lingo.lol is one of the many independent Mastodon servers you can use to participate in the fediverse.
A place for linguists, philologists, and other lovers of languages.

Server stats:

70
active users

#OV

1 post1 participant0 posts today
Open Data Beer<p>Das nächste Open Data Beer findet am Donnerstag, 15. Mai, in Bern statt, organisiert von SKI+ - Systemaufgaben Kundeninformation<br>(SBB Infrastruktur – Fahrplan und Betrieb).<br>Mit Vorträgen von SKI+ (9 Jahre opentransportdata.swiss) und der swissconnect ag.<br>👉Jetzt anmelden unter <a href="http://bit.ly/4clcEmV" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">http://</span><span class="">bit.ly/4clcEmV</span><span class="invisible"></span></a><br><a href="https://swiss.social/tags/opendata" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>opendata</span></a> <a href="https://swiss.social/tags/Networking" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Networking</span></a> <a href="https://swiss.social/tags/%C3%B6V" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>öV</span></a> <a href="https://swiss.social/tags/Mobilit%C3%A4tsdaten" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Mobilitätsdaten</span></a> <a href="https://swiss.social/tags/mobility" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>mobility</span></a></p>
David Zellhöfer<p>Das ich das noch erleben darf ❤️ in einer Verwaltungsbachelorarbeit lese ich, dass z.B. LLMs Fehler machen und man deshalb nicht direkt versprochene Effizienzgewinne durch (angenommene) Zeiteinsparung 1:1 übertragen darf sondern explizit Fehlerkontrollen etc. in die Berechnung von Stellenbedarfen einbeziehen MUSS. Wenn sich das in der Politik rumspricht… <a href="https://openbiblio.social/tags/ai" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ai</span></a> <a href="https://openbiblio.social/tags/ki" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ki</span></a> <a href="https://openbiblio.social/tags/%C3%B6v" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>öv</span></a></p>
Erik van Straten<p>Risico Cloudflare (+Trump)</p><p>🌦️ Achter Cloudflare<br>Steeds meer websites zitten "achter" het Amerikaanse bedrijf Cloudflare. Stel u opent <a href="https://pvv.nl" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">pvv.nl</span><span class="invisible"></span></a> (let op, daar staat https:// vóór, Mastodon verstopt dat) in uw browser:</p><p> browser &lt;-1-&gt; Cloudflare &lt;-2-&gt; <a href="https://pvv.nl" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">pvv.nl</span><span class="invisible"></span></a></p><p>⛓️‍💥 Géén E2EE<br>Bij zeer veel websites (<a href="https://pvv.nl" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">pvv.nl</span><span class="invisible"></span></a> is een voorbeeld) is er sprake van twee *verschillende* verbindingen, dus beslist geen E2EE = End-to-End-Encryption (voor zover dat überhaupt nog wat zegt als de "echte" een cloud-server van Google, Microsoft of Amazon is).</p><p>🕋 CDN's<br>Cloudflare, een CDN (Content Delivery Network), heeft een wereldomspannend netwerk met "tunnel"-servers in computercentra van de meeste internetproviders. Waarschijnlijk ook bij u "om de hoek".</p><p>🔥 DDoS-aanvallen<br>Dat is werkt uitstekend tegen DDoS (Distributed Denial of Service) aanvallen. Ook zorgen CDN's voor veel snellere communicatie (mede doordat plaatjes e.d. op een web van servers "gecached" worden) - ook als de "echte" server aan de andere kant van de wereld staan.</p><p>🚨 Nadelen<br>Maar dit is NIET zonder prijs! Cloudflare kan namelijk *meekijken* in zeer veel "versleuteld" netwerkverkeer (en dat zelfs, desgewenst, wijzigen).</p><p>🚦 Nee, niet *u*<br>Ook kunnen Cloudflare-klanten allerlei regels instellen waar bezoekers aan moeten voldoen, en hen als "ongewenst" bezoek blokkeren (ook *criminele* klanten maken veelvuldig gebruik van deze mogelijkheid, o.a. om te voorkómen dat de makers van virusscanners nepwebsites op kwaadaardige inhoud kunnen checken).<br>Aanvulling 14:39: { zo kan ik, met Firefox Focus onder Android, <a href="https://cidi.nl" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">cidi.nl</span><span class="invisible"></span></a> *niet* openen, ik zie dan een pagina waarin o.a. staat "Even geduld, de website van Centrum Informatie en Documentatie Israël (CIDI) is aan het verifiëren of de verbinding veilig is. Please unblock challenges.cloudflare.com to proceed."<br>}</p><p>😎 Men In Black<br>Omdat Cloudflare een (tevens) in de VS gevestigd bedrijf is, moeten zij voldoen aan de Amerikaanse FISA section 702 wetgeving. Dat betekent dat hen opgedragen kan worden om internetverkeer te monitoren, en zij daar een zwijgplicht over hebben. Terwijl Amerikanen al minder privacy-rechten hebben dan Europeanen, hebben *niet*-Amerikanen *nul* privacyrechten volgens genoemde FISA wet.</p><p>🔓 Knip<br>Dat https-verbindingen via Cloudflare niet E2EE zijn, blijkt uit onderstaand plaatje (dat vast méér mensen wel eens gezien hebben).</p><p>📜 Certificaten en foutmeldingen<br>Dat plaatje kan, zonder certificaatfoutmeldingen, ALLEEN bestaan als Cloudflare een geldig authenticerend website-certificaat (een soort paspoort) heeft voor, in dit geval, <a href="https://bleepingcomputer.com" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">bleepingcomputer.com</span><span class="invisible"></span></a> - en dat hébben ze. Voor MILJOENEN websites.</p><p>🛃 MitM<br>Cloudflare (maar ook anderen, zoals Fastly) zijn een MitM (Man in the Middle).</p><p>🤔 De tweede verbinding?<br>Uw browser heeft, grotendeels transparant, een E2EE-verbinding met een Cloudflare server. U heeft géén idee wat voor soort verbinding Cloudflare met de werkelijke website heeft (is dat überhaupt https, en een veilige variant daarvan? Wat doet Cloudflare als het certificaat van de website verlopen is? Etc).</p><p>👽 AitM<br>En zodra een MitM kwaadaardig wordt, noemen we het een AitM (A van Attacker of Adversary).</p><p>🗽 Trump<br>Als Trump Cloudflare opdraagt om geen diensten meer aan NL of EU te leveren, werkt hier HELEMAAL NIETS MEER en dondert onze economie als een kaartenhuis in elkaar.