mastodon.gamedev.place is one of the many independent Mastodon servers you can use to participate in the fediverse.
Mastodon server focused on game development and related topics.

Server stats:

5.4K
active users

#tor

23 posts21 participants3 posts today
Continued thread

This is undoubtedly the most promising Post-Quantum TLS deployment situation I have seen for #Tor since we started discussing it more actively in the team. Very exciting!

I hope that OpenSSL 3.5, when released, will make it into #Debian Trixie. That would make deployment of this so much more snappy and easy for the Tor network to upgrade, but that may be dreaming. The timelines here look quite difficult for that to happen, but let's hope.

Continued thread

OpenSSL, unlike BoringSSL, did not require us to make any additions to our codebase (BoringSSL required the PQ-KEM to be enabled explicitly via a function call): the ML-KEM is enabled by default, which will do wonders for adoption as OpenSSL 3.5 gets bundled in more and more OS distributions over time.

However, we did need to modify #Tor slightly to be less conservative with which TLS cipher suites it is willing to use. I will talk with the team about what we do here to get this fixed soon.

Trying out the Post-Quantum TLS feature (called ML-KEM) in #OpenSSL 3.5-beta1 and #Tor was a success! 🥳

The experiment is using the same setup as we did with #BoringSSL back when they enabled the Kyber768/x25519 TLS 1.3 group: we use a Tor binary, compiled against a PQC-enabled lib(ssl|crypto), to run a Bridge Server locally and connect a local Bridge Client to the server.

The branch used for this experiment is available from gitlab.torproject.org/ahf/tor/

RUSSIA LOSING CONTROL IN CRIMEA: PRECISION DRONE ATTACKS ON RUSSIAN ARMY
by #AnnafromUkraine
10:48

youtube.com/watch?v=LhiNzu84oS

GUR continues to demilitarize the occupiers in #Crimea, drones hit: #BK-16 landing craft, #Raptor patrol boat, #TOR-M2 air defense system.

🇺🇦
Anna Danylchuk, professor of linguistics at Volyn National University in Lutsk, vlogs every day giving a perspective of an Ukrainian from inside war-torn #Ukraine

#russia
#Ukrainerussiawar
#NAFO

Continued thread

Lo and behold, #OpenSSL 3.5 (their upcoming LTS release) will come out here at the beginning of April, and it does indeed support some of these hybrid PQC schemes. Their recent beta2 announcement can be read here: openssl-library.org/post/2025- and their roadmap is at openssl-library.org/roadmap/in

Very excited by this work. Big kudos to the OpenSSL Team here! 🥳🎉 Already planning on giving this a spin with the C implementation of #Tor later this week to see how it goes!

OpenSSL Library · OpenSSL 3.5 Beta Release AnnouncementThe OpenSSL Project is pleased to announce that OpenSSL 3.5 Beta1 pre-release is released and adding significant new functionality to the OpenSSL Library.

Un Ordine Esecutivo di #Trump blocca i pagamenti all'#OpenTechnologyFund. Da essi dipendono servizi #FOSS critici come #FDroid, #TOR e #LetsEncrypt. Abbiamo bisogno di un impegno serio da parte dell'Unione Europea nello sviluppo di alternative FOSS prima possibile, è seriamente una questione di sicurezza molto più che di principio.
dday.it/redazione/52530/trump-

DDay.it · Trump farà saltare il negozio open-source Android F-Droid e la rete TorBy Sergio Donato
Replied in thread

@xcabal05 V současné době provozuji „domácí servery“ ve 2 lokalitách s veřejnou ajpinou, ale kdysi dávno jsem tohle řešila přes 🧅 #Tor hidden service. Výhodou je to, že do dat nikdo nevidí a neprotékají žádným fixním místem (kromě cílového serveru, samozřejmě) a také nulové náklady na spojení. Obrovskou nevýhodou je ale pomalost sítě Tor ve srovnání s VPN/bězným tunelem. 🐌

»Unsicherheit – US-Kürzungsrausch gefährdet für das Internet wichtige Open-Source-Projekte:
Die neue US-Regierung entzieht dem Open Technology Fund (OTF) die Mittel. Von diesem sind unter anderem @letsencrypt, @torproject und @fdroidorg finanziell abhängig. Der OTF hat Klage eingereicht«

Sehr heikel und es petrifft, wenn auch "nur" indirekt, alle Menschen auf der Erde. Der Egoismus eines Irren kann uns alle betreffen!

👉 derstandard.at/story/300000026

DER STANDARD · US-Kürzungsrausch gefährdet für das Internet wichtige Open-Source-ProjekteDie neue US-Regierung entzieht dem Open Technology Fund die Mittel. Von diesem sind unter anderem Let’s Encrypt, Tor und F-Droid finanziell abhängig. Der OTF hat Klage eingereicht
#trump#uspol#tor

Reblog.🙏

#Trump ha interrotto i fondi destinati all’Open Technology Fund, un ente che da oltre un decennio finanzia strumenti digitali per la libertà online.
Questi fondi rappresentano la quasi totalità del budget dell'#OTF e sono essenziali per il sostegno di numerosi progetti, tra cui #Let'sEncrypt, la rete di anonimizzazione #Tor e il negozio di applicazioni open-source #F-Droid, che l’anno scorso hanno ricevuto rispettivamente 800mila, 500mila e 396mila dollari.🤦‍♂️

dday.it/redazione/52530/trump-

DDay.it · Trump farà saltare il negozio open-source Android F-Droid e la rete TorBy Sergio Donato

It sounds like #Tor has lost OTF funding again. I didn't know it had regained OTF funding after the first time.

Obviously if you're trying to set up a dictatorship you don't want anyone communicating privately.

I'm kinda considering quitting streaming after some months pass on my 5th Twitch anniversary.

It's been a good run overall. I was streaming basically to nobody but talking to myself on chat has been kinda therapeutic.

I dunno. Ever since I started my standalone snowflake proxy, streaming just felt pointless now. I'm helping way more people around the world rather than just help 3 or 4 other people have a good day

Replied to The New Oil

@thenewoil

While, F-Droid is important for Android users, I use UbuntuTouch.

I did make my first contribution to UBPorts, which makes my phone OS, which is a FOSS alternative to Android.

I do use Tor, and I run a 2 MB/s Tor relay on a high bandwidth server I rent on DigitalOcean in (possibly) eco-friendly LON1 cluster as my form of contribution to the Tor project.

I also made my first annual donation to LetsEncrypt, which I do use on ~20 of my websites.

It is the year two thousand and twenty five CE and these basic-ass chumps are still out here equipping governments to target journalists and human rights defenders and immigrants and abortion seekers, and then patting themselves on the back for helping law enforcement (the... good... guys??) catch "bad guys" and kidnap them and lock them in torture dungeons. Congrats, assholes, great job, the Führer will be very proud of you. CHRIST.

"Identifying IP addresses is central to thwarting attacks and helping law enforcement put the bad guys out of business and in jail."

scworld.com/feature/novel-tech

<p>Adobe Stock</p>
SC Media · Novel technique can unmask up to 70% of crooks hiding behind VPNs, proxies, TorTechnique claims it can unmask crooks hiding behind VPNs, proxy servers and Tor browsers with up to 70% reliability.