• 0 Posts
  • 83 Comments
Joined 3 years ago
cake
Cake day: August 6th, 2023

help-circle
  • Edit: To be clear, I agree with you in general. I just got bugged a bit by those three things 😅

    You do not. You are misinformed and propagandized. Your choice of examples revealed that clearly and nothing you say can refute that fact. Read Marx, read Lenin, your understanding of the state is lacking.

    For one, anyone educated would understand that Americans are the best example of sheep in the world and that many Europeans are good second examples. The British for example with their high tolerance for a surveillance, laws that criminalize all manners of small trivialities, etc, etc. Educate yourself.


  • “We have to comply with the law”. This has become Russia or China where the sheep people do whatever an oligarchy dictate.

    “What are we a bunch of Asians?”

    Also China isn’t run by an “oligarchy” but by a dictatorship of the communist party via a mandate of the masses (they execute CEOs and rich people there, we let them rape kids and commit horrific crimes of greed and fine them less than they made off that crime). Russia is but so is the west and I prefer the term capitalists or if you prefer the original French “bourgeoisie”.

    There was a study from one of the big ivy league universities that showed that in the US the people don’t get what they want, popular policy is consistently not passed nor popular will acted on. Princeton I think.

    So it’s not what people per se want, it’s what the ruling class (capitalists in the west) wants. And they’ve decided that because the rate of profit falls and their demand for profit grows that they need to put the population under lock and key because they’ve made economic conditions worse and they’re going to get worse yet. They need a police state to control the workers who might want better conditions or gasp to take some or all of their wealth. This is part of that.

    This is also because China is rising and they are terrified of people seeing a more equal, just society that can be created through socialism. They are terrified of dissenting voices so they want to remove anonymity so they can terrorize dissidents and opponents into silence. They saw what happened with their attempts at narrative shaping in Gaza, they are deeply alarmed that tik tok won’t be the last thing, a new one could pop up anywhere, right now they play whack a mole, they want to control the whole thing top to bottom.

    As to people being sheep. It’s more like they’re beaten down. You defeat this today they come back in a year and then again and again. They have all the money, all the time and are willing to wear people down, use their capitalist owned media to propagandize and sensationalize for this until the people are exhausted and stop fighting it so hard. People work long hours, they take home less money than ever, the government openly abuses people, the police don’t act fairly and persecute black people, there’s a sense of there being no fairness and not enough time. The people are also mis-educated. They’re led to believe there’s this big problem, they don’t understand technology and passively accept their leadership has some amount of good will in how they pass laws and govern to address real problems the bourgeois press has done its job of propagandizing them for. They can’t see the whole picture because of these facts.


    1. Don’t sync anything to icloud you wouldn’t want the government being able to get it or generally want to keep private.
    2. Go through privacy settings, especially location settings and check what you’re allowing including system services, adjust as you feel comfortable while still meeting your needs.
    3. Pay attention to what apps you’re installing. Most profiling data is not sold by say Google directly off your phone but based off ad-networks incorporated in third party apps you install. The app store has a scorecard on all apps showing you how much if at all they profile and spy on you, make use of it, make wise choices, don’t install bad apps.
    4. Install a privacy respecting adblocker to help limit tracking while using the web browser
    5. Limit permissions for apps. If you must use an app that has location tracking consider only allowing it while you’re using the app, this may have implications for some extended functionality like updating while in the background or via Apple’s little info tiles.
    6. Disable siri or limit it, turn off “hey siri” mode in settings.
    7. Enable lock-down mode (this is an extreme step and will result in some loss of functionality, Apple details the implications themselves so take a look at their page on it before doing so)
    8. Disable radios such as bluetooth and wifi while outside your house to prevent any possibility of their use in tracking you. You can actually make a “Shortcut” using app of the same name from Apple to automate this anytime you leave home and I believe there are existing ones you can find if you search around.

    Apple phones are fairly private as long as you don’t use icloud for anything sensitive, apply common sense privacy settings, and pay attention to what apps you install and what permissions you give. Also don’t send them crash or debugging data as that can contain personal info potentially so uncheck that option.





  • All that would happen absolute worst case scenario if MS breaks this is your users would get a whining complaint about not being activated. Get a small “Activate Windows” logo stuck in the lower right hand of their screen and would lose the ability to change wallpapers, customize windows colors, etc.

    To be clear it wouldn’t break the install and it would leave it in a state in which you could use an updated version of MAS (reminder MAS supports multiple activation options) to fix it remotely.



  • You should probably avoid using that. That derives from the larger phrase “oy vey the goyim know, shut it down!” which Nazis on channer boards will post as a meme, often accompanied by anti-semitic imagery.

