technology Technology Meet DAVE: Discord’s New End-to-End Encryption for Audio & Video
Jump
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearMO
    mox
    1 day ago 97%

    Discord’s audio and video end-to-end encryption (“E2EE A/V” or “E2EE” for short)

    That last bit is a little concerning. E2EE is widely understood to mean full end-to-end encryption of communications, not selective encryption of just the audio/video bits while passing the text around in the clear. If Discord starts writing "E2EE" for short when describing their partial solution, it is likely to mislead people into thinking their text chats are protected, or thinking that Discord is comparable to real E2EE systems. They aren't, and it isn't.

    We want an E2EE A/V protocol that is publicly auditable

    Their use of the word "auditable" here is also concerning. What does it mean for a protocol to be auditable? Sure, it's nice that they're publishing their design, but that doesn't allow independent audit of the implementation that actually runs on their servers and (importantly) people's devices. Without publicly auditable code that can be independently, built, run, and used instead of the binaries they provide, there's no practical way to know that it matches the design that was reviewed. And even if code is made available, without a way to verify that the code being run is the code that was inspected, any claim giving the impression that the system was audited is misleading at best.

    During the rollout phase, a single non-supporting member being present forces the call to transport-only encryption. The call will automatically “upgrade” to E2EE if that member disconnects.

    This sort of thing has historically been ripe for abuse. (See also: downgrade attack.) I hope they are very careful about how they implement it.

    The protocol uses Messaging Layer Security (MLS) for group key exchange

    Interesting. This makes me wonder if their motivation might be eventual compliance with the European Digital Markets Act. If that is the case, perhaps they also have a plan in the works for protecting text chats?

    My early impression, based on what they wrote:

    This won't fix Discord's major fundamental flaws. However, if their E2EE A/V design holds up to scrutiny, and if they were to fix their problematic language and provide truly auditable client code, the protection offered for audio & video could at least reduce Discord users' exposure to unwanted harvesting of voice & face samples. A step in the right direction, and a timely one, given that biometric data collection and AI impersonation are on the rise.

    37
  • games Games Subnautica - Time Capsule Galore
    Jump
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearMO
    mox
    1 day ago 100%

    Seems unlikely that all these would have fallen here.

    I wonder what sort of creature would go around collecting them, only to leave them out where they would reflect light and attract the attention of anyone passing by. It's almost as if...

    What was that sound?

    14
  • technology Technology The state department collaborated with big tech to smear investigative journalists during COVID
    Jump
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearMO
    mox
    2 days ago 93%

    @latenightblog@procial.tchncs.de was created ~37 minutes ago.

    Their only post violates rule 2, and probably violates lemmy.world rule 8 (misinformation).

    Somebody please show them to the door.

    14
  • movies Movies What movie do you most regret watching with your parents?
    Jump
    technology Technology AI-Generated Code is Causing Outages and Security Issues in Businesses
    Jump
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearMO
    mox
    3 days ago 100%

    also any inputs are probably scraped

    ftfy

    Let's hope it's the bad outputs that are scrapped. <3

    15
  • linux_gaming Linux Gaming Microsoft Windows kernel changes don't suddenly mean big things for Linux gaming
    Jump
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearMO
    mox
    3 days ago 78%

    Games requiring kernel-level anti-cheat are such a small minority of games that I struggle to think how this could mean big anything (good or bad) to Linux gaming in general.

    8
  • movies Movies What movie do you most regret watching with your parents?
    Jump
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearMO
    mox
    3 days ago 96%

    It's funny how different scenes stand out to different people. If someone had asked me to list the most memorable bits of The Lighthouse, the scenes you mentioned wouldn't have entered my mind. Dafoe's monologue, on the other hand, will stick with me for a long time to come.

    28
  • world World News Netflix’s Squid Game is rip-off of 2009 Hindi film, lawsuit says | The Straits Times
    Jump
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearMO
    mox
    4 days ago 83%

    We could quibble about the details, but all of them are fundamentally last-man-standing competitions.

    The Hunger Games was indeed one of them. I didn't mention it because it's the most obvious one in current cultural memory (no need for me to point it out) and because Battle Royale came a decade earlier, and Battle Royal half a century before that. The characters' situation is probably older than printed words.

    Even if a competitive game format was unique to the Hindi film, it would be tough to argue that nobody else could have thought of that detail when making their own variation of the same theme. Calling it a "blatant rip-off" of Luck (2009) is quite a stretch.

    (Incidentally, the Luck synopsis that I read says it focuses on gambling, not competitive trials or children's games. A quick look at the video confirms it.)

