• 0 Posts
  • 31 Comments
Joined 12 days ago
cake
Cake day: August 6th, 2026

help-circle




  • Suppose this is a fair point. The stuff that is exposed seems to be quite helpful, such as already integrating features like Global Privacy Control long before Google.

    As for SecureBlue… a lot of it seems quite extreme even for me but they’re doing good work overall. I was maining their browser for a bit until I realized I was fighting against the current to make it usable for my use case and I felt kind of dirty doing all that to their excellent baseline. But I did grab their sysctl config, commented out 3 or 4 that I didn’t need, and inserted it into my own. I like having more control, but I’ll gladly take a more secure option if it doesn’t affect usability significantly, so I cherrypick fixes liberally from their setup.


  • I mean I guess following the messaging of one of the only explicitly security-focused Linux distros is considered “astro turfing” then? Hmm.

    From their site directly:

    secureblue is for those whose first priority is using Linux, and second priority is security. secureblue does not claim to be the most secure option available on the desktop. We are limited in that regard by the current state of desktop Linux standardization, tooling, and upstream security development. What we aim for instead is to be the most secure option for those who already intend to use Linux. As such, if security is your first priority, secureblue may not be the best option for you.

    If security is your FIRST priority, they outright say their work is limited. So… that’s where I’m getting it from.




  • My source is primarily the GrapheneOS team’s praises for how Apple handles iOS, particularly in Lockdown Mode. There was also a recent situation where they warned their users of “mercenary spyware” attacks.

    It’s also a position that many in the SecureBlue community would agree with, which is where I’ve learned the majority of my recent security stuff from.




  • MacOS, iOS, GrapheneOS (and even then, Graphene doesn’t believe themselves to be doing enough due to the fundamental limitations in AOSP)

    There is one distro trying, and even they make it clear that they’re bound by the limitations of the Linux desktop’s security model at the moment (SecureBlue).

    It is also technically possible to harden Windows to become nearly bulletproof but that usually requires third party software like ThreatLocker.



  • I skipped 8/8.1 purely because the look of it annoyed me. XP and 7 basically ran flawless on all my machines I had them on. I wasn’t too annoyed with 10 on HDD, but SSD definitely helped. 11 felt fundamentally identical to 10 for me for the first few years, and the AI stuff was when everything fell apart for me. It may be a matter of luck, ignorance, and not understanding quite what was wrong.

    The situation with Windows the last few years has left me cynical of this entire craze. hopefully things end up alright in the end.







  • It’s strange to me because well, I was a 20+ years windows veteran who managed to never have issues on any of my windows installs prior to the last couple years when the ai thing went full swing. maybe part of that was me, because I was inattentive and reckless, but it really just became too much to ignore. i have a genuinely hard time with the idea of essentially retconning the way things always used to Just Work for me in my Windows days. maybe it was bad when I was there and I just didn’t notice. but blegh.