[Return] [Bottom]

Posting mode: Reply

Emotes
Kaomoji
Emoji
BBCode
(for deletion)
  • Allowed file types are: gif, jpg, jpeg, png, bmp, webp, swf, webm, mp4
  • Maximum file size allowed is 50000 KB.
  • Images greater than 200 * 200 pixels will be thumbnailed.
  • 13 unique users in the last 10 minutes (including lurkers)





Want your banner here? Click here to submit yours!

It's funny when /g/-adjascent people sperg out over security and hardening systems. Downloading a million random poorly maintained programs just increases your attack surface and vulnerability to dependency and chain attacks. You want LESS, always.

You know what the best security setup is? and it's something I use daily: A laptop with no internet connection. If you can't do that, then a strict firewall that requires manual approval for each program trying to make a connection is fine. Simplewall for windows should satisfy all but the most schizophrenic.

But if you just disconnected from the internet then you can install actually usable operating systems like Win7/10 and not worry about a damn thing. No endless tinkering, no updating bullshit software, no nothing. Just peace.

Need to browse the internet? Do it on another machine. Want to stay private? Use TOR. If you follow these rules you cover 99% of bases.

With Claude mythos out, anything with an internet connection will soon be vulnerable.
>>
>>194507
The new filter is tourists and retarded /g/fags seeing graphs like these and following or trying to follow them to the letter without leaving room for critical thought. "Do I really need this? Who cares, it's in the graph so it must be right!" They either end up with a system borked beyond their ability to repair or they can't read a paragraph (gen z) and give up after barely just starting.
I noticed that this is a self perpetuating cycle as well. When AI becomes even more dangerous in 6-12 months these people's network and cp collections will be thoroughly raped by Chinese LLM's because they didn't realize a bumfuck vibe coded program somehow kept a port open to the internet.
The people with this mindset also love to post about how private and anonymoose they are on social media. You can't expect room for critical thought, so just let them get filtered out and give up on trying to save them.
>>
how do I prevent acr :cry:
>>
https://www.youtube.com/watch?v=JQiqTk9Mkxs

i have found this video interdasting
>>
>Want to stay private? Use TOR
you glow so hard I had to lower brightness of my screen
>>
>>
>>194537
either open source or not use ദ്ദി◝ ⩊ ◜.ᐟ
>>
>>194543
it works for the most part
>>
>>194543
No u
tor is fine. It's a great litmus test for midwits
>But teh nodes are controlled by the CIA!!
Literally doesn't matter at this scale + isn't even true.

The fact they can't see why it being a former military project is a strength rather than a weakness reveals their naive, childlike way of thinking. Same people who think golang is bad because its from google
>>
>>194547
The sole biggest investor into tor is USA DOW, use i2p instead of tor, tor is good only if your main enemy is a rando on the internet that wants to dox you, for anything else ur ded
>>
>>194537
secondhand 720p tv
>>
>Downloading a million random poorly maintained programs just increases your attack surface

I always thought this, Linux people love to boast about being security smartypants but they are all too eager to use Arch based system with public unvarified, "community" maintained repos and just run and install random dependencies without checking anything, - how is that any different from grandpa going on "coolsoftwarez.net" and downloading random stuff? To me its kind of the same thing.

The more stuff you have to keep track of, the more hassle it is, I just want to make things, ''maintaining a system'' isnt the reason i use a computer.
>>
>>194560
correct :3
i look into my stuff
>>
>>194560
but that's the issue that comes with yay/AUR, right? i don't use arch btw
>>
>>194542
also this dude talks about how when you modify your browser to be as private as possible with plethora of extensions and settings you are actually making yourself more noticeable compared to 99% of chrome default settings web users - it's just that you share less info, but are glowing in the crowd instead
>>
>>194564
yep :3
>>
>>194564
What about user agent modifiers? They let you pick a very generic user agent. WOuldn't that be the best anti-fingerprinting tool?
>>
i used to download many things all the time when i was new to linux and even configured a bunch of stuff from ssh (seldom used) to ufw (never used it). My computer is probably already raped by some haxxor and i regret it now but cleaning up everything or reinstalling is such a pain (;´~`)
>>
>>194567
I am not an expert, but isn't user agent just a browser/OS combo? Might be useful, if you want to hide that you are that one Cambodian LibreWolf user, but that doesn't solve the tracking that focuses on your traffic.
>>
>>194507
All I want is an OS that doesn't arbitrarily lock me out of my own goddamn computer when I don't want to fork over my phone number and address to the impalpable Microsoft, who just absolutely NEEDS that information to make sure I'm REAL enough to use their operating system
Who's ever heard of needing a MS account to use a fucking computer anyway?
As for the net security, it's whatever. Most tech theorists suggest the web as we know it will be done for within the next half decade. I'm ready for the subsequent deluge of private intranets and tangible otaku social clubs
>>
キタ━━━(゚∀゚)━━━!!
>>
HERE TO SAY THAT:
-windows defender has gotten pretty good and its database gets updated daily and blocks 90% of malware, third party AV software became useless unless you use it for an upgraded firewall
-windows requires identity verification and a lot of money from a developer to sign a kernel driver
-most programs usually get downloaded as a signed setup from official websites and google has started anabolizing google safe browsing
-only remaining issue is skids downloading cheats that tell them to disable windows defender, and these retards actually do it

