@rysiek@mstdn.social
@rysiek@mstdn.social avatar

rysiek

@rysiek@mstdn.social

Hacker, activist, free-softie ◈ techie luddite ◈ formerly information security and infrastructure at https://isnic.is/ and https://occrp.org/ ◈ my opinions are my own etc.

(he/him)

profile image: drawing of a head and shoulders of a cat-person, in a space suit.

banner image: long-exposure photo of a large tent, brightly illuminated from inside, looking as if it is made of lava

#foss #libre #privacy #infosec #fedi22

(public toots CC By-SA 4.0 if applicable)

🇪🇺 🇵🇱 · 🇧🇦 🇮🇸 · 🇺🇦

This profile is from a federated server and may be incomplete. Browse more on the original instance.

johncarlosbaez, (edited ) to random
@johncarlosbaez@mathstodon.xyz avatar

If you could watch an individual water molecule, about once in 10 hours you'd see it do this!

As it bounces around, every so often it hits another water molecule hard enough enough for one to steal a hydrogen nucleus - that is, a proton - from the other!

The water molecule with the missing proton is called a hydroxide ion, OH⁻. The one with an extra proton is called a hydronium ion, H₃O⁺.

This process is called the 'autoionization' of water. Thanks to this, roughly one in ten million molecules in a glass of water are actually OH⁻ or H₃O⁺, not the H₂O you expect.

And this explains why protons can move through water much more easily than larger ions can. Let's watch how it works.

(1/n)

alberto_cottica, to fediverse
@alberto_cottica@mastodon.green avatar

Can anyone recommend a #peertube instance where I can upload occasional videos from my #data analysis work, my #cohousing project, or both at the same time? I do about one a year. Thanks!

CatherineFlick, to random
@CatherineFlick@mastodon.me.uk avatar

A friend of mine lives in NZ and saw this poster, I mean teens can be picky but this is probably going a bit far

alcinnz, to random
@alcinnz@floss.social avatar

The (surface-level) software industry makes its money through some combination of:

  • Surveillance advertising
  • Telling investors stories
  • Exploiting the well meaning & the desperate
  • Skirting laws
  • Paywalls (least objectionable, if it weren't for the DRM)

In every case the vast majority of our computing effort goes towards extracting an income, not towards any tasks with any real value!

Yet politicians hope that the software can continue (green) economic growth for them?

1/1.5!

mntmn, to random
@mntmn@mastodon.social avatar

if you can, please vote in the EU elections today—let's stop fascism in europe.

jon, to random
@jon@gruene.social avatar

Welcome to today's thread - #CrossBorderRail South East Europe Day 09 09 Jun 2024 - Sarajevo - Maglaj - Doboj

Crossing these borders:
Internal border Bosnian Federation to Republika Srpska

These borders on the borders map:
https://umap.openstreetmap.fr/en/map/crossborderrail-all-the-borders_935041#11/44.6337/18.1165

Today's routes on the routes map:
https://umap.openstreetmap.fr/en/map/crossborderrail-south-east-europe-v9-draft_1053482#10/44.9458/17.2444

stux, to random
@stux@mstdn.social avatar

Just a little reminder that here in Europe, we play the same exact video games as youth from the United States

We do not have (daily) school shootings however

Instead of blaming video games, start looking at the super easy to get weapons on each corner of street problem

Games are not the problem, weapons are 🇺🇸

mekkaokereke, (edited )
@mekkaokereke@hachyderm.io avatar

@stux

Only correction, but an important one.

US school shooters don't get their guns "on the street."

Guns are extremely expensive. US school shooters are usually rich, white, men and boys (~85%) and use guns legally owned by their families.

I don't think people realize how expensive guns are, and how much US gun ownership is concentrated in rich, white, men.

As you look at this picture, realize that each AR 15 costs about $1000.00.

Photo source:
https://www.gabrielegalimberti.com/projects/

1/N

AdamBishop, to Bulgaria
@AdamBishop@floss.social avatar

🇪🇺 Today, if you are EU citizen, please go out to vote. Vote for yourself, vote for the community, and please go out and vote for us "Europeans" disenfranchised by Brexit 🙏

#EUelections2024 #UseYourVote #BrexitDisenfranchised #EU #electionsEU2024 #vote

rysiek, to CrystalsHashtags
@rysiek@mstdn.social avatar

While #Adobe is doing an absolute stupid with their new licensing terms, and (now Canva-owned) #Affinity slashes prices by half in a "flash sale", I am once again asking people to consider supporting #FLOSS tools instead.

Yes, they are far from perfect.

But with a small fraction of what these closed source vendors are raking in, these tools could be made immeasurably better.

And they won't end up bought up and enshittified, as experience with past attempts at doing that to FLOSS tools shows.

catileptic,
@catileptic@chaos.social avatar

@rysiek chipping in to mention i've used Krita (for digital painting), Gimp (for general-purpose processing) and Inkscape (vector art) for digital art and they are pretty good! one can even script automations to deal with repetitive processing.

evacide, to random
@evacide@hachyderm.io avatar

Microsoft says they are making a bunch of changes to Recall to mitigate the many, many security and privacy problems that researchers have found over the last week:

https://www.theverge.com/2024/6/7/24173499/microsoft-windows-recall-response-security-concerns

evacide,
@evacide@hachyderm.io avatar

Are Microsoft's changes going to be enough? We will check when they roll them out. But the important lesson here is that public security research made a difference here.

