𝒍𝒆𝒎𝒂𝒏𝒏

Hey 👋 I’m Lemann

I like tech, bicycles, and nature.

Dancing Parrot wearing sunglasses

  • 0 Posts
  • 96 Comments
Joined 1 year ago
cake
Cake day: June 6th, 2023

help-circle
  • Flash drive hidden under the carpet and connected via a USB extension, holding the decryption keys - threat model is a robber making off with the hard drives and gear, where the data just needs to be useless or inaccessible to others.

    There’s a script in the initramfs which looks for the flash drive, and passes the decryption key on it to cryptsetup, which then kicks off the rest of the boot mounting the filesystems underneath the luks

    I could technically remove the flash drive after boot as the system is on a UPS, but I like the ability to reboot remotely without too much hassle.

    What I’d like to do in future would be to implement something more robust with a hardware device requiring 2FA. I’m not familiar with low level hardware security at all though, so the current setup will do fine for the time being!



  • Edit: sorry, I may have misunderstood your post - free email != email masking.

    My original post below…


    Curious why you consider email address masking services as for those with “drastic anonymity” requirements?

    I personally don’t think so: they are pretty much just a digital P.O. box, and are typically not anonymous in any way (subpoena/court order to the provider). They are built-in to Firefox too, it will automatically create new ones OOTB as you sign up on websites, if you click the autofill.

    They are however IMO one effective tool out of many to restrict the ability of data brokers and hacking groups (aggregated breach datasets) alike from making money from your online presence without your consent.

    In almost all cases this data is freely searchable for law enforcement and private investigators, allowing them to avoid going through the legal system to investigate and possibly detain you for things you’re not guilty of











  • Who asked for this, and why?

    It exists to reduce dependence on YouTube.

    There are bad things to say about Google all day, yet consumers will still line right back up to use Google’s video service without fail. Having that content mixed in with other sites reduces dependence on YouTube over time, as creators consider decentralizing their media presence and posting content on Patreon, Nebula etc, instead of Youtube’s walled garden of Communities, Memberships and of course the channel itself.

    IMO right now this app is really for people who want to support OR already are supporting creators, and are displeased with the amount of apps, bad UX and poor integration this experience entails when done outside of Youtube’s platform

    If that’s not for you, then maybe the privacy aspect of Grayjay is of interest, where the YouTube integration allows you to control what data is associated with your Google account. Aside from those, most people should probably stick with their existing YouTube client. This app is targeting a specific kind of audience, and fits right in with Rossmann’s


  • If you take over a project of this scale you need to make this your job and thus get paid. There’s a good reason Louis hasn’t just pushed this out as his hobby project but hired developers.

    Thank you!

    The bits that the community can contribute to (the addins to add support for more sites) are GPL licensed anyway 👍

    A lot of the opinions and perspectives I’ve been seeing appear more on the principled side, rather than set in reality.

    Without a vision or leader for the project e.g. Mickay driving Graphene, Cassidy driving elementaryOS, they can’t move substantially forward regardless of how libre and free they are. Graphene will remain ahead because nothing challenges it, but elementaryOS has already fallen so far behind Gnome in such little time…





  • Once we figure out how to get data out consistently 1:1 without hallucinations, the floodgates will open IMO.

    And i’ll be all over it personally, especially with FLAC files that range anywhere from 20MB to 70MB, any savings to rein these in closer to a typical MP3 will be much appreciated by myself. I don’t mind long compression times, as 7zip and the other formats give us long waiting times already.

    If AI accelerator hardware is able to speed up the data compression process, this is where I’d maybe start to get a bit suspicious, as these accelerators at the moment are included in various in IoT and camera SoCs. A single exploit is all that would be needed to theoretically allow the user’s personal data to be siphoned off quickly, without noticing a change in the volume of network traffic, or negative impact to the performance of the IoT device