Components

24 Twig Components
106 Render Count
400 ms Render Time
14.0 MiB Memory Usage

Components

Name Metadata Render Count Render Time
settings_row_switch
"App\Twig\Components\SettingsRowSwitchComponent"
components/_settings_row_switch.html.twig
15 9.43ms
date
"App\Twig\Components\DateComponent"
components/date.html.twig
11 3.26ms
user_inline
"App\Twig\Components\UserInlineComponent"
components/user_inline.html.twig
10 9.89ms
date_edited
"App\Twig\Components\DateEditedComponent"
components/date_edited.html.twig
9 1.48ms
vote
"App\Twig\Components\VoteComponent"
components/vote.html.twig
9 16.68ms
boost
"App\Twig\Components\BoostComponent"
components/boost.html.twig
9 13.54ms
entry_comment
"App\Twig\Components\EntryCommentComponent"
components/entry_comment.html.twig
8 391.88ms
user_avatar
"App\Twig\Components\UserAvatarComponent"
components/user_avatar.html.twig
8 24.04ms
entry_comments_nested
"App\Twig\Components\EntryCommentsNestedComponent"
components/_cached.html.twig
8 192.56ms
user_settings_row_switch
"App\Twig\Components\UserSettingsRowSwitchComponent"
components/_user_settings_row_switch.html.twig
4 3.15ms
settings_row_enum
"App\Twig\Components\SettingsRowEnumComponent"
components/_settings_row_enum.html.twig
2 1.42ms
entry
"App\Twig\Components\EntryComponent"
components/_cached.html.twig
1 28.20ms
entries_cross
"App\Twig\Components\EntriesCrossComponent"
components/_cached.html.twig
1 61.18ms
editor_toolbar
"App\Twig\Components\EditorToolbarComponent"
components/editor_toolbar.html.twig
1 0.24ms
user_actions
"App\Twig\Components\UserActionsComponent"
components/user_actions.html.twig
1 1.81ms
magazine_box
"App\Twig\Components\MagazineBoxComponent"
components/magazine_box.html.twig
1 24.18ms
magazine_sub
"App\Twig\Components\MagazineSubComponent"
components/magazine_sub.html.twig
1 1.96ms
related_magazines
"App\Twig\Components\RelatedMagazinesComponent"
components/_cached.html.twig
1 6.03ms
active_users
"App\Twig\Components\ActiveUsersComponent"
components/_cached.html.twig
1 0.83ms
related_categories
"App\Twig\Components\RelatedCategoriesComponent"
components/_cached.html.twig
1 4.84ms
related_posts
"App\Twig\Components\RelatedPostsComponent"
components/_cached.html.twig
1 6.60ms
related_entries
"App\Twig\Components\RelatedEntriesComponent"
components/_cached.html.twig
1 5.38ms
support_us_block
"App\Twig\Components\SupportUsBlock"
components/_cached.html.twig
1 0.86ms
featured_magazines
"App\Twig\Components\FeaturedMagazinesComponent"
components/_cached.html.twig
1 2.45ms

Render calls

entry App\Twig\Components\EntryComponent 14.0 MiB 28.20 ms
Input props
[
  "entry" => App\Entity\Entry {#2412
    +user: Proxies\__CG__\App\Entity\User {#1978
      +avatar: null
      +cover: null
      +email: "Pantherina@feddit.de"
      +username: "@Pantherina@feddit.de"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1721498243 {#1515
        date: 2024-07-20 19:57:23.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
      +entries: Doctrine\ORM\PersistentCollection {#1406 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
      +posts: Doctrine\ORM\PersistentCollection {#1745 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
      +follows: Doctrine\ORM\PersistentCollection {#1409 …}
      +followers: Doctrine\ORM\PersistentCollection {#1624 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
      +reports: Doctrine\ORM\PersistentCollection {#1416 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
      +violations: Doctrine\ORM\PersistentCollection {#1694 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
      +awards: Doctrine\ORM\PersistentCollection {#1434 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
      +categories: Doctrine\ORM\PersistentCollection {#1640 …}
      -id: 48318
      -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
      +apId: "Pantherina@feddit.de"
      +apProfileId: "https://feddit.de/u/Pantherina"
      +apPublicUrl: "https://feddit.de/u/Pantherina"
      +apFollowersUrl: null
      +apInboxUrl: "https://feddit.de/inbox"
      +apDomain: "feddit.de"
      +apPreferredUsername: "Pantherina"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1721236644 {#1516
        date: 2024-07-17 19:17:24.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696428300 {#1518
        date: 2023-10-04 16:05:00.0 +02:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: App\Entity\Magazine {#264
      +icon: Proxies\__CG__\App\Entity\Image {#245 …}
      +name: "linux@lemmy.ml"
      +title: "linux"
      +description: """
        From Wikipedia, the free encyclopedia\n
        \n
        Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
        \n
        Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
        \n
        ### Rules\n
        \n
        - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
        - No misinformation\n
        - No NSFW content\n
        - No hate speech, bigotry, etc\n
        \n
        ### Related Communities\n
        \n
        - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
        - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
        - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
        - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
        \n
        Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
        """
      +rules: null
      +subscriptionsCount: 1
      +entryCount: 1406
      +entryCommentCount: 28632
      +postCount: 6
      +postCommentCount: 214
      +isAdult: false
      +customCss: null
      +lastActive: DateTime @1729583542 {#274
        date: 2024-10-22 09:52:22.0 +02:00
      }
      +markedForDeletionAt: null
      +tags: null
      +moderators: Doctrine\ORM\PersistentCollection {#236 …}
      +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
      +entries: Doctrine\ORM\PersistentCollection {#179 …}
      +posts: Doctrine\ORM\PersistentCollection {#137 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
      +bans: Doctrine\ORM\PersistentCollection {#116 …}
      +reports: Doctrine\ORM\PersistentCollection {#102 …}
      +badges: Doctrine\ORM\PersistentCollection {#80 …}
      +logs: Doctrine\ORM\PersistentCollection {#70 …}
      +awards: Doctrine\ORM\PersistentCollection {#1360 …}
      +categories: Doctrine\ORM\PersistentCollection {#1792 …}
      -id: 73
      +apId: "linux@lemmy.ml"
      +apProfileId: "https://lemmy.ml/c/linux"
      +apPublicUrl: "https://lemmy.ml/c/linux"
      +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
      +apInboxUrl: "https://lemmy.ml/inbox"
      +apDomain: "lemmy.ml"
      +apPreferredUsername: "linux"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: null
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729583596 {#268
        date: 2024-10-22 09:53:16.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1698929468 {#270
        date: 2023-11-02 13:51:08.0 +01:00
      }
    }
    +image: null
    +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
    +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
    +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
    +url: "https://www.madaidans-insecurities.github.io/linux.html"
    +body: """
      Basically\n
      \n
      - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
      - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
      - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
      - X11 is insecure, okay we know that\n
      - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
      - Kernel bugs are often not fixed quickly or at all\n
      - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
      \n
      I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
      \n
      On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
      \n
      This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
      \n
      `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
      \n
      But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
      \n
      I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
      \n
      [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
      \n
      The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
      \n
      Maybe nix is a solution? Would this be a good idea?\n
      \n
      Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
      \n
      What do you know about this?
      """
    +type: "link"
    +lang: "en"
    +isOc: false
    +hasEmbed: false
    +commentCount: 8
    +favouriteCount: 36
    +score: 0
    +isAdult: false
    +sticky: false
    +lastActive: DateTime @1700929355 {#2418
      date: 2023-11-25 17:22:35.0 +01:00
    }
    +ip: null
    +adaAmount: 0
    +tags: null
    +mentions: null
    +comments: Doctrine\ORM\PersistentCollection {#1688 …}
    +votes: Doctrine\ORM\PersistentCollection {#1966 …}
    +reports: Doctrine\ORM\PersistentCollection {#1965 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
    +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
    +badges: Doctrine\ORM\PersistentCollection {#2439 …}
    +children: []
    -id: 16138
    -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
    -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
    +cross: false
    +upVotes: 0
    +downVotes: 0
    +ranking: 1700870525
    +visibility: "visible             "
    +apId: "https://feddit.de/post/5981126"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700784125 {#1858
      date: 2023-11-24 01:02:05.0 +01:00
    }
  }
  "isSingle" => true
  "showShortSentence" => false
  "showBody" => true
]
Attributes
[
  "class" => "entry--single section--top"
]
Component
App\Twig\Components\EntryComponent {#2955
  -authorizationChecker: Symfony\Component\Security\Core\Authorization\AuthorizationChecker {#931 …}
  -newCommentMarkerCount: App\Kbin\NewCommentMarker\NewCommentMarkerCount {#2956 …}
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
  -twig: Twig\Environment {#1252 …}
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
  -security: Symfony\Bundle\SecurityBundle\Security {#1101 …}
  +entry: App\Entity\Entry {#2412
    +user: Proxies\__CG__\App\Entity\User {#1978
      +avatar: null
      +cover: null
      +email: "Pantherina@feddit.de"
      +username: "@Pantherina@feddit.de"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1721498243 {#1515
        date: 2024-07-20 19:57:23.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
      +entries: Doctrine\ORM\PersistentCollection {#1406 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