Strandjunker, to random
@Strandjunker@mstdn.social avatar

Between Dolly Parton’s quiet COVID research fund, BLM support, and her sending generations of children books through the USPS, she continues to be one of the most relevant and wonderful people of every era. — Dolly represents the best of America, while Trump represents the worst.

mekkaokereke, (edited ) to random
@mekkaokereke@hachyderm.io avatar

If you made a lot of noise yesterday about the D-DAY anniversary, but have nothing to say about rising fascism in your country the other 364 days of the year, then all that tells me is that you like war movies. 🤷🏿‍♂️

rysiek, (edited ) to infosec
@rysiek@mstdn.social avatar

Lukewarm take:

When I see general* "security advice" that mentions "do not use public WiFi" or "use a VPN", I am immediately suspicious about all other advice offered.

Yes, a decade ago that was a consideration, because most sites were not using HTTPS. Credentials were flying cleartext on the wire.

Today, almost all sites use HTTPS. Doesn't mean the risk is zero, but it's way lower.

*) "general" meaning "without a very specific threat model in mind", meant for general public, etc.

#InfoSec

noodlejetski,
@noodlejetski@masto.ai avatar

@rysiek on the other hand, not security related - many ISPs in Poland offer a discount (and actually show the discounted price as the main one, with some additional fine print) if you consent to having your traffic analysed for marketing. the WiFi in my apartment is provided by the company owning the building, and I'm willing to bet they agreed to every offer by the ISP. I'd probably rather have them analyze my interests in connecting to Mullvad servers than how often I order food online...

steve,
@steve@mastodon.nexusuk.org avatar

@rysiek Also worth noting that several VPNs have been caught with their pants down collecting data from the traffic they have been routing - many ISPs and public wifi providers likely have better data protection practices than some VPN providers, so you may well be better off without the VPN.

derickr,
@derickr@phpc.social avatar

@rysiek @letsencrypt Party good, donations to them better.

kissane, (edited ) to random
@kissane@mas.to avatar
janl, to random
@janl@narrativ.es avatar

current status:

Miriamm, to random
@Miriamm@mastodon.social avatar

These are the type of statues we should be putting up. Danuta Danielsson hitting a neo Nazi (1985).

andrew, to random
@andrew@esq.social avatar

The IRS is using AI to select returns for audit and has not released details on what exactly that means.

Tax Gap: IRS Should Take Steps to Ensure Continued Improvement in Estimates | U.S. GAO
https://www.gao.gov/products/gao-24-106449

dansup, to Pixelfed
@dansup@mastodon.social avatar

An open source/self hosted and federated Tik-Tok alternative, made by @pixelfed has just successfully tested federation!

https://loops.video

If you applied to join, expect an invite within the next week! ✨

(We will be open sourcing the mobile app and backend later this summer)

#loops #pixelfed #tiktok

willoremus, to random
@willoremus@mastodon.social avatar

Deplatforming is out of favor in Silicon Valley. But it works.

A new study in Nature finds that Twitter's mass suspension of 70,000 QAnon-linked accounts after Jan. 6 meaningfully reduced the overall circulation of fake and hyperpartisan news on the platform. https://www.washingtonpost.com/technology/2024/06/06/twitter-jan-6-deplatforming-misinfo-nature-study/

libreture, to Horror
@libreture@mastodon.social avatar

Added The Dark Magazine to the list of DRM-free bookshops! 💜

Each month The Dark brings you the best in dark fantasy and horror, selected by award-winning editor Sean Wallace and published by Prime Books.

https://libreture.com/bookshops/#the-dark-magazine

#ebooks #DRMfree #Magazines #Horror

LibrarianRA, to comics
@LibrarianRA@worldkey.io avatar

Casper the Friendly Ghost 1957 comic book cover.
.

GossiTheDog, to random
@GossiTheDog@cyberplace.social avatar

For those who aren’t aware, Microsoft have decided to bake essentially an infostealer into base Windows OS and enable by default.

From the Microsoft FAQ: “Note that Recall does not perform content moderation. It will not hide information such as passwords or financial account numbers."

Info is stored locally - but rather than something like Redline stealing your local browser password vault, now they can just steal the last 3 months of everything you’ve typed and viewed in one database.

video/mp4

GossiTheDog, (edited )
@GossiTheDog@cyberplace.social avatar

Turns out speaking out works.

Microsoft are making significant changes to Recall, including making it specifically opt in, requiring Windows Hello face scanning to activate and use it, and actually encrypting the database.

There are obviously going to be devils in the details - potentially big ones.

Microsoft needs to commit to not trying to sneak users to enable it in the future, and it needs turning off by default in Group Policy and Intune for enterprise orgs.

https://www.theverge.com/2024/6/7/24173499/microsoft-windows-recall-response-security-concerns

  • All
  • Subscribed
  • Moderated
  • Favorites
  • JUstTest
  • mdbf
  • ngwrru68w68
  • cubers
  • magazineikmin
  • thenastyranch
  • rosin
  • khanakhh
  • InstantRegret
  • Youngstown
  • slotface
  • Durango
  • kavyap
  • DreamBathrooms
  • megavids
  • tacticalgear
  • osvaldo12
  • normalnudes
  • tester
  • cisconetworking
  • everett
  • GTA5RPClips
  • ethstaker
  • anitta
  • Leos
  • provamag3
  • modclub
  • lostlight
  • All magazines