alcinnz
alcinnz boosted

Why does @flathub not prominently show that a package is severely outdated for an architecture?

Something like "1 month ago" is not helpful if ONLY the ARM64 package has not been updated for four years.

I'll install that on my phone or laptop by accident and immediately have a security risk. Yes, that happened multiple times.

That's why I now read the issue tracker AND build manifest before installing any Flatpak packages.

Also, please cleanup abandonware.

#Flathub#Flatpak #security

🚨 Security Update: Hollo 0.6.5 Released

We've released #Hollo 0.6.5 with a critical #security fix for CVE-2025-53941, addressing an HTML injection vulnerability in federated posts.

Please #update immediately to protect your instance from potential phishing and XSS attacks.

How to update:

  • Railway: Go to deployments → click three dots → Redeploy
  • Docker: docker pull ghcr.io/fedify-dev/hollo:latest and restart
  • Manual: git pull origin stable && pnpm install and restart server

Interesting read…

𝙂𝙤𝙤𝙜𝙡𝙚 𝙞𝙨 𝙩𝙧𝙖𝙘𝙠𝙞𝙣𝙜 𝙮𝙤𝙪 (𝙚𝙫𝙚𝙣 𝙬𝙝𝙚𝙣 𝙮𝙤𝙪 𝙪𝙨𝙚 𝘿𝙪𝙘𝙠𝘿𝙪𝙘𝙠𝙂𝙤)

https://www.simpleanalytics.com/blog/google-is-tracking-you-even-when-you-use-duck-duck-go

#google #tracking#privacy #InfoSec #security#tech #technology#BigTech#BigBrother

New Privacy Guides article mastodon 🔒
by me:

While most social media rely on commercial models harvesting users' data to sell to advertisers,

Mastodon offers a human-centric alternative that doesn't seek profits from your data and attention.

This means better social connections, better controls, and better privacy!

The first part of this article discusses privacy and security on Mastodon.

The second part is a tutorial to guide you in making the most of Mastodon's security and privacy related features.

This tutorial includes how to:

• Enable multifactor authentication 🔑🔑

• Adjust privacy vs discovery 👀

• Select post visibility and access neocat_box

• Verify yourself blobcatverified

• Delete and back up your data nes_fire

• Block users and instances ⛔

• Opt out with hashtags #️⃣

• Move from one instance to another 🚀

I hope this helps you making the most of what Mastodon has to offers! awesome

https://www.privacyguides.org/articles/2025/07/15/mastodon-privacy-and-security/

#PrivacyGuides#Mastodon#Fediverse#Privacy#Security#Tutorial#TheFutureIsFederated#TinyMastodonTip

Oh, my goodness. I boosted @Em0nM4stodon’s post about this earlier. But I need to share it with some intention.

This piece she wrote on Mastodon privacy/security is intense. It’s long. SO much information. Read it anyway. Seriously.

And if y’all don’t follow Em, do yourself a solid and get on that. She’s smart af about InfoSec/privacy/security. And super friendly.

https://www.privacyguides.org/articles/2025/07/15/mastodon-privacy-and-security/

#Fediverse #Mastodon#MastoTips#Privacy#InfoSec#Security#TheFutureIsFederated

GrapheneOS just dropped stable Android 16 support for Pixel devices! 🚀🔒 Despite new hurdles from Google, the team’s update includes the TapTrap vulnerability fix and under-the-hood improvements. No flashy features, all about security! #GrapheneOS#Android16#Pixel #privacy #security

🔗 https://www.heise.de/en/news/GrapheneOS-releases-Android-16-in-the-stable-channel-10484215.html

Shortlink: https://heise.de/-10484215

I'm still on some commercial platforms, but I've given up on X, Facebook, and WhatsApp. Sometimes I wish I could have made different choices when I started my online journey in the 90s, and not have my full name and details out there to some extent. I'm in too deep. There's some safety in knowing certain things - security-wise, to protect myself. But it's horrifying to think about people who don't take those precautions. Many are just prey for the black and gray hats.

I often choose not to post about these things on commercial social media because it's seen as fearmongering and insensitive. I wish I could warn everyone, but most do not care until something bad happens.

#Privacy#Security