kuijsten
bonked 04 Aug 2026 20:02 +0200
original: openbsdjournal@mastodon.social
Call for testing: OpenBSD vmm(4)/vmd(8) fd-ification #openbsd
https://undeadly.org/cgi?action=article;sid=20260804054218
Stand back... I'm going to write some code.
kuijsten
bonked 04 Aug 2026 20:02 +0200
original: openbsdjournal@mastodon.social
Call for testing: OpenBSD vmm(4)/vmd(8) fd-ification #openbsd
https://undeadly.org/cgi?action=article;sid=20260804054218
kuijsten
bonked 03 Jul 2026 08:24 +0200
original: damienmiller@hachyderm.io
A few people have asked me recently about how OpenSSH sshd implements privilege separation after the changes of the last couple of years, such as splitting sshd into multiple binaries. I finally got around to writing it up - please take a look if you're curious. https://github.com/openssh/openssh-portable/blob/master/README.privsep
@damienmiller is there a place I can read or watch about the rationale of openssh replacing sntrup761x25519-sha51 with mlkem768x25519-sha256 as the default kem?
kuijsten
bonked 08 Apr 2026 22:27 +0200
original: libreleah@mas.to
update regarding my librewolf port for OpenBSD: it works perfectly. i screwed up the branding, so the menu icons (e.g. lxqt menu) say firefox. easy fix (just have to enable librewolf branding in the build process; accidentally removed it earlier) https://codeberg.org/vimuser/librewolf-openbsd-port will update for openbsd 7.9 soon (current package is 7.8) and then also for CURRENT. debating whether or not to maintain a temporary package repo, until openbsd merges it. i plan on sending to the openbsd ports team for review.
kuijsten
bonked 05 Apr 2026 11:29 +0200
original: eanakashima@hachyderm.io
My greatest professional accomplishment of the year: I got my exec & manager teammates saying "point positive," a term from whitewater rafting and kayaking. Meaning: when facing hazards, point people toward where to go/what to do, rather than drawing attention to everything to avoid.
kuijsten
bonked 24 Mar 2026 16:32 +0100
original: cakewallet@mstdn.plus
2/ Zcash is here 😍 In Cake Wallet, Zcash is implemented the right way: shielded by default, with privacy built in, not optional. You get the best privacy that Zcash has to offer, with no extra hoops to jump through or manual steps to take. A modern, open-source experience, no waitlist required 😉
kuijsten
bonked 09 Mar 2026 15:36 +0100
original: smaurizi@mastodon.social
Where: #Berlin Don't miss this great conference on the impact of #WikiLeaks organised by #DisruptionLab and #TatianaBazzichelli https://www.disruptionlab.org/exposing-crimes-is-not-a-crime
When: March 19-23
kuijsten
bonked 28 Feb 2026 17:06 +0100
original: nilix@cafe.nilfm.cc
#honkers ; does anybody know what happened to Ted? Also does anybody have an up-to-date clone of honk? it appears the version i'm running is newer than the version i have the source for and the wayback machine doesn't have consistent snapshots of the source :<
@GrapheneOS any idea if a recent Pixel with your OS is vulnerable to any of the new airsnitch attacks?
kuijsten
bonked 28 Feb 2026 06:48 +0100
original: vanhoefm@infosec.exchange
We found that Wi-Fi client isolation can often be bypassed. This allows an attacker who can connect to a network, either as a malicious insider or by connecting to a co-located open network, to attack others. NDSS'26 paper: https://www.ndss-symposium.org/wp-content/uploads/2026-f1282-paper.pdf Excellent article on the work by Dan Goodin: https://arstechnica.com/security/2026/02/new-airsnitch-attack-breaks-wi-fi-encryption-in-homes-offices-and-enterprises/ I'd say we bypass Wi-Fi encryption, in the sense that we can bypass client isolation. We don't break Wi-Fi authentication or encryption. Crypto is often bypassed instead of broken. And we bypass it ;)
GitHub: https://github.com/vanhoefm/airsnitch
kuijsten
honked back 27 Feb 2026 16:57 +0100
in reply to: https://jasette.facil.services/users/plutocrash/statuses/116138065811800131
kuijsten
honked back 17 Feb 2026 15:18 +0100
in reply to: https://exquisite.social/users/mischa/statuses/115928807683569375
@mischa sorry only see it now :) The back and forth was about getting a replacement module, it being shipped to the wrong address, missing a memory module, summer holiday, etc. etc. Apart from the summer holidays they were quite responsive.
kuijsten
honked back 19 Jan 2026 19:38 +0100
in reply to: https://exquisite.social/users/mischa/statuses/115887434653018434