Sekitar 20 hasil (2.10 detik)
Komunitas lemmy.dbzer0.com

VPN for Torrenting

Air VPN as it supports port forwarding. PF isn’t as important if you only download popular new content, as there are usually enough connectable seeders on popular torrents. But PF is absolutely crucial if you want to be able to obtain old or rare content or if you use private trackers. I’m honestly baffled that so many are still recommending Mullvad after they made such a stunning reversal of their friendly policy towards p2p by removing port forwarding. I wouldn’t trust them as far as I can throw them.

Komunitas rblind.com

NVDA 2025.2 Beta 4 now available

NVDA 2025.2 Beta 4 is now available for testing! Read more & Download at: https://www.nvaccess.org/post/nvda-2025-2beta4/ Changes in Beta 4: Fixed retrieving some text in object navigation / review cursor Added a warning before installing or updating NVDA on the controlled end of an NVDA Remote Access connection. Removed changes to trusted certificate handling which caused problems with NVDA Remote Access & some add-ons. Updates to translations.

Komunitas hexbear.net

Bootstrapping Rust is a Terrible Nightmare

Personally, I am not too concerned about that situation, but if I were a software developer from Russia, China, North Korea or Iran, I would be slightly more concerned of having to download a binary Rust compiler from a remote U.S. server. What could go possibly wrong? Kind of awestruck to see such a grounded take from a German consulting guy.

Komunitas lemmy.ml

Experience Launching my First Multiplayer Godot Game

Hey friends! Ex-Unity dev here. Today I’ve finally launched a game - it’s not a good one, I made it in a few weekends, but it’s my first launched game with Godot. Play Blob Jump Multiplayer! My Situation Unity is anti-developer, toxic, and slowly dying. I do not want to continue investing time into learning this game engine. I no longer work in the game industry, so making games will be weekend projects from here on To maximize fun and minimize friction, I want to make multiplayer, browser based games only. I have no interest in making singleplayer games or games that require a download Initial Concerns with Godot Godot is not as optimized as Unity. I was worried about this, but then I didn’t code my game like a monkey, and the profiler is great. This turned out to be a non-issue in any prototype I created. Godot Frustrations The biggest frustration point I experienced with Godot has been errors that have no GDScript stack trace. It is very annoying to be told some Node can’t access some Null feature or whatever and have no stack trace I’ve hit quirky edge cases with Godot physics. These are mostly remediated with Godot 4.5-dev, so I am running Godot compiled from source rather than a released edition. Fresh Air Every issue I’ve run into with Godot has some open source issue tracking it. In Unity, you would see ignored threads for years. In Godot, the maintainers are actively responding, people are giving workarounds, and in some cases, community members are fixing the issues themselves! Godot loads fast. Unity projects can take >1 minute to load; I did not expect how much more productive it would make me to have a fast editor that doesn’t break my focus Godot 4’s multiplayer system is fantastic. The way it handles multiplayer.is_server(), is_multiplayer_authority, MultiplayerSpawners, MultiplayerSynchronizers and RPCs is at least 2x better than Unity as far as code simplicity, debuggability, and learning time Multiplayer and Web Issues I originally wrote my game with ENet. Turns out that’s not supported in the browser, and I had to switch it all to Websockets. Thankfully this was easy I bought my server of Hetzner (shoutout cheap EU cloud provider). To save money, I went with IPv6 only, which Github doesn’t support, and Godot releases their binaries on Github. This was annoying, and after a few other IPv6 issues, I ended up buying an IPv4 address While originally prototyping to process inputs on the server, I chose to process inputs on the client in this game for a better UX. This actually resulted in a worse UX, since now the client needs to calculate player physics, which causes all sorts of issues if the client lags. The game wasn’t connecting to the server when I ran it on itch.io - But there were no errors! I reasoned out that Itch.io uses HTTPS, so I configured to Nginx to handle SSL encryption and it started working. Godot Dev Tips Watch Youtube guides. They are amazing Type your variables. It’s borderline impossible to do complex things without strong typing. Spend 30 minutes learning the debugger. That thing is golden. Next Steps I enjoy writing games in Godot more than I enjoy playing Runescape (but I’m horribly addicted to Runescape so I can’t stop). I’ve only scratched the surface, and hope to keep making more games. Thanks a ton to all the devs and the great community who make it what it is :)

Komunitas lemmy.world

Why does Android bother with Java?

I think there are a couple of things to consider. Number one is that Android at the very beginning never was designed for large touchscreen phones, rather it was supposed to be a small portable Software Stack that would run on digital cameras where Java would be good enough. Another historic thing that must have played into this is that Android was fighting an uphill battle. At the time iOS, PalmOS, BlackberryOS, Symbian and Windows Mobile all were shipping units. So I think they knew they had to keep the barrier of entry for creating Apps as low as possible and Java was (and still is) an incredible easy to understand language with a very gentle learning curve. Plus it was one of the most widley used language with robust tooling. Also for implementation - Android actually was AOT compiling Apps during installation during the Android 5 and 6 days however starting with 7 they went away from that by using a hybrid approach. Basically if you download an App and launch it the first time, it would run in JIT mode and collect data and than compile and optimize cirtical parts while the phone is idle and charging. There even is an adb command (adb shell cmd package compile -m speed -f my-package) to manually compile apps. But I have played around with this a lot, trust me, and I can’t notice a difference. Also more generally I think that Android Apps being mostly made up of intermediate bytecode instead of raw CPU instructions is overall a massive benefit for security and incredible futureproofing. It allows for things like x64 Chromebooks and Asus Zenfones with Intel Atom SoCs (yes that was a thing) and would make a transition to a new ISA like RiscV somewhat managable I think. Also I don’t think Java and its performance overhead matters - usually its badly coded Apps or these god awful wrapped webview “apps” that cause issues. Simple as that. If you today compare a Nexus 5 and an iPhone 5S, the Nexus 5 is faster 8/10 times, and that despite having a slower CPU and the whole java stack.

Komunitas lemmy.dbzer0.com

Problems with iPlayer downloads/conversions

OK, first off I know about get_iplayer and it doesn’t suit my needs but thanks for the thought. I’m trying to download entire seasons of a particular show I can’t find quality torrents of all 26 seasons anymore. I’m using a tool called yt-dlg which is simply a GUI for yt-dlp which is a fork of YouTube-dl.exe. Now, with that out of the way. So, I right click the channel off the iPlayer page with my trusty VPN on and select copy clean link. I paste it into the GUI, it begins parsing and off we go. Depending on the season, it’s through in about 30mins. BTW, it pulls the files down and reassembles them into an MP4 container with a MPEG-TS video and AAC audio stream. All good, right? Wrong! Although the videos play fine in VLC, I receive an error at the end of the batch process stating “Possible MPEG-TS in MP4 container or malformed AAC timestamps. Install ffmpeg to fix this automatically”. Greek to me so I proceed to my converter of choice, FastFlix and drop the file in for cropping/conversion to HEVC/AC3 and when I start the conversion I get the error message “Invalid Timestamps…” over and over while the file attempts to render. Any mateys out there with more brains than me, HELP! I’m lucky I could even remember all this. LOL All positive support appreciated!!!

Komunitas lemmy.world

Google Play Store operates at 70% profit margin, Epic v Google court case reveals

the play store, like other download stores, provides discoverability, trust, and all the infrastructure to distribute and automatically update your software products. this is not a worthless service, otherwise publishers wouldn’t have flocked to Steam on Windows in the late ‘00s/early ‘10s. only the very biggest ones like EA and Ubisoft felt like they could make more money by rolling their own. this doesn’t justify using anticompetitive practices to maintain your market position, but there is real value being provided there.

