Deleted tweet detection is currently running at reduced
capacity due to changes to the Twitter API. Some tweets that have been
deleted by the tweet author may not be labeled as deleted in the PolitiTweet
interface.
Showing page 7 of 28.
Joanna Rutkowska @rootkovska
Dear @Intel, do you hear? #IntelME https://t.co/uV4Abzkc2J — PolitiTweet.org
Stefan Esser @i0n1c
. @saprand apple and oracle both suffer from the same arrogance to believe their security teams are 100% perfect 100% of the time
Joanna Rutkowska @rootkovska
I wish Amazon Kindle Oasis didn't include (non opt-out'able) parts made of animal remains :/ — PolitiTweet.org
Joanna Rutkowska @rootkovska
Worth watching. And thinking how privsep & Pledge don't scale for most modern _client_ platforms. Still nice. https://t.co/EPq6fAmHp2 — PolitiTweet.org
Joanna Rutkowska @rootkovska
#Heh https://t.co/eTTdilivYy — PolitiTweet.org
Josh Dhaliwal ★★★ @joshdhaliwal
@PayPal: Hmm #GenderEquality event no women on the panel, what shall we do? A: Make it pink, they'll never notice! https://t.co/S6K0NjC70B
Joanna Rutkowska @rootkovska
Well, we -Europeans (esp. Eastern)- might be perceiving pride and dignity differently. Doesn't mean: wrongly. IMHO. https://t.co/zZ2TpIgOAn — PolitiTweet.org
Moxie Marlinspike @moxie
There's really something to be said for the Russian approach to customer service. Makes me smile every time I'm here https://t.co/ICMWvZ1PuG
Joanna Rutkowska @rootkovska
RT @revskills: Next week I will be in @WarConPL Poland with @NighterMan and @trufae ping us for beers! — PolitiTweet.org
Joanna Rutkowska @rootkovska
Anybody recommends a good Vim-like editor for an iPad Pro (i.e. w/ keyboard)? #AskingForAFriend — PolitiTweet.org
Joanna Rutkowska @rootkovska
True: https://t.co/IbnnBiVbAD — PolitiTweet.org
Nikolaj Schlej @NikolajSchlej
@akochkov @rootkovska HW-validated boot is a good measure in a good hands. Buy a system with clean SoC, fuse your own key, be happy.
Joanna Rutkowska @rootkovska
@DrWhax LiveCD-based-OSes-which-are-designed-to-be-dual-booted-on-laptops-shared-with-(insecure)-other-OSes :P — PolitiTweet.org
Joanna Rutkowska @rootkovska
:) https://t.co/SXZLKsq74E — PolitiTweet.org
Avi Kivity @AviKivity
@amidvidy maybe @rootkovska can explain it to me when she's back from her can't-trust-the-processor crusade
Joanna Rutkowska @rootkovska
@AviKivity @amidvidy IMHO only SGX offers a viable role to do this somehow meaningfully (TPM and TXT not so much). SGX requires custom code. — PolitiTweet.org
Joanna Rutkowska @rootkovska
@CopperheadSec True, but we can defend against these pretty well. — PolitiTweet.org
Joanna Rutkowska @rootkovska
@rootkovska @CopperheadSec Also, for ME it's not the attack surface that we worry about most, it's the potential maliciousness of the ME. — PolitiTweet.org
Joanna Rutkowska @rootkovska
@CopperheadSec I don't agree. CPU-level (RTL) backdoors would be orders of magnitude more difficult and less advanced than ME-level bdoors. — PolitiTweet.org
Joanna Rutkowska @rootkovska
@bbhorne I think the main PITA might be our obsolete GUI in Dom0, not Qubes architecture. Sadly we've been struggling to find good UI devs.. — PolitiTweet.org
Joanna Rutkowska @rootkovska
... not to mention Intel can patch any of these "ask ME to disable itself" interfaces in no time... — PolitiTweet.org
Joanna Rutkowska @rootkovska
Or maybe we should _not_ worry about the AI taking over the management of this planet? Meritocracy FTW? https://t.co/ELIhiT2PHp — PolitiTweet.org
Joanna Rutkowska @rootkovska
Shall we be worried more about the USG mass surveillance, or Silicon Valley's plans for AI to take over the world? https://t.co/pUUPb5mMn5
Joanna Rutkowska @rootkovska
Shall we be worried more about the USG mass surveillance, or Silicon Valley's plans for AI to take over the world? https://t.co/pUUPb5mMn5 — PolitiTweet.org
david moloney @cto_movidius
I agree with Andy Rubin who thinks we're on the cusp of an AI-fueled revolution https://t.co/tgMQei1TOf
Joanna Rutkowska @rootkovska
@thegrugq Sure, no problem with this. Just let's please be frank about the actual priorities and goals, shall we? — PolitiTweet.org
Joanna Rutkowska @rootkovska
Select Purism laptops are verified to run @QubesOS well. Security-wise they are not much different than other PCs. https://t.co/JJSyKhcT0H — PolitiTweet.org
PracticalPrivacy @ThePrivacyAgenC
@rootkovska you wouldn't recommend one of their laptops at the moment then?
Joanna Rutkowska @rootkovska
@d_olex Because... SMM, right? @aionescu @c7zero — PolitiTweet.org
Joanna Rutkowska @rootkovska
@d_olex So, you mean you already gained (full?) access to the (physical) mem? @aionescu @c7zero — PolitiTweet.org
Joanna Rutkowska @rootkovska
In the comments section @aionescu and @c7zero argue if @d_olex can indeed extract VSM-protected secrets (easily): https://t.co/iMdCkov5zS — PolitiTweet.org
Dmytro Oleksiuk @d_olex
Damn, I have to write my own code to parse physical memory dumps and extract Credential Guard protected information
Joanna Rutkowska @rootkovska
@rootkovska @i0n1c Obviously w/o a trusted way to regain GUI control, any app can "steal the GUI", by presenting a fake home screen. — PolitiTweet.org
Joanna Rutkowska @rootkovska
@i0n1c Supposedly? :) — PolitiTweet.org
Joanna Rutkowska @rootkovska
@i0n1c Makes sense. This, plus inability to intercept Home Button presses, which I assume is the case for any app, correct? — PolitiTweet.org
Joanna Rutkowska @rootkovska
@i0n1c So you mean significantly more expensive to drop a backdoored "App Store" named-app than to replace WhatsUp, Newsstand? — PolitiTweet.org
Joanna Rutkowska @rootkovska
@i0n1c So I assume it's not possible for the dev/enterpise key to sign... the "App Store" app? :) — PolitiTweet.org
Joanna Rutkowska @rootkovska
Cool, but: how can the user know if using the original (i.e. non-subverted) @i0n1c's app? https://t.co/4ObtjhUDyV — PolitiTweet.org
Stefan Esser @i0n1c
How to protect yourself with System and Security Info - https://t.co/znAPLhya0S
Joanna Rutkowska @rootkovska
TFW: you're no longer the most active author on the (devel) mailing list for the project you started :) https://t.co/De90A3XV1e — PolitiTweet.org