• 4 Posts
  • 22 Comments
Joined 1 year ago
cake
Cake day: March 3rd, 2023

help-circle






  • tarneo@lemmy.mltoPrivacy@lemmy.mlWTF IS THIS?
    link
    fedilink
    arrow-up
    179
    arrow-down
    1
    ·
    9 months ago

    Yeah, most anticheats are actually just rootkits (running at kernel level with unlimited privileges). This is also a big security issue, some games like genshin impact have also been used to create botnets since there is only one privilege escalation from the game itself to the kernel.

    Whenever you use an anticheat, you just have to take the company’s word for what they are doing with that kernel-level access.


  • tarneo@lemmy.mltoPrivacy@lemmy.mlPlease, do not use Brave.
    link
    fedilink
    arrow-up
    13
    arrow-down
    4
    ·
    9 months ago

    Use librewolf instead of Firefox to get rid of the whole spyware part of it. Librewolf only has a single request when starting, to “check for updates”. But using Firefox is the second best thing you can do both for your privacy and to fight Google’s " Web Environment Integrity" crap.




  • Yes. But p10k has many downsides:

    • requires using oh my ZSH, which alone is quite bad because of how much slower it makes the shell.
    • is a piece of software you’ll have to either install on each new device or have the software in your dotfiles. Bad practice. I very much prefer having no additional dependencies or overhead, plus the way I do it I can do whatever I want without the limitations of a prompt made by someone else, for which I’d have to dig in a lot of documentation. Compared to this, I only spent half an hour making a prompt exactly how I like, which doesn’t add overhead and doesn’t require a third party piece of software which I’d have to install on every new device.

  • Free software tells you “do whatever you want, you’re free” but open source completely misses the point: it means you can read the code, but not necessarily recompile, modify and redistribute. Plus the term was invented for the confusion that would come from it. For example, a lot of AI models like LLM’s claim they are “open-source”, which basically means nothing: it’s far easier to say that than to claim it’s a free model, because that would imply freedoms to modify, reuse, redistribute the training data, weight etc. (no AI model allows that for now, and there will probably never be one that does).


  • I’m surprised this strategy was approved for a public server

    The goal was to avoid getting hacked on a server that could have many vulnerable services (there are more than 20 services on there). When I set this up I was basically freaked out by the fact I hadn’t updated mastodon more than a week after the last critical vulnerability in it was found (arbitrary code execution on the server). The quantity of affected users, compared to the impact it would have if hacked, made me choose the option of auto-updates back then, even if I now agree it wasn’t clever (and I ended up shooting myself I’m the foot). These days I just do updates semi-regularly and I am subscribed to mailing lists like oss-security to know there’s a vulnerability as early as possible. Plus I am not the only person in charge anymore.







  • tarneo@lemmy.mltoAsklemmy@lemmy.mlWhat is your favorite quote of all time?
    link
    fedilink
    arrow-up
    98
    arrow-down
    10
    ·
    edit-2
    11 months ago

    Here are a few nice ones, I can’t really pick:

    “Capitalism is the extraordinary belief that the nastiest of men for the nastiest of motives will somehow work together for the benefit of all.” - John Maynard Keynes

    (You can also apply this one to proprietary software vs. Free software (don’t say open source in my presence))

    “The tyrants are only great because we are on our knees.” - Étienne de La Boétie

    “Those who do not move, do not notice their chains.” - Rosa Luxemburg