      +posts: Doctrine\ORM\PersistentCollection {#1745 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
      +follows: Doctrine\ORM\PersistentCollection {#1409 …}
      +followers: Doctrine\ORM\PersistentCollection {#1624 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
      +reports: Doctrine\ORM\PersistentCollection {#1416 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
      +violations: Doctrine\ORM\PersistentCollection {#1694 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
      +awards: Doctrine\ORM\PersistentCollection {#1434 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
      +categories: Doctrine\ORM\PersistentCollection {#1640 …}
      -id: 48318
      -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
      +apId: "Pantherina@feddit.de"
      +apProfileId: "https://feddit.de/u/Pantherina"
      +apPublicUrl: "https://feddit.de/u/Pantherina"
      +apFollowersUrl: null
      +apInboxUrl: "https://feddit.de/inbox"
      +apDomain: "feddit.de"
      +apPreferredUsername: "Pantherina"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1721236644 {#1516
        date: 2024-07-17 19:17:24.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696428300 {#1518
        date: 2023-10-04 16:05:00.0 +02:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: App\Entity\Magazine {#264
      +icon: Proxies\__CG__\App\Entity\Image {#245 …}
      +name: "linux@lemmy.ml"
      +title: "linux"
      +description: """
        From Wikipedia, the free encyclopedia\n
        \n
        Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
        \n
        Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
        \n
        ### Rules\n
        \n
        - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
        - No misinformation\n
        - No NSFW content\n
        - No hate speech, bigotry, etc\n
        \n
        ### Related Communities\n
        \n
        - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
        - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
        - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
        - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
        \n
        Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
        """
      +rules: null
      +subscriptionsCount: 1
      +entryCount: 1406
      +entryCommentCount: 28632
      +postCount: 6
      +postCommentCount: 214
      +isAdult: false
      +customCss: null
      +lastActive: DateTime @1729583542 {#274
        date: 2024-10-22 09:52:22.0 +02:00
      }
      +markedForDeletionAt: null
      +tags: null
      +moderators: Doctrine\ORM\PersistentCollection {#236 …}
      +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
      +entries: Doctrine\ORM\PersistentCollection {#179 …}
      +posts: Doctrine\ORM\PersistentCollection {#137 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
      +bans: Doctrine\ORM\PersistentCollection {#116 …}
      +reports: Doctrine\ORM\PersistentCollection {#102 …}
      +badges: Doctrine\ORM\PersistentCollection {#80 …}
      +logs: Doctrine\ORM\PersistentCollection {#70 …}
      +awards: Doctrine\ORM\PersistentCollection {#1360 …}
      +categories: Doctrine\ORM\PersistentCollection {#1792 …}
      -id: 73
      +apId: "linux@lemmy.ml"
      +apProfileId: "https://lemmy.ml/c/linux"
      +apPublicUrl: "https://lemmy.ml/c/linux"
      +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
      +apInboxUrl: "https://lemmy.ml/inbox"
      +apDomain: "lemmy.ml"
      +apPreferredUsername: "linux"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: null
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729583596 {#268
        date: 2024-10-22 09:53:16.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1698929468 {#270
        date: 2023-11-02 13:51:08.0 +01:00
      }
    }
    +image: null
    +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
    +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
    +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
    +url: "https://www.madaidans-insecurities.github.io/linux.html"
    +body: """
      Basically\n
      \n
      - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
      - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
      - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
      - X11 is insecure, okay we know that\n
      - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
      - Kernel bugs are often not fixed quickly or at all\n
      - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
      \n
      I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
      \n
      On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
      \n
      This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
      \n
      `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
      \n
      But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
      \n
      I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
      \n
      [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
      \n
      The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
      \n
      Maybe nix is a solution? Would this be a good idea?\n
      \n
      Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
      \n
      What do you know about this?