Komunitas lemmy.ml

Looking for an alternative to google wallet, when it’s the default option to download a German travel card.

I now reside in Germany and my current employer pays 50% of the Deutschland-Job-Ticket. There is no physical card but travel information you download to an android wallet, but apparently google wallet is the only available option. See the picture: Google is a company I don’t trust with my data, neither do I expect your regular public transportation authority employee to care about his privacy (he looked at me as I was asking if 2 + 2 equal 4). I am not aware of non google based wallets where I can download the travel information. I tried some f-droid and droidify options but it turns out they’re pure crap. The site: https://abo.ride-ticketing.de/app/ I log in with my username and password, get my travel information and on the bottom the picture I uploaded. Any workarounds? This being Germany, shouldn’t there be an alternative to those who refuse google? Don’t I have that right as a consumer? Another question: I screenshot my logged in session on the link I provided where you see my qr code and my billing data. The public transportation employee told me that’s not allowed (wtf?). Can anyone here provide a rationale?

Komunitas szmer.info

The “I'm New to F-Droid” Starter Pack

The post body (note that it still has links to reddit): The only way to prevent data from being abused is to prevent it from being collected in the first place. — Soren Stoutner You can prevent collection of all information by uninstalling Developer Applications that integrate the Braze Service. — Braze, a notorious $urveillance company You can’t see the invisible things being transmitted […] You can’t see it […], so it doesn’t bother you. You either choose instant gratification and suffer the pernicious consequences, or you choose to protect yourself and your future. People are literally destroying their lives on TikTok, Discord, Instagram, etc., for what, a dopamine high that lasts approximately sixty seconds. Then they return to the real world. They lose their insurance claims, they miss nice jobs they were qualified for, they are denied loans and mortgages when they need them the most, they are denied access to credit facilities, they are denied health insurance, they have their political or administrative careers completely ruined courtesy a chat excerpt that was “leaked” to the press by an antagonistic party, they lose all their money to a well-orchestrated, multipronged, targeted identity-theft operation, they get murdered by the Camorra, they get vengefully eviscerated in a narcocracy, they get arrested and incarcerated for their activism in a police state, they lose custody of their precious children… Your data footprint doesn’t matter to you, but it matters to a hundred thousand people out there. They aren’t friendly people. You can’t see the invisible things being transmitted […] Think of carbon monoxide. You can’t see it, you can’t smell it, but it will kill you in a matter of minutes. — Moira This post is adapted from this event which occurred last Black Friday. You would notice that I’ve steadily updated the list of requisite apps since then, even after the submission got archived. Henceforth, that list will be maintained here. For the sake of concatenation, this was the announcement thread. #First things first If you like a sexy FOSS utility you see, ~~put a ring on it~~ donate to its altruistic developer! As I always write, a situation in which 1,000 people donate £5 is better than 2 people donating £1,000 within the same period. A great forest is made up of thousands of small trees, not three giant sequoias. Of course, you can also donate vetted DeFi cryptocurrency. #Donate to F-Droid here! If you really, honestly, frankly, truly, sincerely can’t make a pecuniary contribution, you have options. #We are not ovine morons “Hey there, weird nerd girl. What exactly is a tracker, and why the heck should I care?” A tracker, contextually, is any blob or sloc that monitors and reports your activity in an app (and outside it) to a tertium quid, i.e., a third party. Trackers are frequently classes of surveillant libraries or entire SDKs. Trackers can be components such as broadcast receivers, activities, and services. They can also be intents. These elicit responses from other apps (via inter-process communication) that listen to certain flags in their manifests. Permissions are consistently used to track. There is absolutely no reason why your favourite clock app should have the ACCESS_NETWORK_STATE, INTERNET, READ_EXTERNAL_STORAGE, and WRITE_EXTERNAL_STORAGE permissions. For a clock app, those are definitely tracking permissions. Many, many, many apps also track you by regularly querying your clipboard and reading its contents. The READ_CLIPBOARD permission that permits this is a “hidden” one. It’s a declared AppOps permission that can’t be denied unless you have superuser privileges or use the Android Debug Bridge. “Hold up. My clipboard has been pawned?” All your copypasta are belong to spyware. ByteDance is dancing to the data bank with your credit card details. “Holy macaroni!” Trackers surveil the images you view in an app, how long you view them, the areas you tap in an app, the text you type in an app, the emoji you use, when the app is in the background or foreground, the amount you paid in an in-app purchase, your credit card numbers, your issuing merchant, your bank account, whether you’re stationary or in motion, images of the room you’re in, sounds and speech in your office, your current precise location coordinates and how they change per unit of time, persistent device identifiers like your Android ID and the SSAIDs of your smartphone’s apps, your carrier network, your network connection’s bitrate, your Wi-Fi BSSID, SSID, the RSSI, and all devices in your LAN, your Bluetooth MAC address and all devices in your PAN, other apps you’re concurrently interacting with, the apps you used in the last few days/weeks and your usage durations, the temperature of your environment, your carpal pulse, the sensitive documents, photos, videos, and songs stored in your device, the movie you’re streaming in another app, etc. The garnered information is transmitted to both the developer utilizing the tracking library/framework, and the maintainer of the tracker. For example, when the Wikipedia app secretly monitors your activity, the packaged information is sent to the Wikimedia Foundation, Google, and Microsoft. This information is very, very, very, very, very, very, very lucrative. Very lucrative. “So, you’re telling me scores of companies know about that one vore comic? I had a secure chat with my drug dealer on WhatsApp yesterday!” Facepalm.jpg FBI document shows the Feds can get your “encrypted” WhatsApp data in real-time. “Who buys the data that’s sent from the devices of oblivious people?” It’s a data bazaar out there, dear. Data brokers, data warehouses, the military, law enforcement, private detectives, espionage agencies, federal institutions, political action committees, courts, forensic laboratories, research corpora, advertising and marketing agencies, record labels, universities, churches, mosques, synagogues, restaurants, banks, financial institutions, hospitals, pharmaceutical monoliths like GlaxoSmithKline and Bayer, publishers, insurance companies, manufacturing companies, telecommunication companies, professional criminals, nosy individuals, etc. In September 2021, the BBC’s Click programme aired a special episode during which it was revealed that the reporters (alongside a bunch of researchers) “obtained” raw data that showed the extent of extremist radicalization perpetuated via very popular gaming platforms. Minecraft, Roblox, and Call of Duty’s Warzone were implicated. “Is this really true? Do you have any sources I can peruse?” Sure. Read this. And this. Then this. And this. This, too. So, you think Instagram surreptitiously activating your device’s camera to spy on you is some loony conspiracy theory? Think again! Uncle Sam is that voyeuristic, perverted lecher who wants to feel up his niece. Imagine paying to wiretap your home just to get the recipe for a canapé. 