@causalislands Oh hey. It me!
@hank me: *uses either Arial, Comic Sans, or system-ui for absolutely everything* 😎 Absolute picasso.
I would love to pick your brain kn the tradeoffs between typefaces and what this glyph thing even is some time. 🤯 I feel like there's a whole world of fonts I am unable to perceive
Hey all, if you have a Google Pixel 6/7 or a Samsung phone: Disable VoLTE and Wi-Fi calling until this issue is patched: https://9to5google.com/2023/03/16/google-exynos-modem-vulnerabilities/
tl;dr: Tests conducted by Project Zero confirm that those four vulnerabilities allow an attacker to remotely compromise a phone at the baseband level with no user interaction, and require only that the attacker know the victim’s phone number. With limited additional research and development, we believe that skilled attackers would be able to quickly create an operational exploit to compromise affected devices silently and remotely.
Google's Project Zero usually makes vulnerability reports public after 90 days. This is an exception because it goes directly from internet to baseband-level (tl;dr: the second OS inside your phone that powers the LTE/5G modem) remote code execution. This is morally equivalent to getting code running on your WiFi card.
Here is a list of the most likely affected devices:
Samsung Galaxy phones including those in the S22, M33, M13, M12, A71, A53, A33, A21, A13, A12, and A04 series
Vivo phones including those in the S16, S15, S6, X70, X60, and X30 series
Google Pixel 6 and 6 Pro, Pixel 6a, Pixel 7 and 7 Pro
Any wearables that use the Exynos W920 chipset
Any vehicles that use the Exynos Auto T5123 chipset
Helpfully, the baseband is a binary blob of uninspectable firmware that users can't inspect or prove hasn't been tampered with.
Cooking up some grant applications to do some #meshnetwork stuff along with #dweb and #p2p publishing onto local networks.
Longer term planning to deploy education materials as part of the setup so that communities can create #localfirst software without needing to rely on the cloud or even local servers so much.
One thing that's a TODO is figuring out how the economics of maintaining things work for places where that's a concern.
New P2P service (pigeon-to-prison).
I think this article should have an actual photo of one of their little backpacks.
Excited for spring to come so I can start practicing with my little RC quadcopter again.
It's just a cheap toy one at the moment but eventually I wanna get into #fpv racing with one once I can justify the cost.
banking
Banking suuucks. One of my contracts involved using a custom payment service instead of my usual wise.com and it only gives me the option of depositing in my Canadian bank account even though it was being payed out in USD.
Now I need to physically go to my bank so I can do a SWIFT transfer to my Wise account so I can convert it to USD and send it out to subcontractors. 😭
Honestly if CBDCs can make this easier I'll let the gub control all my money for me.
@kawaiipunk Wonderful. I'll do some more research. Ty for the heads up. 🙇
@kawaiipunk Oh wow! I've been using Newpipe for Youtube and didn't know it had Soundcloud support. :O Can I log in with my soundcloud account to get access to the paid tracks (I'm currently playing SC for their premium thingie for that)?
@kawaiipunk Might be a good time to start using SCDL 👀
https://github.com/flyingrub/scdl
In whatever the totally legal way to use it is of course.
I also found that the shuffle function of Soundcloud isn't very great and keeps playing me the same tracks compared to VLC.
Did you know the Journal of Trial and Error is wanting to publish rejected grant applications? In their words, "We believe that applications often suffer from a highly competitive system rather than a deficient proposal."
If this sounds interesting to you, check out the call for submissions, which also has a link to their blog post on the topic: https://journal.trialanderror.org/pub/callrga/release/1?readingCollection=d235496a
@ciourte Yessssssss. Exactly like that. Honestly I should get a calendar invite thingie that uses that as a time picker instead of 24 hour time. It'd make everything way more complicated for humies, but that's okay IMO.
Now if I could just get that on this proprietary cat feeder firmware with no obvious points of modification. 🥲
"it works on my machine (fullscreen chrome on m2 macbook pro with gigabit ethernet and traditional mouse+keyboard)"
"Inuit are 85% of Nunavut population, & 70% of us have Inuktut as our mother tongue. Yet all the schools operate in English. Greenland runs an entire government in Inuit language. They’ve had an Inuit language school system since 1979. If they can do it, we can do it. 🧵 👇🏾
#LanguageRevitalization #Inuit #Nunavut #Indigenous
Thread Reader: https://threadreaderapp.com/thread/1635299909158191105.html
Occult Enby that's making local-first software with peer to peer protocols, mesh networks, and the web.
Exploring what a local-first cyberspace might look like in my spare time.