nekohayo, to random
@nekohayo@mastodon.social avatar

I did some testing on a Windows machine and tried out #Bitlocker #encryption for the first time… I'm shocked. This thing is black magic.

How did they manage to do full disk encryption that can be toggled on/off instantly? I was expecting it to rewrite the whole drive, like what would happen with LUKS on Linux OSes/utils, but no: even a whole existing C:\ drive with Win installed, you just enable encryption, it reboots in seconds instead of minutes/hours, and it's done.

What sorcery is this?!

blueghost, to KDE
@blueghost@mastodon.online avatar

KGpg is a frontend for GnuPG.

GnuPG: https://mastodon.online/@blueghost/111974048270035570

The default configuration in Plasma is to open in the system tray with the icon hidden.

Open: Application Launcher > KGpg > Show Hidden Icons (located next to the digital clock) > KGpg.

Close: File > Quit.
Selecting Close (the X icon in the title bar) does not close KGpg, it closes the window.

Open/Close options: https://discuss.kde.org/t/kgpg-open-close/13894

Website: https://apps.kde.org/kgpg
Mastodon: @kde

#KDE #KGpg #GnuPG #GPG #Plasma #Encryption

matdevdug, (edited ) to random
@matdevdug@c.im avatar

New post on my blog. You can read it here: https://matduggan.com/why-cant-my-mom-email-me/
#proton #encryption

matdevdug, to tech
@matdevdug@c.im avatar

@protonprivacy Bit of a long shot, but emails from Proton to my Fastmail email address with my personal domain show up as "green checkmark" in Proton webUI, but appears inside of Fastmail as a blank encrypted email. Is there something I can do on my DNS record to tell you not to send me encrypted emails?

#tech #encryption #proton

Tutanota, to email
@Tutanota@mastodon.social avatar

Check out our newest Short on ! 🎉

How to create a FREE encrypted email account in seconds.

Keeping spies out of your mailbox has never been easier. 😉

➡️ https://yt.artemislena.eu/watch?v=cbuaToWuBBw

Snowshadow, to news
@Snowshadow@mastodon.social avatar

India, Pakistan attempted to interfere in Canada's elections: CSIS

In the case of the 2019 election, CSIS said the Canadian government conducted what it called a "threat reduction measure" ahead of the vote, meant to "reduce the foreign interference threat posed by the Government of Pakistan."

"The situation was monitored and assessed to have effectively reduced the threat of interference," CSIS wrote.


https://www.cbc.ca/news/politics/pakistan-india-elections-canada-1.7164378?cmp=rss

HistoPol,
@HistoPol@mastodon.social avatar

@Snowshadow

Elections

(7/7)

...am, as yet, undecided regarding the potential threat of a surveillance state, as in , , or , but things cannot continue as they are. The really stolen (from ) in the should be a definite call for action.
However, ending end-to-end () is certainly taking it way too far. There must be a society left worth fighting for.

tbc

//

fight, to KindActions

BREAKING: 29 orgs, from to , are calling for a Congressional investigation into surveillance of mutual aid activists and the use of PayPal data to charge ’s bail fund with money laundering. https://www.fightforthefuture.org/news/2024-04-03-mutual-aid-organizations-call-for-congressional-investigation-into-financial-surveillance-of-stop-cop-city-activists-and-atlanta-solidarity-fund/

fight,

"We need end-to-end #encryption for our financial lives, and Congress investigating the escalating abuses of intimate financial data in Atlanta is an important step toward accountability and change.” - ❤️Fight's @liaholland

echo_pbreyer, to random German
@echo_pbreyer@digitalcourage.social avatar

🇬🇧 May 17: At its last meeting the biased #EUGoingDark group will agree to recommend EU-wide #DataRetention and undermining #encryption. Next, the Commission will propose concrete actions for follow-up. Why #EUGoingDark should be dissolved: https://www.patrick-breyer.de/en/public-going-dark-consultation-pirate-meps-call-for-an-end-to-the-undemocratic-surveillance-forge/

blueghost, to infosec
@blueghost@mastodon.online avatar

The 3-2-1 rule is a data backup strategy.

3 copies of the data.
2 different types of storage media.
1 copy located offsite.

Consider protecting each backup with encryption.
Consider "Harvest now, decrypt later" when selecting a storage location.

Backup: https://en.wikipedia.org/wiki/Backup
Encryption: https://en.wikipedia.org/wiki/Encryption
Harvest now, decrypt later: https://mastodon.online/@blueghost/111357939714657018

#Data #Backup #DataBackup #DataStorage #Encryption #InfoSec #InformationSecurity

sergio_101, to random

Part of me wants to try #Thunderbird for email again. I haven't messed with it for years. I just need to make sure it does email #encryption .

remixtures, to Cybersecurity Portuguese
@remixtures@tldr.nettime.org avatar

#Cybersecurity #Backdoors #Linux #OpenSource #FLOSS #xz #SSH #Encryption: "Researchers have found a malicious backdoor in a compression tool that made its way into widely used Linux distributions, including those from Red Hat and Debian.

