Open Source Software Community - it's about ethics in Code of Conducts

  • Want to keep track of this thread?
    Accounts can bookmark posts, watch threads for updates, and jump back to where you stopped reading.
    Create account
Bazzite's purging of Antheas, part of a wider strategy?

VideoCardz: Bazzite and ASUS Linux, ShadowBlip, PikaOS, Fyra Labs launch Open Gaming Collective (archive)
Bazzite says HHD will stop receiving updates and will be phased out in favor of InputPlumber. Bazzite also points to InputPlumber as the same input framework used by SteamOS and several other handheld-focused Linux builds.
https://opengamingcollective.org/ (archive) (ghost) (mega)
Shared Technical Pillars

OGC focuses on the foundational layers of the Linux gaming stack. We host shared components, agreed upon by the members, for all to use, with an “Upstream First” philosophy.

Some of the projects we have in mind:
  • The OGC Kernel — a shared gaming-focused kernel
  • A downstream fork of Gamescope that expands hardware support to more devices
https://universal-blue.discourse.group/t/a-brighter-future-for-bazzite/11575 (archive) (mega)
no-longer-a-part-of-this-project.webp
Bazzite is currently the only project in the entire Linux gaming space shipping HHD in any capacity, and it’s maintainer is no longer a part of this project. Moving away from it unifies everyone even without the OGC in place.
What strange timing, Microsoft Man!

https://kylegospodneti.ch/ (archive) (ghost) (mega)
https://www.youtube.com/watch?v=2DdeQreXzxw (ptube) (mega)
one-model-our-will.webp
 
But for my standard of tardguing here, there really is an awful lot of 'useful' quantum computing that we can do now which we hadn't been able to do in 2011. For me that kind of long 'talked-about' but 'never quite here' computing already being here is super exciting to me because its easily witnessed year-over-year the increase in power and sophistication.
If nothing else, you forced me to update my priors on the matter. Yeah, we're closer to that day than ever. I'm a stick in the mud nothing ever happens chud so it's hard for me to just accept that yeah, things are kinda happening.

Makes me immensely curious about what few secrets will 'slip' into the public's awareness over time. Can you imagine some of the stuff they must have but don't even know?
Absolutely, and this is exactly the Q-day I'm looking for. I sense we're actually roughly on the same page. I'm just the old grump who functions narratively as heel and you're the excited young scientist. I used to be that excited young scientist, but I had that excitement thoroughly quashed by actual work within the academic establishment. I thank God that I'm a small fry in a big pond because this lowers my threat profile.

Given IBM's rate of progress and the intelligence-amplifying effect of well-used LLM techniques, "substantial QC applications may actually be here in ten years or less" is more defensible than ever, and frankly, you've convinced me to stop being a doomer about it and start getting ready, because once the QC dam breaks, there's huge potential when combined with LLM tech for breathtaking degrees of service disruption and chaos.
 
"Trusted computing" in itself is not retarded. It's a valid security measure against having some malware planted in your machine.
The problem is that for most users setting up encrypted /home or /home and / is more than enough. By enough I mean it protects your data at rest from a reasonably equipped attacker. LUKS (or whatever the hip kids use today, anything but Bitchlocker) with a strong password is simple enough to maintain and strong enough to resist someone stealing your laptop and exfiltrating your files. Choose your battles wisely.

Anything more than that is, in my opinion, not feasible on an x86 wintel laptop. TPM security with external TPM module is broken by design. TPM security with a TPM integrated inside CPU is not auditable and the CPU itself is not auditable either because of Intel ME or AMD PSP. If you have any modern x86 CPU it is likely backdoored by agencies.

TPM uses certificate based encryption which means that you have to use pre-approved bootloaders and kernels (niggerlicious) or set up and maintain your own CA infrastructure, or have someone else maintain it for you (and sign all system kernels and components for you) which effectively means you voluntarily give away control. Its a lot of work needed to boot an operating system and the security is flawed anyway because of ME/PSP.

In this landscape you need choose a "good enough" security measure, that means choose defending against an attacker who does not have access to root TPM signing cert keys, at the least.

The same applies to mobile device attestation. And things are not looking brighter in the future, unless you want to lug around a core2duo class machine in 20 years, because its too old to have had all this glowie shit built in.
 
The same applies to mobile device attestation. And things are not looking brighter in the future, unless you want to lug around a core2duo class machine in 20 years, because its too old to have had all this glowie shit built in.
As skeptical as people are, the current meta for cleaning up glowie spyware off the chip is pretty robust as far as coreboot/me_cleaner/deguard/libreboot go, and gives you the opportunity to enroll your own signing architecture. It is doable, most certainly, if you are willing to put in the elbow grease, and you are stuck with T480-level machines for now unless you want to trust the "HAP Bit" method that big coreboot clevo sellers like Sys76/NovaCustom/LaptopWithLinux sell, which I personally do not. There are other pushes for making open hardware like the MNT Reform that has a mostly free boot chain sans RAM init, but that's held back by being restrictively expensive and ARM based (though still very cool, def on the list).
 
《less trannies than FOSSDEM》
>FOSDEM
Have you ever been to FOSDEM? I have.
I tell you: there isn't a bigger congregation of trannies in Belgium that month than anywhere in the EU. And I'm not talking about the libreboot-based types, the Poettering types, which are also funny in a way because Poettering fags are insufferable even if they didn't troon out.