      """
    +type: "link"
    +lang: "en"
    +isOc: false
    +hasEmbed: false
    +commentCount: 8
    +favouriteCount: 36
    +score: 0
    +isAdult: false
    +sticky: false
    +lastActive: DateTime @1700929355 {#2418
      date: 2023-11-25 17:22:35.0 +01:00
    }
    +ip: null
    +adaAmount: 0
    +tags: null
    +mentions: null
    +comments: Doctrine\ORM\PersistentCollection {#1688 …}
    +votes: Doctrine\ORM\PersistentCollection {#1966 …}
    +reports: Doctrine\ORM\PersistentCollection {#1965 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
    +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
    +badges: Doctrine\ORM\PersistentCollection {#2439 …}
    +children: []
    -id: 16138
    -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
    -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
    +cross: false
    +upVotes: 0
    +downVotes: 0
    +ranking: 1700870525
    +visibility: "visible             "
    +apId: "https://feddit.de/post/5981126"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700784125 {#1858
      date: 2023-11-24 01:02:05.0 +01:00
    }
  }
  +isSingle: true
  +showShortSentence: false
  +showBody: true
  +showMagazineName: false
  +canSeeTrash: false
  +newComments: 0
}
user_inline App\Twig\Components\UserInlineComponent 14.0 MiB 0.35 ms
Input props
[
  "user" => Proxies\__CG__\App\Entity\User {#1978
    +avatar: null
    +cover: null
    +email: "Pantherina@feddit.de"
    +username: "@Pantherina@feddit.de"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: null
    +lastActive: DateTime @1721498243 {#1515
      date: 2024-07-20 19:57:23.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
    +entries: Doctrine\ORM\PersistentCollection {#1406 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
    +posts: Doctrine\ORM\PersistentCollection {#1745 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
    +follows: Doctrine\ORM\PersistentCollection {#1409 …}
    +followers: Doctrine\ORM\PersistentCollection {#1624 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
    +reports: Doctrine\ORM\PersistentCollection {#1416 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
    +violations: Doctrine\ORM\PersistentCollection {#1694 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
    +awards: Doctrine\ORM\PersistentCollection {#1434 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
    +categories: Doctrine\ORM\PersistentCollection {#1640 …}
    -id: 48318
    -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
    +apId: "Pantherina@feddit.de"
    +apProfileId: "https://feddit.de/u/Pantherina"
    +apPublicUrl: "https://feddit.de/u/Pantherina"
    +apFollowersUrl: null
    +apInboxUrl: "https://feddit.de/inbox"
    +apDomain: "feddit.de"
    +apPreferredUsername: "Pantherina"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1721236644 {#1516
      date: 2024-07-17 19:17:24.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696428300 {#1518
      date: 2023-10-04 16:05:00.0 +02:00
    }
    +__isInitialized__: true
     …2
  }
  "showAvatar" => false
]
Attributes
[]
Component
App\Twig\Components\UserInlineComponent {#3213
  +user: Proxies\__CG__\App\Entity\User {#1978
    +avatar: null
    +cover: null
    +email: "Pantherina@feddit.de"
    +username: "@Pantherina@feddit.de"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: null
    +lastActive: DateTime @1721498243 {#1515
      date: 2024-07-20 19:57:23.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
    +entries: Doctrine\ORM\PersistentCollection {#1406 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
    +posts: Doctrine\ORM\PersistentCollection {#1745 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
    +follows: Doctrine\ORM\PersistentCollection {#1409 …}
    +followers: Doctrine\ORM\PersistentCollection {#1624 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
    +reports: Doctrine\ORM\PersistentCollection {#1416 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
    +violations: Doctrine\ORM\PersistentCollection {#1694 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
    +awards: Doctrine\ORM\PersistentCollection {#1434 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
    +categories: Doctrine\ORM\PersistentCollection {#1640 …}
    -id: 48318
    -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
    +apId: "Pantherina@feddit.de"
    +apProfileId: "https://feddit.de/u/Pantherina"
    +apPublicUrl: "https://feddit.de/u/Pantherina"
    +apFollowersUrl: null
    +apInboxUrl: "https://feddit.de/inbox"
    +apDomain: "feddit.de"
    +apPreferredUsername: "Pantherina"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1721236644 {#1516
      date: 2024-07-17 19:17:24.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696428300 {#1518
      date: 2023-10-04 16:05:00.0 +02:00
    }
    +__isInitialized__: true
     …2
  }
  +showAvatar: false
}
date App\Twig\Components\DateComponent 14.0 MiB 0.28 ms
Input props
[
  "date" => DateTimeImmutable @1700784125 {#1858
    date: 2023-11-24 01:02:05.0 +01:00
  }
]
Attributes
[]
Component
App\Twig\Components\DateComponent {#3283
  +date: DateTimeImmutable @1700784125 {#1858
    date: 2023-11-24 01:02:05.0 +01:00
  }
}
date_edited App\Twig\Components\DateEditedComponent 14.0 MiB 0.19 ms
Input props
[
  "createdAt" => DateTimeImmutable @1700784125 {#1858
    date: 2023-11-24 01:02:05.0 +01:00
  }
  "editedAt" => null
]
Attributes
[]
Component
App\Twig\Components\DateEditedComponent {#3347
  +createdAt: DateTimeImmutable @1700784125 {#1858
    date: 2023-11-24 01:02:05.0 +01:00
  }
  +editedAt: null
}
vote App\Twig\Components\VoteComponent 14.0 MiB 6.04 ms
Input props
[
  "subject" => App\Entity\Entry {#2412
