From 84fbe91361d769c00b41fb63e59a053f901ad689 Mon Sep 17 00:00:00 2001 From: Patrick <32212089+xDazlD@users.noreply.github.com> Date: Tue, 19 Nov 2019 10:55:34 -0600 Subject: [PATCH 1/7] Remove Wire (#1489) https://blog.privacytools.io/delisting-wire/ * Remove Wire * Delete wire.png * Remove Wire security audit * Remove Worth Mentioning The only thing is Wire, which is being removed * Remove Wire from do not use warning --- _includes/sections/instant-messenger.html | 19 ------------------- _includes/sections/teamchat.html | 7 ------- assets/img/tools/wire.png | Bin 2113 -> 0 bytes 3 files changed, 26 deletions(-) delete mode 100644 assets/img/tools/wire.png diff --git a/_includes/sections/instant-messenger.html b/_includes/sections/instant-messenger.html index 1602c2b7..2d97b00d 100644 --- a/_includes/sections/instant-messenger.html +++ b/_includes/sections/instant-messenger.html @@ -22,24 +22,6 @@ android="https://signal.org/android/apk/#apk-danger" ios="https://apps.apple.com/us/app/signal-private-messenger/id874139669" %} - -{% include cardv2.html -title="Wire" -image="/assets/img/tools/wire.png" -description="Wire is a free and end-to-end encrypted chatting application that supports instant messaging, voice, and video calls. Full source code is available." -labels="warning:Warning:Wire stores some plaintext metadata about its users on their servers. This data includes profile names, profile pictures, usernames, and users' lists of connections and conversations.|success:VoIP" -website="https://wire.com/" -forum="https://forum.privacytools.io/t/discussion-wire/750" -github="https://github.com/wireapp/" -windows="https://wire.com/en/download" -mac="https://wire.com/en/download" -linux="https://wire.com/en/download" -googleplay="https://play.google.com/store/apps/details?id=com.wire" -android="https://wire.com/en/download" -ios="https://itunes.apple.com/app/wire/id930944768?mt=8" -web="https://app.wire.com" -%} -
This also affects Windows 10, but it doesn't expose this information or mitigation instructions as easily. MacOS users check How to enable full mitigation for Microarchitectural Data Sampling (MDS) vulnerabilities on Apple Support.
-When running a enough recent Linux kernel, you can check the CPU vulnerabilities it detects by tail -n +1 /sys/devices/system/cpu/vulnerabilities/*
. By using tail -n +1
instead of cat
, the file names are also visible.
When running a recent enough Linux kernel, you can check the CPU vulnerabilities it detects by tail -n +1 /sys/devices/system/cpu/vulnerabilities/*
. By using tail -n +1
instead of cat
, the file names are also visible.
In case you have an Intel CPU, you may notice "SMT vulnerable" display after running the tail
command. To mitigate this, disable hyper-threading from the UEFI/BIOS. You can also take the following mitigation steps below if your system/distribution uses GRUB and supports /etc/default/grub.d/
:
From 0cb341a673e013fed52104147f8445040ed4bb30 Mon Sep 17 00:00:00 2001
From: nitrohorse <1514352+nitrohorse@users.noreply.github.com>
Date: Sat, 23 Nov 2019 21:16:11 -0800
Subject: [PATCH 4/7] Add a link to audit for Standard Notes (#1512)
---
_includes/sections/notebooks.html | 2 +-
_includes/sections/teamchat.html | 2 +-
2 files changed, 2 insertions(+), 2 deletions(-)
diff --git a/_includes/sections/notebooks.html b/_includes/sections/notebooks.html
index 9930001b..9ebd9de3 100644
--- a/_includes/sections/notebooks.html
+++ b/_includes/sections/notebooks.html
@@ -24,7 +24,7 @@ chrome="https://chrome.google.com/webstore/detail/joplin-web-clipper/alofnhikmmk
{% include cardv2.html
title="Standard Notes"
image="/assets/img/tools/StandardNotes.png"
-description="Standard Notes is a simple and private notes app that makes your notes easy and available everywhere you are. Features end-to-end encryption on every platform, and a powerful desktop experience with themes and custom editors."
+description='Standard Notes is a simple and private notes app that makes your notes easy and available everywhere you are. Features end-to-end encryption on every platform, and a powerful desktop experience with themes and custom editors. It has also been independently audited (PDF).'
website="https://standardnotes.org/"
github="https://github.com/standardnotes"
windows="https://standardnotes.org/#get-started"
diff --git a/_includes/sections/teamchat.html b/_includes/sections/teamchat.html
index 9c4e6a8f..064778e6 100644
--- a/_includes/sections/teamchat.html
+++ b/_includes/sections/teamchat.html
@@ -43,7 +43,7 @@
include cardv2.html
title="Keybase"
image="/assets/img/tools/keybase.png"
- description='Keybase provides a hosted team chat with end-to-end encryption. It has also been indepedently audited (PDF).'
+ description='Keybase provides a hosted team chat with end-to-end encryption. It has also been independently audited (PDF).'
labels="warning:Warning:The server side of Keybase runs on proprietary code and is centralized."
website="https://keybase.io/"
forum="https://forum.privacytools.io/t/discussion-keybase/1224"
From 31e1300591bf0c92ebae9aa596ed35b9c2b3cfcc Mon Sep 17 00:00:00 2001
From: nitrohorse <1514352+nitrohorse@users.noreply.github.com>
Date: Sat, 23 Nov 2019 21:27:46 -0800
Subject: [PATCH 5/7] mailbox.org no long accepts Bitcoin (#1513)
---
_includes/sections/email-providers.html | 2 +-
1 file changed, 1 insertion(+), 1 deletion(-)
diff --git a/_includes/sections/email-providers.html b/_includes/sections/email-providers.html
index a0e9b178..d775478c 100644
--- a/_includes/sections/email-providers.html
+++ b/_includes/sections/email-providers.html
@@ -78,7 +78,7 @@
ICANN DNS Provider | +DNS Provider | Server Locations | Privacy Policy | Type | @@ -570,7 +540,7 @@
---|