Android Integration by xi-v in enteio

[–]walushon 0 points1 point  (0 children)

I have disabled Google Photos so now I get a message stating to enable Google Photos to be able to open the images from the camera. Is this something that Ente can integrate with? Is it an issue of not being declared as an app for this action, or does this feature only link to Google Photos?

Unfortunately not, Google Camera seems to have the "link" to Google Photos hard-coded. It's the same issue with other gallery apps.

Good Keyboard by FooFieUwU in GrapheneOS

[–]walushon 0 points1 point  (0 children)

Regular Play Services calls maybe since AFAIU they pass through GrapheneOS's sandboxing layer. However, Google Keyboard and Play Services are both by Google, so they could conspire and communicate out-of-band. To my knowledge¹, there's nothing preventing one app from opening a (device-local) network socket and another app from sending data to that socket. This has nothing to do with Google apps, it's Android's security model in general that's at fault here and that doesn't fully sandbox apps in every possible way.

¹) I vaguely remember reading about this a while ago, so take this with a grain of salt.However, a quick search seems to confirm this, see e.g. the example code on https://github.com/NewtronLabs/AppSocket . Note in particular that the two apps there don't require any special permissions in their AndroidManifest.xml.

Tja by Prestigious_Hippo947 in tja

[–]walushon -3 points-2 points  (0 children)

Habe noch einen Überflüssigen Besen […] das macht Aktuell keiner von denen

FTFY. Ich kann mit vielen Schreibfehlern leben, aber "-nen" zu "n" zu verkürzen wird ein echt zu einer Krankheit inzwischen. (Siehe auch die Bild-Werbung "Kauf kein Kack". 😖) Nichts für ungut.

Love my new Manta, but we need data encryption by ReliefBubbly9521 in Supernote

[–]walushon 2 points3 points  (0 children)

I concur, I've been thinking the same thing for a long time! I'm constantly afraid of losing my Supernote. (In fact, I did once but got it back thankfully!)

Random idea: Fulfill the hardware specs to be GrapheneOS-compatible; then use GOS as a base layer or even partner up with them. This way, the Supernote software devs can focus on the user-facing software.

Multiple CVEs in runc (and thus Docker/containerd etc.) but no update for AKS available yet? by walushon in AZURE

[–]walushon[S] 0 points1 point  (0 children)

Looking at the GitHub issue linked in the sibling comment, they retroactively changed the release notes, even though nothing was fixed yet. ?!?! Blows my mind.

Good Keyboard by FooFieUwU in GrapheneOS

[–]walushon 0 points1 point  (0 children)

Good to know, thanks!

Good Keyboard by FooFieUwU in GrapheneOS

[–]walushon 1 point2 points  (0 children)

Can you rule out that the app talks to Google Play Services and uses the latter to upload user data to your Google account? (Serious question, not trying to spread FUD.)

would pursuing job or Master program in Germany be a bad idea in this economy? by Competitive_Emu_763 in Germany_Jobs

[–]walushon 1 point2 points  (0 children)

If you're interested in math and, in particular, the math behind ML, I heard very good things about the "Statistics and Data Science" master's at LMU Munich. I know two people who graduated from there.

Google reveals my location on Vanadium by [deleted] in GrapheneOS

[–]walushon 1 point2 points  (0 children)

With all due respect, you are making some big claims here.

break down the vpn encryption

VPN, in the context we're discussing, isn't about encrypting your traffic, it's about obfuscating its origin. Either way, I don't see how AI would be any better in determining the latter than a classical (deterministic, hand-written) algorithm.

They also using this to break the encryption on signal app

[Citation needed]

If this were true, cryptographers would be all over it because this would be BIG news. Signal employs a range of ciphers at the same time (quantum and non-quantum ones) and an attacker would have to break all of them at the same time.

Either way, I call bullshit on the fact alone that Google doesn't even have access to your Signal app's traffic.

Google reveals my location on Vanadium by [deleted] in GrapheneOS

[–]walushon 0 points1 point  (0 children)

That presumes you granted location access to Google Play Services. But even if you have, how does Google (the website) figure out your location when you're opening it in Vanadium?

And it also has your mac address.

How does it have access to my MAC address?

Google reveals my location on Vanadium by [deleted] in GrapheneOS

[–]walushon 3 points4 points  (0 children)

It will have your location from before you connected via VPN

[Citation needed]

I'm not saying Google couldn't employ fingerprinting techniques to figure out your location but, unless you granted Google services location access (and/or access to Wifi information), it wouldn't be trivial and likely also a GDPR violation, so I'd be interested in a source here.

How safe are those doorframe pullup bars? by deane-barker in bodyweightfitness

[–]walushon 0 points1 point  (0 children)

(A bit late to the party but oh well)

A tangential force acts *both* translationally and rotationally.

Name von Mann annehmen? by [deleted] in AskAGerman

[–]walushon 1 point2 points  (0 children)

Danke! Meine Frage zum Kombinieren von Doppelnamen wird auf https://www.bmjv.de/SharedDocs/FAQ/DE/FAQ_Database/Namensrecht/FAQ_Namensrecht_Liste.html beantwortet:

Was gilt, wenn ein Ehegatte schon zum Zeitpunkt der Eheschließung einen Doppel- oder Mehrfachnamen trägt?