    +user: Proxies\__CG__\App\Entity\User {#1978
      +avatar: null
      +cover: null
      +email: "Pantherina@feddit.de"
      +username: "@Pantherina@feddit.de"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1721498243 {#1515
        date: 2024-07-20 19:57:23.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
      +entries: Doctrine\ORM\PersistentCollection {#1406 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
      +posts: Doctrine\ORM\PersistentCollection {#1745 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
      +follows: Doctrine\ORM\PersistentCollection {#1409 …}
      +followers: Doctrine\ORM\PersistentCollection {#1624 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
      +reports: Doctrine\ORM\PersistentCollection {#1416 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
      +violations: Doctrine\ORM\PersistentCollection {#1694 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
      +awards: Doctrine\ORM\PersistentCollection {#1434 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
      +categories: Doctrine\ORM\PersistentCollection {#1640 …}
      -id: 48318
      -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
      +apId: "Pantherina@feddit.de"
      +apProfileId: "https://feddit.de/u/Pantherina"
      +apPublicUrl: "https://feddit.de/u/Pantherina"
      +apFollowersUrl: null
      +apInboxUrl: "https://feddit.de/inbox"
      +apDomain: "feddit.de"
      +apPreferredUsername: "Pantherina"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1721236644 {#1516
        date: 2024-07-17 19:17:24.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696428300 {#1518
        date: 2023-10-04 16:05:00.0 +02:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: App\Entity\Magazine {#264
      +icon: Proxies\__CG__\App\Entity\Image {#245 …}
      +name: "linux@lemmy.ml"
      +title: "linux"
      +description: """
        From Wikipedia, the free encyclopedia\n
        \n
        Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
        \n
        Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
        \n
        ### Rules\n
        \n
        - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
        - No misinformation\n
        - No NSFW content\n
        - No hate speech, bigotry, etc\n
        \n
        ### Related Communities\n
        \n
        - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
        - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
        - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
        - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
        \n
        Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
        """
      +rules: null
      +subscriptionsCount: 1
      +entryCount: 1406
      +entryCommentCount: 28632
      +postCount: 6
      +postCommentCount: 214
      +isAdult: false
      +customCss: null
      +lastActive: DateTime @1729583542 {#274
        date: 2024-10-22 09:52:22.0 +02:00
      }
      +markedForDeletionAt: null
      +tags: null
      +moderators: Doctrine\ORM\PersistentCollection {#236 …}
      +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
      +entries: Doctrine\ORM\PersistentCollection {#179 …}
      +posts: Doctrine\ORM\PersistentCollection {#137 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
      +bans: Doctrine\ORM\PersistentCollection {#116 …}
      +reports: Doctrine\ORM\PersistentCollection {#102 …}
      +badges: Doctrine\ORM\PersistentCollection {#80 …}
      +logs: Doctrine\ORM\PersistentCollection {#70 …}
      +awards: Doctrine\ORM\PersistentCollection {#1360 …}
      +categories: Doctrine\ORM\PersistentCollection {#1792 …}
      -id: 73
      +apId: "linux@lemmy.ml"
      +apProfileId: "https://lemmy.ml/c/linux"
      +apPublicUrl: "https://lemmy.ml/c/linux"
      +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
      +apInboxUrl: "https://lemmy.ml/inbox"
      +apDomain: "lemmy.ml"
      +apPreferredUsername: "linux"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: null
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729583596 {#268
        date: 2024-10-22 09:53:16.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1698929468 {#270
        date: 2023-11-02 13:51:08.0 +01:00
      }
    }
    +image: null
    +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
    +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
    +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
    +url: "https://www.madaidans-insecurities.github.io/linux.html"
    +body: """
      Basically\n
      \n
      - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
      - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
      - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
      - X11 is insecure, okay we know that\n
      - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
      - Kernel bugs are often not fixed quickly or at all\n
      - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
      \n
      I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
      \n
      On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
      \n
      This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
      \n
      `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
      \n
      But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
      \n
      I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
      \n
      [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
      \n
      The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
      \n
      Maybe nix is a solution? Would this be a good idea?\n
      \n
      Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
      \n
      What do you know about this?
