Eh François Legault. Ferme ta gueule
(that's the racist piece of shit at the head of the province for those who don't follow)
Great to see you're adopting some of the #security features we've implemented earlier this year at #IzzyOnDroid @fdroidorg! Maybe you want to check our documentation on them?
android.izzysoft.de/articles/n…
* it's SIGNING blocks, not FROSTING blocks
* MEITUAN is about payload, not metadata
* there's no fixed number of blocks as your code assumes (gitlab.com/fdroid/fdroidserver…)
The article you link to (bi-zone.medium.com/easter-egg-…) tells you the same :wink:
Easter Egg in APK Files: What Is Frosting - BI.ZONE - Medium
A file structure is a whole fascinating world with its own history, mysteries and a home-grown circus of freaks, where workarounds are applied liberally. If you dig deeper into it, you can discover…BI.ZONE (Medium)
Only what you call "Google metadata" (0x2146444E) is the Google Play Frosting Block, neither the DEPENDENCY_INFO_BLOCK (0x504b4453) nor the MEITUAN_APK_CHANNEL_BLOCK (0x71777777) are. And Meituan calls their block Payload themselves:
github.com/search?q=repo%3AMei…
PS: you can find our corresponding code here:
gitlab.com/IzzyOnDroid/repo/-/…
Note the "UNKNOWN" towards the end of the screenshot, to make sure yet unknown blocks are not missed.
lib/CheckSigningBlocks.py · master · IzzyOnDroid / repo · GitLab
The F-Droid compatible repo at https://apt.izzysoft.de/fdroid/GitLab
My Android APK signing block payload PoC from Feb 2023 can use either a custom block or hide the payload in the verity padding block.
The IzzyOnDroid scanner will catch either variant, but the F-Droid scanner will miss both.
github.com/obfusk/sigblock-cod…
GitHub - obfusk/sigblock-code-poc: android apk signing block payload poc
android apk signing block payload poc. Contribute to obfusk/sigblock-code-poc development by creating an account on GitHub.GitHub
A bridge basking in the last rays of the day. The shadow has already reached the bridge. However, a sunset also promises a sunrise. And I look forward to that, even if it sometimes takes a while.
#photography #squared #minimalism
A few folks have reached out because I have been posting less since the result came in. I really appreciate y'all looking out for me, but the reduction in posting volume is a *good* indication for my mental health, not a bad one :).
I was posting like a maniac and focused on politics in the lead-up to draw attention to Super Swing Districts, trying to spend my political capital, such as it is, with my largely tech audience to advance something that I thought might help. And I feel like it did.
Do not mistake this to mean that I think everything will be fine now. I am, absolutely, grieving this result. I think there will be horrors in the next four years that they will write history books about, if the oceans have not risen to cover everything that they could write books with.
But I could be wrong about that. The horrors are not happening *now*. They are not happening here, and they are not happening to me. Most likely, they are not happening to you, right now, either.
Between here and the horrors, we must each do what we can. And that means helping each other. But it also means doing what we are good at.
There *are* some people for whom that is constantly posting about politics. We need polemicists and "influencers", polling analysts and newscasters. But that's not me. And if it's not you, either, you need to give yourself grace not just to rest and grieve, but to get back to your actual work, even if it feels further from the fight.
Inspired by this post by @glyph: mastodon.social/@glyph/1134377…
Thank you @nolan for all of your work on the Pinafore client for Mastodon, and for continuing to operate this instance.
Glyph (@glyph@mastodon.social)
One of the folks who reached out even specifically mentioned that they were using https://github.com/glyph/pomodouroboros for the first time, and it was helping them be productive. And speaking of mental health, that helped more than anything.Mastodon
Jamie Teh reshared this.
You wouldn't believe the hoops I had to jump through to vote by mail from overseas this year.
I wouldn't be surprised if the turnout from us abroad is much lower due to all of the mischief.
Extra mess:
The GA portal had errors and it linked to another site for the mailing address… which was unreachable.
Then there were two different mailing addresses.
I wouldn't have been able to mail in my ballot if I didn't have chat history and Archive.org (which was even down later).
If there are elections, they'll be even more rigged than this time around.
(I'm considering age-old gerrymandering and other disenfranchisement schemes as rigged. Not some ungrounded conspiracy, just the actual known methods that are somehow tolerated.)
@garrett yeah there was already all the vote suppression and gerrymandering. And vote split with the candidate still on the ballot.
I'm think more like election where the winner is declared while the ballots burn.
Opinion: Trump wins 2024 election. America needs to admit it's not 'better than this.'
Donald Trump won, and I never want to hear the words 'America is better than this' again. I never want to be told about America's better angels., USA TODAY (USA TODAY)
I don't blame Harris for this result. First and foremost I blame mis and disinformation. We currently have the strongest economy in the world. Inflation is down under 3%. Low unemployment. Yet a whole lot of voters seem to think the economy is terrible and that because prices haven't gone down, inflation is still high (a basic misunderstanding of economics).
Secondly, I think there's a lot of misogyny and racism in the US.
7 Reasons Why Linux Is the Best Tool For Programming - Make Tech Easier
Explore why Linux is the top choice for developers and programmers, thanks to its advantages, flexibility, and open-source foundation.Haroon Javed (Make Tech Easier)
"I have a private thing which soon won't be a private thing, ..."
I clearly misinterpreted this and assumed there was perhaps something major going on. Again, I'm sorry for that.
I also detest profanity, particularly when God's name is misused, and I hate encountering it on my timeline.
If you’re wondering what to do right now, give. Help people around you because a lot of folks are hurting.
Look up #mutualaid and help where you can. There’s a ton of work that still needs to be done and we can start by meeting people’s needs today.
The fedi raised millions for Harris.
Imagine if we put that same effort into satisfying immediate needs right now.
That would be a massive step forward and a good way to start building our collective capacity outside of politics.
We can do that right now.
It's time for my periodic reminder that VPNs do not magically increase security or privacy.
They take your network traffic and deliver it to someone else on your behalf, then deliver the responses back to you. That is all they do. That's what a VPN is.
The only time this helps with privacy is when you don't want your ISP to know where the traffic is going or you don't want the website to know where the traffic is coming from, *but you're okay with the VPN operator knowing*. If your use case does not fit into that very specific description, including the caveat, a VPN will not help you with privacy.
(Inspired by a friend asking me VPN questions this morning, because "everyone was talking about VPNs so I assumed that's a thing we're supposed to be doing now".)
reshared this
Another one of fan artist Blatherskite's awesome ASL character posters to distract you in these troubled times! This time it's the remarkable and fascinating T'Lyn!
#StarTrek #ASL #FanArt
bsky.app/profile/gettheorion.b…
Matt Campbell
in reply to Matt Campbell • • •Sensitive content