🤦🏽‍♀️ My first source explicated how Bluetooth triggers red flags. I wasn’t making up stuff in that write-up. An Austrian advocate is pissed at Google for doing Googly things. Oh, there are lots of articles for you to read here, though some of the recommendations are no longer suitable. For example, Brave is categorically proscribed, even as a gateway browser. Don’t be misled by disinformative marketing. Beware of the Nemean lion! Also, the Startpage project is executively owned by a Californian data warehouse, System1. Be informed, so you don’t burn! “But TikTok told me the data they collect is anonymized! I saw it in their pretty privacy policy. This shows that they care about me, and I’m definitely safe, right?” When a shark swimming in coastal waters tells you it won’t chomp off your left leg, it’s all on you if you decide to stupidly trust it. “Anonymized data” is a sardonic joke. No, seriously. My grandma uninstalled TikTok yesterday. Here’s why. This is TikTok ticking and talking—to remote servers. #Be wary of granting “Draw over apps” (the SYSTEM_ALERT_WINDOW permission), Assist API, Accessibility, and Device Administrator privileges to applications! “This whole thing feels creepy as hell. How do apps determine my pulse?” Sensors, sweetie. Sensors. Your smartphone/tablet/smartwatch/smart band/mounted head display shipped with twelve or more of the following sensors: ❇️ Accelerometer ❇️ Light ❇️ Proximity ❇️ Ambient temperature ❇️ Gravimeter ❇️ Gyroscope ❇️ Rotation vector ❇️ Linear acceleration ❇️ Magnetometer (responsible for the simulated compass) ❇️ Orientation ❇️ Barometer ❇️ Hygrometer ❇️ Significant motion ❇️ Step detector ❇️ Step counter ❇️ Tilt detector ❇️ Wake gesture ❇️ Glance gesture ❇️ Pickup gesture ❇️ Stationary detect ❇️ Step detector wakeup ❇️ Fingerprint ❇️ GNSS (heterophemistically known as GPS) ❇️ Anterior and posterior cameras ❇️ Microphone While holding your smartphone or wearing your smartwatch, every tiny oscillation of the device is detected by the accelerometer (at the very least). Akin to the case of the OS clipboard, many, many, many, many apps have unrestricted access to sensitive sensor data. Permissions are not required for such leaky access. The GNSS radio (the Network Location Provider and your IP address are classic ways apps detect your location if a radio fix is revoked), fingerprint sensor, camera, and microphone are notable exceptions. You now comprehend how trivial it is for spyware to garner and transfer granular data about your heart rate. Those data, sorted and catalogued by surveillant libraries and evil data scientists, find their way to your black information. Equifax and Acxiom know what I’m writing about. One of the images of this post shows the TikTok app constantly querying sensor data. Is the ambient magnetic flux necessary to show you [insert random TikTok ~~influenza~~ influencer]'s latest video? Use CPU Info, SatStat, and Sensorz (IzzyOnDroid repository) to retrieve (real-time) sensor readouts. If you’re in the mood for edutainment, play around with phyphox. Trail Sense is also worth a dabble. Your device’s gyroscope is snitching on you. This is how evil bastards surveil and sell your sphygmic data to insurance companies. We ain’t a gathering of gawky propeller heads who want to show off our nerdiness. We are everyday folks who are tired of the lies, $urveillance, and dissimulation. We rage against evil machines. We are here to protect your future! #Is F-Droid a hot gynoid from some futuristic space opera? “Um… what is this F-Droid thing anyway? You’re always writing about it.” F-Droid is a catalogue of freedomware for Android and the Android Open Source Project. Unlike the lawless latrine that Google Play is, F-Droid emphasizes user privacy and security. IzzyOnDroid is an alternative repository of F-Droid. Check out more about Izzy’s repo. DivestOS Official maintains its alternative repository of F-Droid. It’s courtesy the impressive Divested Computing Group. At the time of writing, six of the seven apps in the DivestOS repository are also present in the default F-Droid repository. Guardian Project maintains its alternative F-Droid repo. F-Droid is a comprehensive collection. For instance, there is a safe replacement for evil Pokémon Go on (an alternative repository of) F-Droid. TerranQuest is that replacement. “Whatever. I’ll get my apps on Google Play despite what you wrote.” This is what happens when you stubbornly get your apps on Google Play, even via Aurora Store. “What’s the function of that huge Google Play Services app?” It’s Orwell rolling in his grave. “Someone told me there are open-source apps on Google Play!” You don’t say. Ninety-nine percent of apps on Google Play have nettlesome ads (which are mostly served by Google’s evil AI slave DeepMind) which also steal and monetize your data, and/or Mephistophelean trackers that do the same despite their mendacious “privacy policies”. When you buy Evernote Plus, Spotify Premium, or Discord Nitro, or subscribe to the Guardian, Washington Post, or New York Times news apps, their trackers don’t magically disappear from the apps. Instead, your Mastercard/Visa/XYZ details, along with other purchase data, are transmitted and sold to their business partners, data brokers, and federal institutions (especially law enforcement bodies). In other words, your payment data are turned into tracking vectors. The banal prepayment tracking proceeds as normal. As I wrote in a comment many months ago: proprietary bros have zero chill. “This privacy thing is too much of a task. I’m off to the parlour to play Overwatch with my sister.” Fun fact: Surveillance is an English noun derived from the French verb surveiller, which literally means overwatch. Now you know. Assertively reclaiming your data privacy isn’t easy. If it was, WhatsApp would’ve gone into MySpace’s level of obsolescence post-2014. Gamers (and others) would be on Matrix and Mumble servers, not Discord. Here is a Roman aphorism to keep you going: Nemo athleta sine sudore coronatur. No athlete is crowned without sweat. — Jerome, Epistulae “Discord? Huh? What’s wrong with it? I’m OOTL on this one.” Discord causes… discord. D’oh. Bad Discord Bad. Baddddddd Discord. “Okay. I’m convinced that Google and Discord are really bad. How about Amazon? I’m thinking of buying a Ring camera for the front door.” If you want Jeff Bezos’s plutolatrous Amabots to watch everything that happens in your home, get a Ring camera. “Darn.” As if that wasn’t enough… Here is an F-Droid-only antiAmazon resource you might find useful. I will create (and regularly update) similar lists antagonizing Facebook, Google, Microsoft, etc. It’s important to get your apps from the official F-Droid repository. #Other F-Droid clients Aurora Droid (for straightforward addition of alternative repositories) G-Droid (recommended) Droid-ify F-Droid Classic IzzyOnDroid is a lightweight client strictly for the IzzyOnDroid alternative F-Droid repository. It’s in Izzy’s repo, so you have to download (and update) it using Aurora Droid for instance. #Is this better than Mardi Gras in the Big Easy? Where the beads at? Definitely not, but it’s better than watching 🐍Mark Zuckerberg🐍 pretend to be a benefic human being. #Starter apps ##Default F-Droid DroidFS App Manager (make sure you get this one!) APK Explorer & Editor Logcat Reader or SysLog (if your device ain’t rooted, you have to grant them the READ_LOGS manifest permission via the terminal, otherwise they would give you access to only their process logs, not the entire system logcat) Permission Manager X (dank stuff this featherweight utility is—enriched via ADB commands or superuser privileges) PermissionsManager (cursory admonition) PrivacyBreacher (interprocess communication and system APIs reveal almost everything about your device…) Privacy Helper (a pithy primer) Net Monitor (read the caveat in the app’s description) Vigilante, SafeDot, or Privacy Indicators Autostarts SuperFreezZ or Battery Tool (root required) One (or more) of NetGuard, AFWall+ (root required), PCAPdroid (optional; use it for packet analysis and decryption), Blokada (read this first!), AdAway (root no longer required 🚀), personalDNSfilter, DNS66, I2P (garlic routing), TorServices (onion routing), InviZible Pro, Freenet mobile, Mullvad VPN, Shadowsocks FOSS, or SagerNet (Note: The VPNService can be utilized by one app per session. Having root privileges allows you to combine some of these apps.) Shelter (≥Android 8/DivestOS 15 sans MiUI custom firmware) or Insular Material Files or Ghost Commander eSpeak or RHVoice (Text-To-Speech engine) PilferShush Jammer usageDirect and Open TimeLimit, TimeLimit.io, or Get Off Your Phone (hey there love, looks like you’ve played Freedoom for seven hours today!) DetoxDroid (monochromatic detoxification; requires root or ADB authorization) LibreOffice & OpenOffice document reader and Impress Remote or Techahashi Print Padland Fluffyboard BatteryBot Pro or BBS AnySoftKeyboard, FlorisBoard, or OpenBoard and Irregular Expressions (ensure it’s not set as your primary keyboard) and/or EweSticker (ensure it’s not set as your primary keyboard) ClipboardCleaner Scrambled Exif UntrackMe Léon Privacy Browser (requires your device’s onboard WebView rendering engine), monocles browser (requires your device’s onboard WebView rendering engine), FOSS Browser(requires your device’s onboard WebView rendering engine), or Mull (Gecko-based) (ensure you perform the battery of hermeneutic tests suggested by this resource before actively using any of these browsers, so you understand the hidden privacy and security threats of HTML5 APIs, WebRTC, and the modern web!) drip, log28, or Periodical and Fertility Test Analyzer App (strictly for us💄) Vectorify da