Elektrine
Log in Register
Paige Chat Timeline Gallery Friends Email Drive DNS Private DNS Domains VPN Kairo Nerve
Remote

boredsquirrel

@Rhababerbarbar@tux.social
mastodon 4.4.13
  • Open on tux.social

Linux, FOSS, Open Network Location, Environment, GrapheneOS.

If I recommend something, I own it. Ask me to share it with you!

If you like what I do, tip me some Monero!

165 Followers
587 Following
9 Posts
Joined December 01, 2022
SimpleX:
https://smp9.simplex.im/a#kChap3XWn8-H9KnQvlBZgVw1xmfBgETwwKWXH1qlshU
Monero XMR:
87ZN8URUY1M6GoXpxou4siDKJkLbLKDhT2RScrauzd4gbRyKgoY2ZX3Ut9WuMtkWebisViSE9EVRzVA1SD4kMdtAUPMiZBC
Briar:
briar://acumiwj2x6yspnkmslxfnsrqvo3b2m7ibo4xqk2o7nkeahcceqcfy
Codeberg:
https://codeberg.org/boredsquirrel
Open post
boredsquirrel @Rhababerbarbar@tux.social
· 11mo ago

@Mer__edith @signalapp

I am admin of about 20 public #SignalGroup.s , here is how we do it:

  • we use the "nickname" and "note" feature to mark people as spam, write down bad behavior etc.

  • we have public links, all require admin permission to join

  • we have a separate "Introduction Room" group where we add everyone requesting to join. They need to follow steps in the group description, have a profile pic and name that imply they are "kinda human" and introduce themselves in a human way. This works surprisingly well and we have no spammers since then

  • we also collect the IDs of malicious users following these steps (https://github.com/Whatnoww/ACI-Blocklist) which is currently very tedious but the only persistent identifier afaik. That ID is then used by SignalAssistant which warns about malicious users requesting to join a group

  • we keep track of behavior indicating that users are human in the user notes

  • to protect against higher effort scrapers (that employ humans or sophisticated bots that bypass our checks, and then are inactive and just scan all messages), we make a post, tagging all users and requiring some form of response (which serves as a captcha in its own, like "green non-edible emoji")

  • alternatively, deleting a group, making a new one and telling everyone to migrate is an effective way to remove inactive ones or bots. But as following links is likely well implemented in bots, this would require manual re-checking

The amount of tech-illiteracy varies a lot (or we get users new to Signal) which means we need to make excuses quite often.

Also, Signal has a lot of features helping here, but also lacks some UX polish:

  • seeing and sharing user IDs with people to have a blocklist that actually does something

  • and/or sharing user notes and nicknames with other people

  • pinning messages (no need to tag all users or write sensitive stuff in the group description readable for others)

  • a setting to allow users to only see admins in a group and nobody else (privacy of everyone else in the "Introduction Room")

  • separate Admin and Moderator rights. This is huge, as maintenance requires lots of admins, but the current system makes takeovers easy

github.com
17
0
5
0
Open post
boredsquirrel @Rhababerbarbar@tux.social
· 3mo ago

Does anyone here know how to sniff #WebUSB #Chromium data traffic?

There are many tools using the technology
- #GrapheneOS installer
- Google android reinstall
- #Stadia controller firmware flash (the last one with the Bluetooth change)
- Google repair tool

I needed to use this for recalibrating my fingerprint reader, and it is really bad that the only way to do this is through a tool hosted by Google that doesnt even work well (it only worked after I booted to recovery manually)

I would like to extract what the "installing software" step did and have the ability to selfhost this tool as a backup, just like the Stadia update website that was eventually taken down (because the billion dollar company couldnt afford to keep it online, understandable)

Also, the Google tool refuses to run on #Firefox, even though they seem to be working on WebUSB themselves. So this might not need a chromium based browser anymore in the future.

tux.social
1
0
4
0
Open post
boredsquirrel @Rhababerbarbar@tux.social
· 16mo ago
Replying to
@rhubarbe @loops @dansup The animation is nice but destroys the moebius strip illusion What about something more discrete like this? https://raw.githubusercontent.com/adi1090x/files/master/plymouth-themes/previews/1.gif It makes the moebius strip even cooler
raw.githubusercontent.com
1
1
0
0
Open post
boredsquirrel @Rhababerbarbar@tux.social
· 5mo ago

#Niantic created #PokemonGo

An app that millions of users used, ran around their regions, and took pictures with all location and sensor data of their surroundings.

