@yetzt Jurnalists who don't have #PGP setup , their #Pubkey and eMail Published published for secure comms per PGP/MIME should not be allowed to call themselves journalists nor practise journalism.

  • It's 2026!

@tails_live / @tails / #Tails has been out there for way over a decade, alongside @cryptoparty / @cryptoparty / #CryptoParty / #CryptoParties and refusing to exercise proper #ComSec is like a surgeon refusing to wash their hands and put on gloves and properly desinfect these before starting surgery: A violation of #ethics and #care so bad it should bar them from any #journalism for life.

Reality Winner - Wikipedia

#Privacy & Security meet Up Hosted by #Monero #WebWipe at #PubKey NYC 5pm - 10pm, us hackers be stopping by for a bit! luma.com/zoc6lubi
Pubkey Holiday Privacy Pop-up · Luma

Bring in the new year with us discussing privacy and Monero. Join us on December 19th at Pubkey in NYC. We'll have privacy lawyers in attendance to discuss…

🟠 NEW: Treasury Secretary Scott Bessent’s unannounced visit to the new #Bitcoin-themed #Pubkey bar caused excitement across crypto, with some calling it a watershed moment!

@Powerfromspace1 do you have other options that ain't subject to #CloudAct?

  • Cuz most folks won't trust services subject to #US laws, and many would only submit material under the precondition that they and onther attrnds get poxellated irreversibly...

  • You gave a #PGP - #Pubkey ready so people can communicate securely with you?

#USpol #InfoSec #OpSec #ComSec #ITsec #privacy #anonymity.

@signalapp you are lying by omnission and technicality because why else do you demand a #PhoneNumber and mandate users to grant access to a devices' camera just to let them use more than the one device they currently use?

  • You could've easily allowed either importing the QR-Code or offered a #Pubkey-ID to type in. But you chose neither…
Kevin Karhan :verified: (@[email protected])

My [reservations](https://infosec.space/@kkarhan/114234551915193036) and [criticism](https://infosec.space/@kkarhan/114862595629371002) re: #Signal are not just valid, but the reality is *even worse than I thought*: - The fact that @[email protected] requires not only their shitty #Android #App, and a #PhoneNumber but literally won't allow people to use their shitty #Desktop-App unless they have an Android device with a camera pointed at it makes it utterly unuseable for certain users *who don't have a fucking #camera in their Android*… Seriously, do they expect folks to deal with that shit? - It's already worse in terms of #UX than #telegram and #discord and that too makes #XMPP+#OMEMO clients like @[email protected] / #monoclesChat & @[email protected] / #gajim easier and faster to onboard #TechIlliterates onto. - Whichever asshole decided that a *replacement for #SMS* should mandate #PII like a #PhoneNumber & not be natively cross-platform should be banned from doing any #tech in their life. Trying to circumvent this shit and helping folks with it makes me so fucking angry that I'm now explicitly refusing to support it! FIX THAT SHIT, @[email protected], and if it means you need to kick some devs in their crouch then consider this a necessary *"investment"*… #sarcasm #TechSupport #TalesFromTechSupport #Enshittification #SignalSucks #TelegramSucks #Messengers

Infosec.Space

@StarkRG nodds in agreeement In a #classroom-like #setup we'd more likely see some centralized, self-hosted #managment solution like #Landscape or #RustDesk being used.

  • I can see why they did this: It's clearly inspired by tools like #AnyDesk and I do have to applaud them for that.

And if this acts similar to #WebCall and merely acts as a "Rendrevous-Server" then traffic and thus costs should be quite low.

I'd still hope they #OpenSource the #Backend so that there's another competitor to #Dayon and #RustDesk available...

  • In the meantime just setting up a sudo admin user with #Pubkey-only auth on #SSH is likely the way to do some admin stuff.

Maybe one day @RaspberryPi will even add #PXE - #NetBoot capabilities to their #RaspberryPi and thus allow for #DisklessWorkstation - Setups, saving a crapton on #MicroSD cards that are prone to get lost and/or stolen...

