@itzzenxx @getimiskon @inference A sophisticated cyberattack would involve much more. Let me just hit a switch and I'm definitely not going to be bothered by my other devices or the IoT at home. I wonder if they are still giving the information to the government. If one hits that button, I'm fairly certain the government will know if they are watching.
Gotta love apple for making it easier to stalk people and spy. They don't have a great track record for human rights.
@itzzenxx @getimiskon @inference They've been known to screw over talented bug hunters. They will just release to 0day solutions again. Even if they didn't have a poor history with bug hunters, they don't pay anywhere near a fair price.
I have a Pinephone. I am responsible for how secure my system is. I don't daily drive it anymore because I have beta hardware which was later considered Alpha hardware. It only has thermal problems, poor battery life because the screen adjusts from off to painful to look at in full sun light. It runs full GNU/Linux.
It was development hardware and yes I helped.
I can flip physical kill switches. That's what real control looks like.
@inference @itzzenxx @srestegosaurio @getimiskon You know that your work on Gentoo could be applied to the Pinephone. It's not as vulnerable as it sounds. This was a phone that came without an operating system and has firmware that was reverse engineered by the community. There's a good chance that a device chosen at random is going to be a nightmare to get into. It might be a nightmare after the ingress. It's an interesting community.
@itzzenxx @srestegosaurio @getimiskon @inference Do you know what a Pinephone is? You should like you don't know what it is. You want to integrate a Yubikey or something similar too? It's trivial to add these.
@itzzenxx @srestegosaurio @getimiskon @inference I've seen enterprise security modules get bypassed and do nothing but make my job longer. Those modules are still relatively new. It's laughable how it's considered security and not just DRM protection. I can assure you that typing in the Manufacturer of that old Laptop will form many pages in CVEs. I still have some source that exploits a few.
That manufacturer needs Coreboot as they can't make anything correctly. They won't implement Coreboot because it would stop forced obsolescence.
@straw @itzzenxx @srestegosaurio @getimiskon @inference While being on Mastodon too. This is how one loses credibility.
Talking down to others and only using insults with very little substance to counter. Showing ignorance about the areas claimed to be an expert in. Insulting people based on what they believe in.
They sound like someone who works in security. Mocking the decisions of others with far more credibility and making it abundantly clear that the only reason they don't like the FSF or people who even partially believe in it is because they respect the ability to choose.
The harder they come, the harder they fall.
@inference @itzzenxx @srestegosaurio @getimiskon Arguments are supported by facts, not insults. Have fun with your security and check your hubris at the door. There's going to be a day when your best efforts are going to be defeated and you will be humiliated with it. Those who aren't humble will find themselves humbled.
It ultimately does not matter how talented that one is or how much they know, hubris will be their downfall. Perhaps I know it all too well.
it's why GrapheneOS is only avalible for Google Pixel phones, and it's also why I abandoned my Thinkpad T420 over a month ago. You need something like Titan M, PSP, etc, technologies like those are needed to make the computer more secure.