Hard to get regions, different times, phones, weather. TONS of valuable data!

This data is now used in a positioning model, and allows them to track you wherever you are, based on a single image.

If Youtube doesnt block you, watch it there. Video shared for archival purposes.

https://youtu.be/Vk95ZO-WAvY

#MassSurveillance #GeoData #Bigdata #Surveillance #Tracking #Pokemon #Anonymity

0
0
1
0
Open post
boredsquirrel @Rhababerbarbar@tux.social
· 3mo ago

@privacyguides@mastodon.neat.computer whats up with this site?

https://www.privacyguides.org/videos/

Don't you publish on #Peertube anymore?

I normally watch your videos through #Grayjay here:

https://neat.tube/c/privacyguides

@privacyguides@neat.tube

Visiting that site, uhm is this a joke?

privacyguides.org
0
1
0
0
Open post
boredsquirrel @Rhababerbarbar@tux.social
· 3mo ago

@GrapheneOS@grapheneos.social it has been a couple of days since #Android17 is supposedly out and #GrapheneOS has releases.

But nothing has arrived on alpha channel on a #Pixel 6a yet.

Is the 6a already getting slower upgrades? Will it even get Android 17?

https://endoflife.date/pixel

I would expect it to still get #Android18 and #Android19 right?

tux.social
0
2
0
0
Open post
boredsquirrel @Rhababerbarbar@tux.social
· 4mo ago
Replying to
@kde@floss.social @sovtechfund@mastodon.social Fantastic! I have recently tried to mount a samba share and a webdav mount inside KDE. The #samba share didn't really work at all, most importantly it is not permanently mounted afaik, and the usability is bad. Adding that to the other setup pagr would make sense? #WebDAV (for unidirectional Nextcloud backups) needs presets for easy setup, and also didn't work at all, while it works well with #DAVx5 on Android. These are certainly things worth improving! I would also like to switch to #Merkuro calendar (#CalDav and #ICAL) and maybe have a nice working contact system? Idk, @thunderbird@mastodon.online kind of does it's own thing which works, and global contacts aren't really important outside of phones (where they are also extremely problematic from a privacy perspective), so this is way less important than maybe envisioned in the past. I would love #Nextcloud integration without running an #Electron app, but I suppose that is a dream for the future. I love Plasma and wouldn't want to switch! Just a few little things here and there (like the panel crashing constantly after some time lol).
0
0
0
0
Open post
boredsquirrel @Rhababerbarbar@tux.social
· 4mo ago
Replying to
@hidikem@piaille.fr Lol, so instead you write publicly for the entire internet to see. Regardless, that seems like a bug in the pacman packagekit integration, if it is broken it should not show these buttons. Adding a setting that neuters existing integrations sounds like a wrong approach. Maybe also one reason not to recommend Arch to everyone ;)
0
1
0
0
Open post
boredsquirrel @Rhababerbarbar@tux.social
· 4mo ago
Replying to
@bsi@social.bund.de Die Tipps sind ziemlich schwach. #Gadgetbridge, mehr nicht. Android hat keine Internetberechtigung, die kann man also nicht deaktivieren. Apps laufen uneingeschränkt im Hintergrund. #wearables sind absolute Wanzen. Nennt mir eine App die das nicht ist. Man muss den Tatsachen halt ins Gesicht sehen. Durch permanent aktives Bluetooth sind sie bei der Verwendung von Gadgetbridge dann nur noch permanente Identifier, das kann man leider meist nicht vermeiden. Kennt wer eine #SmartWatch / #SmartBand wo man #Bluetooth abschalten kann?
0
0
0
0
Back
313k7r1n3
Elektrine

Tor hidden service

elekhj7afj4qnrr4yd3bkzslsyo5jgfxw3orgjkhlcxifueodybyiiad.onion

I2P eepsite

j6b6cyk6gjmepjih7jjadxgxvvf3lzzujljuu2v4biemzpg3naya.b32.i2p

Platform

  • Email
  • Chat
  • Timeline
  • VPN
  • DNS

Company

  • About
  • Contact
  • FAQ
  • Lite (no JS)

Legal

  • Terms of Service
  • Privacy Policy
  • Transparency Report
  • Report Abuse
  • Warrant Canary
  • VPN Policy

Support

  • support@elektrine.com
  • Report Security Issue
Mail client setup IMAP mail.elektrine.com:993 POP3 mail.elektrine.com:995 SMTP mail.elektrine.com:465
© 2026 Elektrine. All rights reserved. Server: 23:32:49 UTC