      """
    +type: "link"
    +lang: "en"
    +isOc: false
    +hasEmbed: false
    +commentCount: 8
    +favouriteCount: 36
    +score: 0
    +isAdult: false
    +sticky: false
    +lastActive: DateTime @1700929355 {#2418
      date: 2023-11-25 17:22:35.0 +01:00
    }
    +ip: null
    +adaAmount: 0
    +tags: null
    +mentions: null
    +comments: Doctrine\ORM\PersistentCollection {#1688 …}
    +votes: Doctrine\ORM\PersistentCollection {#1966 …}
    +reports: Doctrine\ORM\PersistentCollection {#1965 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
    +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
    +badges: Doctrine\ORM\PersistentCollection {#2439 …}
    +children: []
    -id: 16138
    -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
    -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
    +cross: false
    +upVotes: 0
    +downVotes: 0
    +ranking: 1700870525
    +visibility: "visible             "
    +apId: "https://feddit.de/post/5981126"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700784125 {#1858
      date: 2023-11-24 01:02:05.0 +01:00
    }
  }
]
Attributes
[]
Component
App\Twig\Components\VoteComponent {#3412
  +subject: App\Entity\Entry {#2412
    +user: Proxies\__CG__\App\Entity\User {#1978
      +avatar: null
      +cover: null
      +email: "Pantherina@feddit.de"
      +username: "@Pantherina@feddit.de"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1721498243 {#1515
        date: 2024-07-20 19:57:23.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
      +entries: Doctrine\ORM\PersistentCollection {#1406 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
      +posts: Doctrine\ORM\PersistentCollection {#1745 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
      +follows: Doctrine\ORM\PersistentCollection {#1409 …}
      +followers: Doctrine\ORM\PersistentCollection {#1624 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
      +reports: Doctrine\ORM\PersistentCollection {#1416 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
      +violations: Doctrine\ORM\PersistentCollection {#1694 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
      +awards: Doctrine\ORM\PersistentCollection {#1434 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
      +categories: Doctrine\ORM\PersistentCollection {#1640 …}
      -id: 48318
      -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
      +apId: "Pantherina@feddit.de"
      +apProfileId: "https://feddit.de/u/Pantherina"
      +apPublicUrl: "https://feddit.de/u/Pantherina"
      +apFollowersUrl: null
      +apInboxUrl: "https://feddit.de/inbox"
      +apDomain: "feddit.de"
      +apPreferredUsername: "Pantherina"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1721236644 {#1516
        date: 2024-07-17 19:17:24.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696428300 {#1518
        date: 2023-10-04 16:05:00.0 +02:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: App\Entity\Magazine {#264
      +icon: Proxies\__CG__\App\Entity\Image {#245 …}
      +name: "linux@lemmy.ml"
      +title: "linux"
      +description: """
        From Wikipedia, the free encyclopedia\n
        \n
        Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
        \n
        Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
        \n
        ### Rules\n
        \n
        - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
        - No misinformation\n
        - No NSFW content\n
        - No hate speech, bigotry, etc\n
        \n
        ### Related Communities\n
        \n
        - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
        - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
        - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
        - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
        \n
        Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
        """
      +rules: null
      +subscriptionsCount: 1
      +entryCount: 1406
      +entryCommentCount: 28632
      +postCount: 6
      +postCommentCount: 214
      +isAdult: false
      +customCss: null
      +lastActive: DateTime @1729583542 {#274
        date: 2024-10-22 09:52:22.0 +02:00
      }
      +markedForDeletionAt: null
      +tags: null
      +moderators: Doctrine\ORM\PersistentCollection {#236 …}
      +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
      +entries: Doctrine\ORM\PersistentCollection {#179 …}
      +posts: Doctrine\ORM\PersistentCollection {#137 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
      +bans: Doctrine\ORM\PersistentCollection {#116 …}
      +reports: Doctrine\ORM\PersistentCollection {#102 …}
      +badges: Doctrine\ORM\PersistentCollection {#80 …}
      +logs: Doctrine\ORM\PersistentCollection {#70 …}
      +awards: Doctrine\ORM\PersistentCollection {#1360 …}
      +categories: Doctrine\ORM\PersistentCollection {#1792 …}
      -id: 73
      +apId: "linux@lemmy.ml"
      +apProfileId: "https://lemmy.ml/c/linux"
      +apPublicUrl: "https://lemmy.ml/c/linux"
      +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
      +apInboxUrl: "https://lemmy.ml/inbox"
      +apDomain: "lemmy.ml"
      +apPreferredUsername: "linux"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: null
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729583596 {#268
        date: 2024-10-22 09:53:16.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1698929468 {#270
        date: 2023-11-02 13:51:08.0 +01:00
      }
    }
    +image: null
    +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
    +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
    +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
    +url: "https://www.madaidans-insecurities.github.io/linux.html"
    +body: """
      Basically\n
      \n
      - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
      - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
      - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
      - X11 is insecure, okay we know that\n
      - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
      - Kernel bugs are often not fixed quickly or at all\n
      - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
      \n
      I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
      \n
      On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
      \n
      This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
      \n
      `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
      \n
      But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
      \n
      I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
      \n
      [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
      \n
      The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
      \n
      Maybe nix is a solution? Would this be a good idea?\n
      \n
      Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
      \n
      What do you know about this?
