Skip Navigation

InitialsDiceBearhttps://github.com/dicebear/dicebearhttps://creativecommons.org/publicdomain/zero/1.0/„Initials” (https://github.com/dicebear/dicebear) by „DiceBear”, licensed under „CC0 1.0” (https://creativecommons.org/publicdomain/zero/1.0/)OO
Posts
0
Comments
302
Joined
2 yr. ago

  • Sure, but there's still no excuse for "store the password in plaintext lol". Once you've got user access, files at rest are trivial to obtain.

    You're proposing what amounts to a phishing attack, which is more effort, more time, and more risk. Anything that forces the attacker to do more work and have more chances to get noticed is a step in the right direction. Don't let perfect be the enemy of good.

  • No, defense in depth is still important.

    It's true that full-disk encryption is useless against remote execution attacks, because the attacker is already inside that boundary. (i.e., As you say, the OS will helpfully decrypt the file for the attacker.)

    However, it's still useful to have finer-grained encryption of specific files. (Preferably in addition to full-disk encryption, which remains useful against other attack vectors.) i.e., Prompt the user for a password when the program starts, decrypt the data, and hold it in RAM that's only accessible to that running process. This is more secure because the attacker must compromise additional barriers. Physical access is harder than remote execution with root, which is harder than remote execution in general.

  • It's a parody of overserious memes that are trying to sound edgy and badass. The archetype is a gun-wielding skeleton that's riding a motorcycle and saying something about thin blue lines, but wolves and other imagery are also adjacent.

    Instead, THE_PACK takes that aesthetic, cranks it up to 12, and adds some silly text. Everyone is role-playing as a skeleton that's obsessed with motorcycles (hogs). You have to TALK IN ALL CAPS to be heard over the engine noise. And everyone's friendly and welcoming in a way that edgelords aren't.

    A few great examples from the last year or so: