Daily Shaarli
October 15, 2021
Gain Access (Control) of WindowsApps folder:
icacls "%ProgramFiles%\WindowsApps" /save WindowsApps.acl
[ icacls "%ProgramFiles%" /restore WindowsApps.acl]
takeown /F "%ProgramFiles%\WindowsApps"
takeown /F "%ProgramFiles%\WindowsApps" /r /d y
icacls "%ProgramFiles%\WindowsApps" /grant Administrators:F
icacls "%ProgramFiles%\WindowsApps" /grant Administrators:F /t
icacls "%ProgramFiles%\WindowsApps" /setowner "NT Service\TrustedInstaller"
Fourteen of the world's leading computer security and cryptography experts have released a paper arguing against the use of client-side scanning because it creates security and privacy risks.
Client-side scanning (CSS, not to be confused with Cascading Style Sheets) involves analyzing data on a mobile device or personal computer prior to the application of encryption for secure network transit or remote storage. CSS in theory provides a way to look for unlawful content while also allowing data to be protected off-device.
Apple in August proposed a CSS system by which it would analyze photos destined for iCloud backup on customers' devices to look for child sexual abuse material (CSAM), only to backtrack in the face of objections from the security community and many advocacy organizations.
The paper [PDF], "Bugs in our Pockets: The Risks of Client-Side Scanning," elaborates on the concerns raised immediately following Apple's CSAM scanning announcement with an extensive analysis of the technology.
Penned by some of the most prominent computer science and cryptography professionals – Hal Abelson, Ross Anderson, Steven M. Bellovin, Josh Benaloh, Matt Blaze, Jon Callas, Whitfield Diffie, Susan Landau, Peter G. Neumann, Ronald L. Rivest, Jeffrey I. Schiller, Bruce Schneier, Vanessa Teague, and Carmela Troncoso – the paper contends that CSS represents bulk surveillance that threatens free speech, democracy, security, and privacy.
"In this report, we argue that CSS neither guarantees efficacious crime prevention nor prevents surveillance," the paper says.
"Indeed, the effect is the opposite. CSS by its nature creates serious security and privacy risks for all society while the assistance it can provide for law enforcement is at best problematic. There are multiple ways in which client-side scanning can fail, can be evaded, and can be abused." //
But the paper notes that this approach depends on Apple being willing and able to enforce its policy, which might not survive insistence by nations that they can dictate policy within their borders.
"Apple has yielded to such pressures in the past, such as by moving the iCloud data of its Chinese users to three data centers under the control of a Chinese state-owned company, and by removing the 'Navalny' voting app from its Russian app store," the paper says.
And even if Apple were to show unprecedented spine by standing up to authorities demanding CSS access, nations like Russia and Belarus could collude, each submitting a list of supposed child-safety image identifiers that in fact point to political content, the paper posits.
"In summary, Apple has devoted a major engineering effort and employed top technical talent in an attempt to build a safe and secure CSS system, but it has still not produced a secure and trustworthy design," the paper says. //
CSS, the paper says, entails privacy risks in the form of "upgrades" that expand what content can be scanned and adversarial misuse.
And it poses security risks, such as deliberate efforts to get people reported by the system and software vulnerabilities. The authors conclude that CSS systems cannot be trustworthy or secure because of the way they're designed.
"The proposal to preemptively scan all user devices for targeted content is far more insidious than earlier proposals for key escrow and exceptional access," the paper says.
"Instead of having targeted capabilities such as to wiretap communications with a warrant and to perform forensics on seized devices, the agencies’ direction of travel is the bulk scanning of everyone’s private data, all the time, without warrant or suspicion. That crosses a red line. Is it prudent to deploy extremely powerful surveillance technology that could easily be extended to undermine basic freedoms?"
Are you just getting started with PowerShell? Use this guide to create and run your first script file on Windows 10.
It looks to us as though somebody has started setting up a new instance of Windows and then thrown in the towel, perhaps not realising that the out-of-box experience (OOBE) has become more of an out-of-platform setup (OOPS), causing minor confusion among passengers that are expecting to see when the next Yellow Line train might depart.
A whole new world indeed. Where once blue screens or boot loops were the order of the day, now it is forgetful admins shovelling code onto servers that probably don't really need it.