home! or Doodle OpenContacts or Simple Contacts and Simple Dialer or Emerald Dialer (deliberately simplistic) Call Counter, Prepaid Balance, Call Recorder, Schlikk Calls, Raise To Answer, and Share my number via QR code Yet Another Call Blocker, NoPhoneSpam, Blacklist Blocker, or Silence (≥Android 10/DivestOS 17) Jami, baresip, baresip+, or Linphone (VoIP/SIP user agents) Silence (ciphertext) or Simple SMS Messenger (cleartext) TalkBack Easy-phone or BaldPhone (this has more features) Greentooth AirGuard Hypatia (especially essential if your device is rooted) Organic Maps or OsmAnd~ (note that Mapillary is a surveillant service and application now owned by Meta/Facebook) and Navit RoadEagle (if you’re in 🇵🇱 Poland, 🇱🇹 Lithuania, or 🇱🇻 Latvia, enjoy surveillance-free live traffic news. More countries will be able to participate) lemmur Infinity, Slide, RedReader, Stealth, Dawn, or NoSurf F-Droid Build Status (use this to check whether an app is about to be added or updated in the default F-Droid repository) F-Droid Forum ##IzzyOnDroid Warden Metadata Remover (displays image metadata before excision) ExifEraser (optional) SysInfo Codec Info (optional) #Final counsel A soupçon of apps on (default) F-Droid—like Wikipedia—have trackers, though this is properly disclosed in their descriptions. Never trust toggles which claim to instantly stop these trackers from “phoning home”. The developer who carefully selected the spyware library (and its classes), hardcoded relevant components (e.g. services), used tools to obfuscate the app’s DEX files to deter people like me from discovering and exposing embedded trackers, created userspace with the maintainer of the tracking library, and refused to remove the tracker when applying for inclusion on F-Droid, definitely isn’t idiotic enough to let you rain on his/her parade in one tap of a toggle. Like the ubiquitous Do Not Track toggle and its header request, these sorts of toggles are completely useless. For example, SQLiteViewer in default F-Droid still submits data to the developer’s servers when analytics and crash reporting have been toggled off, as per the Anti-features description. Trust packet captures. Don’t trust I-made-it-very-easy-for-you-to-switch-off-my-tracker-because-I’m-an-idiot toggles. Make sure you scan all the apps in your device with App Manager, especially after updates. This also applies to apps you download on default F-Droid. Don’t let sinuous developers play you for a fool! Cave canem! Wikiless is an open-source alternative front-end for accessing Wikipedia content privately, like what Nitter is to Twitter. Use the UntrackMe app to turn Wikipedia links to Wikiless ones. Caught on a random subreddit: Here’s one of the monsters who destroy your privacy for money. He then tries to deny the whole thing moments later, which is typical of them. In conclusion, this is a particularly intimate confession that shows why we should protect ourselves and our privacy. The future is private.™ (My attempt at humour. 😂😂) “All right, space lady. I get it now. It’s F-Droid all the way. Quick question, though: Do you have a boyfriend?” You’re hitting on me right here in this thread. How audacious! ^blushes #Hamster your data! 🐹 Postscript: Welcome to the first of many edits. If you’re using Reddit’s official mobile app, Relay, Boost, or Bacon Reader, there are better options that don’t secretly monitor and monetize your activity. Added Infinity, Slide, RedReader, Stealth, Dawn, and NoSurf. Credit goes to u/tdmlr for the reminder. Snoo! 👽 Second redaction: Google’s constant scumbaggery, IoT surveillance, clipboard surveillance, sensor surveillance, and the ~~data-harvesting service~~ social network TikTok constitute this edit. Whatever you do, for the love of hardy tardigrades, avoid TikTok like a candidal infection. Awareness! 📢 Third redaction: Girls, the German app Clue, the American app Eve, Flo, and My Calendar are all spyware. Eve in particular is bastardware. Steer clear of them like an ominous Pap smear! Added drip, log28, Periodical, and Fertility Test Analyzer App. Let’s keep our catamenial cycles away from that megalomaniacal pervert Mark Zuckerberg. Also added usageDirect, Open TimeLimit, TimeLimit.io, Get Off Your Phone, Freedoom, DetoxDroid, Material Files, AnySoftKeyboard, FlorisBoard, OpenBoard, Irregular Expressions, Greentooth, BBS, BatteryBot Pro, Battery Tool, RoadEagle, and Navit. Aestival! 🏖️ Fourth redaction: Added an image about “techie” people fatuously accepting IoT $urveillance as the “new normal”. If you prefer to view this submission’s images in an external application, use ImgurViewer. Added an extremely vital tool to the browser segment. Mocha! ☕ Fifth redaction: Added a quotation by a certain Moira. Added indispensable information to the sensor section. Added CPU Info, SatStat, Sensorz, phyphox, and Trail Sense. Moved Privacy Indicators to the Default F-Droid category. Monitory! ⚠️ Sixth redaction: Added a link for donating to F-Droid Limited. Added log28 and SafeDot. Added LibreOffice & OpenOffice document reader. Read and modify documents in any ODF (screeds [ODT], spreadsheets [ODS], or slideshows [ODP] authored via LibreOffice or OpenOffice). Print those documents with CUPS Printing and a compatible printer. Moderately manipulate Microsoft’s straitjacketed Office formats. View PDFs and images. Also added Impress Remote for interacting with your presentations. Productivity! 📎 Seventh redaction: Moved SafeDot to the Default F-Droid category. It arrived swiftly, Aravind Chowdary dearie. Added Techahashi. Added Simple SMS Messenger. Truecaller is truly bastardware. The maintainers of the app (and service) share the discriminatory data of your carrier networks, contacts, call logs, intimate conversations, texts, sexts, and external actions with Amazon, Huawei, Facebook, AppsFlyer, Twitter, Google, etc., and sell the same to Lea, USIC, and hundreds of individuals and corporations—without remorse. There are ethical options; no more excuses. Added Yet Another Call Blocker, NoPhoneSpam (useful post-Marshmallow), Blacklist Blocker (also filter texts), Silence (minimalist), OpenContacts, Simple Contacts, Simple Dialer, Share my number via QR code, Schlikk Calls, Call Recorder, Raise To Answer (sensors…), Call Counter, Prepaid Balance, Jami, baresip, baresip+, and Linphone. Loquacity! ☎️ Eighth redaction: Hey there. Did you see a black cat today? Was it a black dog? What dog breed was it? Was it a black pug, a black dachshund, or a black terrier? Not sure? Read here! The Fediverse is expanding after the ActivityPub Big Bang of January 2018. Is there a Reddit alternative in the Fediverse? There is! Bet you didn’t expect that. Lemmy is that alternative. It’s decentralized, with a variety of related servers — instances — federating to yield a consistent experience. Lemmy does not depend on Scamazon (Amazon) and Goolag (Google) software and infrastructure, unlike Reddit. When (not if) I delete my sole account, leaving Reddit, my mission will definitely be continued there. I added lemmur, the primal Lemmy client. Use Logcat Reader or SysLog to peek at and keep au fait with what’s going on underneath the bonnet of your smart device. Added a paramount caveat to Blokada. Added Emerald Dialer and F-Droid Forum. For my sensorially impaired beloved friends, I added TalkBack, which is a necessity. Say, isn’t that a black dog barking at you? What’s its pedigree? Instead of consulting the dog’s dinner that is Goolag, enjoy Identify Dog Breeds. Use it to distinguish more than thirteen canine types this Friday. I wouldn’t advise you to walk under that ladder. Paraskavedekatriaphobia! 1️⃣3️⃣ Ninth redaction: Added a monitory paragraph about the BBC “obtaining” “anonymized” data for a Click report. Added a caution concerning the optional Mapillary service promoted by OsmAnd~. Block Mapillary on the hosts level, and turn off all in-app Mapillary “enhancements”. Added IzzyOnDroid app as one of the F-Droid clients. It handles only the eponymous repository. Added SysInfo and Codec Info to the IzzyOnDroid category. Added Ghost Commander. Added Easy-phone and BaldPhone. Added EweSticker and Print. With Print, you can, well, print documents and photos stored in any accessible directory in your device, or whatever’s on your screen as long as you have a compatible print service and printer set up. Added AirGuard. “Good” Apple strikes again! Using something similar to the ~~Contact Tracing~~ Exposure Notification framework, Apple tracks your device as it moves around. Quietly. Read the app’s description to find out what this is all about, and why Bluetooth is a perfect vector for surveillance. Added Padland and Fluffyboard for workplace, domestic, and amical collaboration. Amor! ❤️ Tenth redaction: Added a warning concerning WhatsApp. Replaced Foxy Droid with Droid-ify. Added FOSS Browser and Doodle. Added a paragraph about deceptive toggles. Added a little information about the Wikiless project. Pyrotechnics! 🎆