    You should also know ZOG is a Nazi dog whistle and theory and you should not be repeating it as it’s simply not true. Yes zionists wield influence over the US, no it isn’t a Jewish conspiracy it’s a capitalist-fascist conspiracy, the fascists in question being zionists. Who were put in power, given a colonial outpost to genocide and colonize by the victorious western capitalists after WW2. Now “israel” is a complicated vassal of the US in that it’s really an arm of appendage that has significant influence back on the US via blackmail networks (Epstein), lobbying (money), and a concerted joint campaign of elevating the Jewish suffering element of the Holocaust above other Nazi atrocities and flogging the pity and standing against hate concepts along with decades of slick propaganda as part of that to ideologically win people over. It also via its position at a key crossroads on earth as an unsinkable aircraft carrier and via its intelligence work that is shared with the US has incredible value so can afford to push the buttons of the US from time to time.



  • If you’re going intel you can check the ark.intel pages for the processors in the devices you’re looking at. Intel does pretty good documentation so it’ll show you what integrated graphics they have and all that.

    Ideally you want a chip that can do hardware decoding (and if possible encoding if you’re serving media to others and intend for it to transcode and not direct-play) of common codecs so you’re not eating a massive power bill or generating tons of heat or getting bogged down in resource utilization.

    AV1 support is the only tricky part when it comes to hardware decode support. Maybe you don’t use it yourself but typically only the newer chips support hardware decode of AV1 files. Something to consider if that’s likely to be an issue for you if you have or plan to have lots of AV1 encoded files. (Though there is software decode of course)

    The Intel N150 can do a 4K desktop, you won’t be doing 4k gaming on it at all but it can do the desktop and video playback and is a low power consumption chipset. Should be able to support at least 2-3 4k transcodes as well. A lot of enthusiasts use it for just this purpose in fact and it’s fairly snappy for uses like these.

    Anything more powerful than an N150 will be fine as well for 4K video viewing, transcoding, 4k desktop, etc. So if you want to spend more and get a more powerful Intel chip you can. Just avoid 13/14th generation i series (i5/i7/i9) especially used because of the hardware damage bad design did to those and there are a lot of messed up ones floating around from people trying to offload.

    144hz may be the really tricky part. Lots of these mini boxes are capped at 60hz so definitely double-check that. There’s always the option of displayport to HDMI cables too if it has a DP output that supports the necessary 4k framerate. N150 might struggle driving that to be honest.

    Oh and be aware of thermal throttling. Lots of manufacturers stuff Ultra 9 series in things like laptops and minis with inadequate cooling and they thermal throttle like crazy so you pay $800 and get something with the same performance as a properly cooled Ultra 7 or 5 series.

    To loop back around to whether you need a dedicated GPU. You have to ask yourself are you transcoding streams for others or is it mostly direct-play without transcode? Integrated GPU on the CPU die should be good enough unless you have an awful lot of streams going at once or some other pressing need.

    You can run whatever distro you want. There are extremely specialized distros like OSMC (https://osmc.tv/) which is basically kind of like Kodi running on Debian but without a desktop environment (extremely media center focused).



  • You have 3 options:

    1. Android TV/Google: bad for privacy, some devices can be customized for slightly more with tweaks, ADB, etc

    2. Apple TV: pretty private compared to Google, no ads out of the box on Home Screen, nice hardware that lasts awhile.

    3. Wilderness of roll your own on a mini-PC, raspberry pi, etc: no ads, private. But pain in the ass, no 4k, no full HD (720p max), no HDR, no atmos sound because not locked down with DRM for streaming services so not approved. Choose this only if most of your content is self provided Blu-ray’s or yo ho type stuff and/or YouTube. Otherwise miserable experience.

    As far as 1) goes there are some better options like Dune-HD (make sure to get a Netflix certified model so you get 4k support from streaming services), and some customization via changing launchers and such for more privacy.

    However only options 2 and 3 are really more private IMO and “fixes” for Android TV devices mostly are in the form of blocking ads and allowing side loading of say a custom version of YouTube with ad blocking so don’t and can’t address the under the hood spying Google is more aggressive about.

    As to getting away from American. Good luck, both major platforms are American companies. Only other option is Chinese fork of Android and it’s no good for western streaming or use outside China. Otherwise roll your own but also provide your own content and that gets you away from them. A mini-pc is great for that with an air mouse but it’s not the same finely polished experience though can be decent with a little work.


  • If the drive previously wasn’t making this noise (as in it had been filled with data, been in use for days-weeks and wasn’t ever making this noise) and it doesn’t happen in response to data writes (even hours after the fact) then it might be a cause for concern that the drive could be dying.

    In general it’s a good idea to have back-ups of any important data but I’d really ensure that’s the case here and assume it could imminently fail. In general the sound of hard drives changing (that is sounding different in either idle noises or active writing/reading noises) is a cause for concern for potential drive failure though it could be other things and as drives age they can sometimes change sound signatures as mechanical components age without necessarily failing (could go on working fine for years).

