ICYMI: In July I presented at the Circle of HOPE about the amazing things that the Qubes operating system makes possible, like

- opening email attachments in "disposable VMs"
- managing anonymous identities with Whonix
- keeping secrets like password databases, PGP keys, and sensitive documents stored in vaults without Internet access
- anonymously connecting to VPNs over Tor

Hacking Team Hacker Phineas Fisher Has Gotten Away With It

Leaked court documents show that Italian authorities have no idea who hacked the government spyware maker Hacking Team, and a judge ruled the investigation should be shut down.

@lapingvino @micahflee @tuxicoman Signal uses Curve25519, which was developed by Dan Bernstein, who does not work for the US government.

The notion that home-grown crypto is going to be safer than widely analyzed crypto from well-known cryptographers is utter nonsense.

"Thatโ€™s why we atย Twilioย banned not just hate speech, but any organization whose primary purpose is spreading hate. Itโ€™s in our control to decide who uses our product, and from whom we take money. We choose not to profit from this hatred, or those who spread it."

Signal is testing out a new feature that encrypts message metadata. Once it's widely deployed, their server will facilitate delivering messages but without having access to who is sending them

Apple CEO Tim Cook calls for Bloomberg to retract their SuperMicro supply chain attack story.

โ€œWe turned the company upside down,โ€ Cook said. โ€œEmail searches, data center records, financial records, shipment records. We really forensically whipped through the company to dig very deep and each time we came back to the same conclusion: This did not happen. Thereโ€™s no truth to this.โ€

I don't know how many GPG Sync users there are in the wild, much less ones that also use Qubes and Split GPG. But if that sounds like you, I wrote a wiki thing for you

Check it, I just released a new version of passphraseme:

Now you can make diceware passphrases uses wordlists scraped from Game of Thrones, Harry Potter, Star Trek, and Star Wars.

pip3 install passphraseme

Bloomberg now has a follow-up story claiming that an unnamed "major U.S. telecommunications company" discovered a malicious implant in an Ethernet port on a server manufactured by Supermicro