    4
  • world World News Breaking! Biden releases crack dealers so his son can have some fun
    Jump
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearMO
    mox
    4 days ago 100%

    They haven't even had the account for an hour and they've already violated lemmy.world ToS (calls for violence) in another thread. May the ban hammer strike swiftly.

    10
  • world World News Breaking! Biden releases crack dealers so his son can have some fun
    Jump
    world World News Netflix’s Squid Game is rip-off of 2009 Hindi film, lawsuit says | The Straits Times
    Jump
    gaming Gaming I have been getting into emulation (discussion)
    Jump
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearMO
    mox
    4 days ago 100%

    There are a couple of emulation communities outside of Beehaw:

    !emulation@lemmy.world

    !emulation@lemmy.ml

    4
  • privacy Privacy Maximizing privacy on Android without custom ROMs?
    Jump
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearMO
    mox
    4 days ago 100%

    many results say to install custom ROMs which I can’t since its a US model and the bootloader is locked.

    Are you sure it can't be unlocked?

    https://xdaforums.com/t/guide-to-root-galaxy-s22-plus-b-e-n-0-unlock-bootloader-and-flash-official-firmware-noob-friendly.4404351/

    Many phones that don't officially support unlocking can be exploited to do so anyway. Some will lose relatively minor functionality in the process (camera enhancements were lost on mine, but the camera still works fine) but the tradeoff is often worth it.

    2
  • til Today I Learned TIL the theme to Sanford and Son has lyrics. And they were sung by Ella Fitzgerald
    Jump
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearMO
    mox
    4 days ago 100%

    And it was composed by Quincy Jones, who has earned a small mountain of awards for his music over the years. Not many TV shows get a theme as good as that one.

    Here's the studio version:

    https://www.youtube.com/watch?v=1-wZUgvSlOo

    8
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearMO
    mox
    5 days ago 100%

    https://en.wikipedia.org/wiki/Internet_Draft

    I think it's pretty clear that IETF drafts are not what author meant when he wrote draft, and I'm pretty sure the IETF doesn't have much to do with C++ standards.

    Are you under the impression that there is no other sense of the word?

    It might help you in the future when you are discussing things like drafts, specifications, and proposals.

    As it turns out, I have done more than a little of that. Thankfully, I don't usually see such condescending remarks in the process, nor such insistence on misunderstanding. Good luck to you, too.

    9
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearMO
    mox
    5 days ago 61%

    Either it’s a draft or it’s a new iteration of the language. Can’t be both.

    It's a draft of a proposal for a new iteration. Is that so difficult to understand?

    4
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearMO
    mox
    5 days ago 56%

    That's fair. I think the last word in the URL does a good job of representing the implementation's claimed level of maturity:

    draft

    :)

    2
  • privacy Privacy Arguments why Telegram is not a good idea for anyone
    Jump
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearMO
    mox
    5 days ago 100%

    Is it true that Telegram doesn't encrypt group chats at all? Maybe that would get their attention?

    My biggest criticism of Telegram (but not the only one) is that they use homebrew crypto. Of course, I don't know if your family would understand why that's bad.

    11
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearMO
    mox
    5 days ago 43%

    this is yet another competing standard of static analysis.

    No, it isn't.

    Those are linters. They might or might not discover problematic use of unsafe language features lurking in existing code.

    This proposal is a new iteration of the language and standard library. It would provide safe language features for preventing such problems existing in the first place.

    -2
  • programming Programming Why I Prefer Exceptions to Error Values
    Jump
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearMO
    mox
    5 days ago 100%

    It would be nice to include Zig's approach in the comparison. I've only just begun learning it, but the syntax seems pretty elegant from what I've seen so far.

    Upvoting not because I share author's preference, but because I'm interested in reading other people's perspectives on the topic.

    7
  • technology Technology Music industry’s 1990s hard drives, like all HDDs, are dying
    Jump
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearMO
    mox
    6 days ago 90%

    That number is a single manufacturer's performance target. It is not a guarantee of results. You might be able to get Intel to replace an SSD if it corrupts data in under 52 weeks (assuming you notice it) but your data will still be gone.

    Hardware performance can and does vary by manufacturer, model, and production run. Even the nominally identical cores within a single CPU have slightly different operating limits. YMMV.

    Note also: the 52 week target you quoted is halved for every 5° rise in temperature.