</p><p>🃏 DV-certs<br>Dat Cloudflare een website-certificaat voor bijvoorbeeld <a href="https://vvd.nl" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">vvd.nl</span><span class="invisible"></span></a> of <a href="https://cidi.nl" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">cidi.nl</span><span class="invisible"></span></a> heeft verkregen, zou vreemd moeten zijn. Dit is echter een peuleschil "dankzij" DV (Domain Validated) certificaten (het lievelingetje van Google) die het internet steeds onveiliger maken en waar ook onze overheid "voor gevallen is" (zie <a href="https://infosec.exchange/@ErikvanStraten/114032329847123742" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">infosec.exchange/@ErikvanStrat</span><span class="invisible">en/114032329847123742</span></a>).</p><p>😱 Nepwebsites<br>Maar dit is nog niet alles: steeds meer criminele nepwebsites *verstoppen* zich achter Cloudflare, waar zijzelf (crimineel) geld aan verdient. Zie bijvoorbeeld <a href="https://security.nl/posting/876655" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">security.nl/posting/876655</span><span class="invisible"></span></a> (of kijk eens in het "RELATIONS" tabblad van <a href="https://www.virustotal.com/gui/ip-address/188.114.96.0/relations" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">virustotal.com/gui/ip-address/</span><span class="invisible">188.114.96.0/relations</span></a> en druk enkele keren op •••).</p><p><a href="https://infosec.exchange/tags/Risico" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Risico</span></a> <a href="https://infosec.exchange/tags/Economie" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Economie</span></a> <a href="https://infosec.exchange/tags/Cloudflare" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Cloudflare</span></a> <a href="https://infosec.exchange/tags/Fastly" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Fastly</span></a> <a href="https://infosec.exchange/tags/CDN" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CDN</span></a> <a href="https://infosec.exchange/tags/AitM" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AitM</span></a> <a href="https://infosec.exchange/tags/MitM" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MitM</span></a> <a href="https://infosec.exchange/tags/FISASection702" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>FISASection702</span></a> <a href="https://infosec.exchange/tags/FISA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>FISA</span></a> <a href="https://infosec.exchange/tags/ThreeLetterAgencies" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ThreeLetterAgencies</span></a> <a href="https://infosec.exchange/tags/Trump" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Trump</span></a> <a href="https://infosec.exchange/tags/Sbowden" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Sbowden</span></a> <a href="https://infosec.exchange/tags/E2EE" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>E2EE</span></a> <a href="https://infosec.exchange/tags/InfoSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>InfoSec</span></a> <a href="https://infosec.exchange/tags/VVD" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>VVD</span></a> <a href="https://infosec.exchange/tags/PVV" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PVV</span></a> <a href="https://infosec.exchange/tags/CIDI" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CIDI</span></a> <a href="https://infosec.exchange/tags/VT" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>VT</span></a> <a href="https://infosec.exchange/tags/VirusTotal" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>VirusTotal</span></a> <a href="https://infosec.exchange/tags/DVCerts" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DVCerts</span></a> <a href="https://infosec.exchange/tags/DV" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DV</span></a> <a href="https://infosec.exchange/tags/OV" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OV</span></a> <a href="https://infosec.exchange/tags/EV" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>EV</span></a> <a href="https://infosec.exchange/tags/QWAC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>QWAC</span></a> <a href="https://infosec.exchange/tags/CyberCrime" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberCrime</span></a> <a href="https://infosec.exchange/tags/NepWebsites" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NepWebsites</span></a> <a href="https://infosec.exchange/tags/FakeWebsites" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>FakeWebsites</span></a></p>
trendless 🇨🇦 :flag_AB:<p>to re-up -- about masking and protection against gaseous chemicals which are deleterious to your airways/lungs, such as might be contained in wildfire smoke 👇 </p><p><a href="https://zeroes.ca/@trendless/113227130709731896" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">zeroes.ca/@trendless/113227130</span><span class="invisible">709731896</span></a></p><p><span class="h-card" translate="no"><a href="https://groups.zeroes.ca/profile/maskup" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>maskup</span></a></span> </p><p><a href="https://zeroes.ca/tags/LAFires" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>LAFires</span></a> <a href="https://zeroes.ca/tags/LAFires2025" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>LAFires2025</span></a> <a href="https://zeroes.ca/tags/California" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>California</span></a> <a href="https://zeroes.ca/tags/Wildfire" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Wildfire</span></a> <a href="https://zeroes.ca/tags/Wildfires" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Wildfires</span></a> <a href="https://zeroes.ca/tags/MaskUp" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MaskUp</span></a> <a href="https://zeroes.ca/tags/N95" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>N95</span></a> <a href="https://zeroes.ca/tags/P100" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>P100</span></a> <a href="https://zeroes.ca/tags/OV" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OV</span></a></p>
