3 ms·
I’m in the U.S. and don’t want to rely on this stuff either, but I don’t know that I’d really trust any sufficiently complex software. Anything can be compromis
by cnames 1y ago
I’m in the U.S. and don’t want to rely on this stuff either, but I don’t know that I’d really trust any sufficiently complex software. Anything can be compromised. Even if you build from source, your compiler might be compromised, or you buy a cool new usb peripheral and plug it in- boom! Compromised. Bought a new device? Compromised already. That printer you bought years ago? Compromised and in your secure wireless network. Your sniffer and firewall? Compromised. Firefox? Compromised. Tor? Compromised. Wikileaks? Compromised. Your dishwasher? Compromised. You drive out in the woods without any devices and live in a tent. Hiker comes along and takes photos. You and tent are compromised. Walking out in the middle of nowhere naked hiding under a bush my ass.
- GTP 1y agoOf course you can't protect yourself from everything. But you can still pick a reasonable threat model and act accordingly.
- fsflover 1y ago> Anything can be compromised. This sounds like security nihilism: https://news.ycombinator.com/item?id=27897975 https://news.ycombinator.com/item?id=27897975 > Even if you build from source, your compiler might be compromised This problem can be solved by the bootstrappable builds: https://news.ycombinator.com/item?id=41368835 https://news.ycombinator.com/item?id=41368835 > or you buy a cool new usb peripheral and plug it in- boom! Compromised. This is why Qubes OS has been developed (my daily driver). It isolated the usb devices into a separate VM. > Your sniffer and firewall? Compromised. Try security through compartmentalization: Qubes OS. Last time a VM escape in the modern Qubes implementation was discovered in 2006 by the Qubes founder: https://en.wikipedia.org/wiki/Blue_Pill_(software) https://en.wikipedia.org/wiki/Blue_Pill_(software)