• 15 Posts
  • 304 Comments
Joined 1 year ago
cake
Cake day: June 4th, 2023

help-circle




  • Many years ago, folks figured out how to crack firmware and find embedded keys. Since then, there have been many technological advances, like secure enclaves, private/public key workflows, attestation systems, etc. to avoid this exact thing.

    Hopefully, the Rabbit folks spec’d a hardware TPM or secure-enclave as part of their design, otherwise no amount of firmware updating or key rotation will help.

    There’s a well-established industry of Android crackers and this sort of beating will keep happening until morale improves.





  • Was just listening to the latest episode of Dot Social podcast where there was a discussion with CEO of Ghost (alternative to Substack). They’re integrating ActivityPub into the platform, but where they’re going with it is that you can use your Fediverse ID instead of email to sign up.

    Once they have that worked out, any likes or comments automatically migrate back to the fediverse. Replies back to replies also show up in your timeline and your followers can see them. This makes discovery pretty effortless. They can also use the stats to keep track of engagement across all fediverse services.

    It also means turning one-way streams like RSS (podcasting), email services, and commenting services into common two-way communities.

    You’re now going beyond just catching up to existing services and doing things just not possible in closed silos. Real “Aha!” moment.