Oddbean new post about | logout

Notes by Cyph3rp9nk | export

 Bitcoin in October 2024

https://m.primal.net/Lhhx.mp4  
 An example of how intoxicated the security world is and why you have to keep your eyes wide open to avoid being fooled.

This article was passed on to me about the state of disk encryption in Linux:

https://0pointer.net/blog/authenticated-boot-and-disk-encryption-on-linux.html

The article emphasizes the use of TPM since Linux does not use it for encryption. We all know that bitclocker has had security problems due to the use of TPM and vulnerabilities found in it that have broken its encryption. In fact no one in their right mind would trust the encryption offered by Bitclocker through the TPM, and in fact no one does, we all know it is a joke.

When we talk about cryptography there is no trust in a third party, especially if that third party is a black box like the TPM, and this is precisely what the three-letter agencies want.

When someone pursued by a three-letter agency tries to preserve the encryption of his disk, he has to rely on the encryption algorithm (opensource) and on the robustness of his key, he should not add a trusted third party, in this case a TPM.

And now back to the article, who writes this article? Lennart Poettering, who worked for Red Hat leading the development of systemd, and who joined Microsoft in 2022. The same who defends DNS servers encrypted in systemd-solved, a real attack on privacy.

In this article you can see the implications of systemd and why it is bad for Linux, clearly Microsoft and Red Hat are slowly taking over Linux and breaking the UNIX philosophy:

https://unixdigest.com/articles/the-real-motivation-behind-systemd.html

In short and as a conclusion, many researchers and developers are funded by Microsoft and the big guys, the same happens with Bitcoin, keep your eyes open.

They just want you to have no privacy and no freedom of choice.

 
 This comment is very innocent, precisely microsoft tries to control Linux through systemd (Microsoft finances systemd).

Don't expect anything good from Microsoft and Bitcoin.

https://m.primal.net/LhkN.png 

nostr:note1enhkchlk8l2ca4kx7360xpp03y7j678wtdlhldgffcxaegsvqsaq0ng02m  
 The Spanish Cybersecurity Institute spends 167,200 euros on protocol gifts with ham, chorizo and mantecados.

With things like this it is easy to explain why the data of 48 million Spaniards are in the darkweb.


https://www.vozpopuli.com/economia/instituto-ciberseguridad-gasta-167-200-euros-en-regalos-protocolarios-jamon-chorizo-mantecados.html 
 I was thinking about this after testing the new version of macOS and damn the article sucks.

In macOS 15 the firewall is broken and still not fixed, problems and inconsistencies with tccutil, there are still network leaks even if you use a VPN, just like that.

While it is true some of the things he says about Linux, in practice all these security measures that Macos and Windows claim to have are just nice slides.

I forgot to comment that OpenBSD is the most secure operating system that exists (if you need that level of security).

Here you have also a list of all the innovations brought by 
OpenBSD:

https://www.openbsd.org/innovations.html

And here why it is the most secure operating system in the world:

https://www.openbsd.org/security.html

I have been a BSD user for almost 30 years, I have spent times where I liked BSD more and others more Linux, I have used BSD for years in production servers with 0 problems, especially web servers and data servers with ZFS (The best integration of ZFS has FreeBSD) lately I had something abandoned since I have codigo the taste to the immutable distributions of linux, but seeing as the shit of systemd increases and the political nonsense of Linus, BSD again knocks on my door.

Nevertheless a good Linux distro is still better than Macos and Windows.


nostr:note1qm7ssq2k48dk6n5frjlgt9gcg8xljjxxfarvts6jmpg7g2nls2tslce5hy  
 FreeBSD has good driver support, though obviously not Linux. 
 First, Android is not the most secure operating system.

Second, Android can be installed on servers? 😂 
 Android has a lot of vulnerabilities and many others added to the manufacturer's customization layer. 

Only with the pixels you have better security and still not even close to iOS.

Only GrapheneOS offers good security.

