top 50 comments

sorted by: hot top controversial new old
[–] 208 points 5 months ago (8 children)

"Not every 'WTF micro$oft' moment is a slam dunk," he tweeted. "I've emailed VeraCrypt personally and we'll get him unblocked. I've already talked to Jason at WireGuard. Not everything is a conspiracy, sometimes it's literally paperwork."

Funny how paperwork never really seems to be a problem for any other OS.

  • source
  • hideshow 8 child comments
  • [–] 73 points 5 months ago (6 children)

    It's not a conspiracy, just plain old incompetence.

  • source
  • parent
  • hideshow 6 child comments
  • [–] 44 points 5 months ago* (last edited 5 months ago) (4 children)

    The older I've gotten (or the further into late stage capitalism), the less I'm inclined to accept "Never attribute to malice, that which can be adequately explained by incompetence" (- Napoleon, perhaps) and the more I subscribe to "Why not both?".

  • source
  • parent
  • hideshow 4 child comments
  • [–] 103 points 5 months ago

    Microslop doing microslop things.

  • source
  • [–] 96 points 5 months ago* (7 children)

    My guess?

    NSA is currently figuring out how to insert backdoors into all these things.

    You see, the last backdoor they used all the time, well.... people figured it out.

    So, they had to ban uh, checks notes, apparently all routers, basically.

    So, now they need a new backdoor into literally everything.

  • source
  • hideshow 7 child comments
  • [–] 36 points 5 months ago* (5 children)

    So, they had to ban uh, checks notes, apparently all routers, basically.

    And ban firmware updates for existing models.

    Meanwhile, Russian state hackers use vulnerabilities in old routers to poison DNS and steal credentials through MITM attacks. Agent Krasnow just keeps delivering.

  • source
  • parent
  • hideshow 5 child comments
  • [–] 9 points 5 months ago* (4 children)

    Whoa, I heard about banning non US routers, they also banned firmware updates on existing hardware?

    Could you in theory demand a refund from the government if you were willing to switch to their backdoor US hardware now?

  • source
  • parent
  • hideshow 4 child comments
  • [–] 12 points 5 months ago* (2 children)

    "Waiver Expiration: This permission to receive updates for existing routers is currently scheduled to last until at least March 1, 2027, at which point the agency will re-evaluate."

    I didn't realize this either until this persons comment you replied to. Scary as fucking hell shit dude. Honestly. We have lost so much freedom over the years.

  • source
  • parent
  • hideshow 2 child comments
  • [–] 5 points 5 months ago*

    They didn’t get any punishment for that coup and Biden was a piece of shit that lost us abortion while wearing a fucking MAGA hat right before the election like the piece of shit tool he is. The fact no one fucking put two and two together over these established Dems is why we’re here.

    Then they beat you down if you dare say this to anyone.

    Why the fuck did he wear a MAGA hat? That’s why I’ll never trust those fucking assholes.

  • source
  • parent
  • [–] 12 points 5 months ago* (last edited 5 months ago)

    @Skankhunt420@sh.itjust.works was faster than me (thanks!). Yes, as of now, firmware updates for existing models are only allowed for yet another year and must be discontinued after. As always in this administration, the reasons given for these measures (Chinese attacks on US infrastructure) are built on lies and misinformation (none of the attacks targeted consumer routers). Hence, this is likely just another shakedown: "pay us a bribe or we'll damage your opportunities to do business in the US." Depending on whether foreign router vendors opt to go this route and give in to the orange grifter's demands, things may be different in a years' time.

    Could you in theory demand a refund from the government if you were willing to switch to their backdoor US hardware now?

    From a government of the Epstein class, by the Epstein class, for the Epstein class? No. You most certainly cannot.

  • source
  • parent
  • [–] 4 points 5 months ago

    Not quite. The way the NSA and CIA usually work with Microsoft for exploits is pretty much just having them hold off on specific updates whenever needed.

    In this case it sounds like they have specific targets using windscribe and veracrypt that they need to remain unpatched.

  • source
  • parent
  • [–] 78 points 5 months ago (5 children)
  • [–] 9 points 5 months ago* (3 children)

    Tbf they literally tell you that your keys will be uploaded...

