chik-fil-a…
chik-fil-a…
I’m not surprised… I think people (‘the ones that care at least’) would be horrified to know how much of this stuff slips through, because it’s hard (there are so many other things that are pulling at developers that something falls through the cracks). Most of the time the right answer is to bring it up. Then thank them when they resolve the issue (with beer and pizza money at the very least).
Looks like it’s waiting for approval, https://github.com/signalapp/Signal-Desktop/pull/6933 for anyone else thats interested.
I think the issue that they are trying to make is that there are modern ways of protecting the keys with hardware level security, that aren’t being used. As someone who works in AppSec this is all too common. All it takes is one library in an application to be popped (doesn’t have to be signal), and security keys end up leaked. If it isn’t already, I’m sure that signals keys will be included in exfil scripts.
Tools like TPM and SecureEnclaves (TrustZone,etc) mean that malware, and other nasties have a higher bar that they need to meet.
i’ve had a lot of luck with the logitech brio which is a 4K WebCam, the only issue that I’ve run into is the fact that you have to make sure that it is plugged in to a USB 3.0 and not 3.1 port.
I think it’s somebody trying to be passive, aggressive, but the fact that I have to say, I think proves the level of thought that went into it.
Purchased 5 renewed drives from amazon, 10 months in 3 have had to be replaced because of escalating bad sectors, all three were outside of the refurbish guarantee… one by only a week. Save your money and go with the new drives.
It took me more than a few seconds to realize that this was in the Memes community, not the anti-work community
Hey… wanna start a lemmy instance?
You had best be glad is was unmarked. If he tripped and rolled a 1 no one would have ever seen this picture.
“mac it so”, but seriously why…
question #2 can it play doom