Yeah I pretty much chose to take matters into my own hands by importing some of the SecureBlue defaults (with a few modifications) into my config.
halezinflames
Don't worry, I get it, dogs are amazing too
I missed Vista, but I was using XP for years on an old trash potato. The only issues I had there were very clearly hardware related. I also dodged 8/8.1 purely because I disliked the UI
The first BSoD I ever experienced for myself was on Windows 10, and they were incredibly rare for me. My XP machine was largely disconnected from the internet for the majority of its existence and the only issues it had were because it was a literal shitbox potato trying to do more than it could handle.
I'm not saying it was 100% perfect, but compared to the horror stories everywhere else it might as well have been. Being careful online certainly helps, as I never caught a virus that I wasn't intentionally trying to test just to see what would happen.
100%, I love dogs but I love cats more
Hell even Ron Paul would've been a marked improvement because as crazy as that dude was, he stood on business with the anti war thing
Sad but true
Yeah the real point was that those systems have things in place we could stand to learn from, to do better, and continue to keep people protected. It's a learning lesson we could stand to be more careful.
I'm cynical of it mostly due to the way people respond when you suggest it in cases like the AUR malware. Speaking of mobile permissions I'm impressed with Voyager (my Lemmy client), it asked for literally nothing!
It's really hard to quantify an answer to that final question, because realistically, any OS connected to the internet leaves itself more vulnerable than any OS air gapped, so that's already inherently a tradeoff. If I go purely on a purity test? TempleOS. It's not daily driveable, but it technically wins due to the fact that Terry did not code any network support at all into it.
You're definitely right about the convenience tradeoffs, but some of that shit is just blatantly egregious, particularly with Arch and the AUR, yet Linuxtubers still swear by it and still tell new converts they don't need to be careful, which is ignorance at best and negligence at worst. Even worse are the ones that openly advocate you use an LLM to figure this stuff out. That kind of mindset toward new users hurts us more than many realize.
SecureBlue doesn't claim to be the most secure option, its whole model is trying to strike a balance between security and convenience. It's just that a lot of distros are so far behind that their ideas seem extreme. I ran a Lynis audit on my Fedora system recently and I got a 77/100 score. That's probably enough for the average person, and that was after downloading their sysctl rules from their github, commenting out about 3 or 4 options that I didn't really need, and importing them all into my configuration.
Do people even still use Facebook or has it completely been taken over by bots at this point?
Twitter being Twitter once again
You got this, proud of you for taking that step
Hopefully Zuck gets hit where it hurts