Deleted tweet detection is currently running at reduced
capacity due to changes to the Twitter API. Some tweets that have been
deleted by the tweet author may not be labeled as deleted in the PolitiTweet
interface.
Showing page 148 of 151.
Joanna Rutkowska @rootkovska
@CryptocoinsEA Hm, actually there is a MCH for that CPU that supports VT-d (http://t.co/M0Mtzpud7M). Q if libreboot supports it (DMAR)? — PolitiTweet.org
Joanna Rutkowska @rootkovska
@CryptocoinsEA Not for me at least: http://t.co/vtqSH8YGZ6 — PolitiTweet.org
Joanna Rutkowska @rootkovska
@_zaolin_ I don't agree. The main problem lies in treating large, complex blocks of code as _trusted_ (regardless if open source or not). — PolitiTweet.org
Joanna Rutkowska @rootkovska
@CryptocoinsEA ... and old systems do not have IOMMU (VT-d) which makes them even less secure, trustworthy. — PolitiTweet.org
Joanna Rutkowska @rootkovska
@CryptocoinsEA No such thing as "completely free BIOS" on today's x86. Also other f/w such as ME. — PolitiTweet.org
Joanna Rutkowska @rootkovska
... (2/) like we build @QubesOS assuming NICs, USBs are untrusted (devices, drivers and stacks). @CryptocoinsEA @QubesOS — PolitiTweet.org
Joanna Rutkowska @rootkovska
@CryptocoinsEA You don't get it: we should build systems assuming BIOS *is* untrusted, malicious. Like we built @QubesOS assuming... (1/) — PolitiTweet.org
Joanna Rutkowska @rootkovska
. @CryptocoinsEA I agree there are redflags in the @Puri_sm marketing lang. There are also positives, such as @ioerror being on board. — PolitiTweet.org
Joanna Rutkowska @rootkovska
Reminder: the mere opensourcing of x86 BIOS (firmware) does _not_ solve any security problems automatically! #CorebootNotaMagicSolution — PolitiTweet.org
Joanna Rutkowska @rootkovska
@CryptocoinsEA ... and @Puri_sm currently seems to be the only one such OEM. @ioerror — PolitiTweet.org
Joanna Rutkowska @rootkovska
@CryptocoinsEA I don't care about PR, licenses, etc. All I care is an OEM willing to introduce mods *I* want, cooperate. @ioerror @Puri_sm — PolitiTweet.org
Joanna Rutkowska @rootkovska
@FlorianHeigl1 Thx, glad you like @QubesOS :) — PolitiTweet.org
Joanna Rutkowska @rootkovska
... but I want OEMs to introduce specific (slight) h/w mods. More details Soon (TM). @CryptocoinsEA @ioerror @Puri_sm — PolitiTweet.org
Joanna Rutkowska @rootkovska
. @CryptocoinsEA I treat BIOS as untrusted, so I don't care if they ship Coreboot or not. @ioerror @Puri_sm — PolitiTweet.org
Joanna Rutkowska @rootkovska
@typhoonfilsy I can't see how this ORWL thing can protect even against the simplest physical attacks, such as Evil Maid, USB- or WiFi-based. — PolitiTweet.org
Joanna Rutkowska @rootkovska
@typhoonfilsy The threat model for a general purpose client/laptop is totally different than for a credit card terminal. — PolitiTweet.org
Joanna Rutkowska @rootkovska
@typhoonfilsy This is the last thing that we need to make a trustworthy client system. IMHO. — PolitiTweet.org
Joanna Rutkowska @rootkovska
@anantshri Yes, one of the PITAs. We've been working on addressing these problems. Stay tuned. @Puri_sm @ioerror — PolitiTweet.org
Joanna Rutkowska @rootkovska
@NikolajSchlej Yes: x86 ^ trustworthiness, indeed. That's why we need to team up with h/w vendors to come up with reasonable solutions. — PolitiTweet.org
Joanna Rutkowska @rootkovska
@typhoonfilsy Really? "includes a secure Key manager", "comes with 2 unique access KEYS", " designed using banking technologies", etc. Heh. — PolitiTweet.org
Joanna Rutkowska @rootkovska
We need to engage OEMs in building trustworthy x86 laptops. @Puri_sm seems to be THE only one candidate currently. https://t.co/ECfM7gJaOt — PolitiTweet.org
Joanna Rutkowska @rootkovska
@QuantumCyph3r I have migrated my blog this year as explained here: http://t.co/dlfDpKgR13 — PolitiTweet.org
Joanna Rutkowska @rootkovska
@ikoz In exchange I promise to publish a paper, or two, somehow soon ;) @pof — PolitiTweet.org
Joanna Rutkowska @rootkovska
@belowring0 @laparisa Not yet. Hm, but then why not also a security group for vegans, heli pilots, or gay and lesbians? #StateSpaceExplosion — PolitiTweet.org
Joanna Rutkowska @rootkovska
@csoghoian ... all it takes is this one line in my ~/.mailcap (in my work-mutt VM): application/pdf; /bin/qvm-open-in-dvm %s @flexlibris — PolitiTweet.org
Joanna Rutkowska @rootkovska
@csoghoian Not sure about your setup, but I have my mutt configured to automatically open attached PDFs in Disposable VMs... @flexlibris — PolitiTweet.org
Joanna Rutkowska @rootkovska
@csoghoian Not sure about your setup, but I have my mutt configured to automagically open attached pdfs in Qubes DispVMs... @flexlibris — PolitiTweet.org
Joanna Rutkowska @rootkovska
@csoghoian More interesting is: how do you open pdf/pptx slides full or graphics? :) @flexlibris — PolitiTweet.org
Joanna Rutkowska @rootkovska
@hacktimes Soon (TM) :) — PolitiTweet.org
Joanna Rutkowska @rootkovska
@Z0vsky Yes. — PolitiTweet.org