slackness

joined 6 days ago
[–] slackness@lemmy.ml 2 points 21 hours ago

Malware targeting individuals rather than servers do not need privilege escalation. They just need to run as the user and swipe cookies/credentials/wallets etc. Privilege escalation would allow them to do catastrophic damage but that's not the point in that case.

[–] slackness@lemmy.ml 7 points 23 hours ago

If you don't trust an extension then you shouldn't install it in the first place. If you think an extension might be nefarious, trying to work around that by limiting its internet connection is risky.

[–] slackness@lemmy.ml 2 points 1 day ago

majority of unixporn posts are people copy pasting premade hyprland configs so..

[–] slackness@lemmy.ml 5 points 1 day ago* (last edited 1 day ago)

How dare those people make and release software for free but don't dedicate more of their time to me!

[–] slackness@lemmy.ml 6 points 2 days ago (1 children)

Browsers allow websites to have persistent storage apart from cookies.

https://developer.mozilla.org/en-US/docs/Web/API/IndexedDB_API

[–] slackness@lemmy.ml -1 points 2 days ago

The user not having a choice is dumb either way. VPN users are the minority.

[–] slackness@lemmy.ml 2 points 2 days ago (2 children)

Browsers (except for Tor) doing this in the name of privacy is so dumb. Our timezones are already apparent due to our IP addresses. Not only does this not hide the timezone but also makes the user more fingerprintable. Now I'm the dumbass from Ohio who's browser reports UTC timezone for some reason.

[–] slackness@lemmy.ml 2 points 3 days ago (1 children)

I gave you the real reason it should be controversial. Brave's fuck ups have not been significantly worse than other companies'.

re: open source In theory: yes. In practice: maybe. It'll probably eventually be caught by some researcher but unlike popular belief all open source code bases are not constantly being audited by the community. A random person can't just read Brave source code for all platforms and accurately gauge if they're doing something nefarious. It is very easy to hide stuff in code or misuse a protocol for evil purposes, etc.

You can modify the source code but as evident by the fact that there's no Brave fork with crypto removed (there was one but their branding was too similar to Brave's so they got sued), it's not an easy feat to maintain that.

[–] slackness@lemmy.ml 1 points 3 days ago

Running those adblockers on your devices is extremely insecure. They register as a VPN and intercept HTTPS traffic. They decrypt the encrypted traffic, filter it, and encrypt again meaning all your communications are signed by this single app's certificate. Not to mention any vulnerability would wreak havoc.

https://grapheneos.org/faq#ad-blocking-apps

[–] slackness@lemmy.ml 1 points 3 days ago (4 children)

It's backed by Peter Thiel who is a war mongering Nazi billionaire.

[–] slackness@lemmy.ml 8 points 4 days ago

Can you really talk about E2EE on a closed source app? The whole point of E2EE is I don't trust the vendor. If they give me a blob as a client and tell me it's E2EE, am I supposed to just trust them all of a sudden?

 

I'm looking into buying one of AMD's newer GPUs. Either a 9060xt or 9070xt. Is there a way to track driver support (I know they're supported but I'm interested in bugs/missing features/performance/etc.) for these cards other than asking people who owns them?

I will be on latest Mesa and firmware so I'm interested in the current state.

view more: next ›