Skip Navigation

User banner
Posts
9
Comments
128
Joined
2 yr. ago

  • Yeah, GetPocket App from Aurora store was able to turn on location on GrapheneOS about 4 months back. After reading the AuroraOSS Store Founder's profile on Gitlab, I no longer trust AuroraOSS and if you are using GrapheneOS I would advise to vet and install your own apks.

    I had a CalyxOS phone whose ROM was hacked which should be impossible outside the factory. Yes, I'm sure and if you had access to the phone, you would also be sure. I'm a huge target whereas most people are not so maybe some high end team was run at me and that would not happen to you.

    I'm not competent enough about mobile OS security as of yet to vet mobile OS in detail, but thanks for awareness on Lineage/Divest.

  • Yeah, it's just that I sponsor envs.net for the contributions they make to the NIX community as well as Nim, Zig, Musl, GhostBSD, NetBSD, and Dragonly BSD - all more secure than the alternative.

  • Your argument is valid in an abstract, logical way and I appreciate that. In the real world, it's nearly impossible for nVidia management to all the sudden gain all the secrets/features from a partner company from a man who used to work there! and not suspect something...

    • Suspect theft, espionage, (employee crime) and do nothing = guilty
    • Negligent incompetance/ignorance (used alot) = guilty

    Maybe nVidia did nothing as to plead ignorance and let the guy take the fall or they knew it. Either of these cases is just as criminal when morals are applied.

    Calling nVidia the victim is twisting words very badly and I'm not sure you didn't mean to do that. This is such bad press for nVidia isn't it? If I were nVidia CEO Jensen Huang I would pay people or even make comments pseudonymously. I mean, what does it take to post on Lemmy, just an email account?

    It would be ethically and competantly correct to interally investigate how now you as a Corporation (Word root: Corp = body; Corporation => Arrangement of Bodies) have all your peers features from a former employee of them and there is no way to ethically get around that. None.

    That's the same argument as another plumber who all of a sudden repaired pipes in this totally original way like you did, while you worked on the same job, after working with you. He watched you and took the idea is what happens in the real world.

    Corporate Espionage is a huge thing and it's happened all thoroughout history and maybe even now.

    Just so I'm clear in my communication, there is no case where nVidia can logically be a victim. Best case = co-conspirator.

  • The Blacklight results come up exceptional compartively, 1 tracker, 1 cookie, and it's easy to block Google. It doesn't do that over accounts or sessions however, and that is a quite positive attribute. Thanks for the awareness on that though, for everyone. I always advise to use a blocking browser. I guess overall I see the best-in-class results to be worth it every once in a while.

    You mentioned Cromite for Android, isn't that conflicting? Cloudflare is the #1 MITM privacy destroyer so that's great too. I'll have to check under VPN.

    Could I get your recommendation for what you would advise for a private search engine that has acceptable results?

    Good info overall, thanks for this comment.

  • Hah, I didn't even realize this was you! Great job here, although between us you already know what I think about what it takes to secure TOR ;)

    Thanks for the compliment, I had to hack around bad Gogs docs for hours to implement that.

  • What a superb list! Saved.

    I was thinking of writing a guide on how to lead a digitally private and secure "life" since so many bad guides are out there.

    I'd like to add that the best private and secure Operating Systems are:

    • BSD
    • HardenedBSD
    • Commercial UNIX (HP-UX, AIX, IRIX)
    • Void & Alpine Linux
    • Indie Operating Systems

    Private Search Engines


    Private Browsers

    • Lynx
    • Librewolf
    • Waterfox
    • Qutebrowser
    • Hardened Firefox (at my repo)

    Qubues runs containers yes, but the unique use of a paravirtualized Fedora Linux kernel itself leaves open lots of unique security holes and is therefore extremely hard reviewing the security of it yourself.

    GrapheneOS is constantly being showboated by Ed Snowden which is a red flag and I did experience app contamination on it. I would also suggest PostmarketOS. Definite no on CalyxOS.