  • source
  • parent
  • hideshow 3 child comments
  • [–] 16 points 5 months ago (2 children)

    I dunno that “they’re open about it” makes it any better

  • source
  • parent
  • hideshow 2 child comments
  • [–] 68 points 5 months ago* (3 children)

    Wow, that’s pretty damming. Three of them? This can’t be a random absurd error like it plausibly could have been for the first one reported.

    There must be a really big flaw in their system if three VPN devs just “missed an email”. Is Microsoft sending the emails from a bullshit sus address?

  • source
  • hideshow 3 child comments
  • [–] 65 points 5 months ago

    Introduce mandatory signatures for driver files, they said. It's so safe, it's for your protection against viruses - they said. Keys can always be revoked from unscrupulous developers - they said. It will never be used to fight opensource, they said. It will never be a tool against inconvenient CIA applications - they said.

  • source
  • [–] 51 points 5 months ago (1 child)

    I'd like to believe that this means that these three pieces of software actually work and that someone in high office has decided that that is unacceptable.

    Paranoid authoritarians really do not like ordinary people having access to secure communications and personal privacy. That might be an avenue they can use to organise and elect someone who isn't a paranoid authoritarian, and that won't do.

    On the other hand, these pieces of software might already be compromised and this is all an elaborate double-bluff.

    In which case it's time for a few well placed communications over purportedly secure channels that would be guaranteed to generate an authoritarian response. Which they'll then have to pretend they didn't read until it's too late.

    I'm talking organising - horrors - peaceful protests. They really don't like those. They have to use their brains, or someone else's, in order to find a good excuse to stick the boot in.

  • source
  • hideshow 1 child comment
  • [–] 38 points 5 months ago (8 children)

    How many more of these do people really need to just get the fuck out from under Microsoft's umbrella?

  • source
  • hideshow 8 child comments
  • [–] 8 points 5 months ago* (2 children)

    Totaly agree, but dev need to sign their software to run on windows.

  • source
  • parent
  • hideshow 2 child comments
  • [–] 9 points 5 months ago (1 child)

    Yeah, no, I totally get it. It just blows that people just bends over like this for all the corpo bullshit, users, devs and other companies alike. I have a small business with my wife, and I try to run as much as humanly possible on open source software. I donate to the platforms we use, and for almost 3 years we've gotten away with not giving any money to Microsoft, Google, Amazon, Apple or any of the other tech giants. It is a Titanic task to keep everything running, for sure, but absolutely worth it. My point is that, if we can do it being so small and barely profitable, I can't imagine larger companies having an issue with moving away from these predatory practices. Then again, I'm not fully aware of what other businesses might require that we can live without comfortably.

  • source
  • parent
  • hideshow 1 child comment
  • [–] 5 points 5 months ago

    Congrats! I did the same.

    You know all those conveniences that Google gives us for "free" that we all of a sudden can't seem to live without? Microsoft does that for "enterprise level" companies.

  • source
  • parent
  • load more comments (5 replies)
    [–] 35 points 5 months ago (2 children)

    Glad I got out when I did.

    I'm happy with Linux Mint, and most Windows users would be too, methinks.

  • source
  • hideshow 2 child comments
  • load more comments (1 reply)
    [+] 26 points 5 months ago* (last edited 1 week ago) (4 children)
    load more comments (4 replies)
    [–] 10 points 5 months ago

    Probably an "accident'", until CIA got what they want.

  • source
  • [–] 9 points 5 months ago

    Mysteriously? Really?

    The reason was clear, they never got the email for account verification, and were locked out. MS messed up.

    I really hate headlines these days.

  • source
  • [–] 8 points 5 months ago

    Oh, better switch to bitlocker and onedrive then...

  • source
  • [–] 5 points 5 months ago (3 children)
  • [–] 4 points 5 months ago*

    I keep dual boot with Windows available for my wife. About a year ago my Fedora install was stuck in a boot loop and I hadn’t used my PC in a good while, nor updated anything the last time I had used it. The only conclusion I can think of is either bitflips corrupted the boot process, or Windows fucked with my Fedora install at some point while — perhaps my wife’s activity allowed a Windows update through, I don’t know. They’re on separate drives though, so… I recovered my data and reinstalled, kept Windows but I am now extremely sensitive to any shenanigans from that drive. Reading this news has me considering to tell my wife she will have to use Windows from a VM on my PC.

  • source
  • load more comments
    view more: next ›