I don't think you have much idea what you are talking about. 
 I have given you a lot of examples, even grapheneos itself says so, stop talking nonsense, some of you are capable of selling your mother just for wanting to be right. 
 You're retarded, aren't you?

You can't even read.

OpenBSD (Not freeBSD) is considered the most secure operating system for many reasons, at least as far as servers are concerned.

For other things we have QubesOS.

For mobile devices we have grapheneOS.

But that said, you are an imbecile who can't even read, I don't waste my time with you. 
 Basically there are 4 main branches of BSD.

- FreeBSD: The most popular, and the most optimized in terms of performance.
- NetBSD: The one that supports the most platforms
- OpenBSD: The most secure, so much so that it is the operating system with the least vulnerabilities in the world.
- DragonFlyBSD: The most innovative, it has a file system called hammer, virtualized kernels...

For a normal user I recommend FreeBSD. 
 Alan Jones, Australian Political Commentator, exposes the charlatans of the Climate Scam with a simple question... 

The goal is to invent, tax, oppress, subjugate, and ruin the population. 

https://m.primal.net/LhXy.mp4  
 last week an audit of the samourai wallet whirlpool code revealed that the coordinator could matc... 
 Sparrow does not manage tor identities, neither does the android app, only the desktop client does, and it constantly reuses the input circuit. 
 😂😂😂😂😂 you are giving your opinion if you don't want to know what an lsp is, conversation ended, custodian says 😂😂😂😂😂😂

Monero boys

nostr:note1qsncph4k0n76lqzj8g2kg9pxhrpfpddsyqlj38x8h54cm85cs40qcwsy7k 
 No, the difference is that I study all methods, even Monero, I just dismantle lies.

I know how monero works these people don't know how lightning works.

I have used monero they don't know how to use lightning. 
 Sorry, usually people don't want to learn and I have to deal with trolls, they pay the just for sinners.

The zeus lsp prevents you from having to manage channels, in case you don't have enough incoming liquidity it automatically opens a channel for a fee.

The funds are still guarded by you, it is only a channel for you to have incoming liquidity, it is also 0conf so the opening is immediate, on the other hand it also adds privacy, that when receiving use wrapped invoices that prevent them from knowing which is your node, in this case your wallet. You also have privacy when sending since everything is routed through the LSP.
 
 There are no more steps that you have to do, it is transparent to you.

In monero if you want to receive money and you have 0 balance you simply give your address.

Same with zeus, there is no extra step on your part with their LSP.

On the other hand, zeus makes the copy of the channels in their encrypted lsp server with your seed phrase, you don't have to worry if you are a person who lacks the knowledge as an activist. 
 🎯🎯🎯🎯🎯🎯 
 Qubes OS + anbox 
 You are a troll.

What step is there to send? 

In monero scan an address.

In ligtning scan an invoice, or a bolt11 code, or bolt12, or a lightning address.

Use whatever you want, but accept it, lightning is more private than monero and nowadays as easy to use as monero.

With the introduction of ARK there won't even be any more problems of liquidity and perfect privacy. Monero is not even scalable and has the problem of hidden inflation. Good luck. 
 Your first statement is correct, although you would only have to pay if you have no incoming liquidity.

In the second statement, in the case of wrapped invoices, the LSP does indeed know who you are when you receive payments. This has been a little trick before we had BOLT12 or BOLT11 with Blinded Paths.

And I have stuck to the Zeus defaults so that the user does not have to deal with the configuration.

However all these limitations will be removed by ARK.

I won't deny that monero has less friction than Lightning, but I won't deny that Lightning has even more privacy than monero well used, and as I said with ARK these frictions will be eliminated.

Monero offers good baseline privacy but there is still registration on the blockchain, you still have privacy issues at the network level, you have the problem of hidden inflation, and scalability problem that affects decentralization.
 
 Zeus can see what you receive if you use his LSP with the invoices wrapped.

If you use their LSP with BOLT12 or BOLT11 with blinded path (this is the latest version) the LSP cannot see what you receive.

