Looking for a new phone. Any Recommendations?

Hardware Requirements:
High Durability
Easily Repairable
5G Capable
Quite good Camera
Long battery life
Dual Sim (Soft Requirement)
Fair Production (Soft Requirement)

Software Requirements
Usable as daily driver
Linux-Based (including Android)
The more FOSS the better

Bei -Anfragen kann es manchmal echt lange, gar zu lange, dauern, bis was passiert, insbesondere wenn die Anfrage ins Nicht-EU-Ausland geht. Droht man aber auch nur mit einer Beschwerde bei der Aufsichtsbehörde, dann kann man in gewissen Fällen ins Stocken geratene Dinge durchaus beschleunigen.
In diesem Fall geht der Dank an @bfdi, dafür, dass ihr mir gesagt habt, wo die Beschwerde hin soll und an @BayLfD einfach nur fürs Bereitstehen. Ich wünsche einen schönen Advent!

Bei wem kann ich mich beschweren, wenn eine nicht-EU-Seite (die aber EU-Bürger addressiert) mit meinen Daten Humbug betreibt? @dsk @bfdi @noybeu

es begeistert mich jedes mal, das ich daran vorbeikomme.

Das Ausmaß der Dürre im Amazonas? Hier ein Eindruck.

Oben: Jetzt
Unten: Juli

Die grüne Lunge trocknet aus.

If you don't know what to do to make the world a better place this morning, consider a donation to the UNRWA, which provides healthcare, food and emergency services to Palestinian people in Gaza.


Horrified and heartbroken at the barrage of attacks by Hamas upon civilians in Israel. Innocent people suffer the consequences of violent extremism, and this kind of terrorism only produces deeper, more intractable problems. My thoughts and hopes are for peace, and for democracy for all people in the region, but such a future is proving ever more elusive, I fear.

Does anyone know which instances are blocked by social.librem.one? @purism @Purism

Mastodon pilot has a chance to win open source award

At the beginning of this year, SURF and its members started the pilot project social.edu.nl. There is a growing need for a social community platform of and for the whole of Dutch education and research. At the same time, we want this platform to be based on the public values we ourselves advocate.



A battle in the fight against has been lost yesterday: The has been passed by the Parliament. However, is suspended until there is a method that works sufficiently well.

HEY Infosec Mastodon! Wanna help me out?
I'm looking for screenshotable quotes about pentesting. Wanna respond to any of these questions? If you do you may be included in my next talk!

What's the biggest pitfall a pentester can make?
What makes a good pentest?
What makes a bad test?
Vuln scan versus pentest - which one is "better"?

Or just whatever you want. I will include any memes I get, so reply away.
Boosts help :)

I keep hearing people say that Microsoft has finally come clean and provided an honest reckoning of the mistakes that led to the breach.

Allow me to push back on that HARD.

Wednesday's update is the first time Microsoft disclosed that hackers connected to Storm-0558 were inside the corporate network. In journalism parlance, Microsoft (intentionally?) buried the lede.

This allowed the company to omit key details we need to fully assess the damage these hackers did. How long were the hackers inside Microsoft's network? Did they access other data beside the crash dump? Were any other employee accounts hacked? How did they get in? Has Microsoft remediated whatever weakness or vulnerability made the network breach possible?

Storm-0558 is among the world's most skilled hacking outfits. As Microsoft observed: "The actors are keenly aware of the target’s environment, logging policies, authentication requirements, policies, and procedures. Storm-0558’s tooling and reconnaissance activity suggests the actor is technically adept, well resourced, and has an in-depth understanding of many authentication techniques and applications." In short, Storm-0558 has telemetry into Microsoft's network that's a par with Microsoft's own telemetry.

Storm-0558's technical tradecraft prowess is on full display by its ability to suss out a signing key in a crashdump made two years prior to the hack. It's further bolstered by the hackers' success in exploiting the failure of a Microsoft API to validate signatures properly.

So Microsoft reveals for the first time on Wednesday that Storm-0558 was inside its network. It provides no other details and doesn't respond to reporters' emails seeking them. And people say Microsoft has finally put the issue behind it?

Er, no. This should be the very beginning of the inquiry. We need to press Microsoft to answer these questions.

Show thread
Wie genial ist das denn? Unter dem Motto "Weil Appelle nicht mehr reichen – Wer blockiert, muss mit fast dreimal höherer Strafe als bisher rechnen" Ab sofort kostet in #Wien das Falschparken im Gleisbereich der Tram oder auf der Busspur so viel ... wie eine Jahreskarte: 365 Euro. Das sind verkehrspolitische Zeichen - in Deutschland undenkbar.

Let's stop ! The showdown in the European Parliament is near! So, bombard your MEPs with phonecalls. You may phone them from Monday till Thursday. Together, we can stop this law.

If you don't know how to reach them, are afraid of high call fees or don't like to phone people, go to chatcontrol.dearmep.eu. These guys made an app that makes callinh MEPs easy.

