• 0 Posts
  • 16 Comments
Joined 2 years ago
cake
Cake day: June 9th, 2023

help-circle
  • Hopefully more projects take advantage of vulnerability scanning and monitoring tools like those in this OWASP list https://owasp.org/www-community/Free_for_Open_Source_Application_Security_Tools, have good code quality standards to make their projects easier to understand and evaluate, contribute and respond to CVE reports, and get third party security auditing.

    All of that is hard to motivated those throwing their code out to the world only to share how they scratched their itch to perform. I think we need a combination of governments and non-profits providing incentives / grants to projects doing good practices, document and provide trusted a forum to validate vulnerabilities, give some backing to “trusted” frameworks, and provide some vulnerability and auditing themselves.

    The recent EU push into more government open source usage will help as they will be more incentivized to secure the pipelines and everyone will benefit the fruits of that firehose of funding.


  • Commercial Windows licenses aren’t typically covered by the equipment installers (or if they are, the cost is passed on to you instead of subsidizing it), have expiration dates, and you’ll want security updates.

    I think the comment had the implication that the system would be running on Windows if not Ubuntu.



  • Linux Mint and PopOS are usually listed as friendly distros and are derivatives of Ubuntu without Ubuntu controversies like Snap. Mint even has an alternative direct Debian base skipping some Ubuntu packages, so might be ironically closer to old Ubuntu in that flavor.

    If you’re open to going non-debian, Manjaro is often sold as the more user friendly Arch. (Edit - a recent Manjaro controversy has people recommending EndeavorOS instead for an Arch wrapper. I’ve not tried that one myself).

    Debian or Arch aren’t bad to use directly either and are far more newbie friendly than they were a decade ago even if not as out of the box opinionated as their derivatives.












  • NebLem@lemmy.worldtoExplain Like I'm Five@lemmy.worldWhat is Lemmy?
    link
    fedilink
    English
    arrow-up
    1
    ·
    edit-2
    2 years ago

    Think of email as people sending letters over the phone. When it first came out, mail carriers only took their specific-sized paper, which couldn’t fit into mailboxes provided by other carriers. People could only mail each other if they used the same carrier. For example, kids wanted to send letters to grandmas, but the grandmas used different carriers. Eventually, some carriers got together and decided to use the same size of paper and mailbox size. The standardization became the email protocol.

    However, with the new ease of sending letters, some mean people started sending messages to the grandmas, so grandmas stopped allowing all the carriers to deliver to them. This is how ban lists were made.

    Grandmas can be very different, and each has their own things they are okay with. Eventually, this led to many bans making it hard to keep up except for the largest carriers that could hire staff to ensure compliance. They bought out the smaller carriers as more people switched to them. This is called centralization.

    Some grandmas thought it would be neat to find and share recipes together. They sent their collections to recipe magazines and asked the magazines to send the completed magazines back to themselves, the other grandmas, and their grandkids. These became the first media forums, blogs, and websites. Eventually, people wanted to get their blogs about different topics all in one place. This became social media.

    It was really messy at first because the magazines/websites created were in the order that the stories were received. They could be about anything, and some of the stories were from that yucky kid in class that talks about bugs and poop all day. To solve that, they started voting on what topics were the best and only showing the good ones to everyone but allowing those that really wanted to hear about bugs and poop still read and talk about that. This became link aggregation.

    The rules for how that voting worked were decided by the website owners. Sometimes they would cheat to get their stories put to the top, for example, their choice of who Superman or Batman was the best superhero. People started wondering why they had to listen to those people, so they started making their own websites. All these small splits ended up with the main website everyone went to and mostly empty websites about whatever topic the small website wanted to discuss. Since that didn’t solve the situation, they came up with the idea that maybe the small websites should talk to each other, and as long as they didn’t talk about the one issue, they split from the big website. They could all stop being on the big website. This was called federation.

    Lemmy is federation for link aggregators.

    Edit: formatting / grammar fixes