Show newer
Sheogorath :si_blobfox: boosted

And here comes the newest HedgeDoc release:


- A security fix for CVE-2021-39175 which you want to check the release notes for as you might need to adjust some settings
- smaller built artifacts (should make it easier/faster for clients to load
- 3 new languages: Lithuanian, Romanian and Slovenian

Enjoy your time and update soon :mastowink: 🦔

#Hedgedoc #Release

Anyone wondering, the Element Flatpak on Flathub is on its way to be shipped. Will be published with the next batch and should be at your desktop within the next few hours :)

Sheogorath :si_blobfox: boosted

“I will herein refer to Ray-Ban Stories as “Facebook glasses,” … The words “Facebook” and “glasses” are making the hair on the back of your neck stand up, right? The phrase “secret spy camera glasses” is making your heart race. The phrase “and it’s made by FACEBOOK!” makes you emit a blood-curdling scream. Knowing that Facebook is discussing building facial recognition into these things curdles the stomach.”

Can we please outlaw these in the EU?


Mhm, organise your documents in a central place. ONE place. Can save you around an hour of active search and roughly a week of considering where you put stuff.

(And digitalise documents can also help. But please store them on an encrypted volume that is not accessible all the time, to make sure they are not stolen, as well as have an offline backup of them, to make sure they are not ransomwared.

Sheogorath :si_blobfox: boosted

What happens when coinbros buy a ship to build a libertarian utopia?

If you ever wondered that, well, here's your answer:

Spoiler warning: it didn't work out.

Other benefits of just mirroring stuff:

1) You can protect tags or branches as you like and therefore make sure no (malicious) rewrites take place without your okay
2) You can base your projects on your mirror and make sure a disappeared project doesn't break your builds/infrastructure.

And of course, you can provide an "neutral proof" for the history of a project, if they have some kind of legal fight going on.

Show thread

A while ago, I stopped starring Repositories on GitHub, instead I started to mirror them (given the license allows it) and/or simply used browser bookmarks. It's a lot more universal and mirroring makes sure, the stuff doesn't disappear.

If you wonder how I mirror all these repositories:

It's now more than 100 repositories and since I started to tag them consistently, they become my GitLab instance becomes a curated set of repositories.

When you change the default branch name on GitLab, also adjust the branch names in your schedules. You might experience unexpected time travel.

Sheogorath :si_blobfox: boosted

Kann man die #Standortdaten von Personen, die mit einem Smartphone in der Tasche herumlaufen, einfach so kaufen und ihnen zuordnen? Eine Recherche aus Dänemark zeigt am Beispiel von #HuqIndustries: Man kann.

Sheogorath :si_blobfox: boosted

After 2 years and almost 6 months ( less 2 days ), we have finally released version 1.2 that has been waiting to be released to the world for 1 year and 2 months.

The new release features over 50 new icons ( )


This is only the beginning of our work. There is a lot more to go from here and much more to achieve. We are excited for this new journey.

{ tooted by shine )

Sheogorath :si_blobfox: boosted

> We regularly hear about people getting lost in the wilderness because they believe their smartphone will show them the way back to civilization.

Apple opened pandoras box by implementing its CSAM scanner. The basic concept is not new, it's how law enforcement and other attackers have "broken" end-to-end encryption for years.

But as mentioned, previously it was attackers, not the software itself using such methods.

But there is no way of going back. Law makers now know it can be deployed. It was deployed. So it'll be deployed again. And since we didn't see a majority of apple users destroy their devices, it's even accepted.

Sheogorath :si_blobfox: boosted

I've just created a matrix room for discussing the translation process on

This is aimed at project maintainers needing help to setup their project, translators needing help with the weblate workflow, downtime/upgrade announcements, etc.

By the way, are there any recommended helm charts for Mastodon?

The ones I found were quite outdated, so unless someone can hit me with one, I guess I'll have to write one myself.

Using tang to centralised unlock the disk encryption of your servers? Need a backup of your tang server? Tar your tang-db, base64 encode it and store it in your passwordsafe. Easy, quick and accessible. (Of course make sure sure you can access your passwordsafe without depending on the infrastructure you need to unlock)

Sheogorath :si_blobfox: boosted

afghanistan, taliban, biometrics 

"Thousands of Afghans struggling to ensure the physical safety of their families after the Taliban took control of the country have an additional worry: that biometric databases and their own digital history can be used to track and target them."

Nobody in #InfoSec or #DigitalHumanRights spaces is surprised by this. This was completely predictable.

Another "this would *NEVER* happen" just happened.

Well, that didn't take long… we have a first hash collision:

Have that picture of a dog on your phone and the secret threshold for apple's CSAM scanner is down by one.

Good that there is only a 1 in a trillion chance of a false positive.

But no worries, it's just your own phone that make wrong accusations of being a pedophile against you and maybe reports you to Apple which might takes it to the police.

Show thread
Sheogorath :si_blobfox: boosted

OK. This is quite technical. But TL;DR - the neural hash system #Apple uses for their CSAM detection has been confronted with its first possible collision by some good hackers. This dog might be marked by the system as suspicious. Ouch. Issue 1 at

Sheogorath :si_blobfox: boosted

Wait what??? Das hessische Innenminesterium bittet das BSI um einen Security Audit der Luca App - das Bundesinnenministerium verbietet dem BSI dies zu tun... Jetzt weiss ich auch nicht mehr m(

Sheogorath :si_blobfox: boosted

Die App #Siegelklarheit vom Bundesentwicklungsministerium sorgt dafür, dass ihr im Dickicht der #FairTrade- und #Nachhaltigkeit|s-Siegel nicht den Überblick verliert - und erhebt dabei nur notwendige Daten.
Dafür gibt es von uns die Bestnote: Privacy Score 1!

Show older