At the moment neither BOLT12 nor BOLT11 with blinded path are enabled by default. 
 
 The lsp with the blinded path knows the amount that is sent to you, but does not know where it comes from and does not know if it is the last hop, maybe I have expressed myself wrong.

The sender will never know where the money goes with the blinded path, but with the wrapped invoices the sender will know that it goes to the Zeus LSP but not the final node, but the LSP will know that the money is for you.

If you don't use any of this the sender knows which node the payment goes to.
 
 Monero fans are way out of date.

- install Zeus
- scan/paste invoice, lightning address...
- receive/send

nostr:note1sgg35ek9475da6av37kpyl3q6qxgkgqmyxqsq4cg06tvpjfu8xdqkfg43a 
 I see you haven't used Zeus lately either. 
 Monero vs Lightning (with bolt11 blinded path for the receiver)

Monero:
- Sender to know the sending address.
- The receiver knows that the sender is between 1 of the 16 addresses.
- Record is kept in the blockchain
- The amounts are hidden

Lightning:

- Sender does not know where the payment is sent.
- The receiver does not know where the payment comes from
- The amount of the payment and the receiver are encrypted.
- No record is kept in any blockchain

From here on there are many attacks that can be applied to Monero as well as to Lightning, but this is the initial situation.
 
 Listen to the undercover CIA agents who tell you that Lightning is not private and use a blockchain.

AMP + MMP + Blinded Path (BOLT11 or BOLT12) is a big pain in the ass for chainalysis and more things to come.

nostr:note1jazkf6wnxzezudx6dsngahs7xlknpyhr3utgj26kjl35jgu6knlsh5kkea  
 You have not used Zeus. 
 If you use their lsp Olympus does everything automatically and the channels are 0-conf, i.e. it opens immediately, so what you say is false. 
 Denmark’s Tax Council Proposes Bill to Tax Unrealized Gains on Crypto 

The European attack on Bitcoin continues.

https://www.unlock-bc.com/131433/denmarks-tax-council-proposes-bill-to-tax-unrealized-gains-on-crypto/ 
 I think some of you don't understand that Monero still leaves a trace on the blockchain, Lightning transactions leave no trace and are layered encrypted just like Tor routing.

There is a trace of opening and closing channels but in no case do they determine who you paid or who paid you. 

In combination with swaps or coinjoins for opening channels they give a really high privacy, although it is still not perfect. 
 With private channels, amp and mmp you mitigate this type of attack.

Evidently the privacy in Lightning has its shortcomings, the biggest danger is the logs of the big LSPs if you are not routing the payment. 
 It has been implemented in Zeus for a long time. 
 Do NOT follow this guide! It's endangering people.


Instead of Bitcoin or any other transparent ... 
 Linus and the Linux project just shot themselves in the foot, now if you are Russian you cannot participate in the development of the kernel, politics is hateful and should not mix politics and free software projects of vital importance as Linux.

This can be a before and after in Linux.

Long live BSD systems.

https://m.primal.net/LgVf.jpg 

https://www.phoronix.com/news/Russian-Linux-Maintainers-Drop

https://www.phoronix.com/news/Linus-Torvalds-Russian-Devs

 
 🎯 
 If you are an activist, journalist or any person susceptible to be persecuted by a three-letter agency, remember:

- Use public wifis (libraries, coffee shops, etc). 
- Don't pay with credit card to the places you go, use cash.
- Always use Tor or i2p.
- Use a freshly installed operating system so that there is no fingerprint, Qubes OS and Tails help you in this.
- Be careful with cameras, both outdoor and indoor, for example bank ATMs, inspect the area before.
- Never use your personal email accounts, etc, all accounts you create should use pseudonyms and be created under Tor, in case you can not create them in Tor with a reliable vpn, ultimately from a public wifi.
- Do not always go to the same location, change city.
- If you must make payments use Bitcoin, especially Lightning.
- If you must receive payments, use Bitcoin and then coinjoin. 
 Joinmarket and Wasabi with this free coordinator:

https://coinjoin.kruw.io/ 
 There is also joinstr but at the moment it is in the testing phase, so I can't recommend it for production, but it is very promising. 
 Monero is only a privacy use, since the activists will need funding I do not recommend the use of monero.

