💡 Le luci da streaming al top da non perdere (giugno 2025)! Illumina i tuoi video con stile e qualità inconfondibile! #StreamingLights #Tech2025
🔗 tomshw.it/videogioco/luci-stre…
Le migliori luci da streaming (giugno 2025)
Le migliori proposte tra le luci da streaming da abbinare alla propria postazione, per riprendersi al meglio e con una buona illuminazione!Andrea Maiellano (Tom's Hardware)
So finally my city, #BandarAbbas was also attacked. It is said that the #US has entered the war. We are safe. Not sure about people near to military bases.
For about 2 days straight, our connection to the outside world was gone. And the Internet routes to outside of the country were completely blocked.
#IranWar #War #Israel #IranIsraelWar #IranIsraelWar2025 #Trump #TrumpWar #Iran
#fotovorschlag 'In der Hosen- / Jackentasche gefunden' #fotografie #fotographie #photografie #photographie #photography #foto #photo #meinfoto #myphoto #handyfoto #mobilephotography
'In der Hosen- / Jackentasche gefunden' die Ausbeute von heute Morgen.
Guten Morgen allerseits! 😀 👋
Zum Start in die Woche und zum #FotoMontag heute ein schönes Bild aus der oberfränkischen Natur ...
#photomonday #flowers #blumen #flowerphotography #natur #nature #naturephotography #fotografie #photography #Photographie #foto #insects #insekten #animals #animalphotography
Du warst noch nie Pilgern? Dann ist das hier dein Einstieg!!
Schnupperpilgern. Worauf wartest du noch?
Nucor, North America's largest steel producer and recycler, has confirmed that attackers behind a recent cybersecurity incident have also stolen data from the company's network.
L'Ordine di Malta era preda delle spie | Storia minuta
Roma: il Palazzo dell'Ordine di Malta in Via Condotti. Fonte: Wikipedia Quel che Perilli non sapeva era che nell’Ordine di Malta vi erano già tante spiestoriaminuta (Storia minuta)
Hoffentlich haben KI-Sprachmodelle nie Zugang zu unserer Kaffeeversorgung. 😱
Autonome KI-Systeme könnten bald mehr sein als nur Chatbots - sie werden zu Agenten, die eigenständig Entscheidungen treffen und Handlungen ausführen. 🤖
Zum Artikel: heise.de/-10455051
Studie: Große KI-Modelle greifen unter "Stress" auf Erpressung zurück
16 führende KI-Modelle von OpenAI, Google, Meta, xAI & Co. legten bei einem Test konsequent schädliche Verhaltensweisen wie Drohungen und Spionage an den Tag.Stefan Krempl (heise online)
AI is zombifying our brains. The iNaturalist backlash shows we can fight back
Generative AI has spread uncontrolled throughout education and medicine. Nature nerds at iNaturalist are trying to stop it.Ketan Joshi (Crikey)
Your regular reminder that Robert Reich opposed building affordable housing in his rich Berkeley neighborhood. He talks a good game about helping low income people. Unless they intend to live anywhere near him. www.reddit.com/r/berkeley/c...
RE: bsky.app/profile/did:plc:p3yen…
Is there a way to block browser JavaScript from executing commands that retrieve sensitive information from my local machine, while still allowing JavaScript that is only used for rendering web pages?
As a security-conscious user, I've used NoScript since Firefox's early days, but its restrictive nature has become frustrating. I'm often forced to go unprotected just to access websites with multiple scripts running on different domains, which defeats the purpose of using NoScript and balances security and usability that it once provided.
Is there a way to block browser JavaScript from executing commands that retrieve sensitive information from my local machine, while still allowing JavaScript that is only used for rendering web pages?
by sensitive information I'm referring to
- local machine time
- local machine ram
- local machine operating system + version
- local machine hardware
- Serial Number
- Hardware ID
- UUID
- Windows Device ID
- Windows Product ID
- ...
greatly appreciate any insight
EDIT:
could be possible solution
discuss.grapheneos.org/d/16025…
- ~~LibreJS: GNU LibreJS aims to address the JavaScript problem described in Richard Stallman's article The JavaScript Trap.~~
- JShelter: Mitigates potential threats from JavaScript, including fingerprinting, tracking, and data collection. Slightly modifies the results of API calls, differently on different domains, so that the cross-site fingerprint is not stable. Applies security counter-measures that are likely not to break web pages. Allows fine-grained control over the restrictions and counter-measures applied to each domain.