The compression utility, known as xz Utils, introduced the malicious code in versions ​​5.6.0 and 5.6.1, according to Andres Freund, the developer who discovered it. There are no known reports of those versions being incorporated into any production releases for major Linux distributions, but both Red Hat and Debian reported that recently published beta releases used at least one of the backdoored versions—specifically, in Fedora Rawhide and Debian testing, unstable and experimental distributions. A stable release of Arch Linux is also affected. That distribution, however, isn't used in production systems.

Because the backdoor was discovered before the malicious versions of xz Utils were added to production versions of Linux, “it's not really affecting anyone in the real world,” Will Dormann, a senior vulnerability analyst at security firm Analygence, said in an online interview. “BUT that's only because it was discovered early due to bad actor sloppiness. Had it not been discovered, it would have been catastrophic to the world.”

Several people, including two Ars readers, reported that the multiple apps included in the HomeBrew package manager for macOS rely on the backdoored 5.6.1 version of xz Utils. HomeBrew has now rolled back the utility to version 5.4.6. Maintainers have more details available here." https://arstechnica.com/security/2024/03/backdoor-found-in-widely-used-linux-utility-breaks-encrypted-ssh-connections/

Tutanota, to eggs
@Tutanota@mastodon.social avatar

The Bunny brought more than this year! 🐰🥚

With the release of post-quantum , keeping your safe is now just a jump, skip, or a even a hop away! 🐇

You can learn more and maybe find a surprise or two scattered around on our website: https://tuta.com/blog/post-quantum-cryptography

stefano, to FreeBSD
@stefano@bsd.cafe avatar

Sharing some technical details about how I'm setting up the hosted email service. It will not be a service of BSD Cafe but tied to my own business. It will run entirely on BSD systems and on bare metal, NOT on "cloud" VPS. It will use FreeBSD jails or OpenBSD or NetBSD VMs (but on bhyve, on a leased server - I do not want user data to be stored on disks managed by others). The services (opensmtpd and rspamd, dovecot, redis, mysql, etc.) will run on separate jails/VMs, so compromising one service will NOT put the others at risk. Emails will be stored on encrypted ZFS datasets - so all emails are encrypted at rest - and only dovecot will have access to the mail datasets. I'm also considering the possibility of encrypting individual emails with the user's login password - but I still have to thoroughly test this. The setup will be fully redundant (double mx for SMTP, a domain for external IMAP access that will be managed through smart DNS - which will distribute the connections on the DNS side and, in case of a server down, will stop resolving its IP, sending all the connections to the other. Obviously, everything will be accessible in both ipv4 and ipv6 and in two different European countries, on two different providers. Synchronization will occur through dovecot's native sync (extremely stable and tested). All technical choices will be clearly explained - the goal of this service is to provide maximum transparency to users on how things will be handled.

#BSD #FreeBSD #OpenBSD #NetBSD #emailHosting #encryption #ZFS #dovecot #opensmtpd #rspamd #emailSecurity #techTransparency #ipv6 #Europe

remixtures, to Bulgaria Portuguese
@remixtures@tldr.nettime.org avatar

#EU #Germany #CyberSecurity #Privacy #Encryption: "While governments around the world are planning to undermine strong encryption with client-side scanning, the German government now steps up for protecting citizen's right to privacy. This comes at no surprise as Germany is known for its strong data protection laws, which are also one of the reasons why Tuta is based in Germany.

Beginning 2024, German net activists from Netzpolitik.org have published the draft law that aims at making end-to-end encryption mandatory for messenger, email and cloud service providers.

You can read the full text of the law here (in German).

The newly published draft law follows the 2021 coalition agreement of the German government of SPD, FDP and the Greens. Back then the plan to introduce a right to encryption was met with great approval, especially among security experts and net activists."

https://tuta.com/blog/german-government-publishes-encryption-law

monocles, to chat

The monocles chat update 1.7.9.5 is available on the Playstore with a Easter special offer 🎉 .

There are several new fixes and features like:

  • Initial GIFs picker
  • Animated Avatars (up to 100kb and 480px)
  • Initial status image preview
  • Better image quoting
  • Little battery usage reduction
  • Updated translations
    and much more

https://play.google.com/store/apps/details?id=eu.monocles.chat

A good weekend to everyone!