Komunitas lemmy.ml

Looking for an alternative to google wallet, when it’s the default option to download a German travel card on my android.

cross-posted from: https://lemmy.ml/post/33213275 I know android is minimally related to linux and the question doesn’t resemble a typical question for a linux forum but each time I’ve asked here you’ve provided valuable information: I now reside in Germany and my current employer pays 50% of this so called Deutschland-Job-Ticket. There is no physical card but travel information you download to an android wallet, but apparently google wallet is the only available option. See the picture: Google is a company I don’t trust with my data, neither do I expect your regular public transportation authority employee to care about his privacy (he looked at me as I was asking if 2 + 2 equal 4). I am not aware of non google based wallets where I can download the travel information. I tried some f-droid and droidify options but it turns out they’re pure crap. The site: https://abo.ride-ticketing.de/app/ I log in with my username and password, get my travel information and on the bottom the picture I uploaded. Any workarounds? This being Germany, shouldn’t there be an alternative to those who refuse google? Don’t I have that right as a consumer? Another question: I screenshot my logged in session on the link I provided where you see my qr code and my billing data. The public transportation employee told me that’s not allowed (wtf?). Can anyone here provide a rationale?

Komunitas lemmy.ml

A Commie Pirates Guide to Consooming.

First we are going to buy something. Mullvad VPN. Its the only VPN id recommend getting. It is 5.50$ or so a month, and if you cancel your streaming accounts it’ll pay for itself now that you’ll be pirating stuff with it. Why that provider? Mullvad removed port forwarding. Why not recommend a VPN better suited for torrenting that has port forwarding which can massively help in getting better speeds and getting connections at all on all but the most popular torrents? Yeah sure if you’re only downloading the latest TV episode release you’re fine but if you’re interested in something obscure (as Marxists are often wont to be) it becomes a real problem. AirVPN for example still supports port forwarding and is a bit cheaper than Mullvad per month. They also have sales several times a year where it gets even cheaper. Would I trust them politically? I don’t trust any VPN company that way. I don’t trust any of them to not be deep cover CIA/five-eyes/zionist intelligence cut-outs or paid off to provide that data to the aforementioned and neither should you. There are a couple other options with port forwarding but PIA was bought out by an ad-tech company which makes them a little extra sketchy though still fine if you just use for torrenting. Proton also offers port forwarding for p2p specifically but many think they look extra like CIA and want to avoid them, their prices also aren’t quite as good. I’ll also mention qBittorrent has a search interface right inside it, view: search engine and then click the bottom for search plugins, update all and you can start searching most of the more popular public indexers without having to visit their ad infested sites and wait for page loads. You can add in Jackett as a plugin (configuration details on its github) after installing it and add even more site including private and semi-private open signup like rutracker after creating an account and putting the details in Jackett. One important thing: NEVER use software or executables you find via these searchers, they include DHT scrapers that scrape for any and all things out there in the swarms and it’s a great way to get malware. You can search for your favorite repack but make sure it’s on a site you know is trustworthy from an account you know is good, you can right click the results and click to copy the url to paste into your browser to check before downloading that it’s a good source. Don’t ever run software where the source you’ve chosen is solidtorrents and I’d recommend against it if the source is the pirate bay as well as they have a lot of malware there too.

Komunitas lemmy.ml

Looking for an alternative to google wallet, when it’s the default option to download a German travel card.

I now reside in Germany and my current employer pays 50% of this so called Deutschland-Job-Ticket. There is no physical card but travel information you download to an android wallet, but apparently google wallet is the only available option. See the picture: Google is a company I don’t trust with my data, neither do I expect your regular public transportation authority employee to care about his privacy (he looked at me as I was asking if 2 + 2 equal 4). I am not aware of non google based wallets where I can download the travel information. I tried some f-droid and droidify options but it turns out they’re pure crap. The site: https://abo.ride-ticketing.de/app/ I log in with my username and password, get my travel information and on the bottom the picture I uploaded. Any workarounds? This being Germany, shouldn’t there be an alternative to those who refuse google? Don’t I have that right as a consumer? Another question: I screenshot my logged in session on the link I provided where you see my qr code and my billing data. The public transportation employee told me that’s not allowed (wtf?). Can anyone here provide a rationale?

Komunitas programming.dev

What can I do to make this more secure?

