• 3 Posts
  • 42 Comments
Joined 1 year ago
cake
Cake day: July 3rd, 2023

help-circle




  • I’m surprised and happy that SUSE is still doing well. I have fond memories of using SUSE in the enterprise especially around their “perfect guest” campaign for using it in virtualized environments. I thought they had very well-baked integration with large Windows networks—things just worked out of the box that didn’t with RHEL. I’m sure a lot has changed in the last decade but I appreciated their cooperative stance in the enterprise.








  • I get 17.45 on an iPad Pro. This is with all extensions disabled and my adblocker off. They say I am unique in the past 45 days. Looking through the info I don’t see how this works. Could it be that no one else has tested with an iPad Pro? It’s not like the hardware in this model is different from a similar one. You really just cannot meddle with it. It’s a fairly locked down ecosystem.

    If I took an iPad, reset it and ran the test. Then reset it and ran the test again, would both be unique?








  • I agree that decrypt/encrypt is bad—it is simply not E2EE. The solution would have to be a better method of public key distribution for ‘federated’ systems.

    While I don’t know anything specific about facebook messenger, E2EE doesn’t necessarily preclude what you suggest. A messaging service could store the entire chat history encrypted without decryption keys. When you get a new client you could restore the entire history in encrypted form onto your device. You would then use a recovery key you would possess to decrypt the message history on your end. At no time would the messaging service have the keys to decrypt. I’m not saying that is what facebook does.



  • If you enable advanced data protection apple cannot recover your account. You need your recovery keys or a designated recovery contact.

    The apple doc implies (to me) that a SIM swap only works after you authenticate on an apple device (e.g. using your password) even without advanced data protection. I have never tested that.

    You can use the long process (many days) to recover an account assuming you haven’t enabled advanced data protection. I’m okay with that as it is perfect for my grandparents (I had an older relative who got their account back through this method).

    I get that you could SIM swap to recover other accounts (not Apple) if they have SMS as a recovery method. That sucks and it really sucks for people who don’t get that an email or SMS recovery can be a giant hole in security.