Show more

This last week all Firefox addons were accidentally disabled due to issues in Mozilla certs. Many security measures out there require full, unrevokable trust in the vendor for them to work and this is a great example of the risks with that approach. Imagine if that ever happened with SecureBoot...

Uncle Ben said that with great power comes great responsibility, but he didn't explain that responsibility lags behind power a bit. There's a brief period where you can enjoy the rush of great power before the weight of great responsibility hits.

This makes a lot of sense given MS's larger strategy with Azure. They need to get Linux devs off Macs and AWS and onto Windows and Azure. Github and Linux tools on Windows are the gateway. arstechnica.com/gadgets/2019/0

For those of you using Librem Chat on Android, the latest version (0.1.4) removes any code traces from trackers left behind in the upstream Riot codebase (we had disabled them before but the code itself was still there).

source.puri.sm/liberty/chat/an

@kyle
They call me GNU thug
I got a license to debug
On the forbidden fruit
Known as pureboot
You don’t hear the curses
If you’ve got a special purpose
The crew, T-bone n’ Kyle
Watching the code compile

"Most people want to retain their privacy and freedom and most people are concerned about their digital footprint. Most people do not want to be tracked all the time from all devices."

puri.sm/posts/opt-in-no-ads-an

So much drama in the SPC
It's kinda hard being T-O-double-D
But, he, somehow, someway, keeps on comin' up with Librem hardware every single day

He's got coders in the chat room buildin' a phone
They ain't leavin' till 6 in the morn (PST)
Now we gonna pick a license for this. GNU's up, closed's down while you other developers code to this.

Rollin' down the street, writin' free code, licensed for GNU, laid back, with my mind on the Librem and the Librem on my mind.

About to record the next @linuxjournal podcast! Do you have a cool open source story to tell? Let me know!

I elaborate on some ways to protect the digital supply chain while borrowing metaphors from the food industry in this post: puri.sm/posts/protecting-the-d

Show thread

This is why projects like Reproducible Builds are so important. Basing all of your security on a company's signature on proprietary code is too risky.

wired.com/story/barium-supply-

A animal with a history of abuse will often flinch when a well-meaning new owner tries to pet it. It takes a lot of time and effort to rebuild trust and security.

The emotional damage in the community from decades of abuse by exploitative companies isn't acknowledged nearly enough, and is hard to overcome.

Baby Shark is *just* different enough from Y'all Ready For This that it's technically a different riff.

"Most people want to opt-in to what they want to follow, be that a news feed, a celebrity, a friend, or family. Most people do not want to be force-fed a constant stream of manipulated content to catch and keep their attention."

puri.sm/posts/opt-in-no-ads-an

We've published a blog post with all of the details of this morning's security bug in Librem Chat and our response. puri.sm/posts/underscoring-our

We have some exciting news! The team at Purism are thrilled to announce the launch of Librem One librem.one Private and secure email, chat, social and VPN. No ads! No tracking! No data sharing! Just the best end-to-end encrypted communication and social. Join the revolution today and take back control of your data and life

OK, so that's creepy: "The online tool allows everyday supporters to contribute to the campaign’s voter database by logging names and background information of anyone from a family member to a stranger met at a bus stop."
nbcnews.com/politics/2020-elec

This is arguably even more impactful than NIST's upgraded password policy recommendations, because far too many in IT ignore modern thought on password policy (among other things) and just apply the Microsoft recs. arstechnica.com/gadgets/2019/0

Show more
Librem Social

Librem Social is an opt-in public network. Messages are shared under Creative Commons BY-SA 4.0 license terms. Policy.

Stay safe. Please abide by our code of conduct.

(Source code)

image/svg+xml Librem Chat image/svg+xml