jonf3n

5.6K posts

jonf3n

jonf3n

@jonf3n

UX & docs for FLOSS #privacy & #security tools, #bitcoin, #monero, #vegan PGP? https://t.co/YlX46R35Vl All opinions are 100% endorsed by my employer.

Entrou em Mayıs 2016
588 Seguindo690 Seguidores
Tweet fixado
jonf3n
jonf3n@jonf3n·
@peterktodd This should have been the response to that PR
jonf3n tweet media
English
0
0
17
796
jonf3n
jonf3n@jonf3n·
@beinghd16 @TheDefiantGhost Just have a backbone and insist on Signal. If people complain, have a conversation about what is important in life.
English
1
0
0
23
Hirak
Hirak@beinghd16·
@TheDefiantGhost The worst part is even after knowing the downgrade, you still can't shift completely to Signal, Threema, Session because your family relatives, team, colleagues won't. Adaptability is a major bottleneck. Convenience and privacy are inversely proportional.
English
1
4
47
2.8K
Defiant Ghost
Defiant Ghost@TheDefiantGhost·
In 2019 Edward Snowden said this about WhatsApp: “The problem with applications like WhatsApp is, it was actually designed to have very strong encryption, just the same as the gold standard today which would be the signal messenger or the wire messenger, but then it was bought by Facebook because it was so good, and now Facebook is quite aggressively reducing the security of WhatsApp about once a quarter, and they’re trying to do it as quietly as possible, so a messenger that the people are comfortable using now is actually a danger to you.” When Snowden speaks, you listen!
Defiant Ghost tweet media
Pavel Durov@durov

WhatsApp’s “E2E encryption by default” claim is a giant consumer fraud: ~95% of private messages on WhatsApp end up in plain-text backups on Apple/Google servers — not E2E-encrypted. Backup encryption is optional, and few people enable it — let alone use strong passwords.