    8
  • technology Technology Music industry’s 1990s hard drives, like all HDDs, are dying
    Jump
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearMO
    mox
    6 days ago 98%

    I explained that they ought to be recipes to new media every N number of years or risk deteriorating or becoming unreadable

    This is important, and for some media, it should be more often than that.

    People forget that flash memory uses electrical charge to store data. It's not durable. If left unpowered for too long, that data will get corrupted. A failure might not even be visible without examining every bit of every file.

    Keep backups. Include recovery data (e.g. PAR2). Store them on multiple media. Keep them well-maintained (e.g. give flash drives power). Mind their environment. Copy them to new storage devices before the old ones become obsolete.

    It's funny that with all our technology, paper is still the most durable storage medium (under normal conditions) that doesn't cost an arm and a leg.

    83
  • technology Technology iFixit wants to fix the soldering iron
    Jump
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearMO
    mox
    6 days ago 94%

    Have they not heard of the TS100 or the Pinecil?

    Of course they have.

    An iFixit co-founder has been responding to questions over on Hacker News:

    https://news.ycombinator.com/item?id=41521919

    15
  • kde KDE Plasma freezes during high disk activity
    Jump
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearMO
    mox
    6 days ago 100%

    It might be interesting to determine whether the freezes are limited to Plasma or are happening within the kernel.

    • Have you tried Control+Alt+F1/F2/F3 ... F8, to see if switching virtual consoles still works while the freezes are happening?
    • Do you have another machine on the same network? You could use it to ssh into your desktop machine, and when the freezes are happening, see if they affect ssh interactivity.
    2
  • world
    World News mox 1 week ago 92%
    The Shadow Dollar That’s Fueling the Financial Underworld https://www.msn.com/en-us/money/markets/the-shadow-dollar-that-s-fueling-the-financial-underworld/ar-AA1qj67n

    Archived: https://archive.today/UnNtK > A giant unregulated currency is undermining America’s fight against arms dealers, sanctions busters and scammers. Almost as much money flowed through its network last year as through Visa cards. And it has recently minted more profit than BlackRock, with a tiny fraction of the workforce. > > Its name: Tether. The cryptocurrency has grown into an important cog in the global financial system, with as much as $190 billion changing hands daily.

    23
    6
    gaming Gaming Sony to Start Selling Refurbished PS5 Consoles [Push Square]
    Jump
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearMO
    mox
    1 week ago 100%

    How would this control people selling their used hardware? I don't see anything about Sony trying to disable resold consoles.

    you'll get "a product that works like new with genuine PlayStation replacement parts (as needed) that has been thoroughly cleaned, inspected and tested". You will receive all the cables and paperwork you need for a PS5, and it comes with a 12-month manufacturer's warranty

    That's worth a premium to some people.

    6
  • technology Technology Lexar unveils the world's first SD cards made of 316 stainless steel
    Jump
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearMO
    mox
    1 week ago 100%

    An SD card lasts for years, and the amount of plastic in one is negligible. It’s just not an issue.

    Hark! The ghosts of countless generations of short-sighted polluters cry out in complacent, rationalizing unison!

    It's not about expecting one model of memory card to save the Earth. It's about moving away from needless production of toxic materials, everywhere.

    And if you don't care, nobody's going to force you to read The Lorax, but please don't go around shitting on people's appreciation for even the small things.

    8
  • technology Technology Lexar unveils the world's first SD cards made of 316 stainless steel
    Jump
    games Games Satisfactory 1.0
    Jump
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearMO
    mox
    1 week ago 88%

    What’s your complaint? It’s a UE5 game

    I'm not them, but I dislike Epic Online Servies, too. Last time I read the terms document, it granted permission for way too much data collection, and I'm not a fan of spyware.

    7
  • technology Technology Lexar unveils the world's first SD cards made of 316 stainless steel
    Jump
    technology Technology The NSA Has a Podcast—Here's How to Decode It
    Jump
    technology
    Technology mox 1 week ago 91%
    The NSA Has a Podcast—Here's How to Decode It www.wired.com

    It's nice to see they have transcripts, too. Direct link to the NSA site: https://www.nsa.gov/Podcast/ Article archive: https://archive.today/CcH52

    51
    7
    programming Programming Windows NT vs. Unix: A design comparison
    Jump
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearMO
    mox
    1 week ago 100%

    Control+F: VMS

    Phrase not found

    Disappointing that the author didn't seem aware of Windows NT's connections to VMS. Some fun facts:

    • Dave Cutler, the WNT lead architect, previously worked on VMS.
    • Several of WNT's internal systems bear similarity to those in VMS.
    • VMS is a closer contemporary of Unix than WNT is.
    • Advancing each letter in "VMS" yields "WNT". (It has long been speculated that this was no accident.)
    24
  • linux_gaming Linux Gaming Would translation layers for Xbox/PS4 on win PC work on Linux via wine?
    Jump
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearMO
    mox
    1 week ago 100%

    It is possible. Before Cemu (Wii emulator) had a native Linux version, people ran the Windows version in Wine.