Most of those things cannot be collected through JavaScript.Local time can.
RAM can only be approximated to protect user privacy. Edit: And it’s not available on Firefox.
OS+version are already in your browser’s user-agent string that is sent out with every request you make.
Machine hardware cannot be enumerated. JavaScript can try to guess your GPU based on what it can do with WebGL.
There is no way to get a serial number or similar.
To spoof timezone/OS+version/browser+version ... and disable WebGL, use sereneblue.github.io/chameleon…
- lemmy.world/post/31885153
Vanadium and what to use on desktop - GrapheneOS Discussion Forum
GrapheneOS discussion forumGrapheneOS Discussion Forum
like this
Harsh question: Do you have a real need to prevent this data from being collected, or are you investigating just for ~~funsies~~ best practice advice? There are a lot of posts like this where people overestimate the threat model they have and insist on needing to block things that are nearly impossible to, or at least have significant tradeoffs like you are dealing with now.
Javascript is also not the only source that sites can use for these pieces of info from your machine. Local time in particular can be estimated by looking up the rough location of your IP address then matching to a time zone.
Anyway.
I would assume you could technically fork localCDN (replaces remote javascript libraries with local copies) and then manually edit the local javascript library copies to remove the calls you are concerned about.
There's also options like uBlock Origin's methods of only whitelisting specific scripts. Much more flexible than NoScript. You can block scripts that are third party and only allow site specific ones fairly easily, without digging deep into the settings.
Bear in mind that your specific combination of installed extensions can also be a unique identifier though.
Do you have a real need to prevent this data from being collected
maybe
or are you investigating just for best practice advice?
yes
There are a lot of posts like this where people overestimate the threat model they have and insist on needing to block things that are nearly impossible to, or at least have significant tradeoffs like you are dealing with now
could you explain why it is nealy impossible from only blocking javascript from attaining "local machine operating system + version
"? I don't think this kind of information is relevant for webpage displaying. I dont think webpage will break if we ban js from doing so
I would assume you could technically fork localCDN (replaces remote javascript libraries with local copies) and then manually edit the local javascript library copies to remove the calls you are concerned about.
that could work I guess when I have enough js knowledge
There’s also options like uBlock Origin’s methods of only whitelisting specific scripts. Much more flexible than NoScript. You can block scripts that are third party and only allow site specific ones fairly easily, without digging deep into the settings.
is it possible to adjust uBlock Origin whitelisting and disallow js that retrieve "local machine operating system + version
" from running?
Bear in mind that your specific combination of installed extensions can also be a unique identifier though.
Does this mean website can see all the extensions I installed?
Some browsers have built in fingerprint resistance techniques you can enable:
support.mozilla.org/en-US/kb/r…
I wouldn't entirely trust it, but enabling this feature in strict mode would tick a few of your listed boxes.
Resist Fingerprinting | Firefox Help
Firefox's Advanced Preferences to resist fingerprinting can help prevent websites from uniquely identifying your device but can cause problems. Learn more.support.mozilla.org
act.350.org/sign/jun-25-em-pet…
US citizens: call on JPMorgan Chase to stop bankrolling fossil fuel exploration in the Amazon.
Tell JPMorgan Chase: Stop bankrolling fossil fuel exploration in the Amazon!
Right now, Brazil is selling off parts of the Amazon Rainforest to fossil fuel companies. JPMorgan Chase is one of the top funders of fossil fuel development in the Amazon, despite its claims to fight biodiversity loss and exploitation of Indigenous …act.350.org
chacun dans sa bulle
Luca Gennatiempo, In The Circle
tag : incommunicabilité, #beach #socialmedia #society #psychology #photography
Compass Sues Zillow as Fight Over Private Home Listings Heats Up
https://www.bloomberg.com/news/articles/2025-06-23/compass-sues-zillow-as-fight-over-private-home-listings-heats-up?utm_source=flipboard&utm_medium=activitypub
Posted into Profiles @profiles-bloomberg
We will end this war, Iran warns ‘gambler’ Trump
Trump posts on Truth Social to "make Iran great again"; calls Sunday's US strikes on Iran a "bullseye".DAWN.COM
Just added a full article to the VEX.blue BETA site!
