Mastodon Skip to content
  • Home
  • Aktuell
  • Tags
  • Über dieses Forum
Einklappen
Grafik mit zwei überlappenden Sprechblasen, eine grün und eine lila.
Abspeckgeflüster – Forum für Menschen mit Gewicht(ung)

Kostenlos. Werbefrei. Menschlich. Dein Abnehmforum.

  1. Home
  2. Uncategorized
  3. I want this but as a Linux distribution.

I want this but as a Linux distribution.

Geplant Angeheftet Gesperrt Verschoben Uncategorized
91 Beiträge 44 Kommentatoren 0 Aufrufe
  • Älteste zuerst
  • Neuste zuerst
  • Meiste Stimmen
Antworten
  • In einem neuen Thema antworten
Anmelden zum Antworten
Dieses Thema wurde gelöscht. Nur Nutzer mit entsprechenden Rechten können es sehen.
  • mcc@mastodon.socialM mcc@mastodon.social

    My understanding is that Bitwarden and KeePassXC, the two open source password managers, are *both* using random code generators at this point, which is terrifying as those are the exact tools where a small error could have the largest negative impact, and also tools that once you've committed to using it you can't quickly back out if they enter a code quality decline

    https://github.com/bitwarden/clients/tree/main/.claude

    redfire@mastodon.onlineR This user is from outside of this forum
    redfire@mastodon.onlineR This user is from outside of this forum
    redfire@mastodon.online
    schrieb zuletzt editiert von
    #58

    @mcc I've pinned my KeePassXC version to the last one without AI-generated code.

    mcc@mastodon.socialM 1 Antwort Letzte Antwort
    0
    • redfire@mastodon.onlineR redfire@mastodon.online

      @mcc I've pinned my KeePassXC version to the last one without AI-generated code.

      mcc@mastodon.socialM This user is from outside of this forum
      mcc@mastodon.socialM This user is from outside of this forum
      mcc@mastodon.social
      schrieb zuletzt editiert von
      #59

      @redfire Which version is that, by the way?

      redfire@mastodon.onlineR 1 Antwort Letzte Antwort
      0
      • mcc@mastodon.socialM mcc@mastodon.social

        @redfire Which version is that, by the way?

        redfire@mastodon.onlineR This user is from outside of this forum
        redfire@mastodon.onlineR This user is from outside of this forum
        redfire@mastodon.online
        schrieb zuletzt editiert von
        #60

        @mcc Not at my computer currently but I believe its 2.7.9.

        1 Antwort Letzte Antwort
        0
        • mcc@mastodon.socialM mcc@mastodon.social

          RE: https://mastodon.scot/@kim_harding/116108957641748718

          I want this but as a Linux distribution. I don't think I'm asking for much here. I am just asking for the "open source community" to be to the left of Goldman Sachs

          lhp@mastodon.socialL This user is from outside of this forum
          lhp@mastodon.socialL This user is from outside of this forum
          lhp@mastodon.social
          schrieb zuletzt editiert von
          #61

          @mcc I am honestly a bit scared to find out which projects use this loser fash tech. Absolutely disgusting.

          1 Antwort Letzte Antwort
          0
          • nina_kali_nina@tech.lgbtN nina_kali_nina@tech.lgbt

            @luana @mcc nothing says "super safe password manager" more than "161 files changed, 776 lines added, 541 line removed, some files are hidden from PR by default, authored by Claude Sonnet, merged with some tests failing"

            lunarloony@dosgame.clubL This user is from outside of this forum
            lunarloony@dosgame.clubL This user is from outside of this forum
            lunarloony@dosgame.club
            schrieb zuletzt editiert von
            #62

            @nina_kali_nina @luana @mcc Great. Password manager migration was really not what I needed on my to do list right now

            nina_kali_nina@tech.lgbtN 1 Antwort Letzte Antwort
            0
            • lunarloony@dosgame.clubL lunarloony@dosgame.club