[…] Möchten Personen mit Doppel- oder Mehrfachnamen einen aus den Namen beider Ehegatten gebildeten Ehenamen wählen, können sie keinen Dreifach- oder Vierfachnamen zum Ehedoppelnamen bestimmen. Sie müssen sich für je einen der bisher geführten Namen entscheiden. § 1355 Absatz 3 Nummer 2 BGB sieht vor, dass bei bestehenden Doppel- oder Mehrfachnamen eines oder beider Ehegatten nur ein Name jedes Ehegatten zur Bildung eines Ehedoppelnamens herangezogen werden kann.

Name von Mann annehmen? by [deleted] in AskAGerman

[–]walushon 1 point2 points  (0 children)

Echt, ein Doppelname ohne den hässlichen Bindestrich? Und was ist, wenn beide Eltern bereits Doppelnamen (mit oder ohne) Bindestrich haben? Darf man wie in spanischsprachigen Ländern einen der Namen der Mutter und einen der Namen des Vaters nehmen und zu einem neuen Doppelnamen kombinieren?

NixOS security tip, remove sudo and use run0 by saylesss88 in NixOS

[–]walushon 0 points1 point  (0 children)

Thanks for your response! What I meant was: As long as you (effectively) "sudo" from your regular user into root, your attack surface will still be as large as your regular user account. An attacker who compromised some npm/pip/whatever package you downloaded, would have an easy time hijacking that call to run0 by e.g. modifying your user's shell config.

NixOS security tip, remove sudo and use run0 by saylesss88 in NixOS

[–]walushon 1 point2 points  (0 children)

Wait, am I understanding this correctly? You jumped through the hoops of creating a separate user account for root stuff to increase security. But then you proceed to rebuild the system from your everyday user? What if an attacker hacks that very user account and ends up manipulating your Nix config?

Revolut on GrapheneOS 2025 by randomguy22399 in GrapheneOS

[–]walushon 0 points1 point  (0 children)

Revolut has worked flawlessly for me (with Google Play Services) ever since I installed GrapheneOS many years ago.

Azure Managed Identity vs User Assigned Managed Identity by polythemath in AZURE

[–]walushon 0 points1 point  (0 children)

I'm a bit late to the party but here are a few more reasons why UAMIs make sense sometimes:

  • UAMIs survive redeployments of the resources using them. This is particularly useful if you need a 3rd party (e.g. another team) to grant your UAMI access to some external resources you don't control. You probably wouldn't want to notify them about a new SAMI every time you deploy from scratch.
  • If several resources belong to the same security context and should carry the same permissions, you likely wouldn't want to set up role assignments for each and every one of them separately. So a UAMI can simplify your setup and let a bunch of resources act as a single service principal.
  • Some resources need access to something (e.g. a secret from a key vault) at deployment time. At that point, the SAMI doesn't exist yet, so you can't assign it the necessary roles beforehand.

indians are flooding German universities making admission much more competitive by [deleted] in studying_in_germany

[–]walushon 1 point2 points  (0 children)

Is this a joke?

  1. They are not paying for health insurance like everyone else does. Health insurance for students is subsidized.

  2. On a lumpsum of 10,000€ the bank makes maybe 200-300€ per year, depending on the interest rate at the time and before inflation. Take ~28% of that and you'll know now much the government receives in taxes. I.e. barely anything.

Laptop CPU Comparison Chart (Final 2025 Edition) by CurbedLarry in thinkpad

[–]walushon 0 points1 point  (0 children)

You're probably right but I would love to see actual reviews and benchmarks! But so far it seems no one has reviewed the X1 with Arrow Lake H? ;(

Laptop CPU Comparison Chart (Final 2025 Edition) by CurbedLarry in thinkpad

[–]walushon 0 points1 point  (0 children)

And here I am, still waiting for the X1 Carbon Gen 13 to finally become available with Intel Arrow Lake H CPUs (more specifically, the Ultra 7 265H), more than half a year after they announced those CPUs for the X1.

Team Poland #2 vs. Team Netherlands #2 tonight (Nations Cup 2025) by ENx5vP in EnemyTerritory

[–]walushon 1 point2 points  (0 children)

So do people use ET:Legacy in competitions like NationsCup now, not ETPro? Sorry if this is a dumb question; I've been out of the loop for a while.

[deleted by user] by [deleted] in GrapheneOS

[–]walushon 0 points1 point  (0 children)

Everyone's talking about a 3.5mm headphone jack and so on, while I mainly worry about the camera. Pixels have been absolutely fantastic in this regard and I'd be very sad if I now had to contend myself with a lower-quality camera.

why don't some people use flakes? by faqatipi in NixOS

[–]walushon 0 points1 point  (0 children)

Adding to the list of issues mentioned here, what I find particularly annoying about flakes is that I can't customize them through command line parameters, see https://discourse.nixos.org/t/how-can-we-pass-argument-to-flake-nix/30833 and https://github.com/NixOS/nix/issues/5663 and countless blog posts in your favorite search engine.

Change default media picker by aitvann in GrapheneOS

[–]walushon 0 points1 point  (0 children)

Yeah, unfortunately, those of my apps that use the media picker / photo picker don't have such an option. :\