• 0 Posts
  • 222 Comments
Joined 1 年前
cake
Cake day: 2024年7月6日

help-circle




  • Boxer is produced by Artec which is a cooperation of Rheinmetall and Krauss-Maffei-Wegmann (now KNDS). Or the drive module is… as modularity was the main goal the mission module part also has a lot of third party producers.

    But it started as a German/British/French coproduction… up to the point when orders for the production of several different prototypes fitting the requirements were given to several different European companies and they dared to not pick the French contender. Whch then later became VBCI.



  • Interesting. I just quickly changed my PC’s resolv.conf to use 86.54.11.100, so not DoT in that case either…

    ; <<>> DiG 9.20.17 <<>> archive.is
    ;; global options: +cmd
    ;; Got answer:
    ;; ->>HEADER<<- opcode: QUERY, status: NOERROR, id: 2272
    ;; flags: qr rd ra; QUERY: 1, ANSWER: 1, AUTHORITY: 0, ADDITIONAL: 1
    
    ;; OPT PSEUDOSECTION:
    ; EDNS: version: 0, flags:; udp: 1232
    ;; QUESTION SECTION:
    ;archive.is.                    IN      A
    
    ;; ANSWER SECTION:
    archive.is.             300     IN      A       160.25.74.230
    
    ;; Query time: 249 msec
    ;; SERVER: 86.54.11.100#53(86.54.11.100) (UDP)
    ;; WHEN: Fri Dec 26 00:40:12 CET 2025
    ;; MSG SIZE  rcvd: 55
    

    Now I am slightly confused… For filtered entries I would not have expected a timeout on specific queries anyway, but a proper answer with an error.

    That’s a spontaneous slightly tin-foil idea, but can your provider block stuff with certain content before reaching the server? Can you try with DoT for encryption?

    Edit: Okay, there is definitely something strange going on with that server. If I try to use it over DoT I also get timeouts for archive.is

    So I’m going back to my original assessment before -surprisingly- DNS4EU resolved it properly for me. And I will keep to not expecting anything positive from that EU project…



  • None.

    I use Signal for messaging. In fact I only use it on mobile devices for short stuff.

    Any discussion that takes more time than typing s few short sentences (but is usually also less time-sensitive) I do on the desktop app already.

    So Signal is definitely not the right platform for me to talk about hobbbies or other interests. That’s not what it was originally designed for. And that’s not what I will ever use Signal for even if it can nowadays cover that area somewhat.



  • “It works on my system” vs. “I bricked my device because the basic functionality to replace the pre-installed keys was broken or some idiot vendor had signed his hardware with that MS key” is still bad, even when it runs for the vast majority only using their system with pre-installed keys (those are not actually the ones needing the security and it really is just a marketing gimmick) while just a small minority aiming for security gets screwed by shitty implementations.


  • You speak about the design of TPMs. I speak about the actual reality of mediocre and sometimes defective hardware and the even worse and often defective software implementations (often already on the bios/UEFI level) used in conjunction.

    Sadly that’s not even close to the same thing, in parts because a certain “PoS company” plays a huge part in it.

    Or to stick with your picture: Your argument is as sane as supporting any vaccine, no matter its effectiveness, because vaccines in general are a very good thing. Fortunately there are national health offices evaluating effectiveness and benefit/drawback comparisons for vaccines. Unfortunately the “same” evaluation for hardware is done by big tech under the premise of how to make the most money.

    If you dislike TPMs on face value it’s because you also don’t understand the science behind how it works

    No, i don’t “dislike” anything. I simply talked about practical reality instead of theoretic ideal.

    HSMs are a key component of modern enterprise security.

    I feel like you would not believe the real amount of shitty enterprise security were the pinnacle of TPM use is requiring active Secure Boot (with pre-installed MS keys of course) and managing their Office365 licensing…



  • Vaccines work and are tested rigorously.

    TPMs are not even close to that and UEFI implementations using them are then even worse and often next to disfunctional if used for any other case then “I use the pre-installed MS keys with a MS product”, up to bricking devices. And they are this bad by design.

    So no. The comparison between advocating against an often low quality product used in combination with an even worse implementation accessing it, just because Microsoft pushed for that shit as a marketing gimmick (thus verndors often only test that subset of the functionality properly) and anti-vaxxers is actually insane.




  • And with “dependent” they mean, the US and Russia had the free capacities, so it was slightly cheaper use them… Already ten years ago Galileo satellites where launched by Ariane5 or Soyuz in parallel (where Ariane5 transported twice the amount in one launch as Soyuz, or as Falcon9 in later years for that matter…).

    It’s really sad how “dependence” has become a totally hollow term.


  • Yeah, actually just minutes after this comment I saw the latest joke at Spiegel writing about far-right European parties and the AfD in Germany in particular building up connections with MAGA in the US… while just -and totally concidently of course- forgetting to say a single word about the fact the the governing CDU did exactly the same and there are several loud massive MAGA-fanbois in their leading ranks right now.

    That’s not journalism. That’s a laughable “Look over there! Nothing happening here”-diversion.