• 0 Posts
  • 73 Comments
Joined 1 year ago
cake
Cake day: July 12th, 2023

help-circle







  • Truck_kun@beehaw.orgtoFirefox@lemmy.mlTips about NoScript
    link
    fedilink
    English
    arrow-up
    4
    ·
    25 days ago

    I honestly only know how to ‘block all javascript’ on uBlock. Selective blocking is less intuitive if available.

    NoScript makes it easy, as does uMatrix, to selectively block/allow third party domains. uBlock is great, but I’ve always found fine-tuned features on it less intuitive.


  • … I had an IT tech from our old MSP tell me her knowledge/recommendation of ABP is what got her the job.

    I knew her boss, and doubt that was the reason (probably more because she was cheap entry level labor), but that some people have that take in a professional setting shocked me. I don’t think your ad-blocker recommendation will ever be what lands you a job, but I do think it’s possible for it to be the reason you don’t get a job.



  • My typical recommendation would be:

    Normie: uBlock Origin

    Techie: uBlock Origin + uMatrix

    Security Critical/Paranoia/Just Hate Yourself: uBlock Origin + uMatrix + NoScript

    I use the last option at work, and the middle option at home, and the first option for my wife’s computer.

    For me, a lot of it isn’t about ads, it’s more about the security risk of cross site scripting. Typically, if I’m visiting a site, I probably trust it, but I have no trust for people they sell ads to. I don’t mind sites I trust having a few non-intrusive ads, but of course that’s not the reason I use blockers; if a site has so many ads it is unusable, I just don’t ever visit it again (plenty of 'don’t show articles from ’ flags in my google news feed for this very reason. I’ll never know if you redeem yourself, because I will just never visit your site again.).





  • My first reaction is yeah, you don’t just plug into random Ethernet.

    The wi-fi is likely a visitor network setup for guests to the library. That ethernet port could provide access to their private intranet, and be a security risk to the library. Worst case scenario, it could result in malware, ransomware, and/or millions of dollars in expenses to recover (on a library budget, that could mean permanently shutting down the library even).

    After reading your post, I would say, no harm intended, just don’t do it again.

    After reading your comments about intentionally being vague about ‘plugging in’ to lead the librarian to think you were asking to plug in a power cord, and not specifically meaning ethernet connection… yeah, you’re clearly in the wrong. Just be up front; if they say no, so be it. They may be able to direct you to a visitor ethernet plug-in, or maybe not. If this were an AITA thread, i’d say yes, YTA in this case.

    Asking in an security community… I would assume some level of technical awareness, and you are likely well aware of network segmentation, and that no IT department would be happy about a guest plugging their laptop into random rj-45 jacks around the building. Maybe it’s not well designed, and that actually has access to firewall administration?


  • I keep hearing ‘sanctions arent working’.

    And every now and then I see things about them working; it’s almost like sanctions are a long game that don’t immediately show all the results in want within 3 months, and you need to keep them up long term. That said, of course when some don’t comply with those sanctions, it will permanently alter the landscape as the sanctioned try to work around them. Russia’s movement toward the Yuan, and reliance on China and N. Korea are not going to be undone anytime soon, if ever.

    Pre-Ukrainian invasion, 1 USD was ~78 Russian Rubles. Now, that 1 USD is valued at 92 Rubles. After the start of the war, the Ruble lost a lot of value immediately, but appears to had gained value for a few months, and has steadily decreased in value as the sanctions drag on, and seem to have semi-stablized at a much lower value than going into the war. As a generalization, it appears looking back to 2003 (max on the chart i’m looking at), as Putin’s leadership drags on, the Ruble has steadily decreased in value (in 2003, it only took about 30 Ruble to value 1 USD). Looking at other major economic powers in the world is like looking at an inverse chart, where their currencies have increased in value against the USD consistently.





  • I do use passphrases, but I combine with randomness.

    I memorize one random 8 character string to use with something more memorable.

    Then when I need more security, or I feel that random 8 character string is no longer safe (password leak/hacked), I memorize a new 8 character string.

    Then I combine them.

    Then I memorize a new 8 character string and mix it in.

    It’s a process built up over years that ingrains into memory. Sometimes I forget the order, or if i added spaces, or did no spaces. Luckily, as long as I am sure of the discrete segments, I can remix them to recreate until it works (in a reasonable time).

    My last addition was when I made the move from Lastpass to another password manager, after their endless bad news.