What you are doing is exposing ports to the internet and advertising you home IP. Which is fine, mostly. A better way has been mentioned with cloudflare tunnels. This means your server connects out to cloudflares servers, instead of cloudflare forwarding to your IP. It would then leverage all the protections that cloudflare offers (ddos protection, client filtering etc). However, cloudflare then has access to everything that goes through it. It’s very secure, chances are cloudflare doesn’t care about your traffic, and as long as everything is legal you will be fine. If you don’t want cloudflare knowing all of your servers served traffic, then you either need to run your own reverse-proxy-over-vpn style endpoint on a VPS (that you trust), or accept the additional risk of leaking your home network public IP. If you accept the additional risk of leaking your home IP, then it’s worth making sure your firewall/router is up to scratch. Make sure it has active development (which is why most people use something like opnsense), and is always up to date (to ensure any vulnerabilities are patched). Beyond that, the system is as secure as you want it to be. The more secure, the more maintenance and upkeep it needs. There are many things you can do. The easiest is to firewall on your devices. So the reverse proxy will only accept inbound from WAN, cannot establish its own connections to WAN, and whatever connections are required for forwarding to the pi. And the pi would be firewalled to only allow incoming connections from the reverse proxy, cannot establish connections to wan, and whatever else is needed for it to function. Where these rules are established is up to you. They could be on the router/firewall with each device on its own vlan (or pvlan if you are fancy). This is the most secure, but harder to implement. Or they could be on the device itself, as long as the processes that are “doing the thing” cannot change the firewall rules (ie, don’t run them as root or as a privileged user). Correctly configured, this is as secure as doing it on the router/firewall. The idea here is to prevent any hacker moving sideways (ie from the device they own to another device). If they own a device, then they can’t do anything with it - even if they extract all keys, passwords and secrets from it. Another interesting thing is to run an (outbound) proxy on your firewall. Force all outbound 80/443 through the proxy (via dnat rules), and have your servers trust the proxy’s root CA. What this means is that the firewall can then decrypt all outbound http connections, allowing for easy packet inspection. If a server is downloading dodgy scripts, then hopefully your Deep Packet Inspection tool will catch them and shut it down. You can do the same for DNS resolution (dnat redirect to a DNS resolving service), and whitelist only the DNS entries your services require. Most basic attack would be easily caught it completely shut down by these kinds of things. There is also crowdsec. It can do a bunch of things. It can run on things like opnsense, or the servers themselves. It can then detect malicious traffic according to crowd sourced detection/metrics (which, I believe, you contribute to by using it) and block it. But, honestly, might as well just use Cloudflare Tunnels. Security is about layers. What if someone manages to get Remote Code Execution on this service? How do I detect it? How to I prevent it? How do I limit it to that device? And have regular offline backups. So if something gets hacked and bitlocked, you can wipe the server and restore from a backup (and practice this. No point having a backup strategy if it ends up not working when you need it). But honestly? Do you need to expose this to the internet? Would it be easier to run a VPN, so only trusted devices can connect to it in the first place? (Wireguard would be my recommendation here)

Komunitas lemmy.world

Why is admin needed to build? Why so many virus positives?

Basically the two questions, downloaded the prebuilt binary from the official site linked here and Windows Defender freaked out. Uploaded to virustotal and got like 20 positives. Figured I’d build from source but the build process needs Admin rights which is just raising all sorts of flags for me. Since when does a build process need admin? Edit: That’s kinda a tautological answer to why it needs admin privs: because it requests them. I know why GenP itself needs them, but why do the build scripts?

Komunitas kbin.social

Why you might not want to use whatsapp anymore

@cultsuperstar Then you end up like me, using several different apps. That’s not necessarily a bad thing as I like using different apps and seeing how features differ from app to app, like how an app shows link previews, or if it can display a meme by pasting the link in the text box vs having to download the image and attach it in-line. I want to thank you for this comment. You made me think of something that felt like my mind was expanding a bit. You’re mentioning a kind of personal decentralized attitude towards what apps we use. Why stuck to just one? Why put all eggs in one basket? Yeah, I know it’s more comfortable. But being comfortable does not make it safe, failure-proof. With this I’m not trying to point out some faux-pas on your thinking. Rather the reverse. You’re hinting at something that bears a lot of meaning. Instead of me being frustrated because other people won’t change their platforms, I can see that as an opportunity to decentralize my own practices. I can embrace other people’s immobility as both an example of what I should avoid and of being forced to keep a lot of channels open. While they’re stuck into the centralization trap, I’m federating between different instances. Again, thank you for your comment. It was really eye opening.

Komunitas sh.itjust.works

It's OK if you cry

What killed my interest in Linux in highschool. Kept trying to get Ubuntu working but couldn’t get the internet to work for anything. Given that every help guide boiled down to “Go to this website and download x” and I didn’t have internet because… no wifi, I ended up getting frustrated enough to quit the whole thing. Maybe someday.

Komunitas programming.dev

PowerShell Weekly for July 11, 2025

Announcements! Microsoft Graph PowerShell SDK V2.29 Now Available Version 2.29 of the Microsoft Graph PowerShell SDK can now be downloaded from the PowerShell Gallery. Initial tests show that the release is stable. However, it’s recommended that you deploy V2.29 on a few workstations to test essential scripts before proceeding to a full-scale roll-out. V2.29 does not address the issue with PowerShell runtime in Azure Automation, but overall, first indications are that V2.29 is a good release. Microsoft finally bids farewell to PowerShell 2.0 Users still clinging on to PowerShell 2.0 just received notice to quit as the command-line tool is officially leaving Windows. Blogs, Articles, and Posts CleanupMonster v 3.1.5 This module provides an easy way to cleanup Active Directory from dead/old objects based on various criteria. It can also disable, move or delete objects. It can utilize Azure AD, Intune and Jamf to get additional information about objects before deleting them. Free up RAM in Windows with taskkill, PowerShell, and Sysinternals RAMMap Freeing up RAM on Windows can significantly improve system performance, especially when certain applications consume excessive memory. In this guide, you’ll learn how to free up RAM using taskkill on the command prompt, PowerShell, wmic, and the free Sysinternals RAMMap tool, with step-by-step instructions for each method. Send Email Alert for Break Glass Account Activity Break glass accounts in Microsoft 365 are used for emergency access when admin accounts get locked out. But since they hold global admin privileges, they’re a prime target for attackers. Practical Graph: Tracking Critical App Actions Through Audit Events App management audit events are captured when changes are made to Entra registered and enterprise apps. Critical app management audit events should be closely monitored to ensure that permissions are used properly and attackers haven’t attempted to penetrate the tenant to extract data. This article explains how to find and analyze audit data for some critical app management audit events and run the code as an Azure Automation runbook. How to Remove SharePoint Sharing Links using PowerShell In our earlier blog we explored how to export all sharing links to track and audit file sharing across your SharePoint Online environment. The post helped admins identify various link types, spot risky shares, and gain visibility into shared content across sites. PowerCLI Reimagined: Deep Dive into VCF PowerCLI 9.0 Introduction PowerCLI has long established itself as one of the most trusted and widely adopted automation tools across VMware environments. How to Update PowerShell on Windows (All Methods) PowerShell may take time to respond to your commands or return with errors. At times, PowerShell may also fail to open on your Windows PC. So, if you think that PowerShell is outdated on your device, it’s time to update it to the latest version. Projects, Scripts, and Modules dbatools v 2.1.32 The community module that enables SQL Server Pros to automate database development and server administration TerminalBlocks v2.0.0 (pre-release) PowerShell Native Prompt Blocks Books, Media, and Learning Resources PSCONFEU 2025 More videos from PSCONFEU 2025 are being added daily. Optimize Your Microsoft Graph Calls Building a Graph Pre-Processor Module with Christian Ritter Community Building Layers of Protection and Purpose - Miriam Wiesner In this episode of the PowerShell Podcast, we catch up with returning guest and security research program manager at Microsoft, Miriam Wiesner. Recorded live at PowerShell Conference EU in Malmö, Sweden, we dive into her fascinating journey from Premier Field Engineer to her current role in security research. Miriam reflects on her early talks about Just Enough Administration (JEA), shares insights into MFA bypass techniques involving browser cookies (with a fun appearance from Cookie Monster), and emphasizes the importance of defense-in-depth and layered security. Events Teaching AI to Use Your Tools It’s Not Just Devs Using Your Code Anymore Check out psweekly.dowst.dev for all past editions as well as a searchable archive.

