Imnecomrade

joined 1 year ago
[–] [email protected] 0 points 17 hours ago* (last edited 17 hours ago) (1 children)

Damn techbros. So frustrating to see critical issues not being fixed due to arrogance, ignorance, negligence, and/or laziness. I wish developers would be more meticulous, especially with projects where security is critical. Then again, if the open source projects received more funding to hire more devs to focus on these security holes, these projects would probably be much better. But it seems to be a common theme that pointing out critical security issue in a project full of evangelists will return a twitter-slop, boomer meme response. Techbros are deeply unserious, and sadly they work on very important projects.

Very interesting read. I feel better about the use of Signal now as Matrix and XMPP appear to be much worse and poorly managed. I do want Matrix to improve since it can be self-hosted, but I believe a fork and a dedicated team, one which is willing to fix deprecated libraries that most clients use, would be necessary. The work has already been laid out since the blog author has already made good suggestions to fix each issue.

I'm glad I chose profanity to use for XMPP and prefer to use pgp encryption, but that doesn't solve the issue when the majority of clients do not. Encryption needs to be baked into a protocol by default, otherwise the least common demoninator which has poor opsec endangers everyone else, let alone the fact that even the best cybersecurity professionals struggle to be secure and private in today's world of surveillance.

I really should study cryptography and cybersecurity.

[–] [email protected] 0 points 3 days ago

I appreciate the advice. Thank you. :)

[–] [email protected] 0 points 3 days ago* (last edited 3 days ago) (5 children)

I recently helped present a seminar on TAILS for local activists.

I aspire to do something like this someday.

In my opinion, the current, overall best solution for most people for secure over the internet comms, is Signal.

It is better than other alternatives, and for the sake that it is more widely adopted and familiar with many people, I would have to agree.

Matrix is maybe the leading contender in my eyes, but will require further development and testing.

Same and I agree.

XMPP is honestly kind of a mess. If I was in total control of a network of XMPP users, I could have them all use the exact same client and server (or hand select a few totally compatible servers). Otherwise, letting people just choose whatever means that you inevitably won’t have working encryption between clients.

Yeah if XMPP were to be adopted in an organization, I would have the accepted clients/servers limited to the most established ones in regards to security and compatibility.

XMPP and Matrix also share the problem with Signal that people are going to have to trust the server (or trust themselves to run it securely).

Same with a forum. To answer one of OP's questions, self-hosting forums or chat services would be ideal as long as someone trained in security can keep on top of keeping the server and each of the clients secure. For an ML organization, this is a big cost, so an application like Signal is usually sufficient for most cases in regards to organizing while minimizing the costs and efforts that could have been used for more important matters. Nevertheless, I believe Matrix could be a good alternative as it exists right now.

Edit: when SHTF we’ll need radios.

Radios could be risky, too, especially if not encrypted, though Hamas seems to be handling radio communications effectively. I just mean it would be good for comrades to begin studying effective opsec practices and countering increasing levels of surveillance with high and low tech, progressively moving towards the latter as things get worse.

[–] [email protected] 0 points 3 days ago* (last edited 3 days ago)

A relative of mine was asking me about software to replace the event/RSVP/page aspects of Facebook.

Nextcloud is an alternative to Google Workspace, and there's Nextcloud Forms, which can be used instead of Google Forms and the like. Nextcloud also has a calendar which is necessary for keeping track of events.

It almost sounds like he wants a locked down Lemmy instance or a combination of tools, but I’m not sure what the landscape is like out there.

Not sure if using a federated social networking platform like lemmy would be much better than just creating a locked down traditional forum, such as Discourse. It's something I have thought about, but it seems locking down a federated instance somewhat defeats the purpose.

Btw, Tails is a good OS to run on a flash drive during critical situations.

[–] [email protected] 0 points 3 days ago* (last edited 3 days ago) (7 children)

I just posted the dessalines essay for the readers' reference.

I believe Matrix and XMPP are just slightly less convenient, which is difficult for a mass userbase to adopt. XMPP has been around for a while, and I would consider Matrix, XMPP, and Signal relatively the same in regards to their development and stability. Matrix and XMPP are a bit more advanced and have a slightly higher learning curve, which I don't think is going to disappear. However, I would like ML organizations to adopt alternative tech more and not be so reliant on Big Tech (especially Google Cloud services), even at the cost of convenience. Thus, I would like see more techie comrades be recruited so they can help develop and maintain the technical infrastructure and train the other comrades before shit hits the fan.

[–] [email protected] 0 points 3 days ago* (last edited 3 days ago)

I use AirVPN for port forwarding torrents, and I heard IVPN was good. Are those included?

Edit: From what I read online, IVPN was among the VPNs tested, and it is also on par with Mullvad and Mozilla.

[–] [email protected] 0 points 3 days ago (9 children)

I wish matrix or XMPP was used more.

Some valid criticisms of Signal here: https://dessalines.github.io/essays/why_not_signal.html

[–] [email protected] 16 points 1 week ago (1 children)

IL Kamalite 🥥🌴

Do they think they fell out of a cocunut tree?

[–] [email protected] 0 points 2 weeks ago

That's a ton of documentaries. Nice find! This is a great "repository" of resources.

[–] [email protected] 1 points 3 weeks ago

https://hexbear.net/comment/5541326

I learned Hyperbola is moving to its BSD derivative kernel, HyperBK, on this thread, and it will be GPL.

[–] [email protected] 9 points 3 weeks ago* (last edited 3 weeks ago)

...Fuck...Learning BSD jumped to high priority on my to do list. I get the feeling that as a tech savvy comrade, my life right now is going to be focusing on developing tech skills for the sole purpose of fighting against the Empire, along with helping PSL more. Anti-imperialist tech is a must, and any ties to the Empire cannot be trusted.

I'm probably going to attempt to run Free/OpenBSD and virtualize Linux like I do with Windows now. Maybe more work will be done on BSD and Gentoo BSD projects will be resurrected and supported.

 

I had posted this question today here:

https://lemmygrad.ml/comment/4917359

Also on NATOpedia, there’s some criticism regarding misappropriation of the medicine wheel symbol by the non-Indigenous people. I wonder if anyone here is more well read on the topic to explain about the misappropriation and what a potential Indigenous flag of Turtle Island would like and how it would be better representative of the Native Americans, if it is even possible without distorting their traditions by combining them.

Perhaps when revolution comes and ~~we give~~ the Indigenous people and Blacks have self-determination, maybe they would prefer to be represented as several separate nations/states.

(Edited poor phrasing regarding self-determination)

I am wondering if anyone here, especially if they are Indigenous in America, has more information regarding how the Medicine Wheel has been misappropriated by non-Indigenous and if there is a correct version to use or if using a symbol to represent all Indigenous people of North America is an act of erasure and oversimplification of multiple Indigenous cultures. Do the native peoples want to strive for Pan-Indianism? And if so, what does Pan-Indianism mean to the native peoples and what do they want (and/or not want) from being unified?

I hope I made my questions clear. Please let me know if I should clarify anything.

 

TIL about the Soviet ternary computer, Setun, after going into a rabbit hole of nanomagnetic and ternary computing.

Scientific staff members working on the computing machine Setun

view more: next ›