would be needed to adapt them for the Threadiverse, but the concept is certainly out there.

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

ImagePipe is another one. Handles exif remove, compression/scaling, and a bunch of other transformations. I’ve been really happy with it.

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

There’s an optional subscription that includes all the DLC and makes crafting materials not consume inventory space. Crafting is really difficult without the sub, but the rest of the game is approachable without it.

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

I’ve been using chezmoi for dotfile management and have been really happy with it. You can directly import existing files to get started and template out any differences between systems.

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

Little clusters of nucs has become a really common way to run small Kubernetes clusters at home. I recently rebuilt mine (still using a bulky, power hungry box like you’re tossing) and have been very happy with it. Everything is really stable, containers that misbehave are automatically destroyed and replaced, and updates are breeze because everything lives in code/git.

What does defederating from Meta's Threads.net actually accomplish?

Afaik, whenever an Activitypub instance has defederated from another it has always had to do with some combination of bad user behavior, poor moderation, and/or spam. Are the various instance admins who have decided to preemptively block threads.net simply convinced that these traits will be inevitable with it? Is it more of a...

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

Sure, but their algorithm in their app will be steering their users to content across the fediverse chosen specifically to engage enrage those users. Even if the broader fediverse isn’t being fed directly by their algorithm, the worst of the Threads user base will be showing up in our communities and comment sections.

IlliteratiDomine ,
@IlliteratiDomine@infosec.pub avatar

Technically, no, but you may want to. All of these services are federated and interact with one another. Mastodon users can interact with pixelfed posts and lemmy communities and anything else in the Fediverse. In reality, though, these services, and their clients, are built for specific types of content. If you’re spending much time at all on those other Federated communities, the “round peg, square hole” nature of using a Reddit-like app to use a Twitter-like service (as an example) may start to chafe.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • random
  • lifeLocal
  • goranko
  • All magazines