Huntington is at the southern end of the Yellow Line, acting as a terminus, and was opened in the 1980s. It recently underwent a renovation which is, alas, incomplete as far as Windows is concerned. The cheery exhortation to set up Windows Hello, hook up a mobile phone, and perhaps put on Office 365 seems a bit excessive for something that has one job: telling punters how long they have to wait for a train.
Computer generated faces --
https://en.wikipedia.org/wiki/Generative_adversarial_network
computer generated cat pictures
Fake chemical atomic structures
Kirby was then asked what advice he’d give Parker, and his answer was quite something:
“And I’ll keep any advice to myself. Plus I’m afraid he would follow it. I’d rather [he] keep doing what he’s doing.”
Simplest Guide for Squid SSL Bumping //
“📢 Reader Alert❗If you are using an uncapped Internet package, probably this might not be your cup of tea ☕️…”
If you are still interested, hold my beer 🍺 I am going to tell you how to save your data ( and ofcourse money ! 💰). Your savings are proportional to your repeatable web behavior.
You can compact using GUI tools, but PowerShell provides the complete method. Remember two things:
- You cannot compact a VHDX connected to a running virtual machine.
- The computer system that runs the Optimize-VHD cmdlet must have the complete Hyper-V role installed. The PowerShell module alone does not contain the necessary system services. If you must run the compact operation on a system that does not have Hyper-V, you can use diskpart instead.
The process centers around the Optimize-VHD cmdlet. In general, you’ll want to mount the VHDX into the management operating system to get the best results. For example:
Mount-VHD .dyndisk.vhdx -ReadOnly
Optimize-VHD .dyndisk.vhdx -Mode Full
Dismount-VHD .dyndisk.vhdx
Be aware that even for very small files, that can take some time to complete. The amount of time depends mostly on your available CPU cycle and the speed of your disk subsystem.
Easy to automate if you want to (I do this to save space as I have very small ssd)
Code:
$apps=@(
"9E2F88E3.Twitter"
"ClearChannelRadioDigital.iHeartRadio"
"Flipboard.Flipboard"
"king.com.CandyCrushSodaSaga"
"Microsoft.3DBuilder"
#"Microsoft.Appconnector"
"Microsoft.BingFinance"
"Microsoft.BingNews"
"Microsoft.BingSports"
"Microsoft.BingWeather"
"Microsoft.CommsPhone"
"Microsoft.Getstarted"
#"Microsoft.Messaging"
#"Microsoft.MicrosoftOfficeHub"
#"Microsoft.MicrosoftSolitaireCollection"
#"Microsoft.Office.OneNote"
"Microsoft.Office.Sway"
"Microsoft.People"
"Microsoft.SkypeApp"
"Microsoft.Windows.Phone"
"Microsoft.Windows.Photos"
"Microsoft.WindowsAlarms"
#"Microsoft.WindowsCalculator"
"Microsoft.WindowsCamera"
"Microsoft.WindowsMaps"
"Microsoft.WindowsPhone"
#"Microsoft.WindowsSoundRecorder"
#"Microsoft.WindowsStore"
"Microsoft.XboxApp"
"Microsoft.ZuneMusic"
"Microsoft.ZuneVideo"
#"microsoft.windowscommunicationsapps"
"Microsoft.MinecraftUWP"
"ShazamEntertainmentLtd.Shazam"
)
foreach ($app in $apps) {
Get-AppxPackage -Name $app -AllUsers | Remove-AppxPackage
Get-AppXProvisionedPackage -Online | where DisplayName -EQ $app | Remove-AppxProvisionedPackage -Online
$appPath="$Env:LOCALAPPDATA\Packages\$app*"
Remove-Item $appPath -Recurse -Force -ErrorAction 0
}When it's time for me to get ready for bed, I find a quiet place for a quick "oil check," as I like to call it. I do some deep breathing to start, just to calm my heartbeat (inhale four seconds, exhale four seconds). Then, I note three things I accomplished that day and how they positively impacted others. Close with more breathing, then I get ready for bed.
You've probably heard this before, but it's true -- cut the screen time if you want to clear your head and have a good night's rest. So, I put my phone on its charger, climb into bed, and lie on my back. Before tucking in, I note three things I'd like to accomplish the next day -- not pie-in-the-sky ambitions, but things I can reasonably do in the next 24 hours.
Lastly, I call on a happy memory, typically of something I did I was very proud of. It's not always recent, either -- I remember smiling to myself over a standing ovation at a high school play. With this image in my head, I close my eyes and gradually fall asleep.