About six months ago I reserved a crate name for a job execution framework in Rust. Over the last three weeks I've managed to cut away a little time and actually get an initial release cut. There is undoubtedly work yet to be done, and there's plenty of room to grow but this project has given me a lot of opportunities to learn Rust even better.
I don't dispute that jails are hard to break into, but they are even harder to break out of. How many of us would choose to live in a prison in real life? Instead we make risk assessments that balance personal freedom and security, and the digital world should be no different.
Today was not what one might call fun.
Email detailing what was certain to be an exploitable service thanks to extremely bad php and other regrettable decisions. This was followed by our M2M ISP breaking their firewall and taking out *global* communications for almost all of my remote devices.
On the plus side, I’ll hit 40hrs very quickly this week and I’m in no mood to violate my local labor laws by working a second more than that.
I dusted off my limited Python skills and modified Nitrokey's "Qubes OEM" installer to add support in anaconda for changing your LUKS passphrase at first boot. With that in place, we can now offer Qubes as a preinstall option: https://puri.sm/posts/qubes-now-a-preinstall-option-for-librem-14-and-mini/
Aruba I make ya sudo gonna take ya to a root prompt I wanna own ya pretty momma. Key escrow I now know baby why don't we go. Oh I want to take you down to Ring0 we'll get there fast and then we'll take it slow. That's where we want to go way down to Ring0. https://threatpost.com/hpe-sudo-bug-aruba-platform/169038/
Because why not write more about Tails and USB HSMs...
Updated to remove an extraneous step:
https://ajmartinez.com/tech/posts/202135-001-librem-key
If you want to use something like a Nitrokey HSM2 for other crypto needs using pkcs11 just install opensc and you're off to the races.
Have a Librem Key you want to use in Tails? Read on: https://ajmartinez.com/tech/posts/202135-001-librem-key
I like to work with my hands. That may mean hammering out solutions to complex problems in #Python or #Rust, building things in my shop, or spinning yarn to knit something warm. You’ll likely see some of all of that here. By day (and sometimes night) I keep >13k nodes and services alive in the Electric Vehicle sector.
PGP: FCBF 31FD B34C 8555 027A D1AF 0AD2 E852 9F5D 85E1