Show more

@rysiek caching is the painful topic - nobody wants to cache anything as each request cached means one precious unique view lost from sight of crappy 3rd party analytics JS :)

Oh, #Cloudflare was having issues and brought a lot of websites down with it? That's not great.

But thankfully it's not that hard to roll out your own "DDoS protection" (or caching; just call it caching) setup. Here, you can even use our configs: git.occrp.org/libre/fasada

Yes, we use them in production, serving sometimes hundreds of thousands views per day.

Patches welcome. #SysAdmin

@nikolal 1) Wazuh HIDS, 2) block traffic from Greensnow IP blacklist; some would also say VPN but if it's just one host I see no point

So we started shipping WebRender in Firefox a few weeks ago. Completely new rendering engine written in rust, big departure from how we approached rendering before. We are gradually enabling it for different hardware/OS configurations and a couple of million users have it now.

What's kind of blowing my mind, having worked on 3 large-ish rewrites, is that since WebRender shipped, telemetry has reported less crashes per user with WebRender than without.

This is *not* how big rewrites usually go.

Finally some light being shed on the ownership of the NSO Group:
theguardian.com/artanddesign/2

We need more of such reporting. Cyberwarfare actors need to be exposed.

@rysiek "NSO has said it reviews cases when abuse is alleged to have occurred" - yes, surely they do investigate as hell... Naming and shaming is the only way to enforce public control over such shady businesses.

NEW: During the rule of Hugo #Chávez, the #Venezuela's government awarded generous electricity contracts and oil concessions to a group of young businessmen, the Bolichicos, who built power plants during a series of widespread #blackouts. Almost 10 years later, as Venezuela continues to struggle with its #electricity supply, leaked documents reveal more about the deals.

occrp.org/en/investigations/pl

“I want [my kids] to understand that what they’re doing [online] now is going to have consequences in the future,” says @KColemanNCSA, executive director of @StaySafeOnline.

Read his tips & strategies for working on cybersecurity w/your kids: archerint.com/how-to-talk-to-y

You've been waiting for this for a long time: we're launching the alternative map service, open and with privacy as a priority. We explain this ambitious project on

betterweb.qwant.com/qwant-maps

The new keybase.openpgp.org has a pretty good usage instructions for Enigmail, OpenKeychain, GnuPG etc keys.openpgp.org/about/usage

@nikolal SKS are stil built into GPG config and advertised by mainstream distros as default way to obtain keys for PPA etc; I use Keybase but it's still a separate ecosystem

@kravietz
Publishing keys to keyserver seemed like bad idea anyway, there are better ways of publishing your public keys or signatures. Thats one of the reasons Keybase exists.

Someone is actively DoSing GnuPG by adding thousands of signatures through keyserver network. Disable keyservers or switch do keys.openpgp.org gist.github.com/rjhansen/67ab9

@kravietz I just tried it for the first time just now. What's really sweet is you can send *any* app installed on your phone, not just those from the @fdroidorg repos. Definitely installing F-Droid on my family's phones

Show more

kravietz 🦇's choices:

Mastodon 🔐 privacytools.io

Fast, secure and up-to-date instance. PrivacyTools provides knowledge and tools to protect your privacy against global mass surveillance.

Website: privacytools.io
Matrix Chat: chat.privacytools.io
Support us on OpenCollective, many contributions are tax deductible!