    That said there are normal processes in drives that can make noise:

    • Some sort of operation driven by your OS itself, I won’t begin to get into all of them but there could be something accessing things in the background, doing file table or journaling operations, writes, checks, etc on the file system itself, just low level maintenance stuff.

    • SMR drives may continue to write and shuffle data for quite some time after being written to, especially if it was a large amount of data. Though this should still even in the case of multiple terabytes probably be resolved within 12 hours.

    • Many drives, especially high capacity enterprise drives do make a -soft- clicking sound as a result of the arms sweeping the surface when idle but not off to if I recall correctly spread around lubricant or some sort of basic mechanical maintenance. It’s part of the normal drive operations. It’s possible it occurs more frequently in response to a massive amount of writes previously like filling a drive or may not be activated until a certain amount of data is written, I’m not really sure how that works as that would probably be proprietary information to the manufacturer.

    Should I be worried about this? To my paranoid mind it feels like something is slowly reading my files with some exploit to bypass the indicator light to fly under the radar.

    How would it do this? Is it installing hacked firmware to your enclosure too? I doubt you’re that valuable of a target.

    If you’re worried about malware then back up your stuff, nuke the install and reinstall from scratch. I wouldn’t worry about it if this is the only thing you’re seeing and find it unlikely.


  • Your options if you wish to stick with Windows:

    • Windows 10 LTSC (massgrave activators and has a guide for getting an ISO for it) which means a reinstallation (best option with Windows, least enshittification, still keep security updates but have to back up your stuff and reinstall everything) though this may not be a long-term plan if you play video games as I expect many places may drop Windows 10 support by 2028-29 end of ESU rather than 2032 end of LTSC support.

    • Windows 11 but change to LTSC (massgrave can do this)

    • Windows 11 but change to Enterprise license (massgrave can do this) and use Windows Group Policy settings to set target for updates to the current OS build version number which will delay feature updates for I believe up to 6-12 months but allow you immediate security updates. Bad news is you still get the new “features” but good news is they’re delayed significantly and maybe by the time you have to “upgrade” Microsoft has tweaked them to be moderately less bad and much less buggy.


  • Majestic@lemmy.mltoLinux@lemmy.mlAntiviruses?
    link
    fedilink
    arrow-up
    14
    ·
    5 months ago

    I would say there are not any worth recommending and that best practices are avoiding running random scripts you don’t understand, keeping software up to date with package managers, and using virtualization tools. Also look into Portmaster perhaps which is an interactive firewall.

    Meta rant on this subject

    What frustrates me about the answers these questions get is no one ever offers tools comparable to Windows tools, perhaps I think increasingly because they simply don’t exist outside of very expensive subscription enterprise offerings that require plunking down no less than a thousand dollars a year. (Certainly none of the major AV vendors offers consumer Linux versions of their software though most offer enterprise endpoint Linux that comes with the caveat of minimum spends of several hundred dollars if not several thousand a year)

    ClamAV is primarily a definition AV, the very weakest and most useless kind. Sure it’s kind of useful to make sure your file server isn’t passing around year old malware but it’s basically useless for real time prevention of emerging and unknown threats. For that you needs HIPS, behavior control, conditional/mandatory access control, heuristics, etc. ClamAV has one of the worst detection rates in the industry. It’s just laughably bad (often under 60%) so it’s really not a front line contender at all.

    Compare clam to consumer offerings with complex behavioral control like ESET, Kaspersky, etc that offered “suite” software that featured the aforementioned HIPS, behavioral control, complex heuristics to detect and in real time block malware-like behavior (for example accessing and then seeking to upload your keepass database files or starting to surreptitiously encrypt all your user files using RSA4096) and it just isn’t in the same ballpark as anything competently done in the last 20 years.

    I haven’t used or relied on a traditional AV for definition detections for years. They’re worthless, it’s impossible to keep up. The AV’s I’ve deployed are for their heuristics, behavior control, HIPS, etc which actually stops new and emerging and unknown threats or at least puts real obstacles in their way. So what Linux needs, what users need is software like that, forget the traditional virus definitions, something with behavior control, HIPS, and some basic heuristics for “gee this sure looks like malware behavior, better ask the user whether they want and intend this”.

    “Just be smart about what you run” isn’t a realistic solution when people say Linux is for everyone including their tech illiterate relatives. Yes, Linux is a lot safer if you just install things from package managers but that isn’t bulletproof either as we’ve seen a number of spectacular impact upstream malware insertions into build repos for huge software projects in recent years.