    By the way, it's okay to say emulator. Hardware emulation is not the only kind of emulation.

    1
  • baldurs_gate_3 Baldur's Gate 3 [SPOILER] Shadowheart in daylight
    Jump
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearMO
    mox
    1 week ago 100%

    I put the image in the text body (not the post's image field) so it wouldn't show unless you opened the post marked [SPOILER].

    Are you using a client that circumvents that?

    4
  • baldurs_gate_3
    Baldur's Gate 3 mox 2 weeks ago 90%
    [SPOILER] Shadowheart in daylight

    ![](https://lemmy.sdf.org/pictrs/image/7b9e9005-54c7-4395-a0ea-9c8c37585676.png)

    32
    4
    programming Programming I need help getting back into development
    Jump
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearMO
    mox
    2 weeks ago 40%

    I’m trying to understand Git, but it’s a giant conceptual leap.

    In that case, I suggest learning Mercurial first. Its underlying design is very similar to Git, but the interface is more consistent and does a much better job of presenting the concepts to humans (especially those already familiar with traditional version control). Then, once you're comfortable with the concepts and commands in Mercurial, learn Git, since it's everywhere nowadays.

    Consider learning at least one new language, if not immediately (since you're in a hurry) then in your free time. Java is only one of many (and not even a particularly nice one IMHO). Try to find a language that you enjoy using; your programming life will be better for it. If you want something flexible and productive, consider Python. For more structure than that, maybe Go. If mobile apps interest you, there are Kotlin (Android), Swift (iOS), and Dart (both). If web development appeals to you, along with lots of job openings and lots of competition for those jobs, JavaScript. If you fancy the esoteric (and well-paying), Elixir and Erlang are worth a look. Lower level languages are in demand as well (e.g. C++, Rust) but they come with various kinds of pain that I wouldn't recommend to someone in your situation.

    Above all, please make sure you're reserving time for things that make you happy, sleep, and (if still possible) some kind of exercise. Your own physical and mental health are important. If you endure a bad working environment or wear yourself thin for too long, you will burn out, which won't help you provide for yourself or anyone else.

    Take care, OP.

    -1
  • programming Programming Looking for a system/application language that is better than C/C++
    Jump
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearMO
    mox
    2 weeks ago 50%

    I almost ignored that link because most of the opinions I've seen from Sweeney have been self-serving and/or misleading, but it turns out he raises some good points in that slide deck. It gets relevant to this discussion around page 27: Reliability. Thanks for sharing it.

    0
  • sdfpubnix
    sdfpubnix mox 3 weeks ago 100%
    SDF outgoing federation seems to be stuck

    Neither of my posts from yesterday and today have made it out to their communities' home instance (lemmy.world), and neither has received any comments or votes. It seems like something to do with outgoing federation is stuck. Edit to clarify: The problem I'm seeing affects *posts*. I don't know if it affects comments. It's possible that it only affects lemmy.world communities, but it definitely affects them even on other instances. Neither of these posts are showing up on any remote instance that I've seen: https://lemmy.sdf.org/post/21620419 https://lemmy.sdf.org/post/21673588 6 days later, it's happening again: https://lemmy.sdf.org/post/21974478

    25
    30
    youshouldknow
    You Should Know mox 3 weeks ago 80%
    YSK rice commonly contains arsenic, but most of it can be removed by boiling in water (4:1 ratio) for 5 minutes, and discarding that water before starting the regular cook cycle. https://www.sciencedirect.com/science/article/pii/S0048969720368728

    Why you should know: Arsenic [is a carcinogen](https://en.wikipedia.org/wiki/List_of_IARC_Group_1_carcinogens) and has various other [negative health effects](https://en.wikipedia.org/wiki/Arsenic#Toxicity_and_precautions); enough to warrant exposure limits in various jurisdictions. A five minute boil-and-discard step before cooking is a simple way to reduce your exposure, especially if you eat a lot of rice. Details are in the study, linked in the title of this post. Here's a diagram from the abstract: ![](https://lemmy.sdf.org/pictrs/image/2967f12c-7299-442a-a40d-a4925e404a5f.png)

    114
    41
    retrogaming
    RetroGaming mox 3 weeks ago 100%
    Cemu 2.1 Release github.com

    I'm not sure the Wii U is widely considered retro yet, but it has been discontinued for 7+ years, so I'm taking a chance that some folks here might care about the emulator.

