rysiek, to random
@rysiek@mstdn.social avatar

I am now verifying a @QubesOS installation ISO I am going to use very soon, and I need a trusted source of their master signing key fingerprint.

/me looks at the 10-year anniversary t-shirt I physically got from QubesOS team at :blobcateyes:

Right. :blobcatcoffee:

securedrop, to qubesos
@securedrop@fosstodon.org avatar

SecureDrop Client 0.10.0 is out, featuring improvements to the export process, including VeraCrypt support.

https://securedrop.org/news/securedrop-client-0_10_0-released/

Part of the SecureDrop Workstation project (currently in a closed-beta pilot phase), SecureDrop Client uses @QubesOS to help journalists safely communicate with sources. General availability is planned later this year!

#SecureDrop #SecureDropWorkstation #QubesOS

backmota, to qubesos Spanish
@backmota@mastodon.social avatar

Llevo unos días utilizando una distribución basada en la seguridad de tus datos, pero no tanto en el anonimato para eso se tendrían que seguir algunas consideraciones extra (claro que puedes hacer que todo corra por Tor), la verdad me parece interesante trabajar todo por máquinas virtuales separadas y lo más “Difícil” fue acostumbrarme que las MV sufren un tipo de amnesia de lo que le instalaste al hacer reboot pero eso se resuelve instalando en las plantillas base

fsf, to random
@fsf@hostux.social avatar

What is your favorite free software project? #ILoveFS #ILoveFreeSoftwareDay

0x9060,
@0x9060@mastodon.social avatar

@fsf and are my favorite free software projects. My entire digital infrastructure is built on these.

Also and are great fun!

fedora, to qubesos
@fedora@fosstodon.org avatar

Thank you for providing the most private and secure operating system in the world!

To: @QubesOS
From: Fedora

Qubes OS heart locket meme

9to5linux, to qubesos
@9to5linux@floss.social avatar
martijn, to linux
@martijn@ieji.de avatar

Love that NetworkChuck shows @QubesOS but he really should have demonstrated it on a @tuxedocomputers machine, they are great for it 😍 :qubes: :sexybiggetje:

alternativeto, to qubesos
@alternativeto@mas.to avatar

has launched version 4.2, featuring upgrades to Dom0, PipeWire support, and several rewritten GUI applications. The new version also introduces SELinux support, a unified grub.cfg location, and automatic clipboard clearing.
https://alternativeto.net/news/2023/12/qubes-os-4-2-released-with-dom0-upgraded-to-fedora-37-and-pipewire-support/

linuxiac, to linux
@linuxiac@mastodon.social avatar
kissane, to random
@kissane@mas.to avatar

A thing that I would love to get across about unpaid tech work, rolling your own [x], and running only the purest and most secure technical systems, is that if you add up enough factors like:

  • raising kids;
  • chronic illness or disability;
  • caring for sick, disabled, or dying family members;
  • community service;
  • a non-technical job

…just for starters, the tech stuff is going to get triaged way down the list. And a lot of those factors are not evenly distributed, demographically!

doboprobodyne,
@doboprobodyne@mathstodon.xyz avatar

@kissane @fschaap @choong

Oh no, don't want that I beg, our views are not mutually exclusive, you comment on "running only the purest and most secure technical systems"; I speak not of , or , but of Debian being used only through a GUI.

I apologise that I conveyed my agreement with you so poorly.

I hope there might be a Third Way that lets people have a little cake, and eat it.

gsuberland, (edited ) to random
@gsuberland@chaos.social avatar

UEFI getting owned by the vendor logo parser code is extremely on brand.

Tons of time and effort put into securing platform stuff and it gets popped anyway because execs want the laptop to show the user a Lenovo logo for 3 seconds on boot even though it's already printed right there on the fucking laptop.

lispi314,
@lispi314@udongein.xyz avatar

@gsuberland @moffintosh This seems mostly useful as a persistence option.

It also shouldn't be able to affect a system that hasn't been entirely pwn'd.

It also vindicates my dislike of most image parsers & codec implementation choices, again, even more damningly than libwebp did.

> The results raise a vexing question: If fuzzers identified so many exploitable vulnerabilities, why hadn’t the developers of the UEFIs (often called IBVs or independent BIOS vendors) and the OEMs selling the devices already used these tools and fixed the underlying bugs?
Because they largely don't give a shit. We've known this for a while now.

Literally none of those bugs would work if they'd written the firmware in strict Ada SPARK like they should've for something as security-critical.

mjhn, (edited ) to android French

Coucou,

Quelqu'un ici a réussi à transférer ses photos depuis son ordiphone vers une sous (merci de ne répondre que si vous utilisez ou avez utilisé : il est TRÈS spécifique) ?

Pour le moment, je passe par un poste annexe, et cela me saoule.

*** Edit 06/11 13 h 28 : il semblerait que ce soit toujours un bogue connu non résolu (comme il y a quelques mois).
Voir : https://infosec.exchange/@S1m/111360486002302612
Toute information sourcée & confirmée qui indiquerait que le bogue a été traité est la bienvenue. ***

*** Note 2 : je me refuse à « bricoler » : j'évite de créer des vulnérabilités en utilisant des outils qui ne sont pas faits pour garantir la sécurité. C'est aussi pour cela que QubesOS est précieux et très particulier.
S'il faut bricoler, je continuerai à passer par un autre poste et une clef USB sécurisée. ***

🙏​ 🌞​

mjhn, to qubesos French

@ThierryJoffredo

Bonjour Thierry,

Au passage, merci pour l'information.

L'éternel souci des extensions et des montées de versions.

Je regrette depuis un bail que n'ait jamais intégré cette fonctionnalité simple et surtout importante et utile pour ses utilisateurs.

J'imagine que l'extension va être mise à jour.


