Happy New Year everyone! May 2021 be less interesting than its predecessor.

So this is a rather interesting announcement for a crowdfunding campaign:

IcepeakITX ELBRUS-8CB - Security-oriented mini-ITX motherboard with MCST Elbrus8CB VLIW as CPU

„Designed to be backdoor-free for Russian military use, ELBRUS-8CB CPUs are built on a VLIW-like ISA, but can also execute real-time x86-64 instructions.“

Campaign site on CrowdSupply:
crowdsupply.com/sra-centr8/ice

Wikipedia Entry for Elbrus Computers:
en.wikipedia.org/wiki/Elbrus_(

Kensan boosted
Kensan boosted

@efraim @Lofenyy it’s not scifi, just plain old math and computer science quantamagazine.org/computer-se

Gist: They used SAT solver to get an answer with proof (200GB), and then a formal proof checker to check if the argument is sound. As a result we know that a specific tiling exists in 7th dimension (we already knew the situation in all dimensions but 7th).

So this sounds pretty wild:

“security researchers say they have proven that the series of audible, metallic clicks made as a key penetrates a lock can now be deciphered by signal processing software to reveal the precise shape of the sequence of ridges on the key's shaft. Knowing this (the actual cut of your key), a working copy of it can then be three-dimensionally (3D) printed.”

URL:
m-cacm.acm.org/news/246744-pic

So maybe Mastodon is better suited for a discussion like this...
Given the leak of Intel docs, there will be a group of people that reads them and another group that refuses to access files of, let’s say, “unsavory” provenance. Will the folks that have no issue, ethical or otherwise, with using the docs have an advantage as attackers (or defenders)?

Switzerland has committed to a decentralized proximity tracing app based on DP-3T by EPFL and ETHZ and other institutions.

Statement:
news.epfl.ch/news/epfl-and-eth

Source code:
github.com/DP-3T

Kensan boosted

cosign is my new program for cooperatively signing documents with RSA (PKCS#1 v1.5 + SHA256) in a way that requires all the parties to produce partial signatures on the document without any of them having access to the private key. github.com/osresearch/cosign

Kensan boosted

the grass is always greener on the other side.. whenever I get paid for working on a project, it is immediately less interesting and I need to motivate myself much more to work on it... while at the same time, when I work on the same project without any stakeholders, it's so much fun... anyone has an explanation? or similar struggle/problems/observations?

if there'd only be basic income... then I wouldn't worry and could freely write some software ;)

"The design principle that attention is scarce and must be preserved is very different from a principle of 'the more information the better.'" - Herbert Simon

Kensan boosted

Our current foster #cat loves drinking from the faucet but she is not very good at it.

Somebody is creating virtual traffic jams on Google Maps by lugging around Android smartphones in a handcart.

„99 second hand smartphones are transported in a handcart to generate virtual traffic jam in Google Maps.Through this activity, it is possible to turn a green street red which has an impact in the physical world by navigating cars on another route to avoid being stuck in traffic. „

simonweckert.com/googlemapshac

Bracing myself for some serious FOMO over the next couple of days...

So apparently the embargo for the latest round of Intel CPU issues was „forced“ as the microcode patches are not released yet and Intel only discloses vulnerabilities when patches are available... :/

“Intel will release Intel® Processor microcode updates to our customers and partners as part of our regular Intel Platform Update (IPU) process.”

The operative word being “will” not “has released”...

Intel Advisory
intel.com/content/www/us/en/se

Looking at it again today and it’s such a well done device. It instantly creates a certain atmosphere.

Show thread
Show older
Mastodon

Server run by the main developers of the project 🐘 It is not focused on any particular niche interest - everyone is welcome as long as you follow our code of conduct!