autonomysolidarity, to random German
@autonomysolidarity@todon.eu avatar

1/2
Das 40,00€ teurer gewordene Nachfolgeticket zum 9-Euro-Ticket soll Daten melken. Zwar solle das Ticket übergangsweise nicht nur für Smartphones erhältlich sein sondern auch auf Chip-Karten und kurzzeitig auf Papier mit QR-Code, aber wichtig scheint es den Regierenden vor allem anderen, dass mit dem 49€-Ticket Echtzeit-Verkehrsdaten erhoben werden können.

Positiv klingt zunächst: "Es werde nicht gespeichert, wer von A nach B fährt, sondern nur, wie stark die Verkehrsmittel ausgelastet sind. Für die Fahrgäste könnte das ein Nutzen sein, weil die Verkehrsunternehmen so für ausreichend Kapazitäten sorgen könnten."

Allerdings: Das Ticket wird wohl nur als Abo personalisiert erworben werden können, so dass darüber anfallende Personendaten zukünftig schnell integriert werden könnten. Mit Hinblick auf den aktuellen massiven Ausbau des Überwachungsstaats und der Kontrollgesellschaft in Deutschland und der EU (digitale Personenkennziffer/RegMod, Chatkontrolle, Identifizierungspflicht, Biometrie, eIDAS uvm) ist es doch auch gar nicht die Frage ob, sondern nur wann und mit welchem Vorwand (Anschläge, Pandemie, Jugendschutz, Wahlkampf) personalisierte Datenerfassung und Polizeizugriffe kommen werden, sobald die digitale Kontrollinfrastruktur erst einmal errichtet wurde.

darkandandstormy,

@autonomysolidarity
Adding a few things:

It is possible to use the Play Store without a account, use the app "Aurora Store" via to access it.

Several windows programs like the mentioned & have portable versions at @PortableApps

And when using a (7, 8, 10, 11) device you might wanna install the program "DoNotSpy" first.
https://pxc-coding.com/

popey, to random

Is there a good password manager which works seamlessly on all major platforms (windows, Mac, Linux, iOS, android, browser) and has similar features to 1Password or LastPass but is fully open source?

wolfram_roesler,
@wolfram_roesler@mastodontech.de avatar

@popey Since the last thing you want for your password database is vendor lock-in, use the format. is a good cross-platform client.

benjaminhollon, to random
@benjaminhollon@fosstodon.org avatar

If I were to set my grandparents up with a password manager, which should I look at? My current leaning is bitwarden.

(I figure my preferred https://passwordstore.org wouldn't fit the bill.)

bignose,
@bignose@fosstodon.org avatar

I've found to be excellent, @benjaminhollon.

, actively maintained and updated, good UX and many features.

Has a browser integration package too, for Firefox and Chrome-based browsers.

And for Android, works with the same database, so get a way to sync the file between devices and you're golden.

SeaFury, to random

Today is fixing little things and errands day. This morning I shortened the cable on my mouse. Done in 15 minutes - hours of frustration ended
https://bustatech.com/shorten-the-length-of-wire-for-your-pc-mouse/

kkarhan,

@SeaFury

Personally, I can recommend https://www.enpass.io for password managment since it runs on , , , and even .

It just runs great and doesn't force people into some cloud subscription nor charges extra for self-hosting.

If you don't need multi-platform support, you may want to take a look at & for Android and Linux resprectably...

thelinuxEXP, to linux
@thelinuxEXP@mastodon.social avatar

This week, in our and News video, we have more work on HDR support, improving their PPA system, and a security flaw in , the open source password manager, plus being adopted by more distros, and a new XFCE spin.

Let’s dive in!

https://youtu.be/qgFo07nL49Y

Nuggz,

@thelinuxEXP Hey Nick, great to see your new vid here this morning and hope you are having a lovely weekend!

Just wanted to note something re: Keepass.

This exploit doesn't work for @keepassxc which is another open source alternative and can open databases created in Keepass.

So for anyone wanting an immediate fix, you can switch to KeepassXC. I've used both but prefer XC.

hywan, to random
@hywan@fosstodon.org avatar

Time to show off and to share your best Firefox extensions! 🦊

• What are your favorite and most useful Firefox extensions? Why?
• What are your funniest and probably most useless extensions?
• What are your most weird extensions?

seth73,

@hywan Favourite and most used are the plugin and , most useless is probably the addon, but i love it everytime i see it in action

keepassxc, to random
@keepassxc@fosstodon.org avatar

We have released a blog post discussing CVE-2023-35866: https://keepassxc.org/blog/2023-06-20-cve-202335866/

wolfram_roesler,
@wolfram_roesler@mastodontech.de avatar

@keepassxc We’ve seen plenty of real vulnerabilities recently in all kinds of password managers, and and … really bad ones even … and now someone created a CVE for ‘s totally normal and safe behaviour, and the press mindlessly starts picking it up and shredding . Honi soit qui mal y pense. 😤

utopify_org, to fediverse
@utopify_org@veganism.social avatar

You know those Google and Facebook buttons to log in into a website, which doesn't belong to those big corps, like small blogs.

What if we would have something like a universal #Fediverse login? Imagine logging in with your Mastodon account to comment on blogs, participate in a chatroom or do other stuff...

I really would like to have a chatroom where everyone can login with their fediverse login.

#Chatrooms are things I really miss on the fediverse or does it exist and I don't even know it's existence?

