toad.social is one of the many independent Mastodon servers you can use to participate in the fediverse.
Mastodon server operated by David Troy, a tech pioneer and investigative journalist addressing threats to democracy. Thoughtful participation and discussion welcome.

Administered by:

Server stats:

269
active users

#techliterates

0 posts0 participants0 posts today
Replied in thread

@pluralistic Personally, I wished I could just sue both #Google and #PayPal to not nag me with that shit but as much as I'd love to see someone like @wbs_legal to push that, I have more pressing things to attend to right now...

infosec.space/@undefined/11483

Replied in thread

@MichalBryxi @SecurityWriter @MastodonEngineering I agree to an extent.

It's sad that #Xandros on the original #EeePC seems to be peak #Linux #Desktop when it comes to #TechIlliterates...

  • And that needs to be changed
Replied in thread

@mrmasterkeyboard np.

  • I thought the glare was excessive due to the lights, but then again I'm not gonna complain more about it. Noone expects you to have a fancy mattebox with turntable to make some professional product photo.

Also even if people don't have a donor to transplant a screen assembly from or don't feel comfortable fiddling with eDP cables they could just remove the screen and have a compact AiO Desktop.

  • If it has like a "full function" #USBc port with #PowerDelivery than this can result in a sleek desktop that also looks good and doesn't require much space. Ideal if the battery is busted and a replacement isn't worth it! I've seen those in like #RepairShops where they basically setup some #MacbookPro that way as a DFU machine to reflash / reinstall other #Macs.

I think it's a necessity that we as #TechLiterates propagate the need to #UseLonger and the #RightToRepair as essential, given that #tech inherently is expensive in terms of #resources and that avoiding #eWaste and #Upcycling is an act of #EnvoirmentalProtection.

  • Tho make shure to safely remove any "#DangerPillow|s" and handing it over to the relevant #recycling provider(s)...

If I had the necessary €€€€€ I'd literally start my own "#upcycling" #business, even employ some folks collecting all the #surplus'd #Windows10 machines and just cleaning, wiping, repasting, fixing and selling them as cheap #used #PC|s for those that kinda need something to do their casual "#office", #LightGaming and #MediaConsumption.

  • I mean people are surprised how zippy even old hardware can be with just few tweaks (more RAM, a fresh SSD, cleaning it of dust bunnies and repasting the cooler with some quality (longlife #ThermalPaste, like #ArcticMX4) "#ThermalGrease" (that costs like €1/g in a 20g syringe and a #RepairShop can easily go through one in a shift)...
MastodonNerdNextDoor :Blobhaj: (@mrmasterkeyboard@mastodon.social)@kkarhan@infosec.space Thank you for the comment! In person the screen is great for me, just unfortunate camera lighting angles. :p Ubuntu is something that I thought would suit this laptop, I wasn't wrong, it's blazing fast. The startup time is only more evidence to that. I would also get something like this as well if my budget was £100 and if I couldn't fix things. #Repair and #Reuse needs to be the default, I love repairing machines. Not all broken screens and dented machines are junk, people!!!
Replied in thread

@max
To quote you directly:

"[...] easy to use solutions that are at the same time private and secure. [...]"

It is easier, faster, cheaper and overall simpler to get someone setup with #XMPP + #OMEMO espechally if they don't have a #PhoneNumber and/or #ID to acquire a #SIM.

And if you go and say, "Just buy a [insert country here] [e]SIM!" and expect #TechIlliterates without a #CreditCard, #PayPal or other means of #OnlinePayment to fiddle around with some #eSIM if not having to get some #eSIMcard because they can only afford to maintain one SIM and can't spend triple-digits on a new devices then you completely missed the point!

It's not that I expect anyone to get #TechLiterate within minutes, but similar to setting up a cordless DECT phone it's something one has to do once in 5 years and just have them put the password in a safe spot to retain...

Point is that #Signal #WontFix their setup and that was evidently clear even before @Mer__edith succeeded #MoxieMarlinspike: Their entire operation has a distinct #CryptoAG stench as it's an #unsustainable #VCmoneyBurning party!

A counterexample on how this could've been done are #Tor, #eMail and other truly #OpenSource as in #MultiVendor & #MultiProvider standards.

Whereas it's trivial to get people setup on one of many XMPP servers I've personally tested!

AFAIK Signal doesn't even have an #OnionService / .onion for their Website, much less any #API enpoints to use it with!

You're free to also provide evidence and supporting data to your arguments, rather then neighsaying against proven to be more secure and reliable [by virtue of decentralization] options like XMPP+OMEMO and/or #PGP/MIME.

The proper fix is to actually assess the situation and acknowledge the risks and limitations as well as the very nature of communications, which means upgrading later is exponentially more painful, thus getting people properly setup once is way easier.

