fl42v

u/fl42v@lemmy.ml
20 posts · 897 comments

Recent posts

Recent comments

on Crush the nazis! · c/memes · 1 pts · 65d

Funny way to say "simping for one set of oligarchs involved in a dick measuring contest against another set of oligarchs". Ехай нахуй, дорогой.

on Favorite F-Droid Apps? · c/opensource · 4 pts · 65d

Among the ones not covered yet, as far as I can see:

  • Alembicons + arcticons -- nice minimal icons, the former generates icons not yet covered by the latter:

  • app manager -- package installer, inspector and tracker blocking (as long as you have root) tool;

  • image toolbox -- reasonably nice image editor;

  • USB gadget tool -- (root) custom USB profiles, needed for

  • USB hid client -- (root) use phone as USB keyboard/mouse;

  • read you noice lightweight (11.2 mb) RSS reader with tts support;

  • sherpatts -- tts engine with an ok selection of models (no need to reinstall the app to test new ones, unlike the default Sherpa apps);

  • tts util -- tts any text;

  • ironfox, cromite -- browsers (both have their own repos, tho).

In my case it was soundcore's app (no, openscq30 didn't work), so it had a need for network access to update the firmware, for example, I just didn't want to give it at the moment. As for being poorly made, also not exactly: as I've mentioned, android gives this permission by default, and it's reasonable to assume it stays so. Graphene basically "breaks userspace" here.

As always, the answer is "depends". It shouldn't hurt unless you're dual-booting windows (they used it last year as a weapon in their "mess up grub" game), but, Imo, it's worth the trouble if:

  • your data is also encrypted -- otherwise one just removes the HDD/SSD and reads what they need;
  • you provision your own keys -- to not depend on Microsoft signing shims for you;
  • you delete the already provisioned keys -- Microsoft signed a few vulnerable things, like one kaspersky's (iirc) live CD with grub not locked down, so one can boot up literally anything anyway;
  • you lock down grub or whatever bootloader you're using -- otherwise you become that vulnerable live cd;
  • you password lock the uefi -- otherwise one can simply disable the secureboot;
  • your vendor's implementation isn't terribly buggy -- iirc, some MSI laptops would just ignore all the discrepancies.

So, a lot of ifs, and a necessity to store the uefi password somewhere safe, as those may be a pita to reset.

As for standalone stuff -- idk, it might protect you from malware injecting itself into the bootloader or something, but given there's likely no chain of trust (I.e. the bootloader doesn't check what it bootloads), it can move in on some later step.

on *Permanently Deleted* · c/linux · 1 pts · 1y

This, but backtrack 5 (the one just before kali). On a laptop that'd take several eternities to brutforce an md5 🤣