Despite what people are saying here, chrome has a really excellent track record. Nobody is perfect. Switching just because chrome got exploited one time will likely result in you switching to something worse.
Actually thinking back, I get _more_ content, because there's a notable number of access screens that just don't function with JS off, leaving the whole article available.
well one someone posts on an article about an exploit in chrome saying that the exploit is a reason to switch, i think its fair to say its not about "not reward[ing] unethical behaviour"
Yes, in my opinion. I know a couple of people who actually jumped from Chrome to Zen because of it. In their mind, Firefox is something from the past and rough around the edges. Zen gave new attraction to FF. I am all for any opportunity to disrupt the Chrome monopoly we currently have.
The only scenario in which one could possibly argue this is if the option is using MV3 uBlock Origin Lite in basic mode, where the browser handles the content blocking just reading rules from uBoL.
uBO MV2 and MV3 in any of the higher two modes objectively add more attack surface when the alternative is basic uBoL + DNS level filtering which is the most secure combination second to just DNS-only filtering.
And ultimately ad blocking is only badness enumeration which is a poor security measure to rely on, especially when the main application (Firefox) lacks proper security measures versus Chromium. It’s like the NVIDIA owners coming up with 3,000 different cable solutions to the burning connectors when its a problem with the card itself.
eID PKIs have very little in common with the web PKI. There's a national root of trust with strong attestation. It's a very simple trust relationship. You already trust the respective government to issue IDs.
Plenty of European countries have an eID CAs and it works fine. The PKI part is a solved problem.
Doesn't even need ZKP, the CA can just issue an attestation.
I've experienced this "solved problem" when visiting Germany during COVID. On every entrance to a mall there was somebody with a scanner device, and they only let you in if the scanner showed a green mark. I've been fully vaccinated (not EU) but my code didn't show a green mark on their scanner and I was promptly denied entry. The solution was to show them my German friend's code on my phone, this registered just fine, so I could enter anywhere.
So the whole "eID/CAs/ZKP/PKI" mumbo jumbo can be easily fooled by a gif file.
That part seems to qualify as an unsolved problem. But could anyone have taken the scanned data (or the GIF file) and used it to open a bank account in your friend's name? That seems like the main issue that is genuinely solved by correct implementation of this type of system.
Already today nobody can open a bank account in my name with just a picture of my passport, as the original would be required. My passport doesn't have any of the "eID/CAs/ZKP/PKI", so the question of "what exactly the addition of it solves" remains open.
My national ID card supposedly has some of it, the 17-year olds who want to pass as 18-year olds usually show a doctored gif file of their ID card, with a year of birth one or two years before the actual one; this works in ~98% of the cases.
Actually it does. Biometric passports (and IDs) have a chip which is read via NFC and the information the NFC provides is signed by a CA which is the government that issued the passport. ICAO compiles a database of public keys corresponding to each government (plus countries exchange their public keys via bilateral agreements). Unless somebody is doing purely visual inspection, any time a passport is scanned there's PKI involved to validate if the information is genuine.
Not really, the attacker would just need a picture of you which he could then sign (since we're assuming here that he gained access to your key IIUC). That's a pretty low bar compared to the first step of gaining the key.
There's also the more fundamental issue that Postgres - unlike something like Yugabyte - does not use a distributed consensus algorithm for writes and can lose committed writes during network partitions.
But of course, neither does Tailscale's weird DIY contraption.
Yes, if you're unable to be polite about it, just don't comment and/or email the moderators. Your comment would have been informative and well-received without the snark.
You were right to call out the other person for trivializing the risks of tick bites, just assume good faith and be kind.
On the Elizabeth Islands at Cape Cod MA we have huge numbers of ticks and all the allergies and illnesses that go along with them. We also have no pavement or vehicles so we are into tick habitat as soon as we step out the door. To defend ourselves we have developed an oversock to stop ticks on the foot and lower leg where they often hop on. We chose a tight-weave parachute fabric so that even the tiniest ticks can't get through, and found a fabric that is light and breathable but tough, and we used a turndown at the knee to stop ticks from climbing. We treat these at Insect Shield in NC so that they are double protection: repelling ticks with permethrin and blocking access to skin with an unbroken barrier over the foot to the knee. We had a lot of interest outside our island community so we sewed up a big batch in Fall River MA and have made them available. Search Ticktogs if you think they might help you like they have helped us. They have cut way back on our tick bites.
Humans walk to Burger King (not just McDonalds), provide payment, and wait for a cashier to provide them a hamburger. Everyone knows humans aren't capable of "hunting" with a "bow and arrow."
You are taking the official, "please don't panic" story from CDC and trying to force it down everyone's throats while claiming it's as basic a fact of biology as chromosomes and the mitochondria. It's not. This is a contested area of animal behavior, not a microscopic process.
Are you persistent in being dense because you want somebody to engage with and correct you, or are you genuinely trying to get people infected?
Ticks don't exclusively hunt via questing. Some will actively pursue hosts if needed. The lone star tick is especially known for this: https://www.mdpi.com/1660-4601/15/3/478
> In contrast to D. variabilis, A. americanum is regarded as a hunter tick, which will walk/crawl rapidly across many meters when attracted by host odors. This behavior enhances its host range since these ticks do not have to wait for a passing host.
reply