JWBananas

joined 1 year ago
[–] JWBananas@startrek.website 5 points 9 months ago

They do. By default the system partition is straight up mounted read-only.

[–] JWBananas@startrek.website 2 points 9 months ago (1 children)

Is that... ICQ? Why?

[–] JWBananas@startrek.website 11 points 10 months ago (1 children)

systemctl disable systemd-critic.service

[–] JWBananas@startrek.website 39 points 10 months ago (4 children)

Systemd-init, the core part of systemd, offersa wide range of features surpassing other init systems. More features lead to more bugs and security vulnerabilities.

This is a bad take. Many of systemd's features improve security significantly. And having all that code in one cohesive place can't possibly be inherently less secure than the cornucopia of init scripts we used to use.

[–] JWBananas@startrek.website 7 points 11 months ago

They do. Even back in their pre-UEFI days, it was possible to flash BIOS from a properly-formatted USB drive by holding down a magic key combination at power on. But it was not exactly publicized as a supported method.

[–] JWBananas@startrek.website 0 points 1 year ago

And via a website too

Everyone knows real admins do curl https://raw.githubusercontent.com/something/or/other/install.sh | sudo bash