• 0 Posts
  • 32 Comments
Joined 1 year ago
cake
Cake day: September 1st, 2024

help-circle


  • It’s the never ending battle between what’s secure and what’s practical. In order to have widespread adoption, it has to be easy. In order to be secure it requires layers of complication.

    It’s a yin/yang battle.

    A bank vault with walls 2 feet thick, 24/7 surveillance and requiring a two key unlock mechanism is secure compared to a house door lock on a regular suburban bungalow, but is it very practical?

    The level of digital security generally attainable is limited by how likely someone is to use it.

    2FA using keys is the closest I’ve seen to a happy medium, but it has to be implemented correctly. If the private keys are sitting on a cloud server somewhere and it gets hacked, is it more secure? Maybe not.

    Just like real defence, the walls are only as good as the foundation or weakest point.






  • reluctant_squidd@lemmy.catoLinux@lemmy.mlLinux security
    link
    fedilink
    English
    arrow-up
    1
    ·
    3 months ago

    I would argue that Linux is inherently much more secure than windoze, simply because of how it handles user space vs. System (root access vs. User access). Also by how transparent its configuration is and how much information is readily accessible detailing how it works and how to adjust things.

    However, when talking security for anything above the average user’s browsing needs, it can get very complicated depending on what you are trying to achieve.

    Think of it like building something to keep out honest people vs. to keep out hardened, knowledgeable, clever thieves. Obviously the latter is going to take more time and resources to achieve, while the need to keep out more sophisticated bad actors would probably only be needed if you have something they might want.

    Here are some suggestions for searching if actual security is your goal. Others can chime in with more things if they want. This is just some topics/programs you can read about to dip your toes in.

    • nftables/Firewalld (common firewalls)
    • wireguard/openvpn (vpn protocols)
    • rootless containers (podman)

    Best of luck!











  • I keep getting this sinking feeling that this is all leading up to a precise and coordinated attack of evil.

    Russia bombards the EU, the US attacks Greenland and Canada, while Israel finally bulldozes Gaza and Iran. China takes Taiwan and the south sea.

    All at the same time so NATO is overwhelmed and can’t decisively defend it all without risking spreading too thin. No matter what happens, one of the bad guys gains ground.

    I honestly have no idea if this is even possible, it’s based on a dream I had a few weeks ago.

    Disturbing thought though.