    I'd like to throw in my own Free Open Source, git clone, security repositories for BSD and Firefox available on Bitbucket, Github, and my own self-hosted git server with the latest files. All my software is currently written in Python (my very first Python scripts!) and short so it's very easy to review.

  • If a person breaks into a Industrial Plant and steals $10000 worth of computer hardware and the software that was on it, they go to jail for a long time during which they are not allowed much if any "profits"/income. When a Corporation steals $100million, they pay the other company and gain even more money if they are in market dominate position.

    This exchange of money from thief to victim however misses compensating the most aggrieved party, the marketplace > users > you. Really overall though, Civilization loses.

    The problem with the Corporate Legal System is that once something like this is found to happen, morally, ethically, and to secure the future of Civlization, the thieving company should be shutdown in 6mos and all assets put up for auction.

    Corporations have legal "personhood", but it seems to be just the best parts. Since this is well known to nVidia CEO Jensen Huang maybe he just said to himself, "It's just Business".

  • "There are still great people at Google"

    A mind-plague of our time to call mediocrity greatness, as being exceptionally intelligent and being a tech wizard has absolutely nothing to do with being a great person. That is the same as saying the top %1 of Plumbers are great people. When faced with tough life choices, these Plumbers may show negligible character. Stop devaluing greatness.

    It's a serious overvaluation of self and commodization of the term, a weakening of the term, so as to devalue it. It's a mind virus to say flippantly, "that person is great" when in reality they are average. The meaning of the word is being dilluted.

    • Greatness is doing the right thing without being compensated or even recognized for it!
    • Greatness is doing great things on your own (person). Group goodness is good people, action.
    • Greatness is not involved in any way with Corporations. Corporations are profit above all else.
    • Greatness is achieving what others could not achieve. Many awesome search engines were bought out and ruined by Big Tech, as they do with any competing technology.
    • Greatness is not involved with violating the privacy of the whole world in any manner.

    Silicon Valley is an immense perspective bubble that is equivalent to personality re-write. That anyone at Google can be thought of as a "great person" is a total and complete failure of perspective. Super smart, great Programmers, great Engineers, sure.

    Being a great person almost always involves hardship, perserverance, and success against all odds. Read any classical book. Having a Billion dollar company pay you to turn a digital wrench has not one basis for "greatness" in any way, shape or form.

    Think about all the "Great" people in the History of Earth. What did they have in commmon? How many people can be "Great"? Hundreds or even dozens at one Corporation? Gimme a break, that doesn't even fit the definition of greatness, unless your cognitive dissonance is confusing it with mediocrity and that is a societal mind virus.


    So, let's be precise with our life terms like an actual programmer would be with technical terms except applied to your own life. So, you follow rules, you get along well with others, you don't hurt anyone physically, verbally or emotionally, you donate and work for causes, you create great stuff. This is expected of all people so that makes you average. You are an average person.

    Making a comparative judgement against failed people does not make you great. In fact, that brings you down a notch.

    Maybe along with all those other traits instead of creating great stuff you create exceptional stuff. The term applied to you is now "an exceptional 'job title' ".

  • I've seen this time and time again and it breaks my heart. In a Tron way, I wish all users could ingest this and then make reforms to the Industry. Profit at all costs makes users poor.

  • Very intersting! I'm not so sure about the oathiness of:

    1. I will make frequent, small, releases so that I do not impede the progress of others.
    2. I will do all that I can to keep the productivity of myself, and others, as high as possible. I will do nothing that decreases that productivity.

    But I think the real oath impact there is:

    1. I will continuously ensure that others can cover for me, and that I can cover for them.

    In Government work that, ^, is considered career ending.

    I will improve upon this, thanks for the awareness.

  • Superb for including the Engineering Code of Ethics which I didn't know exsisted! In my decades of working on every part of Computer Systems, Information Systems, unfortunately, I personally think if you work for Big Tech, you cannot abide those Code of Ethics. From the website>

    Fundamental Canons

    Engineers, in the fulfillment of their professional duties, shall:

    1. Hold paramount the safety, health, and welfare of the public.
    2. Perform services only in areas of their competence.
    3. Issue public statements only in an objective and truthful manner.
    4. Act for each employer or client as faithful agents or trustees.
    5. Avoid deceptive acts.
    6. Conduct themselves honorably, responsibly, ethically, and lawfully so as to enhance the honor, reputation, and usefulness of the profession.