              @nina_kali_nina @luana @mcc Great. Password manager migration was really not what I needed on my to do list right now

              nina_kali_nina@tech.lgbtN This user is from outside of this forum
              nina_kali_nina@tech.lgbtN This user is from outside of this forum
              nina_kali_nina@tech.lgbt
              schrieb zuletzt editiert von
              #63

              @lunarloony @luana @mcc but it's like: where to? 😔

              lunarloony@dosgame.clubL 1 Antwort Letzte Antwort
              0
              • johnlehet@mas.toJ johnlehet@mas.to

                One thing for sure, I’ve got a fire under my butt to get out of 1password pretty quick.

                maaneeack@noc.socialM This user is from outside of this forum
                maaneeack@noc.socialM This user is from outside of this forum
                maaneeack@noc.social
                schrieb zuletzt editiert von
                #64

                @johnlehet @mcc I knew 1password was getting worse, my renewal is soon and that's not happening now. Someone in thread said keepass 2.x isn't infected with AI. There's passwordstore.org and passky.org which I just learned about. Honestly I'm not sure what to try, this is a big PITA.

                johnlehet@mas.toJ 1 Antwort Letzte Antwort
                0
                • mcc@mastodon.socialM mcc@mastodon.social

                  RE: https://mastodon.scot/@kim_harding/116108957641748718

                  I want this but as a Linux distribution. I don't think I'm asking for much here. I am just asking for the "open source community" to be to the left of Goldman Sachs

                  dramforever@mastodon.socialD This user is from outside of this forum
                  dramforever@mastodon.socialD This user is from outside of this forum
                  dramforever@mastodon.social
                  schrieb zuletzt editiert von
                  #65

                  @mcc So uh I have bad news about this Linux thing...

                  1 Antwort Letzte Antwort
                  0
                  • nina_kali_nina@tech.lgbtN nina_kali_nina@tech.lgbt

                    @lunarloony @luana @mcc but it's like: where to? 😔

                    lunarloony@dosgame.clubL This user is from outside of this forum
                    lunarloony@dosgame.clubL This user is from outside of this forum
                    lunarloony@dosgame.club
                    schrieb zuletzt editiert von
                    #66

                    @nina_kali_nina I was tempted to do Vaultwarden, but the Bitwarden clients are affected so I don't think that'd help much. Might be an okay stop-gap until I have the time to invest in it properly.

                    1 Antwort Letzte Antwort
                    0
                    • mcc@mastodon.socialM mcc@mastodon.social

                      My understanding is that Bitwarden and KeePassXC, the two open source password managers, are *both* using random code generators at this point, which is terrifying as those are the exact tools where a small error could have the largest negative impact, and also tools that once you've committed to using it you can't quickly back out if they enter a code quality decline

                      https://github.com/bitwarden/clients/tree/main/.claude

                      csolisr@hub.azkware.netC This user is from outside of this forum
                      csolisr@hub.azkware.netC This user is from outside of this forum
                      csolisr@hub.azkware.net
                      schrieb zuletzt editiert von
                      #67
                      @mcc Which reminds me, how is the reimplementation of Bitwarden, Vaultwarden, doing in that regard? I'm using the latter precisely because I'm wary of depending on a commercial product that happens to be open-source, but can yank the open licensing at any point in time.
                      mcc@mastodon.socialM 1 Antwort Letzte Antwort
                      0
                      • mcc@mastodon.socialM mcc@mastodon.social

                        @itamarst Well, there is no universe where I would consider using 1password, but I guess that's still good to know

                        drangnon@hachyderm.ioD This user is from outside of this forum
                        drangnon@hachyderm.ioD This user is from outside of this forum
                        drangnon@hachyderm.io
                        schrieb zuletzt editiert von
                        #68

                        @mcc @itamarst I thought KeePassXC required human reviews / unit tests in order to mitigate any llm harms. Did that change?

                        More broadly, I don't really see how you can prove no LLMs were involved in code contributions if they are actually contributed by a human. Prove you used emacs or vi and didn't compile it ever on a cloud service? (I'm not happy about that state of affairs, mind you)

                        I suppose we can start adding some sort of watermark on code?