#playstore #encryption #xmpp #chat #messenger #monocles #monocleschat

glynmoody, to random
@glynmoody@mastodon.social avatar
jbr_IC, to random German

Für Leute, die eigene Server betreiben und mal Klarheit bei der vorliegenden benötigen, können es hiermit testen.

testssl.sh is a free command line tool which checks a server's service on any port for the support of TLS/SSL , protocols as well as recent cryptographic flaws and more.

https://testssl.sh/

remixtures, to internet Portuguese
@remixtures@tldr.nettime.org avatar

: "In 2016, Facebook launched a secret project designed to intercept and decrypt the network traffic between people using Snapchat’s app and its servers. The goal was to understand users’ behavior and help Facebook compete with Snapchat, according to newly unsealed court documents. Facebook called this “Project Ghostbusters,” in a clear reference to Snapchat’s ghost-like logo.

On Tuesday, a federal court in California released new documents discovered as part of the class action lawsuit between consumers and Meta, Facebook’s parent company.

The newly released documents reveal how Meta tried to gain a competitive advantage over its competitors, including Snapchat and later Amazon and YouTube, by analyzing the network traffic of how its users were interacting with Meta’s competitors. Given these apps’ use of encryption, Facebook needed to develop special technology to get around it." https://techcrunch.com/2024/03/26/facebook-secret-project-snooped-snapchat-user-traffic/

remixtures, to Bulgaria Portuguese
@remixtures@tldr.nettime.org avatar

#EU #Germany #Privacy #Encryption #CyberSecurity: "The recent breach in German military communications serves as a compelling argument for the adoption of universally accessible, secure communication platforms. And this is why truly private messengers like Signal offer simple, unified messaging apps, capable of connecting with any other person using it.

These mass platforms and standards are not merely tools. They must be understood as critical infrastructure for the digital age, ensuring that privacy and security are not privileges but rights accessible to all. By making end-to-end encryption the default, and ensuring that this default is available to everyone not siloed within a given company or institution, we safeguard not just the communication between high-ranking officials but the human right to privacy of every individual. A right that to be honored for anyone, anywhere, must transcend organizational boundaries and national borders.

To ensure privacy for anyone, we must champion systems that provide privacy to everyone. „Privacy for me but not for thee“ is an idea that, even in the 1990s, was understood to be fatally flawed. Those of us who believe in the human right to privacy must champion options that provide this right to the masses. Because if we don’t, everything from journalism, to dissent, to the sensitive communications of high ranking German military officials will be put at risk." https://netzpolitik.org/2024/taurus-leak-when-it-comes-to-privacy-its-all-or-nothing/

ilyess, to security
@ilyess@mastodon.online avatar

At least the Germans get it.

“While most countries want to introduce new surveillance laws, Germany is taking the opposite approach: The Federal Ministry for Digital and Transport Affairs (BMDV) has published a draft bill that will require email, messenger and other cloud providers to use strong end-to-end encryption.”

https://tuta.com/blog/german-government-publishes-encryption-law

#e2ee #encryption #security #infosec

Tutanota, to ama
@Tutanota@mastodon.social avatar

📢 Today at 14 CET we will be holding our very first Reddit #AMA! 📢

Join in to ask us any questions you might have related to Tuta, #encryption, #surveillance, #privacy, our favorite ice cream flavors, and more!

👉 https://www.reddit.com/r/IAmA/comments/1bo6pcx/we_are_tuta_formerly_tutanota_we_just_launched/

We hope to see you there!

Tutanota, (edited ) to privacy
@Tutanota@mastodon.social avatar

With all the fast paced advances in technology what is your main source of new information on #privacy, #encryption and #security?🤔

5am, to security
@5am@fosstodon.org avatar

Need an easy and secure way to send a password to someone (typically as a one-off)? I wrote about a solution, the Password Pusher tool:
https://www.samhowell.uk/posts/2024/03/sending-passwords-securely/

#security #passwords #foss #cli #api #encryption #blog

Tutanota, to privacy
@Tutanota@mastodon.social avatar

Who are your and heroes? Let us know in the comments!

garry, to technology
@garry@mstdn.social avatar

Unpatchable security flaw in Apple Silicon Macs breaks encryption

'University researchers have found an unpatchable security flaw in Apple Silicon Macs, which would allow an attacker to break encryption and get access to cryptographic keys.
The flaw is present in M1, M2, and M3 chips, and because the failing is part of the architecture of the chips, there’s no way for Apple to fix it in current devices …'

#technology #tech #security #hacking #malware #encryption

https://9to5mac.com/2024/03/22/unpatchable-security-flaw-mac/

  • All
  • Subscribed
  • Moderated
  • Favorites
  • provamag3
  • mdbf
  • ngwrru68w68
  • modclub
  • magazineikmin
  • thenastyranch
  • rosin
  • khanakhh
  • InstantRegret
  • Youngstown
  • slotface
  • Durango
  • kavyap
  • DreamBathrooms
  • JUstTest
  • GTA5RPClips
  • ethstaker
  • normalnudes
  • tester
  • osvaldo12
  • everett
  • cubers
  • tacticalgear
  • anitta
  • megavids
  • Leos
  • cisconetworking
  • lostlight
  • All magazines