VCÖ - Mobilität mit Zukunft<p>Die <a href="https://wien.rocks/tags/Strassenbahn" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Strassenbahn</span></a> Linie 1 in <a href="https://wien.rocks/tags/Linz" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Linz</span></a> transportiert im Frühverkehr 11.900 Menschen. Beim aktuellen Besetzungsgrad bräuchte es für 11.900 Personen 10.300 Pkw, die aneinandergereiht auf 3-Spuren eine 15 Kilometer lange Kolonne ergeben würden. Mehr <a href="https://wien.rocks/tags/%C3%96V" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ÖV</span></a>, weniger Stau!</p>
Sérac<p>Happy new year to those who celebrate today!<br>Schiers, <a href="https://troet.cafe/tags/Graub%C3%BCnden" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Graubünden</span></a> <a href="https://troet.cafe/tags/Schweiz" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Schweiz</span></a> <br><a href="https://troet.cafe/tags/RhB" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>RhB</span></a> <a href="https://troet.cafe/tags/%C3%96V" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ÖV</span></a> <a href="https://troet.cafe/tags/Fahrplanwechsel" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Fahrplanwechsel</span></a></p>
Paul Schoonhoven 🍉 🍋<p>Duitse RMV stapt tijdelijk over op dieseltractie vanwege onbetrouwbaarheid van iLint treinen - <span class="h-card" translate="no"><a href="https://mastodon.nl/@treinenweb" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>treinenweb</span></a></span><br><a href="https://www.treinenweb.nl/nieuws/10882/duitse-rmv-stapt-tijdelijk-over-op-dieseltractie-vanwege-onbetrouwbaarheid-van-ilint-treinen.html" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">treinenweb.nl/nieuws/10882/dui</span><span class="invisible">tse-rmv-stapt-tijdelijk-over-op-dieseltractie-vanwege-onbetrouwbaarheid-van-ilint-treinen.html</span></a></p><p>Tegenvaller voor de waterstof industrie.</p><p>'Alstom is begonnen met een terugroepactie van zijn iLint-waterstofunits na twee jaar van onbetrouwbare operaties. '</p><p><a href="https://mastodon.nl/tags/Energietransitie" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Energietransitie</span></a> <a href="https://mastodon.nl/tags/Waterstof" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Waterstof</span></a> <a href="https://mastodon.nl/tags/iLint" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>iLint</span></a> <a href="https://mastodon.nl/tags/OV" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OV</span></a></p>
Sebastian Müller<p>Mein Vorschlag für die 5 Mrd. die aus der <a href="https://freiburg.social/tags/Autobahnvorlage" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Autobahnvorlage</span></a> übrig sind: Wir verbinden die Schweizer Meterspurnetze zu einem zusammenhängden 1000 mm Imperium!</p><p>Verbindung Basel - Bern:<br>In Solothurn werden die vor und hinter dem Hauptbahnhof liegenden Bahnstrecken zusammengefasst. <br>Die Tram Prattlen wird bis Liestal verlängert. <br>Von Waldburg über Langebruch, Balsthal nach Gensingen.</p><p>Bern wird nördlich des Thurnersees mit Interlaken verbunden. </p><p>Von Innertkirchen an die Furka Bergstrecke nach Geltsch.</p><p>Somit wären direkte Tram-Train-Verbindungen Zermatt-Basel oder Zürich - St. Moritz denkbar.</p><p>Auf eine Verbesserung der Verbindung Basel-Zürich wird aus Rücksichtnahme auf die Befindlichkeiten beider Städte verzichtet!</p><p><a href="https://freiburg.social/tags/meterspur" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>meterspur</span></a> <a href="https://freiburg.social/tags/st%C3%A4ndemeer" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ständemeer</span></a> <a href="https://freiburg.social/tags/volksabstimmung" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>volksabstimmung</span></a> <a href="https://freiburg.social/tags/schweiz" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>schweiz</span></a> <a href="https://freiburg.social/tags/%C3%B6v" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>öv</span></a></p>
Sérac<p>Schwyz has a train station, but it's actually in a suburb called Seewen. So here is a bus terminal at least.<br><a href="https://troet.cafe/tags/Schwyz" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Schwyz</span></a> <a href="https://troet.cafe/tags/Schweiz" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Schweiz</span></a> <br><a href="https://troet.cafe/tags/Bus" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Bus</span></a> <a href="https://troet.cafe/tags/%C3%96V" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ÖV</span></a></p>
Adrian<p><span class="h-card" translate="no"><a href="https://mastodon.social/@sixtus" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>sixtus</span></a></span> </p><p>Die meisten Befürworter*innen einer <a href="https://digitalcourage.social/tags/Verkehrswende" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Verkehrswende</span></a> fordern zurecht besseren ÖPNV. Was leider kaum einer auf dem Schirm hat sind die Vorlaufszeiten welche <a href="https://digitalcourage.social/tags/Bahn" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Bahn</span></a> und <a href="https://digitalcourage.social/tags/%C3%96PNV" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ÖPNV</span></a> so haben und wie frühzeitig man dementsprechend auf eine steigenende Nachfrage reagieren muss. </p><p>Wenn - wie gewünscht - 100000 von Auto# fahrenden auf den <a href="https://digitalcourage.social/tags/%C3%96V" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ÖV</span></a> umsteigen, dann muss dieser auch dazu in der Lage sein, diese Nachfrage angemessen zu bedienen. Also müsste alleine meine verhältnismäßig kleine Großstadt eigentlich </p><p>heute</p><p>ca. 100 Busse und 30 Straßenbahnen bestellen, natürlich auch gleich verbunden mit der Einstellung des dementsprechenden Personals. </p><p>Bei der Gelegenheit verschrotten wir bis spätestens 2030 auch alle unzeitgemäßen nicht klimatisierten Bahnen und Busse. </p><p>Derweil in der Realität: Trotz langer grüner Regierungsbeteiligung wird der ÖV hier immer schlechter, der Takt ausgedünnt (Personalmangel) und trotz der damit verbunden Zeitkosten bleibt auch die Zuverlässigkeit inakzeptabel. </p><p>Ich freue michs auf 🚗 .</p>