                        mcc@mastodon.socialM 1 Antwort Letzte Antwort
                        0
                        • wideeyedcurious@mstdn.socialW wideeyedcurious@mstdn.social

                          @Lingmops @mcc I’m beginning to feel as if I’m gonna need to head back to just saving my pswds in a text file on my computer again. 🫤

                          csolisr@hub.azkware.netC This user is from outside of this forum
                          csolisr@hub.azkware.netC This user is from outside of this forum
                          csolisr@hub.azkware.net
                          schrieb zuletzt editiert von
                          #69
                          @WideEyedCurious @Lingmops @mcc Wondering if there's a way to save OTP derivation keys in an encrypted file, then use the CLI to decrypt and then derive the current six-digit code.
                          1 Antwort Letzte Antwort
                          0
                          • mcc@mastodon.socialM mcc@mastodon.social

                            My understanding is that Bitwarden and KeePassXC, the two open source password managers, are *both* using random code generators at this point, which is terrifying as those are the exact tools where a small error could have the largest negative impact, and also tools that once you've committed to using it you can't quickly back out if they enter a code quality decline

                            https://github.com/bitwarden/clients/tree/main/.claude

                            eladnarra@disabled.socialE This user is from outside of this forum
                            eladnarra@disabled.socialE This user is from outside of this forum
                            eladnarra@disabled.social
                            schrieb zuletzt editiert von
                            #70

                            @mcc Aw man that sucks. Why would they... Ugh.

                            1 Antwort Letzte Antwort
                            0
                            • luana@wetdry.worldL luana@wetdry.world

                              @mcc @ariadne hmmm there’s probably some really awful way to hack this into NixOS if you want to compile your whole system

                              xarvos@outerheaven.clubX This user is from outside of this forum
                              xarvos@outerheaven.clubX This user is from outside of this forum
                              xarvos@outerheaven.club
                              schrieb zuletzt editiert von
                              #71

                              @luana@wetdry.world @mcc@mastodon.social @ariadne@social.treehouse.systems wouldn't you have to have a database of packages that don't contain LLM-written code? i don't think it's readily available

                              ariadne@social.treehouse.systemsA luana@wetdry.worldL 2 Antworten Letzte Antwort
                              0
                              • elfin@mstdn.socialE elfin@mstdn.social

                                @mcc KeePass 2 is clean.

                                argv_minus_one@mastodon.sdf.orgA This user is from outside of this forum
                                argv_minus_one@mastodon.sdf.orgA This user is from outside of this forum
                                argv_minus_one@mastodon.sdf.org
                                schrieb zuletzt editiert von
                                #72

                                @elfin @mcc

                                If you're looking for an alternative to KeePassXC, GNOME Secrets is pretty much a drop-in replacement.

                                mcc@mastodon.socialM 1 Antwort Letzte Antwort
                                0
                                • johnlehet@mas.toJ johnlehet@mas.to

                                  @mcc Excuse an undereducated question from a long term 1password user who is going to move from it now: is the issue with “random code generators” that random passwords generated by these apps are easy to crack?

                                  I’m looking at moving to Keepassium and as I understand it each of these apps in this family have different code to do password generating and are thus all different.

                                  zwol@masto.hackers.townZ This user is from outside of this forum
                                  zwol@masto.hackers.townZ This user is from outside of this forum
                                  zwol@masto.hackers.town
                                  schrieb zuletzt editiert von
                                  #73

                                  @johnlehet @mcc My educated guess is the problems are more likely to be things like

                                  - sync protocol has a security flaw that makes it possible for malware in coffee shop wifi router to learn all your passwords

                                  - sync protocol just plain stops working

                                  - restoration of offline backups stops working, nobody notices for months

                                  1 Antwort Letzte Antwort
                                  0
                                  • jcnotwit@mastodon.socialJ jcnotwit@mastodon.social

                                    @mcc Yeah, KeePassXC going this route really hurt. I'm probably going to migrate back to a text file encrypted with gnupg for basic password management, but I have no idea what I'm going to use for one-time passcodes.