Komunitas lemmy.ca

Google CEO Sundar Pichai Warns Android Users Not to Sideload Apps

For F-Droid in specific, you’ll need an F-Droid client. I use Droid-ify (GitHub) (F-Droid) (IzzyOnDroid), but you can use whichever you prefer. F-Droid is a good source for open source apps. If you’re sideloading from different sources, Obtanium (GitHub) (IzzyOnDroid) is useful to download apps, and keep them updated. You can even kinda use it as an F-Droid client. Google is pretty lax on what it allows on Google play, so unless you’re trying to avoid using Google services or you want to install apps that aren’t on the play store, you don’t need to do it. If you want adbocking and extra features in some apps (especially YouTube), check out ReVanced. Google isn’t lying - there are risks to sideloading if you don’t know what you’re doing. Make sure what you’re downloading is coming from legitimate sources you trust. For example, if you look up ReVanced, some unofficial websites show up which may have malware. Triple check everything is coming from an official source.

Komunitas rss.ponder.cat

The Download: cybersecurity’s shaky alert system, and mobile IVF

This is today’s edition of The Download,our weekday newsletter that provides a daily dose of what’s going on in the world of technology. Cybersecurity’s global alarm system is breaking down Every day, billions of people trust digital systems to run everything from communication to commerce to critical infrastructure. But the global early warning system that alerts security teams to dangerous software flaws is showing critical gaps in coverage—and most users have no idea their digital lives are likely becoming more vulnerable. Over the past eighteen months, two pillars of global cybersecurity have been shaken by funding issues: the US-backed National Vulnerability Database (NVD)—relied on globally for its free analysis of security threats—and the Common Vulnerabilities and Exposures (CVE) program, the numbering system for tracking software flaws. Although the situation for both has stabilized, organizations and governments are confronting a critical weakness in our digital infrastructure: Essential global cybersecurity services depend on a complex web of US agency interests and government funding that can be cut or redirected at any time. Read the full story. —Matthew King The first babies have been born following “simplified” IVF in a mobile lab This week I’m sending congratulations to two sets of new parents in South Africa. Babies Milayah and Rossouw arrived a few weeks ago. All babies are special, but these two set a new precedent. They’re the first to be born following “simplified” IVF performed in a mobile lab. This new mobile lab is essentially a trailer crammed with everything an embryologist needs to perform IVF on a shoestring. It was designed to deliver reproductive treatments to people who live in rural parts of low-income countries, where IVF can be prohibitively expensive or even nonexistent. And best of all: it seems to work! Read our story about why it’s such an exciting development. —Jessica Hamzelou This article first appeared in The Checkup, MIT Technology Review’s weekly biotech newsletter. To receive it in your inbox every Thursday, sign up here. The must-reads I’ve combed the internet to find you today’s most fun/important/scary/fascinating stories about technology. 1 Trump is seeking huge cuts to basic scientific researchIf he gets his way, federal science funding will be slashed by a third for the next fiscal year. (NYT $)+The foundations of America’s prosperity are being dismantled. (MIT Technology Review)+ Senators are getting ready to push back against proposed NASA cuts. (Bloomberg $) 2 Conspiracy theorists are starting to turn on TrumpHe whipped them all up over the supposed existence of Epstein’s client list, and now they’re mad nothing’s being released. (The Atlantic $)3 AI actually slows experienced software developers downThey end up wasting lots of time checking and correcting AI models’ output. (Reuters $)4 The Pentagon is becoming the largest shareholder in a rare earth minerals companyIt shows just how much competition is hotting up to secure a steady supply of these materials. (Quartz $)+ The race to produce rare earth elements. (MIT Technology Review) 5 Solar power is starting to truly transform the world’s energy systemGlobally, roughly a third more power was generated from the sun this spring than last. (New Yorker $)6 Cops’ favorite AI tool auto-deletes evidence of AI being usedA pretty breathtaking attempt to avoid any sort of audit, transparency or accountability. (Ars Technica)+ How a new type of AI is helping police skirt facial recognition bans.(MIT Technology Review)7 Why Chinese EV brands are being forced to go globalCompetition at home is becoming so intense that many have no choice but to seek profits elsewhere. (Rest of World)+ China’s EV giants are betting big on humanoid robots. (MIT Technology Review)**8 Which Big Tech execs are closest to the White House?**Check out this scorecard showing how they’re all doing trying to stay in Trump’s good graces. (WSJ $)9 Elon Musk says Grok is coming to Tesla vehiclesYes, that’s the same Grok that keeps being racist. Shareholders must be delighted. (Insider $)+X is basically becoming a strip mine for AI training data. (Axios)10 Trump Mobile is charging people’s credit cards without explanationBut I’m sure it’s all perfectly explicable and above board, right? Right?! (404 Media) Quote of the day “It has been nonstop pandemonium.” —Augustus Doricko, who founded a cloud seeding startup two years ago, tells the Washington Post he’s received a deluge of fury online from conspiracy theorists who blame him for the catastrophic Texas floods. One more thing STEPHANIE ARNETT/MIT TECHNOLOGY REVIEW | LUMMI What’s next for AI in 2025 For the last couple of years we’ve had a go at predicting what’s coming next in AI. A fool’s game given how fast this industry moves. But we gave it a go anyway back in January. As we sail pass this year’s halfway mark, it’s a good time to ask: how well did we do? Check out our predictions, and see for yourself! —James O’Donnell, Will Douglas Heaven & Melissa Heikkilä This piece is part of MIT Technology Review’s What’s Next series, looking across industries, trends, and technologies to give you a first look at the future. You can read the rest of them here. We can still have nice things A place for comfort, fun and distraction to brighten up your day. (Got any ideas? Drop me a line or skeet ’em at me.) Let’s have more pop culture references in journal article titles, please.+ Here’s some inspiration for things to cook this month (or, if it’s hot, just assemble).+ There’s something so relaxing about gazing at these (award-winning!) landscape photos. + If you like birds, you’ll enjoy this artist’s work From MIT Technology Review via this RSS feed