  • Just because WE [ or rather @rysiek in this case ] rather privilegued enough to not be hatecrimed in their current location doesn't mean this is the case for everyone. And having places like Signal rely on a "#CDN" is just another red flag to me because questions like this one just don't arise with monocles.chat as people can just exercise proper #SelfCustody and just use Tor!

Speaking of #monocles: That business is at least #sustainable because it's funded by users (€2 p.m.) which they can pay anonymously

gruene.socialMax L. (@max@gruene.social)@kkarhan@infosec.space Sorry but no, the correct solution is to push for easy to use solutions that are at the same time private and secure. Hiding privacy and security behind a veil of "you need to know" is discrimination of people that are not able (either mentally, physically or monetary) to gain that knowledge. The correct move here is for @signalapp@mastodon.world and any other service to fix this and for legislators to enact laws enforcing proper security and privacy by design.
Replied in thread

@AeonCypher Granted, I think the most skilled #TechLiterates are the ones that learned by DIY'ing their "#HomeLab" with literally dumpster-dived equipment they cobbled together into something working.

  • Because that teaches one the fundamentals in an exciting, fun, and limiting factor, forcing one to #ImproviseAdaptOvercome and learn how to #Ghettohack in "hard mode"...

After all every dipshit can just buy fancy gear with the highest tier of everything and support and order all the FRUs & CRUs beforehand to have onsite, being only limited by one's credit card, but that's like buying a Bugatti Chiron: A testiment that one has more money than sense!

knowyourmeme.com/memes/improvi

@arrrg I tend to disagee...

Shure you can make the argument towards #TechIlliterates that they don't know better, but it's our failure as #TechLiterates to not just #preach and #demand #RepairableTech, but oftentimes people don't follow up their demands with actual purchase decisions.

  • OFC if one only has like $100 and they can only get an unrepairable & barely working shitPhone 4 SE from 2016 that's not to blame them, because #UseLonger & #ReUse is better than #Recycle or #BuyANewOne...

In #capitalism, the #users and #consumers do have #choices and they can decide to #unionize and collectively #refuse to buy or use garbage.

#WhatYouAllowIsWhatWillContinue applies to everything and this we need to demand and force change by all means necessary to do so.

OFC please do go ahead and choose #UnauthorizedRepair to keep your gear up and running as long as feasible anyway - just like I'll not toss out my still working #X230Tablet for a #Framework13 unless I literally have no other choice...

GitHubGitHub - kkarhan/windows-ca-backdoor-fix: Fixes a critical backdoor in Windows' CryptoAPI, which allows to unconsenting Update of CA Certificates in the background. See https://www.heise.de/ct/ausgabe/2013-17-Zweifelhafte-Updates-gefaehrden-SSL-Verschluesselung-2317589.htmlFixes a critical backdoor in Windows' CryptoAPI, which allows to unconsenting Update of CA Certificates in the background. See https://www.heise.de/ct/ausgabe/2013-17-Zweifelhafte-Updates-gefae...
Replied in thread

@vonxylofon @CCC

Taking the Taliban as example is completely ridiculous, as those are a clear case of warlordism and thus should not be considered acting in due process...

It's not about non-conformism, but rather exercising self- and mutual defense and that includes refusing to normalize proven to be insecure and post-privacy bs like fingerprint-based authentification.

#WhatYouAllowIsWhatWillContinue applies with all #Enshittification and the only winning move is not to endorse, use or even respect such #SurveillanceTech.

Because it's not about the now but the fact that we allow #Cyberfacists to make politricks and laws.

Your right to be able to effectively refuse to self-incriminate may not be of concern for you or your immediate friends and family but it'll protect other peoples' lives - including outside your juristiction.

Just imagine if down the line we'll get #GAFAMs to abolish any #login but #fingerprint sensors or someones' face on their devices and then just take some underground folks in dictatorships like Russia, "P.R." China or North Korea and then tell me with a straight face that you don't believe shite like that can't and won't happen in the West because it already did happen and if you can't remember then maybe you should repeat history classes from 1930 onwards...

We as #TechLiterates have a social obligation to protect #TechIlliterates by going out of our way to push back against the dragging of the #OvertonWindow into a really nasty, Orwellian corner.

So no, if you think I am the problem then please GTFO.

Replied in thread

@SwiftOnSecurity

Add to the fact that #Linux users tend to update their shit very fast and often as well as being above-average #TechLiterates and it doesn't make much sense to attack @linux itself...

Espechally with lower hanging fruits like #outdated #WordPress [#Plugin] installs that can be automatically scanned for and exploited automagically and there's no reason to waste expensive personnel hours for the occasional root access to some slow box...