Speaking of FOSDEM, it's fun to attend if you curate your experience.
As expected, the least retarded IRL communities you can meet there are the ones you'd expect (take a hint, also BSD).
Generally, the more boomer engineers there are at a certain stage, the better. Talking to "controversial" people is also highly rewarding (I recall talking to the Matrix guys that had a rightful fit of rage over freetards arguing they shouldn't cut off the matrix access to the government if they're not FUCKING PAYING! CRAZY RIGHT?!)

Honestly, the thing that I realized @ FOSDEM is that companies figured out they can just have free labor by bullying autists to work for them. It's modern slave labor. Not only do you have them work for free, you sell off their work, PLUS you also import Infinity Indians because "there aren't enough working hands".
What especially broke me is that Google Summer of Code HR lady from 'Murica had the audacity to come over to FOSDEM and brag about funding, whilst one of the lead devs of a certain distro they supposedly "support" through the same fucking program couldn't afford to come to FOSDEM in the first place.

I fucking hate IT. I fucking hate CS.
Encouraging slave labor just to replace your engineers with H1B Indians and AI should warrant a fucking capital punishment.
I want out.

Edit: yes, I know it's a rant, but I finally can write about this shit without doxing myself in the process. I'm not attending, but I hope the Gentoo guys troll Poettering like they did last year.
 
Last edited:
There are other pushes for making open hardware like the MNT Reform that has a mostly free boot chain sans RAM init, but that's held back by being restrictively expensive and ARM based (though still very cool, def on the list).
This is generally a problem for a fully open (or libre, whatever you call it) secure boot chain on anything reasonably powerful today. The most powerful ARM chips are complex and they require a few proprietiary blobs to boot up, mostly around RAM controllers. At least Arm Trusted Firmware is open.
On this end Risc-V with fully open (so far) stack looks promising. Of course you cannot easily audit physical chips and the ROM bootloaders in them but since the implementations are open and use existing IP cores, most if not all of the software required to boot Linux on them is open and you can literally buy a Risc-V board and compile all of the firmware yourself. If only they were more performant

I tell you: there isn't a bigger congregation of trannies in Belgium that month than anywhere in the EU. And I'm not talking about the libreboot-based types, the Poettering types, which are also funny in a way because Poettering fags are insufferable even if they didn't troon out.
Honestly I avoid all kinds of congregations like that. It's either full of trannies, or full of borderline qAnon types, there is no middle ground. CCC has been pozzed for a few years now, DefCon is in full retard mode about being net-zero, "the planet is on fire" and identity politics for a few years as well. bSides smells too corporate for me. Where the fuck am I supposed to go to talk about hacking shit?
 
Where the fuck am I supposed to go to talk about hacking shit?
Can't if everything resembles controlled opposition.
Which defcon was it that had stickers or flyers in the bathroom forbidding to pentest wifi because
1) it's a federal crime
2) feds are in the perimeter of the venue?
I'd like to make a joke about glowing green men but I can't.
 
Can't if everything resembles controlled opposition.
Which defcon was it that had stickers or flyers in the bathroom forbidding to pentest wifi because
1) it's a federal crime
2) feds are in the perimeter of the venue?
I'd like to make a joke about glowing green men but I can't.
GRIM. Were you at Black Hat (London) this year? If not, you didn't miss much. Its spooked to the teeth with fintech bros and glowniggers. I think that unless you very heavily pick and choose which rooms you attend, there's an 80% likelihood you'll be sitting next to a glowie of some sort. All of the larger open sauce & cysec conferences seem to be in the same grim state right now. Guess that's what happens when people stop hacking software and start hacking away at their genitals. Sad!
 
Guess that's what happens when people stop hacking software and start hacking away at their genitals. Sad!
I can't imagine anyone would attend any public cyber-security conference without ending up on lists. Not like they hold any way up in nowhereland where I live but I doubt I'd attend any for that reason alone. Not like I'm an adversarial guy anyhow. On every level, I prefer cooperative work. But public conferences are really sus in the context of opsec.
 
GRIM. Were you at Black Hat (London) this year? If not, you didn't miss much.
Nope. Unfortunately I'm extraordinarily busy this year and can't go anywhere, tbh.

think that unless you very heavily pick and choose which rooms you attend, there's an 80% likelihood you'll be sitting next to a glowie of some sort.
Unfortunately this is true for all IT where I live as of recent. Even on local level they were recruiting CompSci guys for Intelligence Agencies. At least they're local glowniggers and not Chinese, which is unarguably worse.
 
Another faggot retard putting words into my mouth. Read right above spaz.
I'm glad you sperged out months after the fact for no reason, because i found this post I liked.

1769805255911.png

but I hope the Gentoo guys troll Poettering like they did last year
I worry about them, over time it's seemed like the gentoo people have gotten more trannified, and discord-goonerfied. I wonder if it's one of the side effects of becoming a systemd supporting distro?
 
Did I say that? No, nofuckingwhere did I say anything remotely close to that. All I am saying is the dude is off his rocker, I know because I have seen him before and after his transformation. The dude is not well and needs help.
It's a bad time to raise this point when he's correct about Jeremy Bicha being a pedophile. Maybe read the room.
 
Back
Top Bottom