Physics and Free Software

  • 3 Posts
  • 96 Comments
Joined 2Y ago
cake
Cake day: Jun 05, 2023

help-circle
rss

If it’s going to be as useful as possible, yes.



What does it mean in practice for windows 10 to reach end of life? There are no more security updates? My vm will stop working? They are preventing you from using your computer?


I’ve been rocking it on a fairphone 4 for 3-4 years. I pretty heavily modified it to get it where I wanted, but I enjoy doing that kind of thing. App lounge is slow, but I don’t use any proprietary aps so F Droid and Obtainium gets me everything I need.

I’ve had Shelter in the background for proprietary apps. Traveling in particular.


My aunt did this along with posting a bunch of family photos and falling for those quizzes that ask your pet’s name or your childhood address. If you have one person like that the privacy of your entire family is compromised.

We told her back around 2010 not to do this kind of stuff, but she’s somewhere between “If I have nothing to hide” and “what’s the harm?”. I hope she gets it now, but we don’t talk to her often


What do you tell them when you opt out?



I noticed when you go through security now, they scan your face witg 2 cameras instead of 1. Is that related? Why do they do that?


What did she say after Snowden dropped that bomb?


Does “more telemetries” mean “worse”? What if the least telemetry (greater than zero) had the Omega Mother of All Telemetries which crams everything the others do times 47 + 3 into one?


Security is about making it harder for the bad guys to get to what you don’t want them to get to. If they were sufficiently determined, sure they could get to it, but it is another layer. And one they may not expect, or if they were not sufficiently trained, what to do about.


I carry a yubi key to unlock my password manager. (Probably shouldn’t have said that) If you have a form of 2fa they wouldn’t know about, that might help you



At the end of the day, your parents are your parents not your kid’s parent. You raise your kid the way you feel best.



Openai has open models now


Not phrasing your queries as a question makes it more likely you will find what you are looking for in a traditional search


What are your alternatives to proton?
To replace everything. Mail, calendar, drive, vpn, password manager, documents etc. What are the pros and cons relative to proton? What are the mobile apps like? What assurances do you have they won't go full proton in the future? And other questions
fedilink

Add one more to the tally. Did the offer a reason?


“Downloading chrome will improve the performance of this site”

What the fuck is this 2009?




Replacing ring is easy. Use the doorbell on your house.

More seriously, ask yourself why you need it. The world is a better place when we trust each other by default. Doesn’t mean nothing will ever be stolen, but it’s better than survailing the neighbors walking their dog


Imo you shouldn’t let anyone silence your voice



Fact: People make statements on social media they later regret.

Given the context, what is your opinion of that fact? Untimely? Biased? It’s still true. Facts are facts


The number 8 is lucky to Chinese people. Source: I am Chinese


Just because someone can break into your house doesn’t mean you shouldn’t lock the door





When do people think the soviet union fell?


Companies like google, facebook, and apple typically have better security. Other companies know that so rather than contracting with another third party or implementing themselves, they use oauth.

With oauth, apple, google, microsoft etc. will vouch for you. There are advantages and drawbacks, with, imo, the drawbacks outweighing the benefits. Key benefit being better security over poor practices and convenience. Drawbacks being less control of your accounts, consolidating your credentials into one basket, (especially if you use weak authorization), and the potential (likely) situation those accounts are monitored



Can you trust locally run LLMs?
I've been play around with ollama. Given you download the model, can you trust it isn't sending telemetry?
fedilink


“Do not sell” is not the same as “do not share”. Part of some contracts is kickback of data as payment.


Given it’s microsoft, it’s a no from me personally, but their todo app is very good.

Since I couldn’t pry my parents away from ms office anyway, I set them up on this specifically for groceries. They really like it.


What features are missing? (Maybe ignorance is bliss)



There’s often the ‘security vs. convenience’ tradeoff, but for most people you have both sides with Bitwarden over KeePass.

Bitwarden is undoubtedly more convenient. If you can create an account, you can use it. I have a family account, and have both of my parents using it. The love it now, but given the friction to get them there in the first place, it would impossible to get them on KeePass. Especially because they wanted their passwords on all devices.

Regardless of using Vaultwarden or KeePass, you need to have quite a bit of expertise to self host. And you are trusting your own ability to secure your attack surface. I’m sure many if not most in this thread can, but it would take me quite a while to convince myself I have. I would much rather trust security professionals.

Somewhat, although, potentially related. Have you seen Bitwarden’s git repos? It is immaculately organized.

Consistent, clear naming convention. There is literally one called ‘self-host’. If you put that much effort into keeping your code that useable/available/auditable etc. Oh yea. I’m going to trust you to handle security for me


Yes. That’s true. Not to be argumentative, does KeePass have the features that are paywalled by Bitwarden?