Read an economics bible.

Lightning for the sender has even more privacy than monero, if you don't understand it is not my problem, and for receiving you can even use blinded path which gives you the same privacy when receiving as when sending.

And coinjoins are also effective, but you stupid monero fans always have to come to bitcoiners comments to put shit, fuck you. 
 In the current state of affairs and with the implementation of blinded path in bolt11, Lightning is better than Monero. 
 You don't understand how Lightning works.

 
 The world has become so stupid that I can hardly discern the real from the unreal 😂. 
 We're releasing #Wasabi v2.3.0 soon. New clients won't join coinjoin rounds created by coordinato... 
 Apart from btcpay server, what other ways are there to run the coordinator?

Is the btcpay server coordinator code updated? 
 I see that the coordinator code for the btcpay server plugin is maintained.

https://github.com/Kukks/BTCPayServerPlugins/tree/master/Plugins/BTCPayServer.Plugins.Wabisabi 
 Thank you very much for your response.

Apart from this question my main concern is to know if the btcpay server plugin regularly updates the coordinator code according to your changes. 
 😂 

I am seeing that you wasabi guys are doing a great job, I appreciate it. 
 Where did he publish this? 
 My Bitcoin price predictions:

2024 = 58k
2025 = 58k
2030 = 58k
2040 = 58k
2050 = 58k
2140 = 58k 
 Totally agree 💪 
 🇷🇺 Putin calls it a ‘great mistake’ to weaponize the $USD.

🌍 Nations were OK relying on $USD—until it exploded like a pager in their pocket.

Now, they face the challenge of creating a system that distributes control without the incentive to weaponize it

Corrupt and thieving imbeciles, they just want to replicate the current dollar system.

No need to create anything new, just adopt Bitcoin, but of course, that cuts into the free funding of the state at the expense of the citizens.

https://m.primal.net/Lffv.mp4 

 
 These days I have just discovered a new animal species related to the Otanists, the Bricsists. 

You will detect them for sucking Russia and China's dick and promulgating the goodness of their new payment system.





 
 Israel has announced that it will begin bombing financial institutions, such as banks, that have any links to Hezbollah such as Al-Qard al-Hasan which gives loans and deposits to 1.8 million Lebanese.

With bitcoin you don't have this problem, no one can bomb the servers or the CEO.

#Bitcoin

https://m.primal.net/LfZX.mp4 

 
 Full Academic Rebuttal to the anti-Bitcoin ECB paper officially published.

https://www.murrayrudd.pro/challenging-bias-in-the-ecbs-bitcoin-analysis/ 
 "Proof of work is not simply an inefficient alternative to existing payment systems, but the only known solution to avoid double spending without relying on a trusted third party."

nostr:note14v9gq7xzmc4tqq7xcd0p2qjvlxhddfvh5lu9ecjz5rh62cev5a3susylvh  
 😂 😂 😂 😂 😂 😂 😂 😂 😂 😂 😂 😂 😂 😂 😂 😂  
 I am sexist, racist, xenophobic and I hate cats, in fact I eat them.

Don't use these insults against me, it's no use, you won't change my mind.

I spit everything I think, even before god (if he exists, because I don't really see him yet).

I am accountable to no one but myself.

The world sucks, it's full of injustices and someone has to tell them, political correctness is not my style and self-censorship is cowardly.

https://m.primal.net/LekB.png  
 😂   
 No because then nothing that happens to me would be my fault, everything would be the fault of others, and I would collect a pension in fiat money, and I would spend the day watching TV, and I would think that Bitcoin is a scam and I would vote, I would vote strongly for a communist party and I would believe in democracy.

No please, don't make me think that.

