@0xtero@kbin.social

First I drink the coffee, then I do the things.

Cybersecurity specialist. Perpetual blue team botherer and a glorified network janitor. SecurityFest Crew (https://securityfest.com/)

Trying to leave things better than I found them.
Slow regard of silent things.

#infosec #security #cybersecurity #dfir #coffee #climate #sustainability #solarpunk

About Me: https://0xtero.hanninen.eu/
Mastodon: https://infosec.exchange/@0xtero

This profile is from a federated server and may be incomplete. Browse more on the original instance.

0xtero,
@0xtero@kbin.social avatar

As is the case normally with these "exodus" things, most people went back to Reddit after the first month here.

0xtero,
@0xtero@kbin.social avatar

I'm old school. I use text files

0xtero,
@0xtero@kbin.social avatar

I still do that for meeting minutes, out of old habits, but other stuff like design notes/specs need to be e-mailed around, so it had to be something digital. Markup in text files was my solution.

I've never used Evernote, I thought it was something Mac specific?

0xtero,
@0xtero@kbin.social avatar

It's a silly hashtag för instances that are in a "pact" to block Threads

0xtero,
@0xtero@kbin.social avatar

Because the people signed the pact did it long time ago, before any details about Threads federation was known. It was a typical fedi kneejerk reaction.

0xtero,
@0xtero@kbin.social avatar

I guess majority on fedi are dumbasses in that case ¯_(ツ)_/¯
Mastodon is pretty fucked up anyway because everyone is on mastodon.social.

0xtero,
@0xtero@kbin.social avatar

Yeah, that's pretty much my take as well.

All the "but muh datas" pearl clutching is just annoying and frankly, ridiculous. If they wanted to mine us, they already would have. They're probably doing it as we speak. They didn't have to create a multi-million social network for it. A raspberry pi on someones desk would have sufficed. Fedi doesn't have any (/very much) privacy.

They're doing this to escape the wrath of EU privacy watchdogs. They were already fined for $1.3bn and more is coming. Running their Twitter killer on interoperable protocol is nice, because it's free and they get to point at W3C and say they're LIKE TOTALLY supporting data portability. Why would they "extend and extinguish" that? It's their alibi.

I don't like Meta. It's a shit company ran by shit people. I hope they burn in hell.
But I can't really get my panties in a twist about threads.net existing.

I'll get angry if they somehow figure out to push ads to my face.

But for now. Maybe I'll block it. Maybe I won't. We'll see.

0xtero, (edited )
@0xtero@kbin.social avatar

doesn’t mean we have to hand it to them on a silverplatter and allow them to scrape it legally

They could have just set up a simple Pleroma on Raspberry Pi and it would have been just as "legal" as any other instance. You'd need to turn on AUTHORIZED_FETCH and set up authentication on the Mastodon API, otherwise everything is public and unauthenticated (even if the instance is suspended/defederated).

But if enough instances say no, that means they are not welcome. Democracy and all

mastodon.social has already said yes. So have all the other big instances. Most of them have said "we'll wait and see". So democracy served I guess

And the last point is the dumbest: Threads will just include a revenue sharing model like Youtube does

Yeah, maybe. Who knows. I'll deal with it when it happens rather than knee-jerk years in advance. Threads has a long way to go, it's missing a lot of features to put it on par with their other commercial competitors, so I think they're going to be busy doing other things.

0xtero,
@0xtero@kbin.social avatar

I think he's talking about people on his own instance.
He's Fosstodon admin, so pretty sure he knows how federation works.

0xtero,
@0xtero@kbin.social avatar

I bet he does. You can block/mute influencers pretty easily and you can block the whole domain if you so wish.
He's talking about some kind of nefarious ad injection into ActivityPub objects as part of server to server activities.

0xtero,
@0xtero@kbin.social avatar

Why spend the money up front? That's just bad business.

Yeah agreed. They're building a multi-million dollar social network - why spend all that money up front when they could have just installed small anonymous Pleroma on Raspberry Pi for under 100 bucks if they'd wanted to mine our data.

I don't think fedi is their "target".

0xtero,
@0xtero@kbin.social avatar

How do we accomplish that?

0xtero,
@0xtero@kbin.social avatar

Somehow I don't think many instance admins have resources or knowhow to drive legal processes against Meta?

And while a disclaimer on the instance page might have some effect, the Federation protocol makes it hard to avoid getting a copy of the said content in your cache.

0xtero,
@0xtero@kbin.social avatar

Simo Häyhä has entered the chat.

0xtero,
@0xtero@kbin.social avatar

Local mail client (Thunderbid) -> IMAP/POP -> sync.
Once done, move to a local folder and delete from Gmail.
You can just backup the Thunderbird profile, if you want to keep the mails safe

0xtero,
@0xtero@kbin.social avatar

Why are they still in EU? Isn't it time to revoke their membership card and benefits?

0xtero,
@0xtero@kbin.social avatar

Will be interesting to see how they deal with nazis and CSAM from all the Japanese servers.

0xtero,
@0xtero@kbin.social avatar

Not more than it is now. Everything is already public so if they need it, they've already been collecting it. This doesn't really change anything.