Sérac<p>Headstart.<br>Seewis Dorf, <a href="https://troet.cafe/tags/Graub%C3%BCnden" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Graubünden</span></a> <a href="https://troet.cafe/tags/Switzerland" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Switzerland</span></a> <br><a href="https://troet.cafe/tags/PostAuto" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PostAuto</span></a> <a href="https://troet.cafe/tags/%C3%B6v" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>öv</span></a></p>
Piratenpartij Nederland<p>Reizen met het openbaar vervoer of de auto is nu al onbetaalbaar voor gezinnen tot één modaal inkomen en dit kabinet maakt het alleen maar duurder: <br><a href="https://nos.nl/artikel/2539188-reizen-met-ov-of-auto-te-duur-voor-veel-huishoudens" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">nos.nl/artikel/2539188-reizen-</span><span class="invisible">met-ov-of-auto-te-duur-voor-veel-huishoudens</span></a><br>De <a href="https://social.globalpirates.net/tags/Piratenpartij" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Piratenpartij</span></a> is voor gratis OV; voor nu, teken deze petitie:<br><a href="https://petities.nl/petitions/voorkom-de-bezuinigingen-op-het-ov?locale=nl" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">petities.nl/petitions/voorkom-</span><span class="invisible">de-bezuinigingen-op-het-ov?locale=nl</span></a></p><p><a href="https://social.globalpirates.net/tags/openbaarvervoer" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>openbaarvervoer</span></a> <a href="https://social.globalpirates.net/tags/OV" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OV</span></a> <a href="https://social.globalpirates.net/tags/PVV" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PVV</span></a> <a href="https://social.globalpirates.net/tags/VVD" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>VVD</span></a> <a href="https://social.globalpirates.net/tags/NSC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NSC</span></a> <a href="https://social.globalpirates.net/tags/BBB" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BBB</span></a></p>
Helma<p>Het @nibud waagt zich aan een oplossing en komt dan met dit: <br>"Daarnaast zou de overheid ervoor moeten zorgen dat Nederlanders dichter bij hun werk wonen. Dan ben je minder lang onderweg en zijn de kosten dus lager."</p><p>Allemaal naar de stad en de onbetaalbare randstad, is dat het plan? Ook iets met woningtekort?<br>Het gaat niet om afstand naar het werk, maar om betere bereikbaarheid en snel vervoer. Treinen ieder kwartier, Lelylijn, veel meer investeren in dat <a href="https://mastodon.social/tags/ov" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ov</span></a>. <br> <a href="https://www.rtl.nl/nieuws/economie/artikel/5473309/reizen-met-bus-trein-eigen-auto-voor-modale-inkomens-te-duur-nibud" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">rtl.nl/nieuws/economie/artikel</span><span class="invisible">/5473309/reizen-met-bus-trein-eigen-auto-voor-modale-inkomens-te-duur-nibud</span></a></p>
Stella Quasten<p><a href="https://mastodon.nl/tags/onbetaalbaar" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>onbetaalbaar</span></a> <a href="https://mastodon.nl/tags/OV" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OV</span></a> <a href="https://mastodon.nl/tags/auto" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>auto</span></a>' Daarnaast vindt de Mobiliteitsalliantie dat de overheid meer moet doen om wonen, werken en voorzieningen dichter bij elkaar te brengen, omdat deze behoeften het reisgedrag van mensen bepalen.'<br>Wat dachten we ervan om de kosten fors omlaag te brengen, want bovenstaande suggestie duurt veel langer, gaat niet lukken, zeker niet mbt de buitengebieden en is onder de streep duurder.</p>
Paul Schoonhoven 🍉 🍋<p>Qbuzz gaat in Groningen zelfrijdende bus testen | <span class="h-card" translate="no"><a href="https://mastodon.nl/@TransportOnline" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>TransportOnline</span></a></span> <br><a href="https://www.transport-online.nl/59930/qbuzz-gaat-in-groningen-zelfrijdende-bus-testen/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">transport-online.nl/59930/qbuz</span><span class="invisible">z-gaat-in-groningen-zelfrijdende-bus-testen/</span></a></p><p>Nog niet helemaal op de openbare weg, maar een eerste begin is er: een rondje 'busdepot van Qbuzz' in Groningen.</p><p><a href="https://mastodon.nl/tags/Automotive" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Automotive</span></a> <a href="https://mastodon.nl/tags/OV" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OV</span></a> <a href="https://mastodon.nl/tags/ZelfrijdendeBus" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ZelfrijdendeBus</span></a></p>
Erik van Straten<p><span class="h-card" translate="no"><a href="https://retro.pizza/@textualdeviance" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>textualdeviance</span></a></span> wrote, among other things:</p><p>« Sudden revolutions come with obscenely high body counts of innocent civilians. »</p><p>That is not necessarily true, in for example the following cases:</p><p>🔸 <a href="https://en.wikipedia.org/wiki/Velvet_Revolution" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">en.wikipedia.org/wiki/Velvet_R</span><span class="invisible">evolution</span></a></p><p>🔸 A revolution that STOPS killing must take place <a href="https://infosec.exchange/tags/NOW" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NOW</span></a>. The anihilation of Palestinians is simply unacceptable, in particular because western countries condone, support or even encourage it. At some point the governments of the USA, NL and others must stop following orders from their Zionist sponsors, in order to not make them EVEN MORE complicit to genocide.