@alexantemachina

Gerade habe ich das letzte # Proxmox
#Backup der #Homeassistant #VM, zu dessen Zeitpunkt die Daten in Homeassistant noch alle da waren, zurückgespielt.

Und siehe da, nun ist auch das Verzeichnis '/homeassistant' mit jeder Menge Inhalt befüllt.

Kein Wunder, dass die histrorischen Daten fehlen, wenn die ganze Datenbank, die configuration.yaml etc. komplett weg sind.

Aus irgendeinem Grund hat sich das Verzeichnis komplett geleert, als ob da jemand 'rm -r /homeassistant' gemacht hätte. Da aber niemand außer mir Zugriff darauf hat (Zugriff von extern nur per
#VPN, #SSH mit #Pubkey abgesichert und Passwortzugang deaktiviert, keiner außer mir kennt die Zugangsdaten, mein Notebook ist vollverschlüsselt), kann das eigentlich nicht sein. 🤔🤷‍♂️

Eigentlich könnte nur sein, dass ein Addon einen Trojaner / Backdoor enthält.

Installiert ist
- evcc
- File Editor
- Grafana *
- Let's Encrypt *
- Mosquito Broker
- SQLite Web
- TasmoAdmin
- Terminal & SSH
- Zigbee2MQTT

aus
#HACS
- card-mod
- Power Flow Card Plus
- Power Distribution Card
- Energy Flow Card Plus
- Energy Period Selector Plus *

* aktuell unbenutzt

Und Integrationen für
- FritzBox
- Backup *
- Einkaufsliste *
- HACS
- Homeassistant Supervisor *
- Meteorologisk institutt (Met.no) *
- Mobile App *
- MQTT
- Radio Browser *
- Goodwe Inverter
- Reolink
- SMLIGHT SLZB
- Sonne *
- Tasmota

* nicht selbst installiert und bis auf Backup ungenutzt

@lucasmz @Anthony_Kraudelt @squads nah.

One submits a #Pubkey amd that's being used to #encrypt the #2FA message.

🎉 OpenBSD 7.7 is out, folks! Now you can finally enjoy #debugging a fresh set of bugs while pretending to care about yet another mirror site. 🍻 Meanwhile, Theo de Raadt is still the only one who knows what "pubkey" means. 🙄🔑
https://www.openbsd.org/77.html #OpenBSD77 #release #TheoDeRaadt #pubkey #security #mirrorSites #HackerNews #ngated
OpenBSD 7.7

OpenBSD 7.7

@Chiquidrakula @COSAntiFascists @iris @Em0nM4stodon @cryptoparty @cryptoparty

Now if you don't trust @monocles nor @protonprivacy (which IMHO is fair and correct!) and you can't use @thunderbird or something because you have no private computer with internet access [i.e. only a work-issued laptop you can't use for anything non-work - related] and you can't just boot into @tails_live / @tails / #Tails or a portable #Linux #Desktop distro at all then the real "#GalaxyBrainChair" - level "#BigThink" you can do is go the "#OfflinePGP" route and thus encrypt & decrypt your messages on a different device entirely.

  • The main problem may be that you'd then have to get that to the machine from which you can send it, which as we all know from the #MattKC video means you gotta "keep it brief" [as in 2.944 bytes short] if you want to do the webcam & screen method of #airgapping...

I just didn't have time to get the "Airgapped Transfer Protocol" done, but setting the *"Barcode Scanner" App into bulk mode makes it less tedious to import stuff to an Android device...

  • Again: The nice part with #OpenPGP & #PGP/MIME is that you don't have to trust anyone but yourself and maybe your communication partners' ability to make proper #Keys and get the #Pubkey to you...
[English] Pfandleiher on... The offline-pgp-method and why Encrochat, SKY ECC and ANON are failing.

YouTube