• 0 Posts
  • 19 Comments
Joined 1 year ago
cake
Cake day: July 31st, 2023

help-circle
  • 2 things:

    1. This seems to be a specific attack for their IM protocol if the entry node was compromised, and could be placed nearby the client. To make this much easier, you’d want to compromise both the entry and exit nodes (in this case exit node is TOR native, so it’s more like internal node).

    This has never been unknown, this is one of the fundamental attack vectors against TOR, the IM protocol seemed to make correlation easier due to its real time nature.

    They added a protection layer called Vanguard, to ensure the internal exit nodes were fixed to reduce the likelihood that you could track a circuit with a small number of compromised internal exit nodes. This seems like it would help due to reducing likelihood of sampling.

    1. TOR has always been vulnerable, the issue is the resources needed are large, and specifically, the more competition for compromising nodes the more secure it is. Basically now the NSA is probably able to compromise most connections, and they wouldn’t announce this and risk their intelligence advantage unless there was an extremely valuable reason. They definitely wouldn’t do so because a drug dealer was trying to make a sale. Telling normal law enforcement basically ends their advantage, so they won’t.

    Other state actors might try, but they’re not in the same league in terms of resources, IIRC there are a LOT of exit nodes in Virginia.

    tl;dr - The protocol is mostly safe, it doesn’t matter if people try to compromise it, the nature of TOR means multiple parties trying to compromise nodes make the network more secure as each faction hides a portion of data from the others, and only by sharing can the network be truly broken. Good luck with that.




  • Meh, not nearly as configurable as linux, some things you can’t change.

    NFS beats SMB into a cocked hat.

    You start spending more time in a terminal on linux, because you’re not dealing with your machine, you’re always connecting to other machines with their resources to do things. Yeah a terminal on windows makes a difference, and I ran cygwin for a while, it’s still not clean.

    Installing software sucks, either having to download or the few stuff that goes through a store. Not that building from source is much better, but most stuff comes from distro repos now.

    Once I got lxc containers though, actually once I tried freebsd I lost my windows tolerance. Being able to construct a new effective “OS” with a few keystrokes is incredible, install progarms there, even graphical ones, no trace on your main system. There’s just no answer.

    Also plasma is an awesome DE.




  • Single-thread is really hard, we’ve basically saturated our l1 working set size, adding more doesn’t help much. Trying to extend the vector length just makes physical design harder and that reduces clock speed. The predictors are pretty good, and Apple finally kicked everyone up the ass to increase OOO like they should have.

    Also, software still kind of sucks. It’s better than it was, but we need to improve it, the bloat is just barely being handled by silicon gains.

    Flash was the epochal change, maybe we have some new form of hybrid storage but that doesn’t seem likely right now, Apple might do it to cut costs while preserving performance, actually yeah I see them trying to have their cake and eat it too.

    Otherwise I don’t know, we need a better way to deal with GPUs, there’s nothing else that can move the needle, except true heterogenous core clusters, but I haven’t been able to sell that to anyone so far, they all think it’s a great idea, that someone else should do.











  • Nobody uses that, they use the spec number because that’s what they’ve been taught, and they identify with it more than the incredibly stupid ‘full/high/super/duper/ultramegahyperspeed’ convention which the idiots at the siig decided to break again in 3.2.

    Everybody literally on the planet agrees the system is moronic, you’re literally the only person who dissents, congratulations on that.



  • They’re bad because manufacturers want to pass their usb 2.0 gear as “usb 3.0 compliant”, which it technically is, and their usb 3.0 gear as “usb 3.2” because 3.2 Gen 1x1 is also 5gbps.

    Also the whole alternate mode is awesome, but cheap hub chips don’t bother trying to support it and the only people who do are the laptop ports so they can save $.40 on a separate hdmi port.

    And don’t get me started on all the USB-c chargers that only put out 1.5a because it’s just a normal 7805 on the back end.