</p><p>🔸 Personally I'm "fighting" for a safer internet; fixing tech does not have to involve bloodshed at all (although big tech and leeches like <a href="https://safer.io/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">safer.io/</span><span class="invisible"></span></a> will lose income). Such as:</p><p>• By insisting on a system where internet users can distinguish betwee fake and authentic websites (see <a href="https://infosec.exchange/@ErikvanStraten/113079966331873386" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">infosec.exchange/@ErikvanStrat</span><span class="invisible">en/113079966331873386</span></a>);</p><p>• By providing strong arguments why "Chatcontrol" (governments scanning every smartphone looking for Child Sexual Abuse Material - and what not) will not protect a single child - on the contrary (<a href="https://infosec.exchange/@ErikvanStraten/113075518670257012" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">infosec.exchange/@ErikvanStrat</span><span class="invisible">en/113075518670257012</span></a>; chatcontrol is *not* just a privacy risk);</p><p>• By warning for passkeys (<a href="https://infosec.exchange/@ErikvanStraten/113058944497262936" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">infosec.exchange/@ErikvanStrat</span><span class="invisible">en/113058944497262936</span></a>) and suggesting better alternatives;</p><p>• By warning for risks such as when unlocking the screen of an iPhone/iPad with a PIN (<a href="https://infosec.exchange/@ErikvanStraten/113053761440539290" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">infosec.exchange/@ErikvanStrat</span><span class="invisible">en/113053761440539290</span></a>);</p><p>• By warning for security measures that are easily bypassed, such as 2FA/MFA (using SMS, voice, or TOTP "Authenticator" apps including Microsoft's using "number matching");</p><p>• Et cetera.</p><p><span class="h-card" translate="no"><a href="https://infosec.exchange/@0xabad1dea" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>0xabad1dea</span></a></span> </p><p><a href="https://infosec.exchange/tags/AIPAC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>AIPAC</span></a> <a href="https://infosec.exchange/tags/CIDI" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CIDI</span></a> <a href="https://infosec.exchange/tags/Gaza" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Gaza</span></a> <a href="https://infosec.exchange/tags/Westbank" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Westbank</span></a> <a href="https://infosec.exchange/tags/EthnicCleansing" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>EthnicCleansing</span></a> <a href="https://infosec.exchange/tags/Genocide" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Genocide</span></a> <a href="https://infosec.exchange/tags/Palestinians" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Palestinians</span></a> <a href="https://infosec.exchange/tags/BigTech" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BigTech</span></a> <a href="https://infosec.exchange/tags/DV" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DV</span></a> <a href="https://infosec.exchange/tags/Fake" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Fake</span></a> <a href="https://infosec.exchange/tags/Real" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Real</span></a> <a href="https://infosec.exchange/tags/Authentic" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Authentic</span></a> <a href="https://infosec.exchange/tags/Impostors" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Impostors</span></a> <a href="https://infosec.exchange/tags/Authentication" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Authentication</span></a> <a href="https://infosec.exchange/tags/CyberCrime" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberCrime</span></a> <a href="https://infosec.exchange/tags/eID" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>eID</span></a> <a href="https://infosec.exchange/tags/EDIW" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>EDIW</span></a> <a href="https://infosec.exchange/tags/EUDIW" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>EUDIW</span></a> <a href="https://infosec.exchange/tags/ChatControl" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ChatControl</span></a> <a href="https://infosec.exchange/tags/CSS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CSS</span></a> <a href="https://infosec.exchange/tags/CSAM" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CSAM</span></a> <a href="https://infosec.exchange/tags/2FA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>2FA</span></a> <a href="https://infosec.exchange/tags/MFA" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MFA</span></a> <a href="https://infosec.exchange/tags/NumberMatching" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NumberMatching</span></a> <a href="https://infosec.exchange/tags/PhaaS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PhaaS</span></a> <a href="https://infosec.exchange/tags/Evilginx2" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Evilginx2</span></a> <a href="https://infosec.exchange/tags/HSTS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>HSTS</span></a> <a href="https://infosec.exchange/tags/httpvshttps" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>httpvshttps</span></a> <a href="https://infosec.exchange/tags/Certificates" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Certificates</span></a> <a href="https://infosec.exchange/tags/DV" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DV</span></a> <a href="https://infosec.exchange/tags/OV" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OV</span></a> <a href="https://infosec.exchange/tags/EV" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>EV</span></a> <a href="https://infosec.exchange/tags/QWAC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>QWAC</span></a> <a href="https://infosec.exchange/tags/passcode" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>passcode</span></a> <a href="https://infosec.exchange/tags/iPhone" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>iPhone</span></a> <a href="https://infosec.exchange/tags/iPad" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>iPad</span></a> <a href="https://infosec.exchange/tags/Android" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Android</span></a> <a href="https://infosec.exchange/tags/iOS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>iOS</span></a> <a href="https://infosec.exchange/tags/iPadOS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>iPadOS</span></a></p>
