• 0 Posts
  • 48 Comments
Joined 1Y ago
cake
Cake day: Jul 16, 2023

help-circle
rss

Nextcloud can do the find part



Buy two ubikeys, one for you and one for your safe or lockbox.

Also use a password manager and don’t reuse passwords.


Because it’s bad, prone to errors, user interface is poor and relies on you following your process perfectly every time.

Bitwarden.

Or KeePass.


Actually it’s Valves responsibility to tell the snap packager to kindly fuck off and don’t fuck this up for us.

Ive only had issues with the snap or Flatpack versions. At least the Flatpack one is open source.


They mean scif

Basically a secure office building room where individuals can talk sensitive info


  1. Password manager such as Bitwarden, generate long strong passwords for everything.
    1a. Corpo SSO (By which I mean “log in with Google/Microsoft/Apple/Whatever”) nothing.
  2. Hardware keys, MFA on anything that doesn’t support one.
  3. Degoogle, de-megacorp.
  4. Use Linux, stop the Stockholm syndrome that is Windows.

VPN shouldn’t even be in the top 10. The benefits are dubious at best and the jury is still out on whether it makes you more of a target or if you can trust ANY provider meaningfully.


Doesn’t exist.

Just switch to Pixelfed.

Good friends will talk to you elsewhere like Telegram or Signal.


Multi factor authentication is about having multiple factors for authenticating you:

Something you know (like a password) Something you have (with you - a hardware key, smart card or token) Something you are (biometrics, fingerprint, faceid)

So the idea is that you’ll have two points of identification.

But if you have your TOTP token and your generated password in the same password manager - that’s effectively only one factor of authentication.

If you’ve gotten this far you should probably consider a WebAuthn key like the Ubikey to be the “something you have”.



I run a bunch of stuff from my phone down Tor on an app by app basis. It’s not necessarily the added security but generating traffic and noise.



It’s all relative.

More private than Google or Meta? Hell yes.

Suitable for whistleblowers and journalists reporting war crimes? Nooooo.

But Jitsi you can run it yourself and you should.

Understand that the public instance is provided freely as an alternative to Google and Meta, and whilst I agree encryption should be the default - it does add overhead for something probably running on donations.


MacBooks actually have great parenting controls.

Fuck Chromebook though


Absolutely, as a Linux user NVIDIA actually hates you. Give AMD your money.



And rootkits on the chips. If not now then when.


You said what I came here to say.

If the steam deck 2 is announced before the Australian release - im waiting for the 2.


I have a convertible laptop with pen and it works fine.


Yeah and they all work on Linux.

The ones that don’t can get fucked.


For me it’s that they needlessly centralise the internet, and that’s their goal too.

Suddenly one data centre goes down and the whole internet will too.

And data centres do go down, one of Google’s most recent outages happened in an entire region and they were unable to badge into the building because that also relied on Google infrastructure.


And since Ive never bought the problematic games before it’s so much easier for me.

I’d encourage anyone to ditch the crappy anticheat broken crap and just go back to playing good high quality games.


Honestly if you’re still trying to find workaround for Microsofts crap at this point - just switch to Linux.


I’d argue yes.

I see Google as a known unknown, where as various other Chinese phones are unknown unknowns.

I acknowledge I have western bias, but the propaganda, human rights violations and control of the CCP is well understood.

At the very least Pixel let’s you flash an alternative OS.


If you’re like me and your work uses Bitwarden, your personal family accounts are free too. And unconnected to the business account of course.


This is going to be controversial, but if I was a user of these three scummy sites what you say above isn’t the hill I’m willing to die on or care about.

However I have half a dozen domains, I could quite easily add one or two more for dumb shit like this if I wanted to.


I have a pseudo domain that has none of my info on it.

It’s something along the lines of “thisisspam.com” that forwards to my personal email accounts.

The point is, since I and not the service control my addresses I can take them anywhere.


You dont need any commercial VPN provider unless you’re a persecuted minority or under a strict government regime, get off them.

You can’t verify that any of them actually comply with their no log policies and all they’re doing is aggregating people who have stuff to hide onto it.

And especially not fucking Windscribe.

And VPNs are always slow, hence not using them unless they’re required.


Theres plenty of good reason to keep your alias provider separate from your email provider.

The first being you can lift and shift to another email provider very easily.

Secondly if something happens to your account you don’t lose the lot.

Thirdly, just get a domain with alias provider and it matters not what email provider you use ever.


Check out the IKEA ones, ZigBee - meaning there’s absolutely zero internet connectivity required.




Your model of phone has no bearing on my answer. Tor.



So Calyx comes with a Tor app and you can selectively punt apps over the Tor connection.

I’d recommend everything you possibly can should go down Tor, but I do know some things can break. I usually keep one of my browsers out and the other in.


Most of my apps are FOSS without Google services.


Bullshit.

The enemy I don’t know has a long history of human rights abuses, persecution of minorities and espionage. And your data will become a weapon in the event of a world war 3.

Calyx has absolutely no Google login required for it, no wall of text EULA or privacy policy due to there being no online conponents. I don’t even have a Google account. Whereas stock android you need a Google account to use it. Not to mention reinforcement of security via firewalls, Tor and sandboxing.


It’s shocking I know but it’s “the enemy you know”. Also im all about Calyx and cutting Google out of my life. At least when I flash the OS on my phone I’m comfortable that Google is actually gone for good.


CCP phone, hard pass.

Just get a Pixel.

Whilst it’s true that some components of most phones come from China, OnePlus full supply chain including software does.

When geopolitic turns into war finally the last thing I’d want to be doing is holding a phone that relies on a CCP supply chain.