-
m-relay
<phrogsstudent:hackliberty.org> Hello, I am a student of phrog from discord
-
m-relay
<phrogsstudent:hackliberty.org> Phrog is my sensei
-
m-relay
<phrogsstudent:hackliberty.org> Im sorry.....
-
m-relay
<phrogsstudent:hackliberty.org> This was in the past
-
m-relay
<phrogsstudent:hackliberty.org> Ive learned better
-
m-relay
<naphtha:kyun.host> 'ick on 'eck
-
m-relay
-
m-relay
<tigerbalm:matrix.org> Interesting video on moneros price floor
-
midipoet
How are you supposed to calculate the "amount of times each unit is used over the year"?
-
m-relay
<4rkal:monero.social> Wrote this cool guide on how to create a cool iso for cold storage.
4rkal.eu.org/posts/coldstorage
-
m-relay
<4rkal:monero.social> Wrote this guide on how to create a cool iso for cold storage.
4rkal.eu.org/posts/coldstorage
-
m-relay
<4rkal:monero.social> Maybe this is useful for some member of the community **cough cough**
-
m-relay
<intr:envs.net> mamma mia
-
m-relay
<rbrunner7:monero.social> Where do the OS files to write to this ISO come from?
-
m-relay
<rbrunner7:monero.social> From the installation you are running this on, or from some ArchLinux website?
-
m-relay
<4rkal:monero.social> Its using this
github.com/laurent85v/archuseriso . All packages are pulled from the arch repos
-
m-relay
<rbrunner7:monero.social> So should be pretty hard to corrupt even if you already have malware on the system you build the ISO
-
m-relay
<4rkal:monero.social> Yeah ig
-
m-relay
<intr:envs.net> frfr ong no cap
-
dsc_
gen-z_decode.py
-
m-relay
<4rkal:monero.social> *.lua
-
m-relay
<john_r365:monero.social> Was listening to ArticMine on MoneroTalk discuss the Intel Management Engine.
-
m-relay
<john_r365:monero.social> And then watched a Defcon talk on it.
-
m-relay
<john_r365:monero.social> I see you can buy Purism and System76 laptops with it disabled. And possibly some laptops/motherboards are compatible with Coreboot, which disabled it.
-
m-relay
<john_r365:monero.social> Just wondered...
-
m-relay
<john_r365:monero.social> Do AMD devices have a similar vulnerability.
-
m-relay
<john_r365:monero.social> Same question for ARM devices?
-
m-relay
<articmine:monero.social> AMD devices also have a similar vulnerability.
-
m-relay
<4rkal:monero.social> The safest most tinfoil hat method might be using risc-v processors
-
m-relay
<4rkal:monero.social> Don't think they have any kind of "management" engines
-
m-relay
<4rkal:monero.social> +open source
-
m-relay
<articmine:monero.social> Sandboxing DRM supporting devices on a separate sub net is a simple was to mitigate the risk
-
m-relay
<john_r365:monero.social> Thanks for doing that interview ArticMine - found it v interesting and thought provoking.
-
m-relay
<gfdshygti53:monero.social> But Risc-V still have speculative execution :)
-
m-relay
<articmine:monero.social> john_r365: You are welcome.
-
m-relay
<john_r365:monero.social> Re subnets - I was more thinking of devices used for generating seeds.
-
m-relay
<john_r365:monero.social> Presumably if you use a ME vulnerable device, the tin foil hat approach would be to disable/remove the WiFi card and keep it offline.
-
m-relay
<john_r365:monero.social> And then cold sign from it.
-
m-relay
<john_r365:monero.social> Maybe some Monero contributors have already covered this in detail in blog posts?
-
m-relay
-
m-relay
<4rkal:monero.social> Don't know if this is what you're looking for..
-
m-relay
<gfdshygti53:monero.social> My Lenovo thinkcenter 1L PC have a Jumper
-
m-relay
<gfdshygti53:monero.social> ME ON/OFF
-
m-relay
<articmine:monero.social> Cool
-
m-relay
<gfdshygti53:monero.social> That thinkcenter have a Intel 10900 in it, so still quite nice.
-
m-relay
<gfdshygti53:monero.social> And I confirm that when jumper is set to OFF, if seam ME is OFF (at least all Intel tools for ME bark at me when I run them)
-
m-relay
<gfdshygti53:monero.social> And I would not dare switching it back to ON as I already zeroed part of the flash already
-
m-relay
<articmine:monero.social> Does play ready DRM (latest version) work on it? Can you install Windows 11 on it? Let me guess the answer is NO in both cases
-
m-relay
<gfdshygti53:monero.social> Windows 11 work just fine
-
m-relay
<gfdshygti53:monero.social> All my media content come from that very old network called Usenet, none have DRM so I have never tried
-
m-relay
<articmine:monero.social> Once the Intel ME is disabled the DRM will not work
-
m-relay
<gfdshygti53:monero.social> TPM seam to work too
-
m-relay
<gfdshygti53:monero.social> TPM seam to work too (well I guess it is as it's required for windows 11 😂 )
-
m-relay
<articmine:monero.social> That could be the test
-
m-relay
<articmine:monero.social> Testing play ready DRM would be helpful
-
m-relay
<gfdshygti53:monero.social> But why would I want to play DRMed content.
