[-] Neptr 11 points 13 hours ago

AI stuff is banned in this community.

[-] Neptr 2 points 1 day ago

It tastes like dirt.

[-] Neptr 2 points 2 days ago

Both Firefox and Chromium support native Wayland.

Also, this might lead you in the right direction for remote Wayland apps: https://github.com/wayland-transpositor/wprs

[-] Neptr 1 points 2 days ago

You could set up Wayland probably. Just make sure you use GNOME (Mutter) since it is the only Wayland DE that protects the screencopy API.

[-] Neptr 1 points 2 days ago

Docker guest still shares a kernel with host. Use a custom OCI runtimes like kata-containers (VM) or gVisor/sydbox-oci (unprivileged application kernel) to reduce the kernel attack surface and protect against privelege escalation.

[-] Neptr 3 points 4 days ago
[-] Neptr 2 points 6 days ago* (last edited 6 days ago)

I am not a troll. You don't need to be an ass.

Just because a system doesnt have a CVE doesn't make it secure. It needs proper exploit mitigations. Read why Linux isn't secure here.. The article is written by the lead developer of Whonix OS (Security hardened Debian with a focus on anonymity). If you had checked out any of the references from my previous comments you would have learned more about why I have this opinion.

Kali isn't any more secure than regular Debian, while also having a larger attack surface, and no kernel hardening, protecting of GUI, or application isolation. What makes it "secure"?

897
submitted 2 weeks ago by Neptr to c/196
[-] Neptr 29 points 3 weeks ago

Canonical, the owners of Ubuntu, love to steal open source projects. They'll help a project with development power, then force the contributors to sign a CLA (for an example see the fork of LXD called Incus). Canonical also uses and forces proprietary systems onto the user's, e.g. Snap uses the proprietary and hardcoded Canonical repository, which Ubuntu now defaults to using Snap for installing packages.

Side note, if it wasnt for Snap using a proprietary backend and also depending on AppArmor (generally regarded as a weaker MAC than SELinux), I would prefer Snap over Flatpak. It creates a better sandbox (aka the actually Security of the software), avoids sandbox escapes, blacklists against broad permissions (e.g. $HOME access), and Snap packages generally have stricter permissions (which determines the real-world security of Snap). Sandboxing is very important for Desktop (and server) security. Android is does the best job of this, but it would be nice if projects like Sydbox, Crablock, or Bubblejail were adopted and built-in to the package manager.

But even without any of the previously mentioned problems, I just think Fedora is a better OS. Fedora comes preconfigured with SELinux policies to confine system services they are quicker to adopt new technologies. Fedora is also a semi-rolling distro, meaning packages are quicker to get updated than on Ubuntu. Fedora stays FOSS, where as Ubuntu becomes more locked down. Also, the package Brace made by the developer of DivestOS is great for quickly hardening a Fedora system.

[-] Neptr 42 points 3 weeks ago

I just use my sibling's first name most of the time.

664
submitted 3 weeks ago by Neptr to c/196
231
The GOAT (rule) (lemmy.blahaj.zone)
submitted 3 weeks ago by Neptr to c/196
165
mr(ule) boner (lemmy.blahaj.zone)
submitted 3 weeks ago by Neptr to c/196
[-] Neptr 37 points 1 month ago

No one has until they look at distro watch /j

[-] Neptr 31 points 1 month ago

Some made a pull request with all the changes made already. The issue that the PR addressed was the excessive use of he/him in the docs when referring to developers (aka the person reading the docs). Contributors expressed that they didnt think using male only pronouns in the docs made much sense when referring to any developer reading the docs. This wasn't some entitled person trying to force the ladybird dev to rewrite the docs, all they needed to do was merge the changes.

[-] Neptr 38 points 1 month ago

Fuck Bluesky

view more: next ›

Neptr

joined 1 month ago