Damus
Michał
Michał "rysiek" Woźniak · 🇺🇦
@Michał "rysiek" Woźniak · 🇺🇦

Hacker, activist, free-softie ◈ techie luddite ◈ formerly information security and infrastructure at https://isnic.is/ and https://occrp.org/ ◈ my opinions are my own etc.

(he/him)



profile image: drawing of a head and shoulders of a cat-person, in a space suit.

banner image: long-exposure photo of a large tent, brightly illuminated from inside, looking as if it is made of lava

#foss #libre #privacy #infosec #fedi22

(public toots CC By-SA 4.0 if applicable)

🇪🇺 🇵🇱 · 🇧🇦 🇮🇸 · 🇺🇦

Relays (1)
  • wss://relay.ditto.pub – read & write

Recent Notes

Michał
A bunch of "hackers hacked" stories in my timeline today. 🙄

Reminder: the more you (journalists and editors working at media companies) misuse the h-word to make your story sound 👻 scary 👻, the more you entrench the idea that the problem with security of our day to day devices is that there exist people who have technical skills and are able to break into them – rather than the fact that their manufacturers don't give a crap about security, making that easy.

And the less secure we all become.
note10aduw...
Michał
@nprofile1q... the explanation is you might want to diversify your information sources, as it seems like you are getting a pretty lopsided information stream about the actual situation in the EU.

Yes, there's a bunch of dumb ideas floating around, and yes there are serious concerns related to them, and yes enforcement is sometimes spotty, but that does not erase all the privacy preserving stuff that is already in effect in the EU.
note1p7m0z...
Michał
@nprofile1q... you are explaining this to a person who writes a regular column (in Polish) about this sort of thing, and who had been a privacy and digital human rights activist for over a decade and a half.

I am well appraised with issues around privacy in the EU. I am also well appraised with issues around privacy in the USA.

Even with all the high-profile dumb ideas of European Commission, the privacy situation in EU is leaps and bounds better.
1
Michał "rysiek" Woźniak · 🇺🇦 · 1d
nostr:nprofile1qy2hwumn8ghj7un9d3shjtnyd968gmewwp6kyqpq9zsljfx8tjyzplququr9xmqctclx0qc2mw5xydzx0udqzrfade4qmtrtl5 currently age verification laws are *already on the books* in a bunch of US states for example: https://en.wikipedia.org/wiki/Social_media_age_verification_laws_in_the_United_States
^. .^ Paul Wilde :alpine: :freebsd: :archlinux: · 1w
nostr:nprofile1qy2hwumn8ghj7un9d3shjtnyd968gmewwp6kyqpquyxyr55xy9auvwxym75a38rgr5jsc29x08hwh65n6pl9l8wuzunsujqjgw just one more datacentre and we'll solve climate change, bro
Michał
I like how slop bros cannot help themselves and make sure their project descriptions mention vibe-coding in every other sentence.

Fantastic way to know what software to avoid.

Also strong 7-year-old-who-just-discovered-plasticine vibes. Everything has to be made with plasticine, the whole house is smeared in plasticine, but the adults in the room have to pretend this is great (while being careful to remove plasticine cutlery from the dishwasher) – otherwise the kid throws a tantrum.

#Codeberg
1
Michał "rysiek" Woźniak · 🇺🇦 · 1w
Tantrum thrown right on cue.
note158ya5...
Michał
@nprofile1q... finding vulnerabilities can be stochastic because it has a very clear and effective verification function: either the exploit works or it does not. Exploit code can be messy and convoluted, as it is not going to be maintained after the vulnerability is fixed.

Vibe-coding fixes does not have that kind of verification function: the fix must not only close the specific vulnerability, but *also* not introduce new ones or re-introduce old ones, and it has to be maintainable in the future.