Show more
cloudflare being down taking down like half the internet is a good example of why centralization is bad

🚨 Foreigners crossing certain Chinese borders are being forced to install malware on their Android phones.

"The malware downloads a tourist’s text messages, calendar entries, and phone logs, as well as scans the device for over 70,000 different files." vice.com/en_us/article/7xgame/

Ever tried to manage a fleet of routers and not go insane? We did too. My colleague combined #SaltStack, #Wireguard, and #OpenWRT, and now we can deploy a config on few dozen routers without breaking a sweat.

He's giving a talk on this tomorrow at Pass the Salt:
2019.pass-the-salt.org/talks/5

Will there be a live stream? Yes!
passthesalt.ubicast.tv/lives/l

Will we release our code? We already have!
git.occrp.org/libre/salt-route

#SysAdmin #FLOSS

@bstacey godd did you hear about the situation in germany? because it's incredible

basically, the German Conference of University Deans ("HRK"), in a moment of unlikely clarity, decided that they were Tired Of This Shit and told all the publishers that from now on all german universities would make one large agreement with them, on the universities terms, for access

elsevier and springer made offers so laughable that the HRK actually literally wrote a press release about how they should "come back to the table when they're ready to make a serious offer" and since then many universities have just kind of let access contracts expire

they recently came to an agreement with wiley, rest is still ? ? ? ? ?

it's fantastic because every day this goes on is a day more scientists learn about the greatest development in science access of this century, which, lets be quite honest, is scihub

@kravietz dear Sir, do you have a moment to talk about our Lord and Saviour, Log Analytics?
matomo.org/faq/log-analytics-t

Also, the JS bug pings the analytics server with the view data. So, caching doesn't really make web analytics harder. :)

Oh, #Cloudflare was having issues and brought a lot of websites down with it? That's not great.

But thankfully it's not that hard to roll out your own "DDoS protection" (or caching; just call it caching) setup. Here, you can even use our configs: git.occrp.org/libre/fasada

Yes, we use them in production, serving sometimes hundreds of thousands views per day.

Patches welcome. #SysAdmin

So we started shipping WebRender in Firefox a few weeks ago. Completely new rendering engine written in rust, big departure from how we approached rendering before. We are gradually enabling it for different hardware/OS configurations and a couple of million users have it now.

What's kind of blowing my mind, having worked on 3 large-ish rewrites, is that since WebRender shipped, telemetry has reported less crashes per user with WebRender than without.

This is *not* how big rewrites usually go.

Finally some light being shed on the ownership of the NSO Group:
theguardian.com/artanddesign/2

We need more of such reporting. Cyberwarfare actors need to be exposed.

NEW: During the rule of Hugo #Chávez, the #Venezuela's government awarded generous electricity contracts and oil concessions to a group of young businessmen, the Bolichicos, who built power plants during a series of widespread #blackouts. Almost 10 years later, as Venezuela continues to struggle with its #electricity supply, leaked documents reveal more about the deals.

occrp.org/en/investigations/pl

“I want [my kids] to understand that what they’re doing [online] now is going to have consequences in the future,” says @KColemanNCSA, executive director of @StaySafeOnline.

Read his tips & strategies for working on cybersecurity w/your kids: archerint.com/how-to-talk-to-y

You've been waiting for this for a long time: we're launching the alternative map service, open and with privacy as a priority. We explain this ambitious project on

betterweb.qwant.com/qwant-maps

The new keybase.openpgp.org has a pretty good usage instructions for Enigmail, OpenKeychain, GnuPG etc keys.openpgp.org/about/usage

@kravietz
Publishing keys to keyserver seemed like bad idea anyway, there are better ways of publishing your public keys or signatures. Thats one of the reasons Keybase exists.

Someone is actively DoSing GnuPG by adding thousands of signatures through keyserver network. Disable keyservers or switch do keys.openpgp.org gist.github.com/rjhansen/67ab9

Show more

kravietz 🦇's choices:

Mastodon 🔐 privacytools.io

Fast, secure and up-to-date instance. PrivacyTools provides knowledge and tools to protect your privacy against global mass surveillance.

Website: privacytools.io
Matrix Chat: chat.privacytools.io
Support us on OpenCollective, many contributions are tax deductible!