Erik van Straten<p>🟡 INTRODUCTION/BACKGROUND<br>It has become *way too easy* and cheap, to anonymously (or lying about identity) register a domain name, hire or hack a server and obtain a valid DV (Domain Validated) server certificate.</p><p>Furthermore, possibly *stimulated* by the fact that most servers now use DV-certificates, (web) browsers have made it increasingly hard for internet users to view certificate details, without providing any alternatives for those users to distinguish between misleading fake and real (authentic) setvers.</p><p>A steadily increasing number of internet servers is now *anonymous* (it has been *deliberately* made impossible to reliably find out who is responsible), which has lead, and still leads, to huge amounts of unneccesary victims of phishing.</p><p>This causes enormous financial losses to individuals, companies, governmental and healthcare organizations - while most of that money flows into the pockets of criminals who often operate from regimes that are our enemies. Thereby, indirectly or directly, enriching those regimes (the rest of the stolen money flows into the pockets of hosting-, cloud- and CDN providers, as well as DNS registrars and domain name parking services).</p><p>Note: a server certificate never directly warants reliability of the owner of a domain name. However, in order to distinguish between fake and real servers or websites, it is essential that users know who is *responsible* and in which country they are established or live. Eventually, if neccessary, to be able to sue them.</p><p>🟡 From <a href="https://www.theregister.com/2024/09/03/white_house_bgp_security/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">theregister.com/2024/09/03/whi</span><span class="invisible">te_house_bgp_security/</span></a>:<br>«<br>White House thinks it's time to fix the insecure glue of the internet: Yup, BGP<br>3 Sep 2024, 22:34 utc - Thomas Claburn<br>[...]<br>"As initially designed and commonly operating today, BGP does not provide adequate security and resilience features for the risks we currently face," the report (<a href="https://whitehouse.gov/wp-content/uploads/2024/09/Roadmap-to-Enhancing-Internet-Routing-Security.pdf" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">whitehouse.gov/wp-content/uplo</span><span class="invisible">ads/2024/09/Roadmap-to-Enhancing-Internet-Routing-Security.pdf</span></a>) [PDF] says. "Concerns about fundamental vulnerabilities have been expressed for more than 25 years."<br>»</p><p>🟡 IMO, to not *first* fix WebPKI is plain *stupid* because:</p><p>➡️ If the *combination* of:<br>🔸 A *decent* WebPKI {1}, *and*<br>🔸 Improved browsers {2}, *and*<br>🔸 User education {3},<br>*enables* internet users to reliably distinguish between fake and real (authentic) servers, then the necessity for RPKI decreases enormously {4};</p><p>➡️ Apart from the fact that RPKI is fully hidden for internet users (they *neither* know whether it's used for their current IP-connections, and if that happens to be the case, *nor* how reliable the authentication of the parties involved took place), RPKI does *not* solve a much bigger problem: DNS-hijacks.</p><p>➡️ A decent WebPKI effectively mitigates the following vulnerabilities (in the order of most to least occuring):<br>🔸 People not knowing who is responsible for a given (often misleading) domain name;<br>🔸 DNS hijacks/attacks;<br>🔸 BGP hijacks;<br>🔸 AitM's {5} "near" the real server who unrightfully obtain DV-certificates.</p><p>Edited to add 2024-09-05 21:59 {<br>WebAuthn (as used by FIDO2 hardware keys and by passkeys) *ONLY* protects against the first vulnerability (in people who don't know that a given domain name does not belong to the apparent owner, but instead to an impostor). WebAuthn's phishing-resistance ceases to exist if a fake website obtains any type of certificate. However, while it's extermely easy for an attacker to obtain a DV-certificate, more trustworthy certificates should make that *a lot* harder.<br>}</p><p>🟡 {1} WHAT IS A DECENT WEBPKI<br>A *decent* WebPKI means that:</p><p>1️⃣ We must get rid of the current (effectively Google owned) CA/B forum, simply because server certificates exist primarily in the interest of *internet users* (not even represented in the CA/B forum) instead of it's current members: *commercial* cloud providers, browser makers, CA's (Certificate Authorities) and/or CSP's (Certificate Service Providers).</p><p>2️⃣ The world needs a new, independent, organization that supervises requirements of certificates, CA's and CSP's, as well as all requirements for (web) browsers related to certificates. For easy referencing I'll call it the WPKIF (Web Public Key Infrastructure Forum) in this toot. It is essential that internet users are strongly represented in the WPKIF. The WPKIF must be repeatedly audited by independent auditors (based on clear predefined requirements and/or controls).</p><p>3️⃣ Each *critical* server {6} *must* use a server certificate that, more or less reliably, uniquely defines the person, people or organization responsible for the server(s) (and content, security etc.) referenced by the server's domain name(s) included in the certificate.</p><p>4️⃣ The layout of server certificates needs an update to better serve internet users. Most of those users are *not* interested in technical details such as long serial numbers or hexadecimal public key values (such data must remain accessible for experienced users). So some sort of split between technical and *human readable" (not "CN=") information must be made.</p><p>5️⃣ Each server certificate must also contain a standardized indicator that reveals the *minimum* reliability of the authentication of the person, people or organization responsible for all domain names, and all servers referenced by all domain names (included in the certificate). In short: how certain is it that the owner of a website is who they claim to be.</p><p>6️⃣ Each server certificate must also contain a reference to a WPKIF website with a standardized indicator that reveals the *reliability* of the least reliable link in the chain starting at the applicable CA and ending with the CSP (including both ends plus intermediate certificates and their owners). In short: how reliable is the information in the certificate, as determined by the WPKIF.</p><p>7️⃣ The WPKIF must immediately and objectively take action against any CA, intermediate or CSP that violates the rules and requirements as defined by the WPKIF. Such by decreasing their reliability rating upto canceling their right to issue certificates.