-
m-relay
<gfdshygti53:monero.social> If it's the only loss then it's a non issue (I get my content on usenet because of DRM... Imajin being on Linux and being limited to 1080p because you don't have Windows + edge or something)
-
m-relay
<gfdshygti53:monero.social> But why would I want to play DRMed content.
-
m-relay
<gfdshygti53:monero.social> If it's the only loss then it's a non issue (I get my content on usenet because of DRM... Imajin being on Linux and being limited to 1080p because you don't have Windows + edge or something)
-
m-relay
<gfdshygti53:monero.social> Not paying money for inferior quality
-
m-relay
<articmine:monero.social> Also are you running Windows 11 in a VM?
-
m-relay
<gfdshygti53:monero.social> Naa, I did run Windows for a while got I got sick of some issue on Linux.
-
m-relay
<gfdshygti53:monero.social> Then I figured out after a while that people found a fix for my issue (disabling power management for the iGPU). So I reinstalled Linux.
-
m-relay
<gfdshygti53:monero.social> But I did the ME test while on Windows (the Intel tools for messing with ME are for windows)
-
m-relay
<articmine:monero.social> One would want to run DRM infected in this context to identify the relationship of the DRM to the vulnerability
-
m-relay
<articmine:monero.social> If it is the root cause this is very important. Also it can be a test that the Intel ME was truly disabled
-
m-relay
<articmine:monero.social> If the DRM still works the vulnerability remains
-
m-relay
<articmine:monero.social> DRM is critical here because of the US DMCA
-
m-relay
<gfdshygti53:monero.social> Will try this weekend maybe.
-
m-relay
<gfdshygti53:monero.social> Any "DRM" will work or it's specific, I think I never played drm content.
-
m-relay
<gfdshygti53:monero.social> I just get Netflix and test with that?
-
m-relay
<articmine:monero.social> The newest Microsoft play ready. Not just any DRM
-
m-relay
<articmine:monero.social> Netflix is a good test
-
m-relay
<plowsof:matrix.org> i assume we have seen the latest monerotalk? havn't finished it myself yet
yewtu.be/watch?v=9XgG4sNVS38
-
m-relay
<john_r365:monero.social> Doug: "So... how could the CCS Hacker have better structured their transactions to make network graph analysis harder?"
-
m-relay
<john_r365:monero.social> Justin & ArticMine: "No comment" 😂
-
geonic
:)
-
m-relay
<gorillaquest:matrix.org> He recommended an old device as a wallet which is untrue because they are EOL
-
m-relay
<gorillaquest:matrix.org> Also supported "properly" rooting a phone, if they can't use desktop OS which is not a good idea
-
m-relay
<gorillaquest:matrix.org> Also supported "properly" rooting a phone if they can't use desktop OS which is not a good idea
-
m-relay
<123bob123:matrix.org> Still guessing on how it happened are we
-
m-relay
<gorillaquest:matrix.org> No, Im trying to clear some misinformation that was said in the recent monerotalk episode about security practices
-
m-relay
<123bob123:matrix.org> It was more directed at the convo about it. Unless there is a forensic analysis where doing market speculation
-
m-relay
<123bob123:matrix.org> But from what i have seen about infrastructure would surprise me was cause of a high cve
-
m-relay
<123bob123:matrix.org> But from what i have seen about infrastructure wouldn’t surprise me was cause of a high cve
-
thanksgiver
HELO WE'VE BEEN HACKED FOR 2k XMR BUT DON T WORRI WE'LL FORENSIC OUR BACKDOORED DEV MACHINES AFTER "THANKS"_GIVING X---------_DDDDD
-
thanksgiver
it's not a time-sensitive issue after all... always yours, Luigi1111111
-
thanksgiver
-
dsc_
everyone knows its 1111, or 1112, or 1111w, or 1112w, not 1111111
-
m-relay
<comradeblin:matrix.org> The CCS Wallet Hack: Exposing and Improving Monero’s weaknesses with Francisco “ArticMine” Cabañas and Justin Ehrenhofer. EPI #288
-
m-relay
-
m-relay
<comradeblin:matrix.org> We discuss:
-
m-relay
<comradeblin:matrix.org> -The Hack of the CCS Wallet and possible causes
-
m-relay
<comradeblin:matrix.org> -Moonstone’s probabilistic tracing of the stolen funds
-
m-relay
<comradeblin:matrix.org> - Future of Monero dev funding & Governance
-
m-relay
<comradeblin:matrix.org> Special thanks to our sponsors
-
m-relay
<comradeblin:matrix.org>
cakewallet.com
-
m-relay
<comradeblin:matrix.org>
monero.com
-
m-relay
<comradeblin:matrix.org>
linktr.ee/stealthex
-
m-relay
<comradeblin:matrix.org> as well as Sunchakr for making these interviews possible.
-
m-relay
<comradeblin:matrix.org> And of course our listeners & supporters for making Monero Talk possible 🗽📷🎤!!
-
m-relay
<123bob123:matrix.org> How shit we got hacked!
-
m-relay
<john_r365:monero.social> Nacho: - yeah, I wondered about that. Doesn't rooting a phone make it more vulnerable not less? Afaik you can install a custom OS like Graphene without rooting it...
-
m-relay
<john_r365:monero.social> Root is only needed if you want to do something specific - like run Titanium backup etc.