Perso je ne suis plus utilisateur de l'extension depuis que je suis passé sur et que je gère mes comptes séparément.

Chose que l'on peut aussi faire avec des VMs sans QubesOS.

C'est une contrainte, mais une contrainte qui apporte sécurité et protection de données personnelles.

Du coup, j'aurais du mal à m'en passer, dorénavant. Vu que @QubesOS fait des merveilles. 😎​

🙏​ 🌞​

En réponse à : https://mamot.fr/@ThierryJoffredo/111301088460340078

Techpizzamondays, to Toronto

TechPizzaMondays is a weekly social event in Toronto that serves as a place for intellectual curiosity and friendship over shared pizza.

It also serves as a users group for Free and Open tech, including everything Fediverse, Linux , GrapheneOS , QubesOS , XMPP , etc etc etc. If you enjoy technological Freedom, we look forward to meeting you :)

We meet every Monday evening at Victory Cafe at 6pm, and usually go till ~9.

Join us!

chiefgyk3d, to DEFCON
@chiefgyk3d@social.chiefgyk3d.com avatar

Redid my @purism Librem 14 laptop post so now it has everything isolated again properly and now signal for both of my phone lines.

chiefgyk3d, to linux
@chiefgyk3d@social.chiefgyk3d.com avatar

I hate to be that guy, but if you’re asking for help to install you’re probably not ready for Kali Linux. Learn to walk before you run. It’s the same thing I tell people with Qubes OS.

ir0nh3at,

@chiefgyk3d isn't bad as long as you've got a brain, compatible hardware, and don't stray too far from their usage guides. It's harder than Windows, but once you grok it it's not a big deal.

lispi314, to emacs
@lispi314@mastodon.top avatar

So many hackish uses of unix tooling that I'll be able to get rid of from my once I'm finally using v29 everywhere.

love.

I'm already using but it's not quite the same as having it built-in (and I also found out about it after I'd already made a bunch of these unixy hacks...).

Particularly, the built-in support is compatible with non-Emacs SQLite use, while emacsql requires keeping Elisp-readable for everything.

lispi314,
@lispi314@mastodon.top avatar

@dekkzz76 Yeah. Such is life.

I could do it with , but then that means my configurations aren't portable to those qubes and machines on which I purposely do not put Guix. ANd while I could handle an additional layer of environment variability... I really don't feel like it.

seedy, to qubesos

Have any people used and is it ? I've been wanting to try it for a while.

ayakael, to qubesos
@ayakael@agora.ilot.io avatar

Proud to share that the QubesOS template builder for Alpine Linux is working. Here is the repo for any QubesOS users who'd like to try it out:
https://lab.ilot.io/ayakael/qubes-builder-alpine

Go to releases for RPMs installable on Qubes.

There's still a lot to do. For example, they can't really be used for system appvms, but I've been using a manually built template for a year, and it's been great!

lispi314, to qubesos
@lispi314@mastodon.top avatar

You know, I think the and folks have the right idea regarding .

The last few major hardware vulnerabilities all had it as a pretty central part of exploitation.

Is the slight gain in performance worth the tradeoff? I don't think so.

For Qubes, it's possible to ensure only threads from the same VM/trust-domain run collocated on a core, but for more conventional OSes, that's much harder to guarantee.

thechrisdantes, to qubesos

Yesssss! After fighting with this for a month, my laptop is back running with . I highly recommend laptops. Great customer service.

dusnm, to GNOME
@dusnm@fosstodon.org avatar

unironically has one of the best paradigms.

What makes it great:

  • Keyboard shortcuts galore
  • Keyboard driven
  • Dynamic workspaces
  • Spotlight-esque shell behavior
  • Well organized and distraction free
  • LibAdwaita (controversial)

Bonus: Successfully killed the traditional, windows paradigm.

What could see some work:

  • Better accessibility
  • Sensible extensions that don't break the entire shell
kenogo,

@dusnm +1 It provides everything I need as a power user. But it's also extremely intuitive for my not very techy friends to use.

It makes me really sad not to use Gnome anymore because my paranoia makes me freak out when using anything other than and that sadly doesn't properly support Gnome (yet).

But... Everyone just has their own preferences. More than any individual desktop environment or window manager, I like the fact that we can choose :)

doctorwhom, to qubesos
@doctorwhom@mastodon.social avatar

Installing on a USB stick to run on my work . I want to make sure the needed hardware works before I wipe out .

I've been running Qubes OS on a desktop at work & it's been pretty cool.

chiefgyk3d, to iPod
@chiefgyk3d@social.chiefgyk3d.com avatar

I finally got parts in to repair my for tomorrow's stream. New battery and cases. Hopefully we can get both of the repaired or at the least get one fully functioning. Also the HDD cable in case that was the issue on the other one, double-sided tape for device repair from my cell phone repair days and you can catch me on around 7PM EST tomorrow. We'll do some more and tinkering and

nixCraft, to random
@nixCraft@mastodon.social avatar

Is it worth overpaying for extra RAM in laptops that cannot be upgraded later? 8GB? 16GB? 32GB? 64GB? 128GB? What are your bare minimum requirements these days?

corvus_ch,

@nixCraft 16 GB (those darn browser tabs) or 32 GB if is involved.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • JUstTest
  • GTA5RPClips
  • DreamBathrooms
  • InstantRegret
  • magazineikmin
  • khanakhh
  • Youngstown
  • ngwrru68w68
  • slotface
  • everett
  • rosin
  • thenastyranch
  • kavyap
  • tacticalgear
  • megavids
  • cisconetworking
  • normalnudes
  • osvaldo12
  • ethstaker
  • mdbf
  • modclub
  • Durango
  • tester
  • provamag3
  • cubers
  • Leos
  • anitta
  • lostlight
  • All magazines