English
164
5.5K
19.6K
1.3M
jonf3n retweetou
International Cyber Digest
International Cyber Digest@IntCyberDigest·
🚨 BREAKING: The FBI has successfully extracted deleted Signal messages from a suspect's iPhone via notification storage, the place where all your notifications are stored for up to one month. Notification storage stores data from all messaging apps, it's a big flaw in iOS. But there's a way to turn it off...
International Cyber Digest tweet mediaInternational Cyber Digest tweet media
English
464
4.7K
24.9K
6M
jonf3n
jonf3n@jonf3n·
@lopp "Register here and give us all your private info to receive your giftcard from the data breach settlement."
jonf3n tweet media
English
0
0
0
40
Jameson Lopp
Jameson Lopp@lopp·
It's a real rollercoaster of a ride when you receive notices that you're eligible for a data breach settlement payout... 😒 Then when you get to the instructions for claiming the payout, you realize you gave the service provider a fake identity because you're a cypherpunk. 😎
English
21
5
91
9.4K
jonf3n
jonf3n@jonf3n·
@ibuildthecloud @Microsoft They've been "doing this crap" for decades... It's on you if you still choose to put up with it.
English
0
0
1
13
Darren Shepherd
Darren Shepherd@ibuildthecloud·
Seriously @Microsoft stop doing this crap. "Confirm" or "Set later". Why isn't there a no? Can't you respect my choice? Why can't you respect me as a user? I'm sick of being treated as an ad channel. I paid for your product.
Darren Shepherd tweet media
English
289
493
10.7K
183.7K
jonf3n
jonf3n@jonf3n·
@lopp @andrea_z_ ... wait, it's SPENDING from a (non-taproot) address that reveals the pubkey. Multiple "deposits" to a single address in and of themselves don't increase QC vulnerability. Am I misunderstanding what you said?
English
0
0
0
10
Jameson Lopp
Jameson Lopp@lopp·
@andrea_z_ In that case the most important thing you can do is not re-use addresses for deposits.
English
2
0
1
108
Jameson Lopp
Jameson Lopp@lopp·
2 new quantum computing papers just dropped. Is crypto cooked? Google says they designed quantum circuits that could break ECC in a few minutes with 500,000 physical qubits: a 20-fold reduction from previous work. Oratomic says they could break ECC in a few days with 26,000 neutral-atom physical qubits. These papers both show advancements in algorithmic efficiency and quantum computing theory, but one should not overlook the assumptions underlying these claims. The authors have improved upon techniques shown to work at small scale, but we have no proof they can be scaled up. In other words, we're at the stage where scientists have created a few transistors but are still trying to figure out how to fabricate a fully functioning silicon chip with tons of transistors working together simultaneously. Progress is clearly continuing. How long do we have before a cryptographically relevant quantum computer can be built? That's still anyone's guess.
Jameson Lopp tweet media
English
69
54
411
53.4K
jonf3n retweetou
The Lunduke Journal
The Lunduke Journal@LundukeJournal·
A new national law has been introduced to require all Operating Systems to have mandatory Age Verification. House Resolution 8250 : “To require operating system providers to verify the age of any user of an operating system, and for other purposes.” The Federal bill was introduced by Rep. Josh Gottheimer, Democrat from New Jersey. And is co-sponsored by Elise M. Stefanik, Republican from New York. The full text of the bill has not yet been made publicly available (but is expected shortly). congress.gov/bill/119th-con…
The Lunduke Journal tweet media
English
787
1.6K
3.5K
713.4K
jonf3n
jonf3n@jonf3n·
@tetherwallet Please explain the fees --- how are gas fees paid in USDT on Ethereum for example? Generally this is not possible in non-custodial wallets.
English
0
0
1
159
tether wallet
tether wallet@tetherwallet·
570 million people trust Tether. Now, we’re putting that global infrastructure directly into your hands. 🌐 Meet Tether Wallet: the fully self-custodial app designed for everyday life. ▪️Universal: 💸 USD₮, USA₮, XAU₮, & Bitcoin (On-chain + Lightning⚡). ▪️Simple: Send to @tether.me username with 1 QR code across all networks. ▪️ Secure: You own your keys, safely backed up to your cloud. The People’s Wallet is officially live. Download it now: tether.me
English
258
308
2K
878K
jonf3n retweetou
Lee ★!★ Clagett
ccs.getmonero.org/proposals/vtne… My new CCS is in funding! Upcoming: LWSF /feed unit testing, investigate (indirect) block limits, and new lib for encrypting wallet data with FIDO2. Done: LWS+F ready for fmcp++, LWS+F /feed implemented, monerolws.com, and Docker improvements.
English
5
10
51
12.9K
coffnix
coffnix@coffnix·
Not to forget the contributions of gmaxwell (ex-Bitcoin dev) to Monero, such as Bulletproofs, Confidential Transactions and RingCT, as well as the theoretical foundation of Pedersen Commitments, the discussions on fungibility, and the privacy analyses that helped shape the protocol’s current model.
English
1
0
12
454
Sam Bent
Sam Bent@DoingFedTime·
Monero didn't come from a whitepaper and a marketing team, it's the direct descendant of four decades of cypherpunk work from Chaum, Zimmermann, May, Back, Finney, and Szabo, built by people who actually read their papers.
Sam Bent tweet media
English
16
88
487
11.1K
CR1337
CR1337@CR1337·
Just Microsoft things... Recently they terminated the VeraCrypt developer's Microsoft account. VeraCrypt is a free and open-source disk encryption software that performs on-the-fly encryption (OTFE) to create virtual encrypted disks, encrypt partitions, or secure entire storage devices.
CR1337 tweet media
English
75
415
2.1K
337K
jonf3n
jonf3n@jonf3n·
@Someb0dy455556 @CR1337 That was written my Mounir IDRASSI... he says that the majority of Veracrypt users are on Windows. I totally agree it would be good for those user to dump Windows, but I guess they have their reasons for staying on that platform.
English
0
0
0
59
Someb0dy
Someb0dy@Someb0dy455556·
@CR1337 Open to proposals and help?? Drop Windows altogether, it was never open-source friendly, no big tech is, they always do things to benefit themselves. It sucks that affect his personal life but again, ditch Windows.
English
3
0
53
8.9K
NikTek
NikTek@NikTek·
The craziest thing ever happened on YouTube. La7, an Italian television channel has used footage from Nvidia DLSS 5 Trailer and then sent a copyright strike to every YouTube video that supposedly used “their footage”, including Nvidia themselves. Nvidia’s own DLSS 5 announcement video has now been taken down by La7 as you can see here.
NikTek tweet mediaNikTek tweet media
English
1.1K
3.4K
53.5K
4.3M
jonf3n retweetou
Jameson Lopp
Jameson Lopp@lopp·
I'm pleased to report that Bitcoin Core and Bitcoin Knots have reached an agreement to merge and activate BIP-110 before the August deadline!
Jameson Lopp tweet media
English
100
47
675
73.7K
jonf3n retweetou
Dr. Ben Tapper
Dr. Ben Tapper@DrBenTapper1·
Bill Gates is calling for biometric digital IDs to be tied directly to your bank account and payment systems so they can monitor your health, track farmers, and manage climate policy. That is exactly the kind of centralized control free people are supposed to reject. When your identity, your money, and your daily life are all linked in one system, you are no longer free. #wakeup
English
5K
9K
17K
966.1K
jonf3n retweetou
IT Guy
IT Guy@T3chFalcon·
You turn on your VPN and your IP changes. It feels like you should be invisible, but some websites still know exactly where you are. Your IP is just one clue. Websites also look at your browser’s timezone (for example, "Asia/Kolkata" doesn’t match a German IP), your Accept-Language header (en-IN gives you away), and your DNS resolver, which is probably still set to your ISP’s servers back home instead of your VPN’s. One of the sneakiest trick is WebRTC. Your browser has a built-in feature for video calls that can fetch your real IP address at the operating system level, completely bypassing the VPN tunnel. A website can get it with just 10 lines of JavaScript. Some VPNs don’t block this by default. And if you’re logged in, it’s game over. Netflix, Google and Spotify don’t care about your IP address. They care about your account. Your registered country is stored in their database, not in your connection. Using a VPN while logged in means the VPN isn’t helping you at all. A VPN gives you a different postal address, but your timezone, language, DNS, WebRTC, browser fingerprint, and login details are still the same.
Manish Kumar@Manixh02

Interviewer: You use a VPN. Why do some websites still detect your real country?

English
83
677
5.6K
445K