      """
    +type: "link"
    +lang: "en"
    +isOc: false
    +hasEmbed: false
    +commentCount: 8
    +favouriteCount: 36
    +score: 0
    +isAdult: false
    +sticky: false
    +lastActive: DateTime @1700929355 {#2418
      date: 2023-11-25 17:22:35.0 +01:00
    }
    +ip: null
    +adaAmount: 0
    +tags: null
    +mentions: null
    +comments: Doctrine\ORM\PersistentCollection {#1688 …}
    +votes: Doctrine\ORM\PersistentCollection {#1966 …}
    +reports: Doctrine\ORM\PersistentCollection {#1965 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
    +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
    +badges: Doctrine\ORM\PersistentCollection {#2439 …}
    +children: []
    -id: 16138
    -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
    -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
    +cross: false
    +upVotes: 0
    +downVotes: 0
    +ranking: 1700870525
    +visibility: "visible             "
    +apId: "https://feddit.de/post/5981126"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700784125 {#1858
      date: 2023-11-24 01:02:05.0 +01:00
    }
  }
  +formDest: "entry"
  +showDownvote: true
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
}
boost App\Twig\Components\BoostComponent 14.0 MiB 1.54 ms
Input props
[
  "subject" => App\Entity\Entry {#2412
    +user: Proxies\__CG__\App\Entity\User {#1978
      +avatar: null
      +cover: null
      +email: "Pantherina@feddit.de"
      +username: "@Pantherina@feddit.de"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1721498243 {#1515
        date: 2024-07-20 19:57:23.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
      +entries: Doctrine\ORM\PersistentCollection {#1406 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
      +posts: Doctrine\ORM\PersistentCollection {#1745 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
      +follows: Doctrine\ORM\PersistentCollection {#1409 …}
      +followers: Doctrine\ORM\PersistentCollection {#1624 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
      +reports: Doctrine\ORM\PersistentCollection {#1416 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
      +violations: Doctrine\ORM\PersistentCollection {#1694 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
      +awards: Doctrine\ORM\PersistentCollection {#1434 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
      +categories: Doctrine\ORM\PersistentCollection {#1640 …}
      -id: 48318
      -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
      +apId: "Pantherina@feddit.de"
      +apProfileId: "https://feddit.de/u/Pantherina"
      +apPublicUrl: "https://feddit.de/u/Pantherina"
      +apFollowersUrl: null
      +apInboxUrl: "https://feddit.de/inbox"
      +apDomain: "feddit.de"
      +apPreferredUsername: "Pantherina"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1721236644 {#1516
        date: 2024-07-17 19:17:24.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696428300 {#1518
        date: 2023-10-04 16:05:00.0 +02:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: App\Entity\Magazine {#264
      +icon: Proxies\__CG__\App\Entity\Image {#245 …}
      +name: "linux@lemmy.ml"
      +title: "linux"
      +description: """
        From Wikipedia, the free encyclopedia\n
        \n
        Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
        \n
        Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
        \n
        ### Rules\n
        \n
        - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
        - No misinformation\n
        - No NSFW content\n
        - No hate speech, bigotry, etc\n
        \n
        ### Related Communities\n
        \n
        - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
        - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
        - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
        - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
        \n
        Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
        """
      +rules: null
      +subscriptionsCount: 1
      +entryCount: 1406
      +entryCommentCount: 28632
      +postCount: 6
      +postCommentCount: 214
      +isAdult: false
      +customCss: null
      +lastActive: DateTime @1729583542 {#274
        date: 2024-10-22 09:52:22.0 +02:00
      }
      +markedForDeletionAt: null
      +tags: null
      +moderators: Doctrine\ORM\PersistentCollection {#236 …}
      +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
      +entries: Doctrine\ORM\PersistentCollection {#179 …}
      +posts: Doctrine\ORM\PersistentCollection {#137 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
      +bans: Doctrine\ORM\PersistentCollection {#116 …}
      +reports: Doctrine\ORM\PersistentCollection {#102 …}
      +badges: Doctrine\ORM\PersistentCollection {#80 …}
      +logs: Doctrine\ORM\PersistentCollection {#70 …}
      +awards: Doctrine\ORM\PersistentCollection {#1360 …}
      +categories: Doctrine\ORM\PersistentCollection {#1792 …}
      -id: 73
      +apId: "linux@lemmy.ml"
      +apProfileId: "https://lemmy.ml/c/linux"
      +apPublicUrl: "https://lemmy.ml/c/linux"
      +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
      +apInboxUrl: "https://lemmy.ml/inbox"
      +apDomain: "lemmy.ml"
      +apPreferredUsername: "linux"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: null
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729583596 {#268
        date: 2024-10-22 09:53:16.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1698929468 {#270
        date: 2023-11-02 13:51:08.0 +01:00
      }
    }
    +image: null
    +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
    +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
    +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
    +url: "https://www.madaidans-insecurities.github.io/linux.html"
    +body: """
      Basically\n
      \n
      - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
      - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
      - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
      - X11 is insecure, okay we know that\n
      - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
      - Kernel bugs are often not fixed quickly or at all\n
      - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
      \n
      I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
      \n
      On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
      \n
      This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
      \n
      `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
      \n
      But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
      \n
      I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
      \n
      [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
      \n
      The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
      \n
      Maybe nix is a solution? Would this be a good idea?\n
      \n
      Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
      \n
      What do you know about this?