    80
    5
    freegames
    Free Video Game Giveaways mox 3 weeks ago 100%
    [GOG] Tropico 4 www.gog.com

    67 hours left to claim it: https://www.gog.com/en/#giveaway

    64
    2
    programming
    Programming mox 4 weeks ago 97%
    The Top Programming Languages 2024 - IEEE Spectrum spectrum.ieee.org

    Direct link to the table, for those who block off-site scripts: https://flo.uri.sh/visualisation/19114866/embed?auto=1 Some of the labels don't seem to show up unless you zoom out.

    42
    16
    linux_gaming
    Linux Gaming mox 1 month ago 99%
    Valve confirms it'll support the ROG Ally with its Steam Deck operating system www.theverge.com

    I'm not convinced that the ROG Ally is designed as well as the Steam Deck, and I'm less than impressed with Asus in recent years, but I do love open systems. This seems like a good move for Steam OS.

    178
    14
    rimworld
    Rimworld mox 1 month ago 97%
    Scorch doesn't understand boundaries. At all.

    Cameron 'Scorch' Alumbaugh started hitting on the ladies of our colony almost immediately upon arrival. Every one of them, regardless of age or species. He just doesn't give up, even when they're happily married, obviously pregnant, and firmly rejecting his advances. I've seen him with four or five "rebuffed" debuffs at a time, and when he doesn't get his way, he will sometimes run around setting the colony on fire. (That's why we imprisoned him.) If he wasn't so good with plants and rocks, we would have sent him packing already.

    46
    3
    technology
    Technology mox 1 month ago 98%
    Researcher finds a way to invisibly reverse Windows updates web.archive.org

    Alternate archive: https://archive.is/3olbW Original link: https://www.theregister.com/2024/08/07/your_windows_updates_can_all/

    261
    44
    baldurs_gate_3
    Baldur's Gate 3 mox 2 months ago 98%
    bg3wiki:Ads Announcement 2 bg3.wiki

    Looks like Taylan has made his decision: he intends to put ads on bg3.wiki

    49
    17
    sdfpubnix
    sdfpubnix mox 2 months ago 100%
    lemmy.sdf.org cert expired

    This happened a couple months ago as well. Is certbot misconfigured? ``` rDNS (209.160.32.187): lemmy.sdf.org. Service detected: HTTP Testing server defaults (Server Hello) TLS extensions (standard) "renegotiation info/#65281" "server name/#0" "EC point formats/#11" "session ticket/#35" "status request/#5" "next protocol/#13172" "supported versions/#43" "key share/#51" "max fragment length/#1" "application layer protocol negotiation/#16" "encrypt-then-mac/#22" "extended master secret/#23" Session Ticket RFC 5077 hint 600 seconds, session tickets keys seems to be rotated < daily SSL Session ID support yes Session Resumption Tickets: yes, ID: yes TLS clock skew Random values, no fingerprinting possible Signature Algorithm SHA256 with RSA Server key size RSA 2048 bits Server key usage Digital Signature, Key Encipherment Server extended key usage TLS Web Server Authentication, TLS Web Client Authentication Serial 04D30A06E04DFFE4B17ACA22EF9CA476394A (OK: length 18) Fingerprints SHA1 120E588E76DA8B6C125F64639565AC740421BFB9 SHA256 1469485C7ED60FA5039C1ED309659314B2464056B0590C07C14F78D252604A05 Common Name (CN) lemmy.sdf.org subjectAltName (SAN) lemmy.sdf.org Issuer R3 (Let's Encrypt from US) Trust (hostname) Ok via SAN (same w/o SNI) Chain of trust NOT ok (expired) EV cert (experimental) no ETS/"eTLS", visibility info not present Certificate Validity (UTC) expired (2024-05-02 01:18 --> 2024-07-31 01:18) # of certificates provided 2 Certificate Revocation List -- OCSP URI http://r3.o.lencr.org OCSP stapling offered OCSP must staple extension -- DNS CAA RR (experimental) not offered Certificate Transparency yes (certificate extension) ```

    29
    8
    news
    News mox 2 months ago 99%
    Courts close the loophole letting the feds search your phone at the border reason.com

    Coming from a district court, I think this ruling could be appealed, but it's welcome news nevertheless.

    589
    46