    How many Google Code Monkeys violate 1 or more of those on the daily? For instance in Canon 1, it does not say profit is paramount, but that public welfare is paramount. In fact, you could argue that is a competing objective working for Big Tech and following ethics.

  • Maybe, postulating, as I consider myself an Engineer and not a Developer.

    Tangentially related: https://comeriohomes.com/the-difference-between-a-developer-and-a-home-builder-2/

    Brainstorm thoughts dated just now

    I guess it's in the conveyance of the word? Engineer seems like fitting a puzzle piece. Creating Software in a vast eco-system of language, OS, Frameworks, Platforms, Networks, and views it's progression in time. For instance planned obsolescence, graceful failure in the "pipeline of things", tolerates network topology changes, etc.

    Maybe Engineers build with well designed, graphed/drawn, and planned strategy of the components in interaction with all other systems, including OS failings, local Network failing, Internet failing, Management Failings (workplace), on and on. The more things you can account for the more brilliant an Engineer you are.

    Software Developer seems more linear. You take an idea and start with a good program. Then it's built up and up until it becomes a great piece of Software.

  • Mozilla Foundation fronts Mozilla Corporation which is for-profit and brings in nearly a Billion in revenue.

    Don't donate, do harden it.

  • Mozilla Foundation fronts Mozilla Corporation which is for-profit and brings in nearly a Billion in revenue.

    Don't donate, do harden it.

  • I tried Kagi and canceled after a week. It's a reformat of DuckDuckGo, a better format for sure, and lack of sponsored links, yet it adds AI too. In the end, it's the same old curated unhelpful results that leave millions of high value boutique and indie sources of information out. Also, it's Orion browser is bad.

    Basically ask yourself that knowing all the good writers, content creators went to Substack, yet hardly any search engine gives results from there, why?

  • Looks like you are using Firefox. Use arkenfox sure, but cut Mozilla off it's 115 server network it uses to track you via FF by using a host deny list, FOSS git clone harden-firefox. You'll have to disable to update ublock origin or remove the extensions line, but it's better to just cut the adverts and tracking by removing it from the networks than by browser interception (slower, loss of performance, still hits your computer). Links included to do that in that repo.

    Alternative browers are Librewolf and Qutebrowser. When you really don't want to be tracked for some things use Lynx.

    A great search engine replacement is Grasp. It's being funded by Paul Graham, the founder of Y Combinator and although you only get 100 free searches a months, it can come in very handy. The search results it gives you, unlike Kagi which is just a reformat of DuckDuckgo yet with AI, it's results are completely different than any other engine and imo, on point, surely for anything technical.

    My general search engine is an envs.net free hosting of Searx. envs.net is a free Linux shell community with many services like blogs, email, matrix hosting, etc etc. If you do end up using their German Searx as main search donate to them, I did.

  • Best comment on Lemmy that I've seen in months. Epic.

  • When I entered by beta code to get into Bluesky, I was immediately, instantly followed, which doesn't sound private, an API that lists new accounts?, by funny blogs, photo bomb accounts, and a profile that said, "This is the trans Witch your mother warned you about".

    It's a ...select community that seems at first glance, all in the same think where cogntive reinforcement is the norm.

  • I tried this in my Grasp account, a search engine that is pre-loaded with all the Hacker News blogs and other select technical website, and builds results in associated degrees of relations from there. It came up with 8 repos searching for:

    https://usegrasp.com/search?q=github+%E2%80%9Ctnt_select%E2%80%9D+

    Also I want to say, your scenario is troublesome that GitHub itself could not come up with a satisfactory answer. Strange.

  • So, every identity verification of your email address will be forever in the public domain? That's counter to privacy. Your email address will be married to a block and chain? There is no thorny issue. That's a solution to a problem that hardly anyone has. Ridiculous nonsense.

    If you are one of those people that thought CERN was looking out for your privacy, here is the rude awakening.