0xtero,
@0xtero@kbin.social avatar

Yeah will be interesting to see if they enable two-way federation. It's problematic for them

Polish Hackers Repaired Trains the Manufacturer Artificially Bricked. Now The Train Company Is Threatening Them (www.404media.co)

In one of the coolest and more outrageous repair stories in quite some time, three white-hat hackers helped a regional rail company in southwest Poland unbrick a train that had been artificially rendered inoperable by the train’s manufacturer after an independent maintenance company worked on it. The train’s manufacturer is...

0xtero,
@0xtero@kbin.social avatar

You wouldn't download a train?

0xtero, (edited )
@0xtero@kbin.social avatar

Get a physical copy that doesn’t require internet activation then, assholes.

I think the point was, it is increasingly hard to find such products.
And even once you think you've bought such product, DRM makes sure it's still not really yours.

0xtero,
@0xtero@kbin.social avatar

Yeah, and as the article links, this is just not about media, CDs, DVDs and games. It's also about very physical products that we immediately associate as "owned" - like printers, phones, cars, tractors or even, (lol) trains. They're all locked to manufacturers parts and repair services and increasingly difficult to circumvent.

0xtero,
@0xtero@kbin.social avatar

Serving my car with 3rd party parts is stealing?

0xtero,
@0xtero@kbin.social avatar

Smaller marketshare,
Pretty sure they'd release mobiile > console > PC if they could get away with it.

The PC release will be a year or so after to get people to double dip.

0xtero,
@0xtero@kbin.social avatar

There's thousand different stats around this, but generally most analysts place consoles slightly ahead of PC with stronger growth potential, but it depends a bit where in the generation cycle they do their measurements.

Most of this has been overshadowed by mobile gaming though.

0xtero,
@0xtero@kbin.social avatar

But at least MKBHD tried to say nice things about it in his video. He really tried.

0xtero,
@0xtero@kbin.social avatar

Yes, because the last two years have been so full of fantastically good news.

0xtero,
@0xtero@kbin.social avatar

Well that was the most useless study I've seen in while. Torrent sites getting flagged as malicious. Who would have thought?

0xtero,
@0xtero@kbin.social avatar

It’s going to cause the company to violate regulations and the company might get fined.

Which is why PostNord is arguing Force Majure. They can't be liable for something they don't have any power over.

0xtero,
@0xtero@kbin.social avatar

Some of that data is 10 years old

0xtero,
@0xtero@kbin.social avatar

The Gnome devs say you don't need a mascot.

0xtero,
@0xtero@kbin.social avatar

Because the more market share leads to better hardware and driver support

0xtero,
@0xtero@kbin.social avatar

The real problem with the internet isn’t Facebook or Twitter or Reddit, it’s the fact the entire experience is pretty much controlled by Microsoft and Google

I think the real problem is that the entire Internet is basically just a dozen multi-billion Big Tech companies and the entire "Internet economy" is so tightly weaved into advertising money.

0xtero,
@0xtero@kbin.social avatar

What's really wild is that you don't have to go that far into the past (just ca. 20 years) when the Internet was all about Information wanting to be Free. It was hopeful time of people coming together around new technology. There were a lot new businesses with wild innovations.

And then, just in a decade it was all gone. Replaced by unregulated behemoths that merged until there's a dirty dozen left, controlling most of global money and information.

Enshittification of the Internet.

Where can I find documentation on how federation works? (kbin.social)

I can't find anything on the specifics of how federation actually works. The op thread gets copied to any federated server? What happens if the thread is deleted on the op server? Does it still exist on all other federated servers? How do comments and votes work? That kind of thing.

/kbin logotype
0xtero,
@0xtero@kbin.social avatar

I need Linux for my work, so it's not really possible to switch.
I do keep a Windows machine for gaming at home though.

Right tool for the job and so on..

0xtero,
@0xtero@kbin.social avatar

Mastodon has user defined word filters, you can completely mute this crap (of course people love misspelling his name).
I wish lemmy/kbin would get something similar it's really annoying to have this fucker in my feed daily.

0xtero,
@0xtero@kbin.social avatar

Lessons in Chemistry was fantastic

0xtero,
@0xtero@kbin.social avatar

She was clearly one of the best characters in the show, so job well done.

0xtero,
@0xtero@kbin.social avatar

There are mobile apps in development and the API is coming along.
Kbin is still just a prototype though, but it's moving along nicely.

My other feeling is that kbin is setting up to be like iCloud whereas lemmy is more akin to sftp.

I've no idea what that analogy even is, but I think the differences are mostly technical (PHP vs Rust) and UX.
Both implement AP a bit differently, but at the end of the day, they're still AP aggregators.
And that's ignoring the political issues around lemmy's codebase ofc.

0xtero,
@0xtero@kbin.social avatar

Yea, I know its the edgy kid distro

Huh?

0xtero,
@0xtero@kbin.social avatar

I see, I was wondering why a IT-Security workers were suddenly being called edgy kids. lol.

0xtero,
@0xtero@kbin.social avatar

Looks like pretty standard security attachment for contractors.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • uselessserver093
  • random
  • Food
  • aaaaaaacccccccce
  • test
  • CafeMeta
  • testmag
  • MUD
  • RhythmGameZone
  • RSS
  • dabs
  • KamenRider
  • Socialism
  • KbinCafe
  • oklahoma
  • TheResearchGuardian
  • SuperSentai
  • feritale
  • All magazines