                                    chopsstephens@mastodon.nzoss.nzC This user is from outside of this forum
                                    chopsstephens@mastodon.nzoss.nzC This user is from outside of this forum
                                    chopsstephens@mastodon.nzoss.nz
                                    schrieb zuletzt editiert von
                                    #74

                                    @jcnotwit @mcc I'm using the original KeePass on Linux, even though Mono seems not handle high density displays properly, no way I'll touch XC now it's using LLM coding.

                                    frumble@chaos.socialF 1 Antwort Letzte Antwort
                                    0
                                    • argv_minus_one@mastodon.sdf.orgA argv_minus_one@mastodon.sdf.org

                                      @elfin @mcc

                                      If you're looking for an alternative to KeePassXC, GNOME Secrets is pretty much a drop-in replacement.

                                      mcc@mastodon.socialM This user is from outside of this forum
                                      mcc@mastodon.socialM This user is from outside of this forum
                                      mcc@mastodon.social
                                      schrieb zuletzt editiert von
                                      #75

                                      @argv_minus_one @elfin that's great, but can it interop with a phone?

                                      argv_minus_one@mastodon.sdf.orgA 1 Antwort Letzte Antwort
                                      0
                                      • drangnon@hachyderm.ioD drangnon@hachyderm.io

                                        @mcc @itamarst I thought KeePassXC required human reviews / unit tests in order to mitigate any llm harms. Did that change?

                                        More broadly, I don't really see how you can prove no LLMs were involved in code contributions if they are actually contributed by a human. Prove you used emacs or vi and didn't compile it ever on a cloud service? (I'm not happy about that state of affairs, mind you)

                                        I suppose we can start adding some sort of watermark on code?

                                        mcc@mastodon.socialM This user is from outside of this forum
                                        mcc@mastodon.socialM This user is from outside of this forum
                                        mcc@mastodon.social
                                        schrieb zuletzt editiert von
                                        #76

                                        @draNgNon @itamarst

                                        "I thought KeePassXC required human reviews / unit tests in order to mitigate any llm harms. Did that change?"

                                        I literally don't give a shit. If you think it's OK to generate computer source code from a neural network, I don't trust yr judgement enough to trust your code reviews.

                                        "More broadly, I don't really see how you can prove no LLMs were involved in code contributions if they are actually contributed by a human."

                                        Same way you enforce any policy against stolen code

                                        1 Antwort Letzte Antwort
                                        0
                                        • xarvos@outerheaven.clubX xarvos@outerheaven.club

                                          @luana@wetdry.world @mcc@mastodon.social @ariadne@social.treehouse.systems wouldn't you have to have a database of packages that don't contain LLM-written code? i don't think it's readily available

                                          ariadne@social.treehouse.systemsA This user is from outside of this forum
                                          ariadne@social.treehouse.systemsA This user is from outside of this forum
                                          ariadne@social.treehouse.systems
                                          schrieb zuletzt editiert von
                                          #77

                                          @mcc @luana @xarvos that is indeed the problem

                                          1 Antwort Letzte Antwort
                                          0
                                          Antworten
                                          • In einem neuen Thema antworten
                                          Anmelden zum Antworten
                                          • Älteste zuerst
                                          • Neuste zuerst
                                          • Meiste Stimmen



                                          Copyright (c) 2025 abSpecktrum (@abspecklog@fedimonster.de)

                                          Erstellt mit Schlaflosigkeit, Kaffee, Brokkoli & ♥

                                          Impressum | Datenschutzerklärung | Nutzungsbedingungen

                                          • Anmelden

                                          • Du hast noch kein Konto? Registrieren

                                          • Anmelden oder registrieren, um zu suchen
                                          • Erster Beitrag
                                            Letzter Beitrag
                                          0
                                          • Home
                                          • Aktuell
                                          • Tags
                                          • Über dieses Forum