Claus Holm Christensen

@claushc
238 Followers
577 Following
10.7K Posts
IT Security and network engineering by profession. Open Source fanboy for fun. Riding my motorcycle to relax. From Copenhagen 🇩🇰. Since ~333ppm. He/him.
Who's gonna tell him?
For people who are concerned about having their devices seized at US airports starting Monday when ICE "assists" the TSA, EFF has this guide: https://www.eff.org/deeplinks/2025/06/journalist-security-checklist-preparing-devices-travel-through-us-border
A Journalist Security Checklist: Preparing Devices for Travel Through a US Border

We wrote this checklist to help journalists prepare for transit through a U.S. port of entry while preserving the confidentiality of your most sensitive information, such as unpublished reporting materials or source contact information. It’s important to think about your strategy in advance, and begin planning which options in this checklist make sense for you.

Electronic Frontier Foundation

"Vælg DNS med filter og slip for malware, porno og reklamer -- Uanset om du bruger Windows, Mac eller telefon, Chrome, Safari eller Edge, kan du filtrere det værste skrammel af Internettet helt automatisk."

I den sidste slide fra vores Danmark Skifter arrangement i fredags finder du en 13 minutters video introducerer jeg DNS4EU, en EU-baseret DNS-server med mulighed for filtrering.

https://oldrup.dk/slide/dns4eu/

#DanmarkSkifter

Slip for malware og reklamer med DNS filter

Uanset om du bruger Windows, Mac eller telefon, Chrome, Safari eller Edge, kan du filtrere det værste skrammel af Internettet helt automatisk.

oldrup.dk

Kender jeg en der forstår NIS2 godt nok til at forklare mig (bare i punktform) hvilke krav en auth DNS udbyder skal leve op til?

(Jeg kan godt selv google - jeg leder efter en der arbejder med NIS2 og forstår reglerne godt)

Jeg vil gerne betale et par timers løn for den rigtige person.

Del gerne - tak! :)

You're paying AI companies a monthly subscription fee to be fingerprinted like a parolee.

I got bored and ran uBlock across Claude, ChatGPT, and Gemini simultaneously.

Claude:

  • Six parallel telemetry pipelines.
  • A tracking GIF with 40 browser fingerprint data points baked into the URL, routed through a CDN proxy alias specifically to make it harder to block.
  • Intercom running a persistent WebSocket whether you use it or not.
  • Honeycomb distributed tracing on a chat UI because apparently your conversation needs the same observability stack as a payments microservice.

ChatGPT:

  • proxies telemetry through their own backend to hide the Datadog destination URL from blockers.
  • uBlock had to deploy scriptlet injection — actual JS injected into the page to intercept fetch() at the API level — because a network rule wasn't enough.
  • Also ships your usage data to Google Analytics. OpenAI. To Google. You cannot make this up.
  • Also runs a proof-of-work challenge before you're allowed to type anything.

Gemini:

  • play.google.com/log getting hammered with your full session behavior, authenticated with three SAPISIDHASH token variants, piped directly into the Google identity supergraph that correlates everything you've ever done across every Google product since 2004.
  • Also creates a Web App Activity record in your Google account timeline. Also has "ads" in one of the telemetry endpoint subdomains.

When uBlock blocks Gemini's requests, the JS exceptions bubble up and Gemini dutifully tries to POST the error details back to Google. uBlock blocks that too. The error messages contain the internal codenames for every upsell popup that failed to load.

KETCHUP_DISCOVERY_CARD.
MUSTARD_DISCOVERY_CARD.
MAYO_DISCOVERY_CARD.

Google named their subscription upsell popups after condiments and I found out because their error handler snitched on them.

All three of these products cost money.
One of them is also running ad infrastructure.

Touch grass. Install @ublockorigin

#infosec #privacy #selfhosted #foss #surveillance

Look at this baby beaver and feel better briefly

Har vi ikke også præcis samme problem med DR, som i nedenstående toot? DR er tydeligt formuleret i formidlingen af Rusland (sådan som det burde være), men anvender alle mulige krumspring, videreformidlet fra IDF for at pynte på Israels ulovlige krigsførelse og forbrydelser? (og samme med USA)

Så kald dog en spade for en spade!

https://mastodon.social/@The_Whore_of_Blahbylon/116273853077293315

Skal du have ny bil? Alle bilmærker tracker dig massivt. Renault klarer sig bedst i fht privacy, med det lille aber dabei, at deres bilers styresystem er Google, som kun virker med Google-konto – say no more…

https://www.mozillafoundation.org/en/privacynotincluded/categories/cars/

*Privacy Not Included: A Buyer’s Guide for Connected Products

Cars and their privacy and security concerns

Mozilla Foundation
more:


Date: Sat, 21 Mar 2026 12:07:32 -0600
From: Theo de Raadt <[email protected]>
cc: Renaud Allard <[email protected]>, [email protected]
Subject: Re: [patch] ext4fs rw
In-reply-to: <[email protected]>

Theo de Raadt <[email protected]> wrote:

> Renaud Allard <[email protected]> wrote:
>
> > Maybe it should be made clear on the website that OpenBSD will only
> > allow new code made by a human. Because I feel there might be more
> > requests like this and there is no point in repeating the discussion.
>
> Yes.

If we point out that Copyright assumes human/artistic/creator output,
and that we depend upon various rights being specifically and legally
granted by the human/artistic/creator, then we barely need to say that
AI are not humans, and definately not able to legally grant the rights.