    Just maintain back-ups isn’t helpful with smart cryptolocker software which may hide itself for weeks or months and encrypt your files as you back them up. Nor does it protect against account compromise from all your passwords being stolen or a keylogger. Nor does it defend you against persecution after being hit by mercenary/government police-ware and spyware from overreaching governments and makes the bar for them getting evidence you’re an illegal gay person or whatever that much lower technically in terms of capabilities.

    Back-ups are disaster recovery. Everyone should have them but part of a layered defense is preventing the disaster and inconvenience and invasion of privacy and so on before it happens. Having your identity stolen or accounts taken over isn’t as simple as reverting to a back-up, it can result in hours, days of phone calls, emails, stress, hassle, etc that can drag on for weeks or months.

    Portmaster is a start for this type of system control and protection as it’s a very effective interactive firewall but as far as I know there aren’t any consumer available comprehensive behavior control + HIPS type Linux desktop security solutions. There are several vendors of default deny mandatory access control with interactive mode for Windows but none offer solutions for Linux that aren’t part of enterprise sized contracts beyond affordability and reason. If anyone knows otherwise I would love to know of these solutions as I want to implement them on my Linux machines as I am not comfortable with just my network IPS and firewall solutions by themselves without comprehensive end-point security.


  • I think the home media collector usecase is actually a complete outlier in terms of what these formats are actually being developed for.

    Well yeah given who makes it but it’s what I care about. I couldn’t care less about obscure and academic efforts (or the profits of some evil tech companies) except as vague curiosities. HEVC wasn’t designed with people like me in mind either yet it means I can have oh 30% more stuff for the same space usage and the enccoders are mature enough that the difference in encode time between it and AVC is negligible on a decently powered server.

    Transparency (or great visual fidelity period) also isn’t likely the top concern here because development is driven by companies that want to save money on bandwidth and perhaps on CDN storage.

    Which I think is a shame. Lower bitrates for transparency -should- be the goal. The goal should be to get streaming content to consumers at a very high quality, ideally close to or equivalent to UHD BluRay for 4k. Instead we get companies that bit-starve and hop onto these new encoders because they can use fewer bits as long as they use plenty of tricks to maintain a certain baseline of perceptual visual image quality that passes the sniff test for your average viewer so instead of getting quality bumps we just get them using less bits and passing the savings onto themselves with little meaningful upgrade in visual fidelity for the viewer. Which is why it’s hard to care at all really about a lot of this stuff if it doesn’t benefit the user in any way really.


  • And which will be so resource intensive to encode with compared to existing standards that it’ll probably take 14 years before home media collectors (or yar har types) are able and willing to use it over HEVC and AV1. :\

    As an example AV1 encodes to this day are extremely rare in the p2p scene. Most groups still work with h264 or h265 even those focusing specifically on reducing sizes while maintaining quality. By contrast HEVC had significant uptake within 3-4 years of its release in the p2p scene (we’re on year 7 for AV1).

    These greedy, race to the bottom device-makers are still fighting AV1. With people keeping devices longer and not upgrading as much as well as tons of people relying on under-powered smart-TVs for watching (forcing streaming services to maintain older codecs like h264/h265 to keep those customers) means it’s going to take a depressingly long time to be anything but a web streaming phenomenon I fear.



  • Three basic options exist:

    1. Burner: Take a device that isn’t a normally used device for each category. Make sure it has nothing you care about on it, no incriminating web history, no accounts logged in or saved as cookies that are incriminating, etc, etc. This is simplest, most expensive, but also most fool-proof against all possible threats.

    2. Wiped: Wipe the device before travel, possibly backing things up in the cloud to download after arriving. You’ll have to back up again with any changes you make and wipe again before traveling back then at your final destination again restore the device from backups. If you have serious fears of close inspection or forensic analysis then it would behoove you to use a secure erase feature on the drive and reinstall the OS rather than just trying to delete problematic files. For smartphones especially doing this and restoring from a cloud back-up can be pretty easy, for laptops it’s more of a pain.

    3. Mail ahead: Take the devices to a package service, UPS, FedEx, DHL, etc ahead of time, mail them ahead of or just behind you so they arrive just before or slightly after you. For this to work you need a fixed accommodation that can accept packages and which you trust to store them and give them to you. This technically doesn’t prevent mail interception but unless you’re a high value target that’s unlikely at present as its kind of a multi-agency intentional effort thing. Still I’d mail the device in a fully encrypted state.

    No other feasible options exist. You can encrypt yes and if you are a US citizen you cannot be denied re-entry (non-citizens can be not only denied entry but barred for years after for refusing to decrypt a device/cooperate) but they can seize your device and hold it for up to a year while trying to crack it and you’ll have to expend effort to get it back at the end of that period. They can also put you in a holding cell for hours or hypothetically up to a couple days if they really want to press it accuse you of something and be unpleasant during that time.