☀️

  • 6 Posts
  • 10 Comments
Joined 3 years ago
cake
Cake day: February 21st, 2021

help-circle
rss


  • Why, even FOSS needs support. See OBS Studio, Wikipedia etc. Without supports good projects go to waste.

    • Developers can decide to introduce it in their apps or not. I am sure not every QT developer will adopt this.
    • People will be able to opt-in, opt-out. I am pretty sure they provide us with an option.
    • Most people do not donate, so an additional income thing could help.
    • The other option would be crypto.

    We are not talking about MS who introduce ads in Explorer which need some ad-blocking, hosts or registry hacks. Linux is more transparent and there will be options to control this.

    Do I like it, nope. But it is better than alternatives to shutdown project because lack of funding or struggling to expand because only few people are willingly to donate.






  • We have already systems to notify users.

    • Most IT Professionals are aware that Kerberos, SMB and Co. is a hole for issues, it is nothing new to them.
    • We have social media, Reddit or your linked HN Website, what makes you think people are faster submitting new stuff to GitHub, well there is no difference, if you post it on Twitter, GitHub or what, people need to find that first.
    • We already have CVE databases you can look up for years.
    • On huge events, even TV news will do.
    • People exploit the moment the ghost is out of the bottle, it is all about preventation as well as management. News alone is not enough.
    • Notify users about each new attack and leak will result that people care less because they feel helpless and think … oh okay, just another daily attack.
    • Log4j was over-hyped, like most things, most software that normal people use like Browser were never affected, using a hyped problem as example how slow something is, is seriously no real argument because IT-Professionals need time to review the findings before coming to conclusions.
    • High reputation software such as Thunderbird are less to be affected, because they patch things first, they have huge user-base. You see this in every changelog when they fix security issues.
    • Saying that SMS or what is maybe expensive is weird, if you target professionals, no professional will reg via SMS or in other words his phone number. Typical use case is RSS which is cheap.
    • There are 0-days sold on the black market that are being used for months, you never hear from them and they have much bigger impact, usually because people who code them keep their source closed or even if they sell them, people have no interest to pay a lot of money and then leak it for free to the public, in most scenarios, there are white-hats of course, they abuse it. The argumentation that just because something is out for hours is unprofessional. Google, MS etc. have disclose time between 60 and 90 DAYS before they do something.

    I like that you try to do something, but it would be better joining existent solutions instead of creating another services that might vanish into the void like half of the rest who tried. GitHub is also pretty unchill regarding malware, if you post something that can directly used to exploit GitHub or others, they will close your repo without any warning in advance.

    If your target are admins then consider making this more clear, otherwise people will use this information and use it to exploit others.

    Bugalert does not look so hot



  • I find such accusations without anything behind pretty harsh.

    EFF is not a transparent organization…

    but what they are supposed to be is an activist organisation to fight for privacy, not some political analyst on a TV show…

    Eff has some campaigns running and did so in the past. Campaign that people paid for and they were pretty transparent because they report about all won and lost battles. They have social media, you can ask and contact them over there too. Not sure what your definition of transparent is.

    • You can find absolute no organization without what you call questionable entities in it, the world is not about how perfect things should be, it is about reality and we are in a democracy, it is always about finding the best compromises that fits for everyone and not anarchy. Adding people that previously worked in e.g. Facebook, just an example does not automatically mean they negatively influence your organization, you need simply insiders, opinions and experts from both ends. I for example cannot claim X and then when someone ask me if I used it, admit nope I never did. This is not how real world works, you need to get in touch, get those people onboard and test things on your own and not what other puppets telling you.
    • If you like to smear campaign EFF and their mission feel free to open your own threat on this and then link it to them to give them a fair chance to respond. I do not like to shit-talk others behind their back. The things I express here are already expressed from myself on other platforms too, so I am no hypocrite. I also do not say everything some individuals or organizations do is what I always backup, but again we are in a democracy. If you want perfect things or a perfect world then the Internet is not for you.
    • You linked articles are not really a problem for EFF because they support privacy, we can now talk about whenever the Apple thing is good or bad for privacy but at least they try to go new ways and support - what they think - is better than the current situation. I rather would take this on Apple and not on EFF. People simply just use iOS if you like it or not and Apple tried to address some concerns, sure it is not perfect but its a small process and made some people more aware that there are currently issues.

    Can we go back to topic, I think the Cambridge thing is already over and Facebook had his worst year in 2021. I do not like hijacking threads like this. I also do not like to smear someones entire reputation based on one or two things some people did, this is not how things should be handled. Name someone without any flaws, that would be real news and a big bummer. If you dig for dirt you always find some, on every side.

    I do not backup EFF on every move they do or did, it also was only an example on who you can support with eg donations.

    Now tell me what campaigns you running as private person … oh whoops none… Full circle.



  • CHEF-KOCHtoTechnology@lemmy.mlThe Web Is Fucked
    link
    fedilink
    1
    edit-2
    2 years ago
    • Title is clickbait.
    • People only upvote it because admin posted it, that is all.
    • Web is not controlled by larger companies only, they might be the ones with most impact, true but they do not dictate what you should do. Face it, most people believe everything Microsoft, Google telling them no matter if it is right or wrong because they think big Corps have more credibility.
    • We have dozens of articles like this already, why write another one … What have you done to make things better… Why not list organizations like EFF who fight for us or help them to get more attention.
    • Saying things like - we cannot do much about it - without even trying to provide some solution is seriously the wrong way to motivate readers.
    • Even domain name is based and redpilled.
    • Echo chambering the same over and over again helps how … People will give up an feel helpless.

    Here is what people could do

    • Support small platforms like Lemmy, Fediverse in general.
    • Support actual organization that fight for you, such as EFF.
    • Instead of whining that web is miserable, I read this nonsense since 20+ years now, each year new clickbait … oh adblock destroys the web, oh Microsoft destroys the web, web is broken … Blah blah blah. Provide some serious solutions, because this is what will consume Brain power here. Some people actually did, created crypto and other systems that are not controlled by the big Corpos or the government.

    My opinion on the submission and Tech + Web, not meant to offend but my little review on this.