Live data from Hacker News

Viewing profile — OSI-Auflauf

OSI-Auflauf

HN member
Joined
Tue, Oct 24, 2023, 11:13 AM UTC
HN karma
50
Public activity
28 items

About OSI-Auflauf

No profile information was provided.

Recent public activity

  1. comment
    Comment #42490944

    This can be boiled down to half a page. Why put in the chatgpt manure to.inflate it.

  2. comment
    Comment #42490937

    Ugh so much inflated text and self congratulation to something that in the end boils down to trusting you as authority again.

  3. comment
    Comment #42072420

    https://www.watchvigilantesinc.com/

  4. comment
    Comment #41976002

    Don't waste your time with dns adblocking. If you are serious about network side blocking do tls interception (lmao) but that is a lot of maintenance, adds other attack surface and…

  5. comment
    Comment #41451407

    I use wg-quick via the parameterized systemd unit (wg-quick@.service) all the time and never had selinux blocks. Which fedora are you on?

  6. comment
    Comment #41433477

    Seen devices with IPMI that had by design unauthenticated admin login to the IPMI from the host side that was not removable. They also could flash IPMI firmware from the host. So i…

  7. comment
    Comment #41424752

    Shoutout to Heads for even attempting to make this. But even that is far from complete. At least the UX is a little better than standard.

  8. comment
    Comment #41424739

    Lennart is technically doing good work. While his tools are less complicated than the current hilariously convoluted standard boot process, they are still too complicated to use we…

  9. comment
    Comment #41277536

    Many surface brand devices had a toggle in the bios for something like "security level" for years. Which is a switch between Windows signing CA only and Windows signing CA + 3rd pa…

  10. comment
    Comment #41277517

    If firmware not buggy: If Secureboot is set up to use keys which never signed any bootloader that lets you modify the system pre-login.: Then it kind of matters. If you have a gami…

  11. comment
    Comment #40362192

    Thats interesting. Are you ok for a 1on1 talk about this topic?

  12. comment
    Comment #40342924

    Both do that.

  13. comment
    Comment #40342756

    You compare apples with oranges. Because if you'd compare the apples , you'd notice one of them has no usable E2E. Yes oranges umm phone numbers is a problem. They have that both. …

  14. comment
    Comment #40342694

    Irs super complicated to use. And you need an existing Telegram account to actually handle that cryptocurrency to buy these pseudo-numbers outside of the telephone namespace. Guess…

  15. comment
    Comment #40342379

    That repo is not fully open. Release lag -> Telegram foss needs to wrangle the release every time. Fdroid CI takes its time.

  16. comment
    Comment #40342370

    Yes and thats why users spend sometimes months on old builds. Also which distro packages Telegram? Fedora doesn't. Debian does but at times it was so old the client crashed from re…

  17. comment
    Comment #40342321

    You need a phone number to sign up for Telegram as well. And you can correlate username to phone number not that hard in most standard setting cases.

  18. comment
    Comment #40342291

    Telegram Foss clients exist only because of unpaid volunteers that take Telegrams messy mix of open and closed parts and rip closed parts out and replace them. The Telegram organis…

  19. comment
    Comment #40342238

    Because theirs was particularly bad. They xored a server provided nonce in their modified DH scheme making their side able to mitm the key exchanges.

  20. comment
    Comment #40342196

    Signal has got Usernames now. You can block number discovery. You can't resolve username to number. Your main account ID internally is not your number anymore. If 2 users add you u…

  21. comment
    Comment #40342173

    On Signal vs Telegram: Telegrams Encryption is off most of the time. They have serverside access to messages. The optional E2E is annoying to use and isnt even available on every p…

  22. comment
    Comment #39603823

    > p2p, signing, local first, yadda yadda curl | bash is the recommended way to install.

  23. story
    Ask HN: How do you ensure trust in infra?

    In light of Lawful interception, existance of corrupt law enforcement agencies. How do you protect your namespaces on the net?

  24. comment
    Comment #38139728

    When does this come from a not user hostile company?

  25. comment
    Comment #38139436

    What use is that when the policy is defined by the same person?