Rui Seabra

@RuiSeabra
199 Followers
129 Following
1.8K Posts
System administrator ninja and automation magician with a chronic Free Software passion and specialization. Actor. Apolitical anarchist, [not so] slightly left libertarian.
Bloghttps://blog.1407.org/
Actinghttps://teatro.1407.org/
Opinionhttps://www.1407.org/
Videoshttps://clip.place/a/rms/video-channels
If these terrific questions don't make you think twice about the seriousness (if not intention) behind posts like those, then you have a problem with your security posture regarding supply chain attacks.

I wonder how many people would be able to notice a few milliseconds of delay in a Windows mTLS RDP session, examine the code, and pinpoint the problem so it could be quickly fixed

And how long ago was this already? How many zero days in other widely (massively, in fact) distributed proprietary software have there been around since?

Once in a while I see posts claiming doom and gloom on Free Software security, and they dare wave the flag of the Xz attack, from a high pedestal.

The weirdest and worst case was Veritassium's recent (and shameful IMHO) video.

My comment:

A highly specialized, and long term planning attack, was caught before it did any real harm because of, not in spite of, Free Software's inherently better security model.

#ChuckNorris never died: after winning everyone on this plane of existence he just needed a new challenge! #RIP
https://fsfe.org/news/2026/news-20260316-01.html #FSFÈ this is so bad. Time to renew support of @fsfe and you need to do that now if you have something pledged as Nexi has "cancelled" FSF Europe because it respects the privacy of its supporters!
450 FSFE supporters affected: Payment provider Nexi cancelled us - FSFE

Our long-term payment provider Nexi has terminated our contract without prior notice. As a result, our supporters’ recurring credit card and direct debit d...

FSFE - Free Software Foundation Europe

Dear #FreeSoftware developers...

These governmental attestation requirements popping up all over the world are nothing but a visible escalation step in the war on generic computing.

@pluralistic spoke about it in 2011 and here's a nice transcript for you https://en.wikisource.org/wiki/The_Coming_War_on_General_Computation

I'm not modest enough to not say I was also looking at those writings in the wall, but he's a much better speaker.

Go read that, and please, please, please...

Stop collaborating with the authoritarians.

The Coming War on General Computation - Wikisource, the free online library

So I just got an email from @fsfe with the information that by defending the privacy of it's supporters from its payment provider they got their contract suddenly cancelled?

This is preposterous.

It seems scandalous to me that these fascist organizations are allowed (maybe ordered by law) to be gatekeepers between citizen movements and their supporters with the power to arbitrarily cut them off.

Note: DKIM evaluation is a pass, so I have no reason to doubt this.

Mass surveillance and censorship are escalating in many countries right now. There is a global attack on secure encrypted communication. Often, authorities, politicians, and tech companies work together to push for new laws. One example: when Ashton Kutcher (yes, the actor), through his tech company Thorn, tried to introduce total surveillance of all EU citizens through undemocratic and corrupt methods.

People are pretending it's ok to collaborate with government/law mandates for attestation because we live in democracies.

You need only look at what happens in China to know you're wrong.

Please do.

The answer to those government calls for ID/age/whatever attestation should be the same that is being given by some AI companies regarding usage in autonomous weapons: **NO**.

And it should be loud.

And most importantly, IMHO, absolutely no #FreeSoftware worth its license should ever be a willing collaborationist to the future dictators.