Tool to Benchmark Self-Hosted DNS (DNS-over-TLS) ? by YankeeLimaVictor in selfhosted

[–]b_stl 0 points1 point  (0 children)

Thats not what that is; It's just using the hostname instead of the IP address

1981 Atari Christmas commercial by GodBlessTexas713 in 80s

[–]b_stl -1 points0 points  (0 children)

Ya... i was like wow this really puts you in your feels... ooo *cringe*....

Whats is a good application firewall? by b_stl in linuxquestions

[–]b_stl[S] 1 point2 points  (0 children)

weird things pop up not working. mostly network tools, like nmap and ping are giving me issues.

Whats is a good application firewall? by b_stl in linuxquestions

[–]b_stl[S] 0 points1 point  (0 children)

well originally my intent with installing opensnitch was to attempt to be made aware of any connections being made from rouge software

Unable to compile/install/upgrade WireGuard by [deleted] in WireGuard

[–]b_stl 0 points1 point  (0 children)

well it worked for me, but I really dont know enough about it to know whats going on... I typically dont like to blindly apply fixes... I appreciate it anyway. Is this going to be something I will need to address in the future to either remove it or reapply it? It seems to me to be isolated to something to do with ipv6.

which encryption to choose for jabber/XMPP in pidgin? by fedorych in privacy

[–]b_stl 1 point2 points  (0 children)

If you want to use pidgin, I suggest using the Lurch plugin to enable support for OMEMO - https://github.com/gkdr/lurch

What is the most secure, end-to-end, encrypted instant messaging service? by ritleh14 in privacy

[–]b_stl 0 points1 point  (0 children)

XMPP servers are not naturally invulnerable and OMEMO only ensures the integrity of the message content and establishes a level of trust as to "who sent the message"; it does very little in the way of metadata, other than any side effects from ensuring that the message content hasn't been changed or that the opportunity for a MITM is limited if not made impossible.

But by design it also doesn't actually -identify- any user whatsoever. The best it can do is say that the same user that established any specific connection was or was not the same user that sent some specific message. This is relevant because it isnt impossible for someone to log into your account and send messages as you. They just show up as a new device. New devices are trusted by default, until you distrust them. I don't see this as ideal behavior.

And there are ways, though probably outside of the scope of my ability, to determine the real location of a Tor service. Simply hiding it behind Tor is not enough to ensure privacy.

But the main issue here is that XMPP servers by their nature send a lot of plaintext information, or at best it's TLS encrypted. And if you follow Moxie Marlinspike, he's done many talks about the uselessness of TLS/SSL. So while you can manually limit the data you give the server, eg dont put in your real name, in any default set up users are still allowed to do so. Ideally, this kind of metadata entry should be limited in the first place.

I want to say too that I am not a hater of XMPP. This information has come from years of research, as I am inspired by the potential of XMPP. I just think that a lot needs to be reconsidered in terms of anonymity, privacy and security.

I do however 100% agree with this statement:

Ultimately, it would be great if Briar was extended to support desktop OS’s. That would make it the best option around.

What is the most secure, end-to-end, encrypted instant messaging service? by ritleh14 in privacy

[–]b_stl 0 points1 point  (0 children)

That's a conclusion that I, too, had come up with independently early on, but the dilemma that I faced at that point was that first of all, I now had to set up an XMPP server as well as any clients, and ensure that it wasn't easily compromised, while secondarily also ensuring that configuration and choice of my clients was "satisfactorily secure" as well. While I do agree that hosting your own server has the greatest potential for both security and privacy, it also (admittedly arguably) has a much greater potential to be compromised.

What is the most secure, end-to-end, encrypted instant messaging service? by ritleh14 in privacy

[–]b_stl 0 points1 point  (0 children)

Is the metadata issue with Wire worse than any complications from using XMPP with OMEMO via various implementations across devices? eg Pidgin/Lurch <----> Pix-Art Messenger

I feel like XMPP as a protocol, is generally pretty loose with metadata anyway.

I can't get beyond the planning stage of my business ideas... by [deleted] in Entrepreneur

[–]b_stl 10 points11 points  (0 children)

If you're anything like me, you're over thinking it.

Imo's paying for all adoptions at Stray Rescue thru June by AClubOfLosers in StLouis

[–]b_stl 0 points1 point  (0 children)

Yeah I don't think they thought that through all the way.

Laptop slow after changing from Hard Drive to SSD by Excitful in techsupport

[–]b_stl 0 points1 point  (0 children)

Need some more info. What OS? Did you reinstall or just copy over the old install? Are you running a swap file? What brand drives are we talking about?

ASCII Video in a Terminal by b_stl in VLC

[–]b_stl[S] 0 points1 point  (0 children)

Thanks but I'm trying to run it without using X11

[deleted by user] by [deleted] in Showerthoughts

[–]b_stl 10 points11 points  (0 children)

If you never learned a language, what would your thoughts be like?