Current reputable vendors
Current reputable vendors
given the current, undergoing attack on DIY sources, and the fact this is a public forum, should we really be listing sources and suppliers here?
maybe given the current climate we should reconsider our opsec practices and move some things into private, secure channels?
The best we can do is switch this community to “local only”
But I feel like it would lock out a lot of people who need to know this stuff.
there are Matrix chats for this, too - but yeah, in general the problem with driving things underground is that it can make it harder for people who need access to care to get it … still, on the other hand, having everything open has also resulted in loss of access by leaving DIY providers vulnerable to political actors
edit: even just having a rule that sources aren’t publicly named, but sent by DM or something might help?
Matrix encryption is a joke - soatok.blog/…/cryptographic-issues-in-matrixs-rus…
And that’s before we get into the “security” of an encrypted chat room that anybody can join.
However www.privacyguides.org/en/pastebins/ an encrypted pastebin you send to people via DM would be useful?
Now I have to see if hrtcafe was archived anywhere…
not all Matrix spaces are open to anyone to join, and are we really going to say a private Matrix space with encryption is roughly equivalent to public cleartext on a forum?
(EDIT: It also looks like the encryption issues aren’t even relevant to the Matrix client I use.)
It just feels like there isn’t a shared concern here, am I right?