I wrote it during the 2.2 redesign; when I rebuilt the coding the site from scratch (half a year ago), figuring out design, RSS, and even future plans for tutorials like "How to join the Fediverse?"
Oh and it now supports Fediverse comments! (Just reply to this post)
Reply via your timeline 🌀
new.vex.blue/articles/2024/09/…
#VEXblue #Fediverse #OpenWeb #IndieWeb #Blogging #WebDev #RSS #StaticSite #DevJournal #Mastodon
The Thunder are NBA champions, and they might be just getting started
https://apnews.com/article/nba-finals-thunder-champions-8076a3f4d6fec9b0c2bbbbd79f17ef38?utm_source=flipboard&utm_medium=activitypub
Posted into Sports @sports-AssociatedPress
https://www.techtudo.com.br/guia/2025/06/tiktok-shop-e-confiavel-5-coisas-que-voce-precisa-saber-sobre-a-loja-edapps.ghtml?utm_source=flipboard&utm_medium=activitypub
TikTok Shop é confiável? 5 coisas que você precisa saber sobre a loja
TikTok Shop é seguro? Essa é a dúvida de alguns usuários que pretendem usar a loja do TikTok. Conheça mais detalhes da ferramenta de compras nativa do aplicativo chinêsTechtudo
J.J. Spaun's path to U.S. Open title helped by a shot onto an umbrella
https://apnews.com/article/jj-spaun-diabetes-us-open-oakmont-travelers-580e244e8c508c48f5e02c1afb258390?utm_source=flipboard&utm_medium=activitypub
Posted into Sports @sports-AssociatedPress
Improved of late, the Orioles still face an uphill climb to avoid a lost season
https://apnews.com/article/baltimore-orioles-postseason-hopes-padres-royals-guardians-59a3e9a391acaa424b167511bb0ad9ff?utm_source=flipboard&utm_medium=activitypub
Posted into Sports @sports-AssociatedPress
https://www.techtudo.com.br/listas/2025/06/organizei-minha-alimentacao-com-o-chatgpt-5-prompts-para-usar-agora-edsoftwares.ghtml?utm_source=flipboard&utm_medium=activitypub
Organizei minha alimentação com o ChatGPT — 5 prompts para usar agora
Prompts no ChatGPT podem auxiliar na organização de refeições, plano alimentares e listas de compras de acordo com diferentes dietas e objetivos pessoais; confiraTechtudo
DHL, UPS, FedEx, and Walmart are using robots to boost warehouse efficiency and cut costs, including automating the physically demanding task of loading trucks (Esther Fung/Wall Street Journal)
wsj.com/business/logistics/the…
techmeme.com/250623/p10#a25062…
DHL, UPS, FedEx, and Walmart are using robots to boost warehouse efficiency and cut costs, including automating the physically demanding task of loading trucks
By Esther Fung / Wall Street Journal. View the full context on Techmeme.Techmeme
Karabakh addio
Le radici del conflitto tra Armenia e Azerbaigian. Le guerre degli ultimi trent’anni, l’esodo degli armeni e il futuro della regione. Un reportage storico per capire una delle crisi più intricate della nostra epoca LeggiBartłomiej Krysztan (Internazionale)
Zeppe reshared this.
US Strikes on Iran Test Middle East's Finance Ambitions
https://www.bloomberg.com/news/newsletters/2025-06-23/us-strikes-on-iran-test-uae-saudi-arabia-qatar-s-finance-ambitions?utm_source=flipboard&utm_medium=activitypub
Posted into Business @business-bloomberg
Novo Exits Hims & Hers Partnership, Citing Compounding Concerns
https://www.bloomberg.com/news/articles/2025-06-23/novo-exits-hims-hers-partnership-citing-compounding-concerns?utm_source=flipboard&utm_medium=activitypub
Posted into Business @business-bloomberg
Das Bild zeigt eine Gruppe von sechs Militärs in Uniform, die an einem langen, rechteckigen Tisch sitzen. Sie befinden sich in einem Konferenzraum, der mit einer großen Weltkarte an der Wand hinter ihnen geschmückt ist. Die Uniformen der Militärs sind mit verschiedenen Abzeichen und Orden verziert, was auf ihre Ränge und Rollen hinweist. Links und rechts der Weltkarte hängen Porträts von Personen, die wahrscheinlich wichtige Persönlichkeiten sind. Die Flagge des Iran ist an der linken Wand sichtbar. Auf dem Tisch befinden sich Mikrofone und Dokumente, was auf eine formelle Besprechung hinweist. Im unteren Bereich des Bildes ist ein Text zu sehen, der auf Deutsch lautet: "tagesschau - vor 'Zyklus der Zerstörung' im Nahen Osten - Krieg gegen die Ukraine: Ukraine meldet mehrere Tote in Kiew durch russische Aktionen." Die Uhrzeit in der oberen linken Ecke zeigt 14:03 an.
