GNU Abyss
kiwifarms.net
- Joined
- May 30, 2023
Niggers can't even...uh... Snowforce?Fediverse dudes have proposed a new symbol for it: ⁂
Follow along with the video below to see how to install our site as a web app on your home screen.
Note: This feature may not be available in some browsers.
Niggers can't even...uh... Snowforce?Fediverse dudes have proposed a new symbol for it: ⁂
Lol don't do this. Why even use an external password manager if you're going to weaken it like this? Just copy and paste the passwords manually.a Debian maintainer shipped KeepassXC (to SID) without networking features. if you use KeepassXC you mightn't think this is a big deal but it "breaks" quite a lot of things, notably using KeepassXC to integrate with a browser to autofill passwords.
I think it depends on your threat model and who/what you choose to trust.Lol don't do this. Why even use an external password manager if you're going to weaken it like this? Just copy and paste the passwords manually.
You can always get more complicated, sure.I think it depends on your threat model and who/what you choose to trust.
Do you trust the security/privacy of clipboard support in your OS and all the applications that use it? Historically, and still in several OSes, clipboard contents can be read by all applications simultaneously. A malicious app or malware could steal passwords that way (among many others of course).
Or in the case of a browser extension for passwords... if you don't trust the clipboard support, do you choose to trust all the networking code instead?
Why does the fediverse need a symbol?Fediverse dudes have proposed a new symbol for it: ⁂
Because the Fediverse is overrun with fags and troons, which more than anything in the world desires constant representation. It’s never enough for these people.Why does the fediverse need a symbol?
Yeah, that totally doesn't summarize The Fediverse.It incorrectly depicts a centralised network, with a big planet in the middle and the rest around it.
And that was the right thing to do. The people that use this functionality for their password manager are retarded faggots who consider security being just a performative action.a Debian maintainer shipped KeepassXC (to SID) without networking features.
In general if malicious code is executing outside of some kind of sandbox you're fucked, but a socket can provide a lower degree of fucked in some cases:You can always get more complicated, sure.
Still, if someone has a process running on your computer, they at least have access to all of the stuff your browser does, so while maybe, depending on the OS, they can snoop on your clipboard, they can definitely snoop on the socket delivering the credentials.
Just in general, it's a bad idea to have a dedicated service that delivers the credentials on demand, as opposed to a generic service you use for other stuff anyway that operates in response to user stimuli.
Just in general, it's a bad idea to have a dedicated service that delivers the credentials on demand, as opposed to a generic service you use for other stuff anyway that operates in response to user stimuli.
Lol don't do this. Why even use an external password manager if you're going to weaken it like this? Just copy and paste the passwords manually.
The people that use this functionality for their password manager are retarded faggots who consider security being just a performative action.
I used to just memorize them, but having a password manager is nice because instead of trying to remember a bunch of infrequently used passwords, you remember one, preferably extremely strong, password that you use often and automatically generate the rest as a bunch of random symbols. Its also good for storing extra metadata like which emails were used for which accounts.I just memorize most of my passwords and, when I can't be fucked to do it, that's usually because a session will last for years. Even then, I can usually remember them after a few tries. Just write down the most important passwords on a piece of paper. I keep my piece of paper in my wallet, which is always on my person. Yeah, if I had hundreds of accounts I'd need a password manager. I'd rather not.
Because it's a concept that works when it can be easily marketed and works better if there are many people using it. Might as well ask why KiwiFarms needs a logo. The funny part is that the symbol represents the userbase.Why does the fediverse need a symbol?
You are being rated dumb for being right. Out of all the software on a computer, the web browser is the most insecure one, and yet here you have your password manager integrating into it. You would not scan your sticky notes with a camera to log in, why would you integrate the very manager of all your account access into the very thing that is most likely to steal them?And that was the right thing to do. The people that use this functionality for their password manager are retarded faggots who consider security being just a performative action.
The people that complain about this feature being removed are the exact same people, a.k.a. idiots, that removal of the feature serves to protect.
Since when did groypers take over the Fediverse?Fediverse dudes have proposed a new symbol for it: ⁂
It looks like a bunch of snowflakes, making it very representative.
Absolutely... I think more awareness needs to happen regarding sandboxes and default installs need to do more things like how Android is approaching security such as separate users per process, or at least some kind of default-secure namespace.In general if malicious code is executing outside of some kind of sandbox you're fucked
OpenBSD has Unveil(2), which allows an application access to only certain parts of the file system (Firefox and Chromium only has access to the Downloads folder) and Pledge(2), which an application or process tells the kernel what system calls it’ll use at startup and will SEGFAULT if the deviate from those system calls.Absolutely... I think more awareness needs to happen regarding sandboxes and default installs need to do more things like how Android is approaching security such as separate users per process, or at least some kind of default-secure namespace.
On Linux you can run your browser (or most apps in general) with a tool that supports namespaces such as firejail, bwrap, unshare etc. or hell even a docker container, and that way you can limit what filesystem or network access it has, that way e.g. a browser exploit doesn't necessarily mean they can easily steal other credentials from your home folder. Or if you're really paranoid, something like Qubes OS.
Windows also has Sandboxie that does similar, not sure about macOS or others.
There's literally hundreds of us!GIMP 3.0 Enters String Freeze, Inching Closer To Release (archive)
Lulz. Yes, I unironically use The GIMP.