Komunitas rss.ponder.cat

Chop Wood Carry Water 7/10

Download this meme here. Hi, all, and happy Thursday. And we did have a bit of happy news this morning—a federal judge has AGAIN blocked the Trump administration from enforcing his executive order ending birthright citizenship. This isn’t the end of the story—the judge, a Bush appointee, issued a 7-day stay in case the Trump administration wishes to appeal (they will), but it’s a start. My guess is this case will again land in front of SCOTUS; we can only hope that this time they do the right—and obvious—thing. On the subject of hope more generally, I woke up this morning with an idea. Since this is such an unbelievably difficult moment I thought it might be good to do a “hope roundup” with you. So I’m going to suggest that everyone drop in the comments below one thing they saw, read, or experienced this week that gave them hope—or even just provided a momentary lift. I’ll start! On Sunday when I was driving back from dropping Mj in Maine I saw, as I drove South on Route 1, a group of people on an overpass above me with a giant sign reading “NO KINGS!” They were dancing and waving flags and having what looked to be a high old time. I gave a big honk as I sped underneath them, and grinned for about a half hour afterwards. That quick sight of fellow travelers all the way across the country from where I live gave me such hope, strength, and encouragement. If any of you were part of that effort please let me know! That’s my story of hope for the week. What’s yours? I can’t wait to hear. I’ll say it again: this is tough, but we’re tougher. So let’s get to work, remembering that sometimes hope is a feeling, but other times it’s simply an action. That’s what we’re all about, in fact. So let’s take our hopeful actions and see if, at the end of them, we don’t feel a bit more hopeful as a result. Call Your Senators (find yours here) 📲 Hi, I’m a constituent calling from [zip]. My name is ______. I understand that Senators Padilla and Booker have introduced a bill called the The Visible Identification Standards for Immigration-Based Law Enforcement (VISIBLE) Act of 2025 —S. 2212—which would require immigration officers to display clear identification and not wear face coverings. I cannot overstate how upset I am about masked ICE agents with no identification invading our neighborhoods. It’s outrageous and needs to stop. I want the Senator to strongly support this bill. Thanks. Call Your House Rep (find yours here) 📲 Hi, I’m a constituent calling from [zip]. My name is _______. I want the Congressmember to sign on as a cosponsor to a bill that requires ICE agents to show ID and not wear face coverings when doing their job. In the House that bill is the No Anonymity in Immigration Enforcement ACT— H.R. 4004. I cannot overstate how upset I am about masked ICE agents with no identification invading our neighborhoods. It’s outrageous and needs to stop. I want the Congressmember to strongly support this bill. Thanks. Extra Credit ✅ The Trump administration is reshaping FERC. Democrat Commissioner Willie Phillips was pressured to resign with a year to go on his term. Highly-experienced and not-so-rigid Republican FERC chair Mark Christie is being jettisoned. And who have they nominated to replace Christie? Laura Swett.Swett worked as an advisor to FERC Commissioner Bernard McNamee during Trump’s first term. McNamee is the primary author of Project 2025’s section on FERC, which called for downgrading renewables in favor of “coal, nuclear and natural gas to generate power.” For years Swett has represented fossil fuel companies before FERC on a range of issues.Any day now the US Senate Energy and Natural Resources Committee (ENR) will hold a hearing on this nomination. People in the states where there are Democratic ENR members need to call or email that Senator and demand they vote NO on Laura Swett! Here are the states and the ENR Senators to contact:Arizona: Ruben Gallego: 202-224-4521California: Alex Padilla: 202-224-0357Colorado: John Hickenlooper: 202-224-5941Hawaii: Mazie Hirono: 202-224-2126Maine: Angus King: 202-224-5344New Mexico: Martin Heinrich: 202-224-2841Nevada: Catherine Cortez Masto: 202-224-3542Oregon: Ron Wyden: 202-224-5244Washington: Maria Cantwell: 202-224-3441Your message can be very simple: My name is ______ and I’m a constituent from [zip.] I’m calling to ask the Senator to oppose Laura Swett for FERC Commissioner. We need a just and reasonable national grid regulator. Swett will support the Trump Administration efforts to drastically weaken solar, wind and clean energy and strengthen the fossil fuel industry. She should not be confirmed. Thanks. Get Smart! 📚 On Thursday, July 10th at 7:00PM ET, BigTentUSA will host legendary journalist Judy Woodruff and founder/publisher of Courier News, Tara McGowan. The conversation will be moderated by Gen Z journalist Rachel Janfaza. Together, they’ll explore the challenges facing both legacy and emerging outlets, the growing cynicism among audiences, and the urgent need to rebuild trust in journalism as a cornerstone of democracy. This discussion will highlight how data driven Courier is in meeting the moment with social-first, fact-based reporting designed to reach Americans who’ve been left behind by traditional media. The speakers will also examine how legacy voices like Woodruff’s continue to guide the public through complicated, high-stakes times with clarity and integrity. This is more than a conversation about the media—it’s about defending truth and preserving democracy. RSVP here. Messaging! Messaging! Messaging! 📣 I had some slides made to explain when the various provisions in the OBBBA kick in. They are available to download here (I hope I did it right). Please share widely—this information is important. Give 💰! LA Taco has a great list of organizations in LA that need financial support and volunteers right now. Please give to any of them if you can and, if you’re in LA, consider volunteering. We are still completely under attack here and the misery, hardship, and fear are widespread. Please, please help if you can. Get in the Streets! 🪧 Build Power: Start a Democracy Circle On Tuesday, July 15 from 7-8pm ET on Zoom, join the Workers Circle to learn how to build grassroots power to demand the democracy we need. A Democracy Circle is a small group of people you bring together — friends, colleagues, family — to take simple, concrete actions to demand the democracy we need and learn how to counter threats to our democracy today. Learn how people just like you have started circles across the country that are building community and having impact. There will be ample time for questions and discussion. Sign up link is here. Grab Your Wallet! 💳 We are boycotting Home Depot due to their complicity with—and silence about— ICE raids. Please shop elsewhere! They’re terrible anyway, as they’re huge Trump donors. And spread the word! Read more about it here. Win Races! 🗳 Amazing Arizona candidate Deja Foxx’s campaign needs help to knock doors before the 7/15 primary election— join them in AZ! The campaign will provide you with a hotel and a $500 travel stipend to come out for GOTV weekend. You would be asked to stay from Friday to Wednesday, allowing you to attend their GOTV rally and their Election Night Watch Party. They ask that you knock 2 40-door packets per day (in the morning and evening) Saturday through Tuesday. Please fill out this form if you are interested and available to be a part of this program and a team member will be in touch. (Note: there are limited spaces available, priority will be given to volunteers who can provide transportation and come the full 5 days.) Resistbot Letter (new to Resistbot? Go here! And then here.) 💻 [To: all 3 reps] [H/T ] [Text SIGN PLOPUE to 50409, or to @Resistbot on Apple Messages, Messenger, Instagram, or Telegram] (Note that for the most effective RESISTBOT it’s best to personalize this text. More about how to do this here. But if you’re short on time just send it as is using the above code.) The alleged actions of Secretary Kristi Noem in accepting an $80,000 payment from a dark money group to her personal company while serving as governor of South Dakota are highly concerning and deserve thorough investigation. By failing to disclose this income on her federal financial disclosure form, she appears to have violated ethics requirements for federal officials. It is unacceptable for an elected leader to secretly profit from political donations intended to promote their agenda and campaigns. The fact that the source of the $80,000 remains unknown due to the dark money nature of the group raises further issues around transparency and accountability. There are also potential violations of South Dakota law, which mandates that top officials like the governor devote their full time and efforts to their official roles, not maintain undisclosed private businesses. Noem’s creation of an LLC in Delaware to receive funds from this political nonprofit while she was governor warrants scrutiny. This concerning situation, where donors may have had undue influence over an elected official through payments to her personal income, undermines public trust and the integrity of government institutions. I urge you to immediately open an investigation into Secretary Noem’s actions and any ethics violations or corruption that may have occurred. If the allegations are substantiated, she should be immediately removed from her position to preserve the integrity of public service and send a clear message that such self-enrichment at the expense of donors will not be tolerated. The American people deserve full transparency and leaders who are truly serving the public interest, not exploiting their positions for personal financial gain from unknown sources. Thorough oversight is needed to uphold accountability and ethical standards for those in power. OK, you did it again! You’re helping to save democracy! You’re amazing. Talk soon. Jess Chop Wood, Carry Water is a reader-supported publication. To receive new posts and support my work, consider becoming a free or paid subscriber. Share Leave a comment From Chop Wood, Carry Water via this RSS feed