</p><p>🟡 {2} Web browsers (and perhaps other clients) must make it a lot easier for users to determine who is responsible for a server or website. IMO, at the very least when an internet user visits a website with a specific domain name *for the first time* (using that browser), *OR* when the server sends a new certificate, the browser should first show full details of the owner of the domain name *before* fetching any content - and let the user decide whether they want to continue and open the website. (Note: I've not given it enough thought how to handle third party websites - where CSS, JavaScript, images and/or analytics stuff is downloaded from).</p><p>🟡 {3} Internet users need to be educated about the importance of knowing who owns a domain name (and thus server and/or website). Browsers must play a role by offering tutorials. Current "awareness trainings" are simply insufficient (as notably Google found out, see <a href="https://security.googleblog.com/2024/05/on-fire-drills-and-phishing-tests.html" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">security.googleblog.com/2024/0</span><span class="invisible">5/on-fire-drills-and-phishing-tests.html</span></a> - more info, in Dutch: <a href="https://infosec.exchange/@ErikvanStraten/113045136092456532" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">infosec.exchange/@ErikvanStrat</span><span class="invisible">en/113045136092456532</span></a>).</p><p>🟡 {4} RPKI vs WebPKI<br>Increasingly cybercriminals succeed into hijacking cryptocurrency websites, and they may do so by hijacking BGP and subsequently acquiring a DV certificate for their fake server (examples can be found here: <a href="https://infosec.exchange/@ErikvanStraten/112914050216821746" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">infosec.exchange/@ErikvanStrat</span><span class="invisible">en/112914050216821746</span></a>). However, BGP hijack attacks are not easy to accomplish and often detected soon. In particular it will be hard for the attackers to obtain *trustworthy* server certificates. </p><p>🟡 {5} AitM = Attacker in the Middle. A server in a hosting center may be AitM'ed in the same center without touching the actual server itself and without requiring DNS- or BGP hijacks (because the AitM and the real server are both comnected to an internal network), as for example happened to "jabber.ru" in a German hosting center (see <a href="https://therecord.media/jabber-ru-alleged-government-wiretap-expired-tls-certificate" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">therecord.media/jabber-ru-alle</span><span class="invisible">ged-government-wiretap-expired-tls-certificate</span></a>, full details in <a href="https://notes.valdikss.org.ru/jabber.ru-mitm/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">notes.valdikss.org.ru/jabber.r</span><span class="invisible">u-mitm/</span></a>).</p><p>🟡 {6} A critical server is one whose *authenticity* and/or *indistinguishability from fake sites* are important upto (thtough) essential for internet users. I don't care if a home NAS uses a DV-cert, but banks, goverments (in particular those that do *not* use a specific domain name ending, such as .gov), insurances, websites showing and/or receiving medical/patient data etc. - any server related to PII or needs to otherwise prove their identity.</p><p>🟡 MORE INFORMATION<br>🔸 Let's Encrypt certificates mis-issuances &amp; ocsp ending: <a href="https://infosec.exchange/@ErikvanStraten/112914047006977222" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">infosec.exchange/@ErikvanStrat</span><span class="invisible">en/112914047006977222</span></a></p><p>🔸 Untrustworthy HSTS and lack of "https only" in many browsers: <a href="https://infosec.exchange/@ErikvanStraten/113045241408077702" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">infosec.exchange/@ErikvanStrat</span><span class="invisible">en/113045241408077702</span></a></p><p>🔸 Why awareness trainings fail (in Dutch): <a href="https://infosec.exchange/@ErikvanStraten/113045136092456532" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">infosec.exchange/@ErikvanStrat</span><span class="invisible">en/113045136092456532</span></a></p><p>🔸 Why the physical location of an offline service provider (like a bank office or a town hall) is a hugely underestimated authentication factor (in Dutch): <a href="https://security.nl/posting/855557" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">security.nl/posting/855557</span><span class="invisible"></span></a></p><p>🔸 Why Google lied when they killed EV certs, and why it's insane to introduce digital identity wallets (eID's) for strong online authentication of people on the current, highly crminalized, internet, with more anonymous servers every day (in Dutch): <a href="https://infosec.exchange/@ErikvanStraten/113031344934186250" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">infosec.exchange/@ErikvanStrat</span><span class="invisible">en/113031344934186250</span></a></p><p>🔸 How Google became evil by facilitating cybercrime, renting them hosting services for domain names such as NNoutlook.com, NNNNoutlook.com and ecbeuropa[.]eu, even providing them with server certificates for free: <a href="https://www.virustotal.com/gui/ip-address/35.241.18.84/relations" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">virustotal.com/gui/ip-address/</span><span class="invisible">35.241.18.84/relations</span></a></p><p>Internet reliability needs to be restored, and further improved upon, ASAP.