😂 

https://m.primal.net/Lekx.png  
 The Jewish lobby is not the Jewish people, you should be smart enough to discern this, just as the people who live in America are not the sons of bitches in Congress.
 
 I do not take sugar, I eat like prehistoric men based on meat, fish and nuts, I do strength and endurance sports, and I save in bitcoin.

You seem to have a fixation with mothers, family problems? 
 The Jewish lobby was the architect of the Bolshevik revolution in Russia.

The Jewish lobby was the architect of Mao's communist revolution.

The Jewish lobby controls Hollywood, just ask Mel Gibson.

The Jewish lobby controls the U.S. Senate and Congress, don't you think? Israel has carte blanche and direct financing whoever governs.

The Jewish lobby controls banking.

The Jewish lobby controls the media and promulgates woke propaganda.

I had to say it, you can kick me out of Nostr 😂 .

 
 Anyone who considers themselves Jewish and respects their culture.

There are many Jews who are against what the Israeli government is doing. 
 The Jewish lobby of Israel is in Israel, in the rest of the countries there is the Jewish lobby of the respective country.

Together they all add up to the Jewish lobby, do you want a map? 
 You cannot reason with an irrational being.

He will deny the truth, he will deny the evidence. 
 Several prominent leaders of the Bolshevik Revolution were of Jewish descent. Among them were:

- Leon Trotsky: One of the main leaders of the October Revolution and founder of the Red Army.
- Lev Kamenev: A prominent Bolshevik and member of the Politburo.
- Grigory Zinoviev: Chairman of the Executive Committee of the Communist International.
- Yakov Sverdlov: Chairman of the Central Executive Committee of the Soviets.
- Moisei Uritsky: People's Commissar for Internal Affairs in Petrograd.
- Genrikh Yagoda: Chief of the Soviet secret police (NKVD).
- Maxim Litvinov: People's Commissar for Foreign Affairs. 
 Very interesting article about the state of Linux security.

While I agree with what it says, I don't agree that Windows is going in the right direction, because the mitigations that windows introduces are useless as long as they don't break backward compatibility.

Windows has a basic problem, an architecture problem mainly due to the binary backward compatibility which makes security problems dragging and difficult to fix.

On the other hand, if you need extreme security and privacy, use Qubes OS.

https://madaidans-insecurities.github.io/linux.html 
 I was thinking about this after testing the new version of macOS and damn the article sucks.

In macOS 15 the firewall is broken and still not fixed, problems and inconsistencies with tccutil, there are still network leaks even if you use a VPN, just like that.

While it is true some of the things he says about Linux, in practice all these security measures that Macos and Windows claim to have are just nice slides.

I forgot to comment that OpenBSD is the most secure operating system that exists (if you need that level of security).

Here you have also a list of all the innovations brought by 
OpenBSD:

https://www.openbsd.org/innovations.html

And here why it is the most secure operating system in the world:

https://www.openbsd.org/security.html

I have been a BSD user for almost 30 years, I have spent times where I liked BSD more and others more Linux, I have used BSD for years in production servers with 0 problems, especially web servers and data servers with ZFS (The best integration of ZFS has FreeBSD) lately I had something abandoned since I have codigo the taste to the immutable distributions of linux, but seeing as the shit of systemd increases and the political nonsense of Linus, BSD again knocks on my door.

Nevertheless a good Linux distro is still better than Macos and Windows.


nostr:note1qm7ssq2k48dk6n5frjlgt9gcg8xljjxxfarvts6jmpg7g2nls2tslce5hy  
 The use of TPM is controversial, they have managed to decrypt disks through the vulnerabilities of the same, and the TPM are like the secure element, in the article obviate this, hence many deny using it.

I prefer my encryption to depend on the strength of my password than to rely on a third party, this has been the Linux approach and should continue to be the case, from my point of view. 
 Check out who writes this article, they are Microsoft guys.

Read this article, inside it there is a link to yours.

https://unixdigest.com/articles/the-real-motivation-behind-systemd.html