

Well if it is reliable, “if it ain’t broke don’t fix it” is a good way of looking at it too. This is fair though!


Well if it is reliable, “if it ain’t broke don’t fix it” is a good way of looking at it too. This is fair though!


Older doesn’t necessarily mean worse. Dependability is important for sure.


start ms-cxh:localonly or one of those rufus unattended things are the only ways i could ever set up Windows anymore, their stock config is some bullshit
Better software support??? There’s stuff I’m still struggling to replace and I’d rather native linux builds than have to go back for it.
Let me guess. Their kernel malware is going to come to Linux next?
MCU nerds if you didn’t like Infinity Bore


To be fair, many of us felt that leaving makes them win.
Star Wars: the slop machine strikes back


Well that’s a first time I’ve ever seen that in a Costco


Square Enix when handling Deus Ex
Yeah I pretty much chose to take matters into my own hands by importing some of the SecureBlue defaults (with a few modifications) into my config.
Yeah the real point was that those systems have things in place we could stand to learn from, to do better, and continue to keep people protected. It’s a learning lesson we could stand to be more careful.
I’m cynical of it mostly due to the way people respond when you suggest it in cases like the AUR malware. Speaking of mobile permissions I’m impressed with Voyager (my Lemmy client), it asked for literally nothing!
It’s really hard to quantify an answer to that final question, because realistically, any OS connected to the internet leaves itself more vulnerable than any OS air gapped, so that’s already inherently a tradeoff. If I go purely on a purity test? TempleOS. It’s not daily driveable, but it technically wins due to the fact that Terry did not code any network support at all into it.
You’re definitely right about the convenience tradeoffs, but some of that shit is just blatantly egregious, particularly with Arch and the AUR, yet Linuxtubers still swear by it and still tell new converts they don’t need to be careful, which is ignorance at best and negligence at worst. Even worse are the ones that openly advocate you use an LLM to figure this stuff out. That kind of mindset toward new users hurts us more than many realize.
SecureBlue doesn’t claim to be the most secure option, its whole model is trying to strike a balance between security and convenience. It’s just that a lot of distros are so far behind that their ideas seem extreme. I ran a Lynis audit on my Fedora system recently and I got a 77/100 score. That’s probably enough for the average person, and that was after downloading their sysctl rules from their github, commenting out about 3 or 4 options that I didn’t really need, and importing them all into my configuration.
Banana