@getimiskon TBH I'd use Google Chrome than moz://a firefox.
@itzzenxx both suck, but there aren't many alternatives, especially on BSD
@getimiskon fair, only those two really exist. Chromium sucks less for me, faster and much more stable.
@itzzenxx @getimiskon Both Firefox and Chromium have terrible UIs, but at least Chromium has a sane back-end and security. Firefox sandbox took way too long to roll out (latest ESR 91 doesn't even have it fully enabled!) and it's still broken, allowing cross-site leaks. Imagine being vulnerable to Spectre in 2022...
@getimiskon @inference I disabled JIT on my pixel 4a, my iPhone 12 pro, and my thinkpad.

removes so much attack surface from doing this lmao
@itzzenxx @getimiskon JS is bad, JIT is worse.

Yes, it can get worse. Why fuck yourself with JS when you can fuck yourself with natively compiled JS bypassing memory protections?
@inference @getimiskon happy that apple finally enabled the option to disable JIT on iOS, really makes me feel more comfortable using iOS whenever my android phone destroys itself (becoming more and more common thanks to the shit release of android 12)

I want a new phone but I cannot afford to pre order a 6a right now
@itzzenxx @getimiskon If I used an iPhone, I'd use Lockdown Mode just for disabled JIT. I already do on GrapheneOS and Chromium.

@itzzenxx @getimiskon @inference A sophisticated cyberattack would involve much more. Let me just hit a switch and I'm definitely not going to be bothered by my other devices or the IoT at home. I wonder if they are still giving the information to the government. If one hits that button, I'm fairly certain the government will know if they are watching.

Gotta love apple for making it easier to stalk people and spy. They don't have a great track record for human rights.

@AmpBenzScientist @itzzenxx @getimiskon I disagree with your post. Apple has always been against the Pegasus-style malware and this is a great first step. It actually puts it in line with GrapheneOS and reduces most attack vectors to effectively zero.
Follow

@inference @itzzenxx @getimiskon It's not going to be enough of a first step. I won't talk about it but our governments have a massive lead on them and if our governments have tools, it's probable that APTs have some level of capability to do the same.

Apple is only selling a brand. If the wrong people are coming, it doesn't really matter and that extends to criminal organizations too. It should be replaced with a screen that reads, "You have fucked up." That's not going to sell phones.

@AmpBenzScientist @inference @getimiskon Apple is a company, of course they need to sell and make money. But that doesn't void them from doing good.

This same logic can be applied to Google, but look at what they are doing with their Titan M in Google Pixels: https://www.youtube.com/watch?v=yTeAFoQnQPo
Sign in to participate in the conversation
Qoto Mastodon

QOTO: Question Others to Teach Ourselves
An inclusive, Academic Freedom, instance
All cultures welcome.
Hate speech and harassment strictly forbidden.