derek

joined 5 months ago
[–] derek@infosec.pub 1 points 5 days ago

Make a container out of isomalt. Shatter it. Eat the pieces. Laugh in god's face.

[–] derek@infosec.pub 1 points 3 weeks ago (1 children)

laughs in home lab

Not that I'd buy it but, if I did, that power button might get used twice a year. Likely less since I wouldn't be able to upgrade or maintenance its hardware.

[–] derek@infosec.pub 12 points 3 weeks ago

That's a problem. Absolutely. It's not the problem though. I'm not sure the problem can be summarized so succinctly. This is the way I've been putting it:

These are the top reasons humanity needs successful, decentralized, open social media platforms:

  1. Collecting and selling user's private data is dangerous and unethical.
  2. Using that data to intentionally and directly manipulate user's thinking is even worse.
  3. All of the major centralized social media companies have been proven to either allow these illicit information campaigns or coordinate them directly. TikTok is the focus right now but Sophie Zhang exposed Facebook for doing exactly what TikTok has been exposed for recently. Can you recall any meaningful consequences for Facebook? Do you think Facebook is now safe to use?
  4. It's clear that most political leaders are either too ignorant, too corrupt, or too inept to meaningfully legislate against these problems.
  5. The concerned public can't shut Pandora's box. No one is coming to save us from big tech or the monied interests and nation-states that wield it.
  6. The concerned public can't easily and legally audit the platforms big tech builds because they are closed and proprietary.
  7. Personal choice is not enough. Not using centralized social media increases personal safety but does little to curb its influence otherwise.

These are listed by order of intuitive acceptance rather than importance. I find it aids the conversation.

The best reasonable answer to these problems I've seen proposed is for the public to create an open and decentralized alternative that's easier to use and provides a better user experience.

Will that kind of alternative be a force for pure good? I'm not sure. To your point: I'm not convinced social media of any kind can be more than self-medication to cope with modernity. Then again I've had incredible and meaningful conversations with close friends after passing the bong around and spent time on Facebook/Reddit, and now Mastodon/Lemmy/etc, doing the same. Those interactions were uplifting and humanizing in ways that unified and encouraged all involved.

I think the truth lies somewhere in the middle. We need to take care of each other, refuse pure hedonism, and protect the vulnerable (and we're all varying degrees of vulnerable). At the same time: humans aren't happy in sterile viceless productivity prisons. Creating spaces for leisure which do no harm in the course of their use isn't just a nice idea... It's necessary for a functional and happy society.

[–] derek@infosec.pub 3 points 1 month ago* (last edited 1 month ago)

That's a fair take. Silver Blue is great and, in the spirit of the thread, if I were helping an interested but hesitant lifelong Windows/Intel/Nvidia user migrate to Linux today I would:

  1. Buy them a new SSD or m.2 (a decent 1tb is ~$50 & a good one only ~$100).
  2. Have them write down what applications, tools, games, sites, etc they use most often.
  3. Swap their current Windows OS drive with the new drive and, if needed, show them how and why that works or provide an illustrated how-to (so this choice is not a one-way street paved with anxiety. If they want to swap back, or transfer files, or whatever else; they can. Easily). Storage drives are just diaries for computers. The user should know there's nothing scary or mystical about them.
  4. Install Fedora Kinoite on that new drive.
  5. Swap them from Fedora's custom Flatpak repository to Flathub proper. A decision that should be given to the user on install IMO but I digress.
  6. Install their catalogue of goodies from step 2 so they're not starting from scratch.
  7. Install pika and configure a sane home directory backup cadence.
  8. Ask them to kick the tires and test drive that Linux install for at least a month.

Kinoite is going to feel the most like Windows and, once configured, stay out of the way while being a safe, familiar, transparent gateway to the things the user wants to use.

My personal OS choices are driven by ideals, familiarity, design preferences, and a bank of good will / public trust.

I disagree with some of Red Hat's business model. I fully support the approach SUSE takes. I'm also used to the OpenSUSE ecosystem, agree with most of their project's design philosophies, and trust their intentions. I'm not a "fan" though and will happily recommend and install Silver Blue or any other FOSS system on someone's computer if that's what they want and it makes sense for them! Opinionated discussion can be productive and healthy. Zealotry facilitates neither.

That said: Aeon has been out of beta for a while. The latest release is Release Candidate 3 and they're closing in on the first full release. Nvidia drivers work after a bit of fiddling. 🙂

I'm going to edit my previous post to add the Kinoite suggestion for posterity's sake.

[–] derek@infosec.pub 5 points 1 month ago* (last edited 1 month ago) (2 children)

Check out Aeon and Fedora Silverblue. I'm installing Aeon on Desktops and MicroOS on Servers. My computer needs to be a reliable tool. Immutable distros make it exactly that.

The last thing I want to do in my free time or during my work day is be forced to fiddle with some poorly documented and/or implemented idiocy on my personal computer because I forgot to cast the correct incantation prior to updating something. I'm not a masochist.

EDIT To the hesitant but hopeful Windows+Nvidia user: give Fedora Kinoite a try. Check my reply to @independantiste@sh.itjust.works below for details.

[–] derek@infosec.pub 22 points 1 month ago

I was taught something different growing up and had to check myself with a quick read. Holy shit. You're right. Thanks for sharing.

[–] derek@infosec.pub 3 points 3 months ago

This is admittedly a bit pedantic but it's not that the risk doesn't exist (there may be quite a lot to gain from having your info). It's because the risk is quite low and the benefit is worth the favorable gamble. Not dissimilar to discussing deeply personal health details with medical professionals. Help begins with trust.

There's an implicit trust (and often an explicit and enforceable legal agreement in professional contexts (trust, but verify)) between sys admins and troubleshooters. Good admins want quiet happy systems and good devs want to squash bugs. If the dev also dons a black hat occasionally they'd be idiotic to shit where they eat. Not many idiots are part of teams that build things lots of people use.

edit: ope replied to the wrong comment

[–] derek@infosec.pub 3 points 4 months ago

Start here: https://nesslabs.com/how-to-think-better This isn't an endorsement (though I do like ness labs). That article offers practical evidence-based starting points and additional resources at the end.

There are many people/systems/schools that will offer strategies and solutions. Some are practical and effective. None of them are a replacement for learning what it means to think well, learning how to think well, or actually thinking well.

The next step is learning the jargon of philosophy so you can ask meaningful questions and parse the answers (this is true for any new discipline). I recommend reading anything on the topics of epistemology, ethics, and aesthetics, which resonate with you. Then find others to discuss what you've read. You do not have to be right or knowledgeable to earn a voice in the conversation: only an interest in discovering how you might be wrong and helping others discern the same for themselves.

If you haven't read any classical philosophy but are interested I recommend Euthyphro. It's brief, poignant, and entertaining.

I hope this helps! Happy to discuss further as well.