meanwhile linux fellas:
-AUR or any community package manager filled with infostealers, RATs and worms no one detects
-XZ utils raped everyone's ass
-no AV by default cuz "i'm using linux which is NEVAR targeted by ANYONE, besides enterprises"
-everyone trying to be terry davis while having an nvidia proprietary driver installed running in the background
>>
>>194581
HAHAHAHA this retard has never heard about shellcode running in memory.
>>
>XZ utils raped everyone's ass
dunno what dis is
>>
>>194581
>XZ utils raped everyone's ass
no, systemd raped everyone's ass.
>>
>>194581
you pissed off alot of ppl but ur right
>>
>>194581
The truth. Also we don't care about pretending to protect some freedom you either don't have or nobody is trying to steal from you. We care about eroge.
>>
>>194594
Evidently no one wanted to admit that 90%+ of linux machines were fully backdoored by some random guy for years and probably still are full of dozens of other backdoors in the collective tens of millions of lines of code that have never been audited except by the same people who wrote them.
>>
>>194581
another perk for having windows is a confidence of being fucked in the ass when the law asks about you
>>
>>194649
Do what OP says and keep your CP on an offline machine
>>
What would they do without the CP? Windows is free to download and install from its ver 10 or even 8 maybe. Coming for pirated movies? MP3s (no one have mp3 files now)? Truly, CP is the irreplaceable part of the System.
>>
I use win10 without any antivirus. Just don't act like an old person surfing the webz
>>
>>194664
you gon get raped
>>
>>194579
why does graphene set off all the honeypot alarm bells in my head?
>>
>>194581
On windows the infostealer is the OS
>>
>>194581
you may have a point, I'm not tech savvy to refute this, but windose has become unusable for me. It causes me mental pain
>>
>It's funny when /g/-adjascent people sperg out over security and hardening systems. Downloading a million random poorly maintained programs just increases your attack surface and vulnerability to dependency and chain attacks. You want LESS, always.

assuming you are talking about the image you posted
i think you got the wrong target audience. if you host any sort of service, or better yet a whole network of services. you are no longer at just your desktop where you can memorize everything running and can slap a firewall and run opensource software.
on the enterprise network you are forced to work with insecure software or closed source trash. couple that with a whole staff of people to work on your enterprise network, now u got more issues.
think of it as a trade off. the enterprises cant afford to move slower and watch to make sure every dev written good configs for there network service. so they have to use higher level monitoring tools to contain, detect, fix, some fucked up shit. at a certain point you will excited the capacity of abstractions.

>because they didn't realize a bumfuck vibe coded program somehow kept a port open to the internet.
exactly! now if you have like in OP's pic, things to sandbox software and monitor the network, you can detect and contain this. having layers of security/detection may or may not be better then way less/none and just hand audit with open source. its a trade off.

if you actually are talking about personal security like most people in this thread are. yeah the chart you posted is useless and will cause more issues the help.
but some of the same principles still apply and you have more control over the hand audit and what you keep in your head. there is better ways then what people prepose to achieve this.
here is what should ACTUALLY be done. get qubes.
yup that is about it. you must have 2 devices you can trust.
device 1, your router
device 2, your main computer.
the rest falls out for free when you understand networking.
like network interfaces, subnetting, vpn, trunking, etc.
with qubes u can seamlessly spawn in a VM that auto routes everything thru TOR. or have a VM that has a VPN connection to your router management and other network services you have and can manage them.
then you can have the VMs default network not allow to talk to anything and just go out to the internet only.

if your shitty heyuri VM gets hacked, they cant get accesses your webcam or mic unless u give ur VM. they will end up stuck and deleteing your heyuri save files but cant assess your PRONZ VM. that is what you get for downloading little Alice and running it, even over wine you will still get PWNd.

many other little thigns i did not talk about like disabling hyper threading for qubes or flashing coreboot/dasharo on your comptuer. but there is many other little things u can do.
fun fact, there is a intel motherboard that supports 12th gen CPUs and ddr5 that you can get itel ME disabled via dasharo. stay safe and learn unix
>>
new trip btw since the last one wasn't secure

>>194673
yeah i was speaking security-wise since it was the topic of the thread, i actually despise windows 11 bloat-wise since it consumes a lot of ram and could definitely be optimized better

>>194672
well, you have to make your choice, it's either having an infostealer made by an indian guy who is targeting linux users trough package worms/trojans and is going to change your account passwords tomorrow or having hardware information collected by microsoft

>>194664
yes that's primarily the best protection you can have, but an updated antivirus can be useful whenever binaries of a certain software get compromised or when a software you have installed has a potential vulnerability (like RCE)
>>
>>194573
>Most tech theorists suggest the web as we know it will be done for within the next half decade.
People have been saying that shit for at least three years and there's still no sign of it yet. you'd think that process would have started now by then right?
>>
funfact. kokonotsuba is opensource and it had a remote code execution (default password in a unused module) that was sitting on it for years. so even opensource software has its major issues.

qubes is also really amazing to use with AI. i use the networking and containment to directly give AI complete accesses. it gives me all the benifits of it running on my desktop with and controlling GUIs with out the bad sides of getting PWND from a prompt injection
>>
>>194581
windows defender has gotten pretty good and its database gets updated daily and blocks 90% of malware, third party AV software became useless unless you use it for an upgraded firewall
fuck windows defender for nuking my pirated games
>windows requires identity verification and a lot of money from a developer to sign a kernel driver
true
>most programs usually get downloaded as a signed setup from official websites and google has started anabolizing google safe browsing
google doesnt give a fuck as long as someone pays for ad space
>only remaining issue is skids downloading cheats that tell them to disable windows defender, and these retards actually do it
always lol

>AUR or any community package manager filled with infostealers, RATs and worms no one detects
not my problem lol
>XZ utils raped everyone's ass
it didn't
>no AV by default cuz "i'm using linux which is NEVAR targeted by ANYONE, besides enterprises"
feel free to install any you like
>everyone trying to be terry davis while having an nvidia proprietary driver installed running in the background
this is true lol. same with steam and dicksword

Want your banner here? Click here to submit yours!

[Top]

Delete post: []
First
[1]
Last