bolha.us is one of the many independent Mastodon servers you can use to participate in the fediverse.
We're a Brazilian IT Community. We love IT/DevOps/Cloud, but we also love to talk about life, the universe, and more. | Nós somos uma comunidade de TI Brasileira, gostamos de Dev/DevOps/Cloud e mais!

Server stats:

255
active users

#enc

0 posts0 participants0 posts today
Kevin Karhan :verified:<p><span class="h-card" translate="no"><a href="https://wuffs.org/@Ninji" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>Ninji</span></a></span> yeah, gotta use <code>enc</code> more...</p><p><a href="https://github.com/kkarhan/misc-scripts/blob/b4b66c465040fd1cb60ce69b41a92b2b6d41f98c/bash/.bash_aliases#L53" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">github.com/kkarhan/misc-script</span><span class="invisible">s/blob/b4b66c465040fd1cb60ce69b41a92b2b6d41f98c/bash/.bash_aliases#L53</span></a></p><p><a href="https://infosec.space/tags/enc" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>enc</span></a> <a href="https://infosec.space/tags/Encryption" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Encryption</span></a> <a href="https://infosec.space/tags/PGP" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PGP</span></a></p>
Kevin Karhan :verified:<p><span class="h-card" translate="no"><a href="https://udongein.xyz/users/lispi314" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>lispi314</span></a></span> <span class="h-card" translate="no"><a href="https://mk.absturztau.be/@enigmatico" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>enigmatico</span></a></span> <span class="h-card" translate="no"><a href="https://transfem.social/@bunnybeam" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>bunnybeam</span></a></span> <span class="h-card" translate="no"><a href="https://ublog.kimapr.net/users/kimapr" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>kimapr</span></a></span> <br><em>nodds in agreement</em></p><ul><li>I think having a proper <a href="https://infosec.space/tags/API" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>API</span></a> is a way to facilitate that, cuz worst-case one just slaps together some <a href="https://infosec.space/tags/aliases" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>aliases</span></a> in <a href="https://infosec.space/tags/bash" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>bash</span></a>, <a href="https://infosec.space/tags/fish" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>fish</span></a>, <a href="https://infosec.space/tags/zsh" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>zsh</span></a> or whatever <a href="https://infosec.space/tags/shell" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>shell</span></a> and just uses <a href="https://infosec.space/tags/curl" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>curl</span></a> to query stuff manually as this solves the whole <a href="https://infosec.space/tags/WebApp" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>WebApp</span></a> - issue.</li></ul><p>And I do prefer <a href="https://infosec.space/tags/FLOSS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>FLOSS</span></a> as it works fine for an ever increasing audience!</p><ul><li>Even if we choose to point at bad <a href="https://infosec.space/tags/UX" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>UX</span></a> / <a href="https://infosec.space/tags/UI" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>UI</span></a> combos like <a href="https://infosec.space/tags/GnuPG" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>GnuPG</span></a>, we've to also acknowledge <em>better existing alternatives</em> like <a href="https://infosec.space/tags/enc" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>enc</span></a> that <a href="https://github.com/life4/enc" rel="nofollow noopener noreferrer" target="_blank"><em>just work</em></a>!</li></ul><p>Personally, I think that everything people are <em>expected to use</em> if not <em>forced to use</em> should be <a href="https://infosec.space/tags/OpenSource" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OpenSource</span></a> as licensed in a <a href="https://infosec.space/tags/OSI" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OSI</span></a> accredited license and be released with <a href="https://infosec.space/tags/SourceCode" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SourceCode</span></a> and <a href="https://infosec.space/tags/documentation" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>documentation</span></a> to make <a href="https://infosec.space/tags/reproduceableBuilds" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>reproduceableBuilds</span></a> and thus facilitate <a href="https://infosec.space/tags/audits" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>audits</span></a> by <em>truly</em> independent parties...</p><ul><li>And if that's not possible any requirement to using said things should be outlawed no matter the context! </li></ul><p>A unsarcastically good example is <a href="https://infosec.space/tags/S3" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>S3</span></a>, even tho I hate <a href="https://infosec.space/tags/amazon" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>amazon</span></a>, they wanted <a href="https://infosec.space/tags/developers" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>developers</span></a> to integrate their <a href="https://infosec.space/tags/ObjectStorage" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ObjectStorage</span></a> which necessitated an <a href="https://infosec.space/tags/open" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>open</span></a> source'd API to the point that it's <a href="https://infosec.space/tags/backend" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>backend</span></a> is inherently reproduceable, and now every halfassing <a href="https://infosec.space/tags/Webhoster" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Webhoster</span></a> offers S3 <a href="https://infosec.space/tags/storage" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>storage</span></a>, sometimes with bit &amp; second-precise billing.</p>