Is this technically possible with the #activitypub protocol and would it make sense?

What do you think?

#question #askfediverse #askfedi #askmastodon #askmasto #chat #communication #instantmessenger

utopify_org,
@utopify_org@veganism.social avatar

@amadeus I agree, password managers are much better and can save a ton of work.

Which one do you use?

I use keepass for a long time. The last years it was #keepassxc and I couldn't live without it!

Imagine a life without a password manager...

avoidthehack, to infosec

1Password explains scary Secret Key and change alerts

https://www.bleepingcomputer.com/news/security/1password-explains-scary-secret-key-and-password-change-alerts/

According to 1Pass, due to service maintenance/disruption - not a breach.

Nuggz,

@avoidthehack Been using Keepass and now @keepassxc for over 15 years total.

I still don't understand why people aren't keeping their encrypted databases offline with free and open source software that eliminates these risks, concerns and the actual breaches such as .

But, people often want 'convenient', not 'secure'.

LinuxGuides, to linux German

Heute zum zwei freie Passwortmanager welche ich beide sehr empfehlen kann. Welchen nutzt Du? Und wenn Du noch keinen Passwortmanager nutzt, wird's Zeit!

SkyfaR,

@thomas @LinuxGuides

nutze ich für Arbeit, also Datenbanken mit Zugängen, die ich teile, wo nur ein einzelnes Konto möglich ist. Synchronisiert über die Projektinterne .

nutze ich mit eigener Instanz in Form von () mittlerweile für alles Private, ist halt im Browser sehr angenehm und mit App auf dem Gerät echt super.

heiseonline, to Amazon German

Mittwoch: Kritik an Amazons Arbeitsbedingungen, Blick in Gesundheitsdatengesetz

Amazon-Lagerhäuser "gefährlich" + Entwurf vom Gesundheitsdatengesetz + Vorwürfe an Gentest-Firma + Lücke beim Freundschaftspass + Schwachstelle in KeePassXC

https://www.heise.de/news/Mittwoch-Kritik-an-Amazons-Arbeitsbedingungen-Blick-in-Gesundheitsdatengesetz-9193224.html?wt_mc=sm.red.ho.mastodon.mastodon.md_beitraege.md_beitraege

wolfram_roesler,
@wolfram_roesler@mastodontech.de avatar

@heiseonline Bin gespannt, ob wir genauso oft die Gegendarstellung zu sehen bekommen, wenn man auch offiziell anerkennt, dass die sogenannte Schwachstelle in gar keine ist. 🙄

admin, to random Italian
@admin@puntarella.party avatar

Abbiamo aggiornato mastodon alla versione 4.1.4, che ha corretto alcuni problemi di sicurezza.

Ne approfittiamo per invitarvi ad abilitare l'autenticazione a due fattori dalle impostazioni. Se non vi piace Google Authenticator potete usare FreeOTP 🧙‍♀️

nemobis,
@nemobis@mamot.fr avatar
9to5linux, to opensource
@9to5linux@floss.social avatar

2.7.5 Open-Source Password Manager Adds New Option to Allow Screenshots, Botan 3 Support, and Many Bug Fixes https://9to5linux.com/keepassxc-2-7-5-password-manager-adds-new-option-to-allow-screenshots-botan-3-support

@keepassxc

kikobar, (edited ) to github
@kikobar@acc4e.com avatar

finally forcing down our throat.

What does this mean for people using it under due to or concerns? 🙄

I believe they will still be able to use via SSH and HTTPS, but won't be able to do any admin task inside the portal.

The last nail in the coffin will be forcing the expiration of current personal tokens once 2FA is mandatory.

Is there any implementation of TOTP suitable for these folks?

What are your thoughts about this?

EDIT: (you may see exchange with @iampytest1 in the replies) - There are secure implementations of TOTP like , which even comes installed by default in , so Tor users can use 2FA safely with these.

" Hey kikobar!

We're reaching out to let you know that as announced last year, we will officially begin requiring users who contribute code on GitHub.com to have one or more forms of two-factor authentication (2FA) enabled. You are receiving this notification because your account meets this criteria and will be required to enroll in 2FA by October 6th, 2023 at 00:00 (UTC). "

to3k, to android Polish
@blog.tomaszdunia.pl avatar
claudius, (edited ) to random German

If you have a favorite hardware security token ( for example) you may be interested in this discussion on the project: https://github.com/keepassxreboot/keepassxc/discussions/9506

avolha, to infosec

🇬🇧 A detailed audit of the KeePassXC application and its underlying code base

🇵🇱 Szczegółowy audyt aplikacji KeePassXC i bazowego kodu źródłowego

https://keepassxc.org/blog/2023-04-15-audit-report/

#infosec #security #cyberbezpieczenstwo #keepassxc

  • All
  • Subscribed
  • Moderated
  • Favorites
  • anitta
  • InstantRegret
  • mdbf
  • osvaldo12
  • magazineikmin
  • tacticalgear
  • rosin
  • thenastyranch
  • Youngstown
  • Durango
  • slotface
  • everett
  • kavyap
  • DreamBathrooms
  • JUstTest
  • khanakhh
  • ethstaker
  • cubers
  • normalnudes
  • tester
  • GTA5RPClips
  • cisconetworking
  • ngwrru68w68
  • megavids
  • provamag3
  • Leos
  • modclub
  • lostlight
  • All magazines