Bereitgestellt von @altbot, privat und lokal generiert mit Ovis2-8B
🌱 Energieverbrauch: 0.258 Wh
Mario Kart 64 gets a fan-made PC port gamingonlinux.com/2025/06/mari…
#MarioKart64 #Gaming #Nintendo #RetroGaming
Mario Kart 64 gets a fan-made PC port
Hosted by Harbour Masters who also provide ports for other Nintendo classics, the PC port of Mario Kart 64 is now available to test.Liam Dawe (GamingOnLinux)
6 reported dead and 2 missing after a boat capsizes on Lake Tahoe in California
https://apnews.com/article/lake-tahoe-boat-capsized-7e07a1df64297d20e55e60dc5b339441?utm_source=flipboard&utm_medium=activitypub
Posted into U.S. News @u-s-news-AssociatedPress
"At their heart, these technologies infringe human rights."
Last week @sianberry tabled an amendment to the UK Crime and Policing Bill that would prohibit the use and deployment of dangerous 'crime-predicting' police tech.
These systems will subject overpoliced communities to more surveillance. More discrimination. More injustice.
Sign the petition to BAN it ➡️ you.38degrees.org.uk/petitions…
#SafetyNotSurveillance #surveillance #precrime #predictivepolicing #police #policing #ukpolitics #ukpol
Ban ‘Crime Predicting’ Police Tech
The Lie AI and police tech don’t predict crime - they predict policing. These technologies are built on existing, flawed, police data.38 Degrees
Cory Doctorow reshared this.
"takes no shit" -Pigsucking mayor sucking shit right from the pigpen
Lol @ that profile trying to sound tough
Iran’s parliament backs blocking Strait of Hormuz. Its closure would alienate Tehran further
The decision to close the waterway now rests with the country's national security council.Lim Hui Jie (CNBC)
Altbot
in reply to Katholisch in Attendorn • • •Das Bild ist ein Plakat für ein "Schnupperpilgern" am 29.06.2025, das für Jugendliche im Alter von 15 bis 18 Jahren organisiert wird. Die Anmeldung schließt bis zum 10.06.2025. Im oberen Bereich des Plakats steht der Titel "Schnupperpilgern" in großen, schwarzen Buchstaben auf einem braunen Hintergrund. Darunter ist die Anmeldeinformation "Anmeldung bis zum 10.06.2025" angegeben.
Das Plakat enthält mehrere Fotos, die verschiedene Aspekte des Pilgerwegs zeigen. Oben links ist ein Foto zu sehen, das einen Baum mit Wanderwegmarkierungen zeigt, darunter ein blauer Kreis mit einem gelben Strahlenkranz und die Aufschrift "Provinzialkundehandlung" sowie schwarze Markierungen mit den Buchstaben "X" und "A3". Oben rechts ist ein Foto eines Hügels mit einer Ansammlung von Häusern und einem klaren Himmel zu sehen. Unten links zeigt ein Foto einen schneebedeckten Wanderweg mit einem Wanderer im Vordergrund. Unten rechts ist ein Foto eines Pilger-Stempels auf einem Tisch zu sehen, daneben ein QR-Code und die Information "Infos finden ihr hier".
Zusätzlich gibt es eine Zeichnung eines Wanderers mit einem Rucksack und Wanderstöcken, sowie eine Zeichnung eines Rucksacks. Der Text "Pilger-Stempel" ist in großen, schwarzen Buchstaben auf einem braunen Hintergrund zu sehen. Am unteren Rand des Plakats ist die Website "padlet.com/margitgrueber/schnu…" angegeben.
Bereitgestellt von @altbot, privat und lokal generiert mit Ovis2-8B
🌱 Energieverbrauch: 0.479 Wh