Kevin Karhan :verified:<p><span class="h-card" translate="no"><a href="https://infosec.exchange/@xoron" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>xoron</span></a></span> I don't want to discourage you at all - in fact I think your goal is not just noble but also worth aspiring to.</p><ul><li>My recommendation is always to scout out existing solutions, protocols and standards and see if those can be salvaged / used and if not, reason why. <a href="https://infosec.space/tags/PGP" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PGP</span></a>/MIME may seem crusty but a good UI can make it easy. Same.goes for <a href="https://infosec.space/tags/OMEMO" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OMEMO</span></a> &amp; <a href="https://infosec.space/tags/OTR" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OTR</span></a>... </li></ul><p>But whatever you do, please <em>"DO NOT DIY ENCRYPTION!"</em> </p><ul><li>Instead delegate it to drop-in libraries (i.e. crypto++ for C++) that are well, maintained and getting audited.</li></ul><p>Prioritize features early on and make a decision what you want and if/how these can be accomplished. If necessary, have different modes / functions one has to context-switch (i.e. videocalling can't work in an airgapped network unless your callers are in the same (W)LAN).</p><ul><li>If possible choose to stay platform-independent in terms of tech, so like <a href="https://infosec.space/tags/WebCall" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>WebCall</span></a>, <a href="https://infosec.space/tags/JitsiMeet" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>JitsiMeet</span></a>, etc. you can simply package that up with <a href="https://nwjs.io" rel="nofollow noopener noreferrer" target="_blank">nw.js</a>... (Except if you need like a minimalist, (n)curses-style TUI tool like <a href="https://infosec.space/tags/enc" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>enc</span></a>)</li></ul><p>User-test early on. Espechally with <em>"<a href="https://infosec.space/tags/TechIlliterates" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>TechIlliterates</span></a>"</em>, if you can.</p><ul><li>Focus on a <a href="https://infosec.space/tags/MVP" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MVP</span></a> (<em>minimum viable product</em>) early on. </li></ul><p>Write <a href="https://infosec.space/tags/documentation" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>documentation</span></a> early on since that'll remove headaches. And I don't just mean <a href="https://infosec.space/tags/CommentYourCode" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CommentYourCode</span></a> but go deep and explain in detail <em>why</em> you chose something. This will help not just you.</p><ul><li>In terms of <em>"scouting existing solutions"</em> I'd recommend to take a look not just at <a href="https://infosec.space/tags/JitsiMeet" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>JitsiMeet</span></a> &amp; <a href="https://infosec.space/tags/WebCall" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>WebCall</span></a>, but also <a href="https://infosec.space/tags/Briar" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Briar</span></a>, <a href="https://infosec.space/tags/ServalMesh" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ServalMesh</span></a>, <span class="h-card" translate="no"><a href="https://monocles.social/@monocles" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>monocles</span></a></span> / <a href="https://infosec.space/tags/monoclesChat" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>monoclesChat</span></a>, <span class="h-card" translate="no"><a href="https://fosstodon.org/@gajim" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>gajim</span></a></span> / <a href="https://infosec.space/tags/gajim" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>gajim</span></a> and <span class="h-card" translate="no"><a href="https://infosec.exchange/@micahflee" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>micahflee</span></a></span>'s <a href="https://infosec.space/tags/OnionShare" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OnionShare</span></a>. </li></ul><p>Make yourself a list what you like and dislike from those. </p><ul><li>Same with <a href="https://infosec.space/tags/Linphone" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Linphone</span></a>, <span class="h-card" translate="no"><a href="https://fosstodon.org/@zulip" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>zulip</span></a></span> / <a href="https://infosec.space/tags/Zulip" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Zulip</span></a>, <a href="https://infosec.space/tags/WhatsApp" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>WhatsApp</span></a>, <a