Recent comments in /f/Linux

HumblePirate wrote

Reply to New Linux Rootkit by z3d

Well finding a zero day and fixing it, selling the solution is a smart way to not only build credibility but also make some $

1

Matrix_phoenix wrote

Reply to comment by ViFlud in Linux 6.16 Kernel released by ViFlud

Just keep trying to get friends and family to leave an I2p router running on their computer.

Then as long as people have a router running you can have them open the browser you set up for them for i2p, and use things like this forum, or making some websites for each other, or using the messengers here.

1

ViFlud OP wrote (edited )

the online forum is very small and no one will probably read it

It's a shame, I'm new to i2p but it seems to me that this is the ideal internet with top-level anonymity lol.

1

sovereign wrote (edited )

I'm involved in a project with the goal of improving security of Linux systems. The project is called: The Sovereign Project (http://sovereign.i2p)

The project's scope is to secure digital and physical resources accessible from Linux based computers. It uses elliptic curve digital signatures (Monero protocol) for authentication and supports Monero Proof-of-Payment in authentication policies. The Monero Proof-of-Payment provides for securing resources with the electrical power (watts) consumed by Monero miners globally (estimated at about 80 megawatt hours).

The project recently developed a Linux Pluggable Authentication Module that authenticates using monero digital signatures and optionally authenticates via Monero Proof-of-Payment to secure Linux systems. There is a bounty (currently 17 XMR) for anyone able to compromise a Linux system via SSH (Attack Bounty #1). The secured system for the bounty is addressable only from an I2P destination:

e5xemz5wfdbq4ujm6vvlvhtpjn3hp55a6pk5noo4jouigkd7de4q.b32.i2p

The Sovereign protocol is a message passing protocol (JSON messages) over the I2P network or SSH Tunnels on private networks and I2P and SSH Tunnel connections are interoperable.

The project was started in 2024 and its still in its early days and is targeted for highly secure systems.

Sovereign Project - Approach to effective cyber security: http://sovereign.i2p/steps-to-effective-cyber-security.html

The project is for those serious about security with technical competencies. It may or may not be suited to your needs.

Browse the eepsite to investigate: http://sovereign.i2p

2

saturata wrote

As already stated, that'll have not much impact to an average user but for me, working with video analysis and interpretation in real-time it will definitely make sense. All the headache with self-compiling preempt_rt into current kernels will be over (I hope so) but we will have to wait for wider feedback from RT community. Thank you very much to the devs.

1

TronNerd82 wrote

You can have whatever opinion you want about trans people (I am wholly in support of the entire LGBTQ community), but this is just stupid.

The NixOS devs are just shooting themselves in the foot by doing this, because by targeting average people with no opinion regarding the topic, they're just making themselves look bad. After all, it'd make for great propaganda from those politically opposed to the stance of the NixOS devs.

"tHe WoKe LiBeRaLs ArE pErSeCuTiNg NoRmAl PeOpLe!!1!one!!1!"

At the end of the day, the NixOS devs aren't doing anything productive with this endeavor, and are just turning themselves into cannon fodder for the opposing side. Let's just let each other exist, trans or not.

1

integra wrote

This might be me not knowing much about Arch Linux distributions, but I think it would be interesting to see it ship a wayland compositor such as River or DWL as default. If I recall correctly most of the wayland distros mainly ship either Sway or Hyprland as defaults.

1

bottticelli wrote

It sounds wonderful! Does anyone know other package managers suitable for Debian or Gentoo that allow handling packages on the 'per-user' basis? I'm really tired of sudo-ing every time I want to install a package for non-sudo user... This seems obsolete, redundant, and simply ugly. GUIX is definitely better in this regard, but what might be an alternative?

1

righttoprivacy wrote (edited )

I would 1st (of course) take a look at what's already out there, and done in Arch-land, as a point of reference.

Find out what many users desire, (ex: search social media / forums for popular questions. Not only app-wise, but configuration, features.

I'm just guessing here - really depends what you hope to achieve out of your project.

Most users outside the hardcore Archians, will opt for Arch based, easy guided usage / install.

Maybe you want something more easy to work with - or you could keep closer to traditional Arch, and enhance that?

If security is the idea, usability can take some balance. Kicksecure project for Debian serves as a nice example of usable / hardened, if security is one of your goals (might not be the goal if seeking new to Linux users).

Ask yourself what kind of users are you trying to attract out there. Anything from a distro you always wanted to see on a distro, that you felt partly missing?..

That is where I would start.

1

NotQball wrote

This is a very complex question. The Arch people were to NOT able to get a decent Qubes template even though they CAN kick Qubes developer ass blinded and one hand tied behind their backs. Arch has the best software people and documentation. Did I kiss your ass enough?

One of the problems is the update/installation networks. Arch handles most hardware like a champ. At this point torrents are your best bet.

Maintenace screen time is another problem. If it is more than 5 hours a week, you lost me. I hate screen time even TV and sometimes cinema.

The level of skill of the user is also a factor (audience). Arch requires a very knowledgeable user. The Austrian Arch-Crap is just unsecured crap with my rating being toxic.

The rest is standard: reproducible builds, snapshots and the rest of the buzzwords that do mean something.

Let me know if you have a decent Qubes template that I can install the easy way. I did use Arch for a few month and some hardware wizards use it all the time, but they need a truck load of equipment to make it safe and anonymous.

2