Those children are guilty of choosing to be born into the wrong family, after all. /s
Those children are guilty of choosing to be born into the wrong family, after all. /s
JFC. Yes, both problems exist, and the barrier to taxing the rich are the cunts in control. Cut them out, then the money will go where it needs to and we have greater control over who gets taxed what.
But how!? Magic!? The politicians who control tax law protect them! 😱
I’m all for taxing the rich, but I’m even more for rooting out the corruption that enables the rich to become the monsters they are. This isn’t bootlicking, its holding the opinion that the priorities are out of order.
Thanks for sharing your perspective.
Safe to assume they boom, otherwise we would have invaded long ago.
And so the hawkish death cycle continues!
Doesnt it make more sense to root out the corruption before feeding them cash?
Any concern for retaliatory strikes? Guess the poor needn’t worry about going hungry if they’re dust, right?
Thanks for sharing a perspective that I hadnt considered. I certainly agree that corporate greed is detrimental and plays a key role in governmental corruption.
Now this is a policy I can get behind.
lol you got me! you must work in the attribution industry!
I’m all for taxing the rich. Go after them! But the foundation of how those tax dollars are allocated are corrupt as fuck, and that needs to change just as much.
Admittedly, I thought these percentages were different.
Not above admitting when I’m wrong.
https://www.pgpf.org/budget-basics/budget-explainer-national-defense
Find me a candidate that’d work toward of these objectives and they’d have my vote, assuming I can stomach the rest of their politics.
But it seems to me that the greater focus there is on a single matter, the more likely it is to change. And the mildustry complex is probably the greatest threat to the planet right now imho.
Or we prioritize other objectives first, like gutting corruption and FINDING THE MISSING BILLIONS OF PENTAGON DOLLARS.
There’s already a fuck ton of money, it’s just misappropriated.
this sort of stuff is rampant. A few years old but it makes my blood boil every time I think about it.
Tool Creator should work on this, it ain’t making no sense that the default json file (Google) is not updated cause seeing that work on Google tells us that it definitely works on all sites
@drk1wi please resolve google.json file to stop this cookie disabled error
Seems minor but the tone of the demand is wildly entitled.
And the divided focus is why progress on either matter is never achieved. Minor triage obviously reveals the military industrial complex to be the issue most deserving of our attention.
How about we all stop paying taxes until the fucks start using the income for things other than making foreign peoples dead?
There’s enough money in the pot, it’s just squandered on things that don’t benefit the people. We could accomplish so fucking much with just the amount of cash that the Pentagon misplaces every year.
I’ll never understand the obsession with demanding more from the rich while we can’t even account for what we already have. Is everything a goddamn distraction campaign?
/rant
My claim is that Headscale has a lesser likelihood of compromise than Nextcloud, and that the E2EE provides an encrypted channel between nodes without an immediate need for TLS. Of course TLS over E2EE enhances CIA. There’s no pushback to defense in depth here. But in the beginning, the E2EE will get them moving in the right direction.
OP began the post by stating that the login page to a complex PHP web application is internet facing (again, yikes). Given the current implementation, I can only assume that OP is not prepared to deploy a CA, and that the path of least resistance – and bolstered security – can be via implementation of HS+TS. They get the benefit of E2EE without the added complexity, for which there is plenty, of a CA until if/when they’re ready to take the plunge.
If we’re going to take this nonsense all or nothing stance, don’t forget to mention that they’re doing poorly unless they implement EDR, IDS, TOTP MFA on all services, myriad DNS controls, and full disk encryption. Because those components don’t add to the attack surface as well, right?
Tailscale is one of those services…
Tailscale isn’t an exposed service. Headscale is, and it isn’t connected to the Tailnet. It’s a control server used to communicate public keys and connectivity information between nodes. Sure, a threat actor can join nodes to the Tailnet should it become compromised. But have you looked at Headscale’s codebase? The attack surface is significantly smaller than anything like OpenVPN.
A cert tells you that you are actually…
I’m all for ssl/tls, but it’s more work and may not always be worth the effort depending upon the application, which is exactly why I recommended SmallStep+Caddy. Let’s not pretend that introducing things like a CA don’t introduce complexity and overhead, even if it’s just distributing the root cert to devices.
MITM/DNS Hijack/ARP Poisoning…
Are you suggesting that these attack techniques are effective against zero trust tunnels? Given that the encryption values are sent out of band, via the control channel, how would one intercept and replay the traffic?
I’m a climate idiot. Does this somehow relate to ice ages, I wonder?