href="https://infosec.space/tags/Signal" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Signal</span></a>, <a href="https://infosec.space/tags/Threema" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Threema</span></a> and even <a href="https://infosec.space/tags/WeChat" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>WeChat</span></a>, <a href="https://infosec.space/tags/FacebookMessenger" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>FacebookMessenger</span></a>, <a href="https://infosec.space/tags/iMessage" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>iMessage</span></a>, <a href="https://infosec.space/tags/FaceTime" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>FaceTime</span></a> and god forbid <a href="https://infosec.space/tags/Skype" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Skype</span></a>, <a href="https://infosec.space/tags/MicrosoftTeams" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MicrosoftTeams</span></a> as well as <a href="https://infosec.space/tags/Slack" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Slack</span></a>.</li></ul><p>Don't be afraid if your <a href="https://infosec.space/tags/App" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>App</span></a> can't tick all the boxes at first release. Rather feel free to slowly ibtegrate them.</p> <p>Needless to say I do sincerely wish you good luck and only the best in terms of success.</p>
Kevin Karhan :verified:<p><span class="h-card" translate="no"><a href="https://infosec.exchange/@xoron" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>xoron</span></a></span> I mean, that's close to <a href="https://infosec.space/tags/ServalMesh" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ServalMesh</span></a>, tho Id say if you were willinc to compromise then <a href="https://infosec.space/tags/XMPP" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>XMPP</span></a>+<a href="https://infosec.space/tags/OMEMO" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OMEMO</span></a> as in <span class="h-card" translate="no"><a href="https://fosstodon.org/@gajim" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>gajim</span></a></span> / <a href="https://infosec.space/tags/Gajim" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Gajim</span></a> &amp; <span class="h-card" translate="no"><a href="https://monocles.social/@monocles" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>monocles</span></a></span> / <a href="https://infosec.space/tags/monoclesChat" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>monoclesChat</span></a> gets most of it.</p><ul><li>Personally, I did habe a similar idea, abeit more bare-bones, with <a href="https://github.com/KBtechnologies/PocketCrypto" rel="nofollow noopener noreferrer" target="_blank">the</a> <a href="https://infosec.space/tags/PocketCrypto" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PocketCrypto</span></a>.</li></ul><p>For file transfers, I did <a href="https://github.com/KBtechnologies/ATP" rel="nofollow noopener noreferrer" target="_blank">envision</a> <a href="https://infosec.space/tags/ATP" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ATP</span></a> aka. <a href="https://infosec.space/tags/AirrgappedTransferProtocol" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AirrgappedTransferProtocol</span></a>.</p><ul><li>Both are <a href="https://infosec.space/tags/NetworkAgnostic" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NetworkAgnostic</span></a>, <a href="https://infosec.space/tags/Decentralized" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Decentralized</span></a> and full <a href="https://infosec.space/tags/SelfCustody" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SelfCustody</span></a> with real <a href="https://infosec.space/tags/E2EE" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>E2EE</span></a> using <a href="https://infosec.space/tags/PGP" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PGP</span></a> (or <a href="https://github.com/life4/enc" rel="nofollow noopener noreferrer" target="_blank">rather</a> <a href="https://infosec.space/tags/enc" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>enc</span></a>)!</li></ul>
Kevin Karhan :verified:<p><span class="h-card" translate="no"><a href="https://wonkodon.com/@admin" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>admin</span></a></span> <span class="h-card" translate="no"><a href="https://m.ai6yr.org/@ai6yr" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>ai6yr</span></a></span> <span class="h-card" translate="no"><a href="https://bitbang.social/@profoundlynerdy" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>profoundlynerdy</span></a></span> whatever works best for you...</p><ul><li>That's the nice thing about <code>.bash_aliases</code> as <a href="https://bash.cyberciti.biz/guide/%7E/.bash_aliases" rel="nofollow noopener noreferrer" target="_blank">showcased</a> by <span class="h-card" translate="no"><a href="https://mastodon.social/@nixCraft" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>nixCraft</span></a></span> ...</li></ul><p>For example, I use <a href="https://infosec.space/tags/enc" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>enc</span></a> <a href="https://github.com/life4/enc" rel="nofollow noopener noreferrer" target="_blank">for cryptographic functions</a> and <a href="https://github.com/kkarhan/misc-scripts/blob/2999339de4df13457f3a43cbb13beba9e55268ba/bash/.bash_aliases#L50" rel="nofollow noopener noreferrer" target="_blank">thus have setup some aliases for that as well</a>...</p>