</p><p><a href="https://infosec.exchange/tags/RPKI" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>RPKI</span></a> <a href="https://infosec.exchange/tags/PKI" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>PKI</span></a> <a href="https://infosec.exchange/tags/WebPKI" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>WebPKI</span></a> <a href="https://infosec.exchange/tags/InfoSec" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>InfoSec</span></a> <a href="https://infosec.exchange/tags/BGP" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BGP</span></a> <a href="https://infosec.exchange/tags/BGPHijack" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BGPHijack</span></a> <a href="https://infosec.exchange/tags/DNS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DNS</span></a> <a href="https://infosec.exchange/tags/DNSHijack" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DNSHijack</span></a> <a href="https://infosec.exchange/tags/Websites" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Websites</span></a> <a href="https://infosec.exchange/tags/Real" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Real</span></a> <a href="https://infosec.exchange/tags/Fake" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Fake</span></a> <a href="https://infosec.exchange/tags/Authentic" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Authentic</span></a> <a href="https://infosec.exchange/tags/Authenticity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Authenticity</span></a> <a href="https://infosec.exchange/tags/Impostors" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Impostors</span></a> <a href="https://infosec.exchange/tags/CABForum" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CABForum</span></a> <a href="https://infosec.exchange/tags/Commercialization" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Commercialization</span></a> <a href="https://infosec.exchange/tags/Independant" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Independant</span></a> <a href="https://infosec.exchange/tags/UserRepresentatives" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>UserRepresentatives</span></a> <a href="https://infosec.exchange/tags/Certificates" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Certificates</span></a> <a href="https://infosec.exchange/tags/DV" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DV</span></a> <a href="https://infosec.exchange/tags/OV" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OV</span></a> <a href="https://infosec.exchange/tags/EV" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>EV</span></a> <a href="https://infosec.exchange/tags/QWAC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>QWAC</span></a> <a href="https://infosec.exchange/tags/EDIW" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>EDIW</span></a> <a href="https://infosec.exchange/tags/EUDIW" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>EUDIW</span></a> <a href="https://infosec.exchange/tags/eID" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>eID</span></a> <a href="https://infosec.exchange/tags/eIDAS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>eIDAS</span></a> <a href="https://infosec.exchange/tags/WebAuthn" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>WebAuthn</span></a> <a href="https://infosec.exchange/tags/FIDO2" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>FIDO2</span></a> <a href="https://infosec.exchange/tags/Yubikey" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Yubikey</span></a> <a href="https://infosec.exchange/tags/Yubico" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Yubico</span></a> <a href="https://infosec.exchange/tags/Titan" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Titan</span></a> <a href="https://infosec.exchange/tags/GoogleTitan" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>GoogleTitan</span></a> <a href="https://infosec.exchange/tags/Feitian" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Feitian</span></a></p>
Erik Jonker<p>Heel herkenbaar, ook als je een goed inkomen hebt valt op hoe ontzettend duur het openbaar vervoer is geworden.Dat kan echt anders als je naar andere landen kijkt.<br><a href="https://www.nu.nl/economie/6326040/een-op-de-tien-nederlanders-kan-bus-of-autorit-moeilijk-betalen.html" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">nu.nl/economie/6326040/een-op-</span><span class="invisible">de-tien-nederlanders-kan-bus-of-autorit-moeilijk-betalen.html</span></a><br><a href="https://mastodon.social/tags/OV" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OV</span></a> <a href="https://mastodon.social/tags/politiek" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>politiek</span></a></p>
metkcom 🏹<p>wat is dit voor flauwekul?</p><p><a href="https://www.ad.nl/binnenland/ns-verwacht-dat-treinen-in-tweede-jaarhelft-te-vaak-te-laat-komen-het-wordt-een-pittig-najaar-br~af322d7d/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">ad.nl/binnenland/ns-verwacht-d</span><span class="invisible">at-treinen-in-tweede-jaarhelft-te-vaak-te-laat-komen-het-wordt-een-pittig-najaar-br~af322d7d/</span></a></p><p><a href="https://mastodon.social/tags/NS" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>NS</span></a> <a href="https://mastodon.social/tags/OV" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OV</span></a></p>
BIJ1<p>"Burgerbeweging <a href="https://social.bij1.org/tags/DeGoedeZaak" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DeGoedeZaak</span></a> heeft haar <a href="https://social.bij1.org/tags/burgerinitiatief" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>burgerinitiatief</span></a> voor het Nederlandse openbaar vervoer ingediend bij de Tweede Kamer. Met meer dan 40.000 handtekeningen is de Tweede Kamer verplicht om het voorstel te bespreken. Het burgerinitiatief heeft drie eisen: breng het Nederlandse <a href="https://social.bij1.org/tags/OV" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>OV</span></a> weer in publieke handen, maak het toegankelijk voor iedereen en maak het gratis voor alle reizigers."</p><p>Inspirerend burgerinitiatief van <a href="https://social.bij1.org/tags/DeGoedeZaak" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DeGoedeZaak</span></a>, mooi in lijn met het <a href="https://social.bij1.org/tags/BIJ1" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BIJ1</span></a> partijprogramma van 2023:</p><p>"OV-bedrijven worden genationaliseerd. Het openbaar vervoer wordt gratis en<br>toegankelijk, en is uiterlijk in 2030 volledig"</p><p><a href="https://www.degoedezaak.org/burgerinitiatief-publiek-toegankelijk-en-gratis-openbaar-vervoer-ingediend/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">degoedezaak.org/burgerinitiati</span><span class="invisible">ef-publiek-toegankelijk-en-gratis-openbaar-vervoer-ingediend/</span></a></p>