Show newer

I know that it's fundamentally against everything that NATO was founded for and what it's member states believe in.

But the only correct response to the Russia's aggression is NATO invading Ukraine first.

So that russians can't illegally annex it with NATO returning the territory to the Ukraine once russia calms down again.

@schnittchen

> @kreyren Language please!

That was such a terrible PSA that you deserved that :p

I was commenting on:

> ALWAYS export your TOPT secret (which is hard!) to a 2nd secure location.

which is malpractice as then anyone who gets the hold of your device (like google, NSA, etc.. who has access to it at all times and remotely) can then have access to all of your other accounts that they might not have by law access to + the threat of a physical access and 0-days.

The one way you can get secure access to this sensitive data is by opening a user session that stores the processing data in RAM which makes it significantly more difficult for a bad actor to read as they then have to interpret binary data (unless the developer doesn't care and just stores plaintext there).

> And why exactly would the upstream developer have access to the secrets I enter on my phone? FreeOTP has no cloud feature and no need to move data anywhere off my phone.

I meant Apple in this case as you are using their proprietary solutions which is filled with backdoors and spyware for them to use at any time they want + their security is trash.

I consider FreeOTP relatively safe assuming that it's complying with GPLv3 (github.com/freeotp/freeotp-ios), but i didn't read the code to know for sure.

---

So again depending on your threat model the solution that i am recommending is:

Get a device that runs Android or even Linux with components and their wiring that you trust

In case of Android get a trusted 3rd party distribution such as LineageOS/DivestOS so that you remove all the malware that google and the device manufacturer put there in terms of a software (might also be concerned about the bootloader).

In terms of linux (which is significantly better in comparison to android in terms of functionality and security) i recommend distros that comply with GNU FSDG.

For the password management i recommend KeepAssXC/KeepAssDX that you got from a trustable source. In terms of android that is F-Droid or building the apk yourself assuming that you configure it to not use google services.

For the storage i recommend nextcloud such as tab.digital that then you can sync anywhere.

If you don't care that apple and their creepy friends are constantly watching and listening to you then i guess anything will work for you as long as it shows numbers *shrug*

FWIW i would also recommend to deprecate your dependence on SIP calls and use e.g. matrix.org for calls and SMS to further surveillance, if you really need to be able to use SIP calls e.g. to call an emergency number then i recommend getting a dumb phone with a quick bootup so that it can be turned off when you don't use it.

@schnittchen What a bullshit of a PSA

I recommend setting up a free nextcloud account and storing keepass database on it

Then you can just remember your master password and access it anywhere anytime and securely.

Using Google Authentificator or even FreeOTP sacrifices on security as Google and the upstream developer knows your secrets.. On Keepassxc you get these from F-Droid preferably on an Android device that was degoogled.

schnittchen 🏳️‍🌈🐆  

PSA regarting 2FA (TOTP) 

Someone should tell him that he can do the same thing with piece of bowden tube and a lighter lol

What a malpractice of engineering.. this is exactly why you do research and small scale prototypes

youtube.com/watch?v=PCHZ672zx0

@lashman looks like 4Story with different graphics lol

@lashman what kind of psychopath writes it like this 💢

... what's lost ark

@ItsSkyDragonz @n8 too late for you, lets hope it's not infectious

@maxheadroom You probably have a better option to sunon in germany from the last time i was looking for them..

i just picked the sunon as i don't like waiting for delivery :p

@maxheadroom Hmm looking at the fan construction it might be worth it to redesign it so that it's printable including the motor part so that the phases then can be wrapped manually with copper wire.

@maxheadroom I actually opted against the noctua as they are significantly less economical in comparison to sunon with which i so far had a good experience and should be sufficiently silent.

Worst case scenario they are well balanced in terms of the construction and the fan is removable so i can do fluid simulations in FreeCAD for airflow and optimize that further.

gme.cz/ventilator-sunon-ha4010
gme.cz/ventilator-sunon-mf6010

> However, I think my Hotend setup was suboptimal and allowed heat creep into the upper part of the Hotend and melted the bowden tube.

ye also have issues with heat creep they are managable with the stock ender-3 atm, but i don't like it's energy efficiency as it requires a fan constantly blowing on the hotend.
I have scheduled tests to find an alternative solution, but so far didn't get to it.

@maxheadroom and the connecting of both steppers to one port works without issues?

I would think that it would create a power management issues

@maxheadroom No the PCB used by the printer itself.. ehh that doesn't have a socket for a 2nd Z-axis motor as far as i am aware though? It is like a connector that splices both steppers together or?

I am ending maintenance of all my already published open-source projects and contributions until I finish the work on sufficient management solution.

The projected solution is expected to have test-driven Quality Assurance ("QA") meaning that anyone can merge as long as their contribution passes tests with both rolling (may contain malware, sandboxed bootstrapping for testing is projected to be provided for all repos) and release-based cycle (malware-free and stricter QA).

I may publish more projects during this period, but i won't be responding to issues and merge requests as much.

Show older
Qoto Mastodon

QOTO: Question Others to Teach Ourselves
An inclusive, Academic Freedom, instance
All cultures welcome.
Hate speech and harassment strictly forbidden.