      """
    +type: "link"
    +lang: "en"
    +isOc: false
    +hasEmbed: false
    +commentCount: 8
    +favouriteCount: 36
    +score: 0
    +isAdult: false
    +sticky: false
    +lastActive: DateTime @1700929355 {#2418
      date: 2023-11-25 17:22:35.0 +01:00
    }
    +ip: null
    +adaAmount: 0
    +tags: null
    +mentions: null
    +comments: Doctrine\ORM\PersistentCollection {#1688 …}
    +votes: Doctrine\ORM\PersistentCollection {#1966 …}
    +reports: Doctrine\ORM\PersistentCollection {#1965 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
    +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
    +badges: Doctrine\ORM\PersistentCollection {#2439 …}
    +children: []
    -id: 16138
    -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
    -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
    +cross: false
    +upVotes: 0
    +downVotes: 0
    +ranking: 1700870525
    +visibility: "visible             "
    +apId: "https://feddit.de/post/5981126"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700784125 {#1858
      date: 2023-11-24 01:02:05.0 +01:00
    }
  }
]
Attributes
[]
Component
App\Twig\Components\BoostComponent {#3478
  +formDest: "entry"
  +subject: App\Entity\Entry {#2412
    +user: Proxies\__CG__\App\Entity\User {#1978
      +avatar: null
      +cover: null
      +email: "Pantherina@feddit.de"
      +username: "@Pantherina@feddit.de"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1721498243 {#1515
        date: 2024-07-20 19:57:23.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
      +entries: Doctrine\ORM\PersistentCollection {#1406 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
      +posts: Doctrine\ORM\PersistentCollection {#1745 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
      +follows: Doctrine\ORM\PersistentCollection {#1409 …}
      +followers: Doctrine\ORM\PersistentCollection {#1624 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
      +reports: Doctrine\ORM\PersistentCollection {#1416 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
      +violations: Doctrine\ORM\PersistentCollection {#1694 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
      +awards: Doctrine\ORM\PersistentCollection {#1434 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
      +categories: Doctrine\ORM\PersistentCollection {#1640 …}
      -id: 48318
      -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
      +apId: "Pantherina@feddit.de"
      +apProfileId: "https://feddit.de/u/Pantherina"
      +apPublicUrl: "https://feddit.de/u/Pantherina"
      +apFollowersUrl: null
      +apInboxUrl: "https://feddit.de/inbox"
      +apDomain: "feddit.de"
      +apPreferredUsername: "Pantherina"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1721236644 {#1516
        date: 2024-07-17 19:17:24.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696428300 {#1518
        date: 2023-10-04 16:05:00.0 +02:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: App\Entity\Magazine {#264
      +icon: Proxies\__CG__\App\Entity\Image {#245 …}
      +name: "linux@lemmy.ml"
      +title: "linux"
      +description: """
        From Wikipedia, the free encyclopedia\n
        \n
        Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
        \n
        Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
        \n
        ### Rules\n
        \n
        - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
        - No misinformation\n
        - No NSFW content\n
        - No hate speech, bigotry, etc\n
        \n
        ### Related Communities\n
        \n
        - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
        - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
        - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
        - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
        \n
        Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
        """
      +rules: null
      +subscriptionsCount: 1
      +entryCount: 1406
      +entryCommentCount: 28632
      +postCount: 6
      +postCommentCount: 214
      +isAdult: false
      +customCss: null
      +lastActive: DateTime @1729583542 {#274
        date: 2024-10-22 09:52:22.0 +02:00
      }
      +markedForDeletionAt: null
      +tags: null
      +moderators: Doctrine\ORM\PersistentCollection {#236 …}
      +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
      +entries: Doctrine\ORM\PersistentCollection {#179 …}
      +posts: Doctrine\ORM\PersistentCollection {#137 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
      +bans: Doctrine\ORM\PersistentCollection {#116 …}
      +reports: Doctrine\ORM\PersistentCollection {#102 …}
      +badges: Doctrine\ORM\PersistentCollection {#80 …}
      +logs: Doctrine\ORM\PersistentCollection {#70 …}
      +awards: Doctrine\ORM\PersistentCollection {#1360 …}
      +categories: Doctrine\ORM\PersistentCollection {#1792 …}
      -id: 73
      +apId: "linux@lemmy.ml"
      +apProfileId: "https://lemmy.ml/c/linux"
      +apPublicUrl: "https://lemmy.ml/c/linux"
      +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
      +apInboxUrl: "https://lemmy.ml/inbox"
      +apDomain: "lemmy.ml"
      +apPreferredUsername: "linux"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: null
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729583596 {#268
        date: 2024-10-22 09:53:16.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1698929468 {#270
        date: 2023-11-02 13:51:08.0 +01:00
      }
    }
    +image: null
    +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
    +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
    +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
    +url: "https://www.madaidans-insecurities.github.io/linux.html"
    +body: """
      Basically\n
      \n
      - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
      - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
      - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
      - X11 is insecure, okay we know that\n
      - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
      - Kernel bugs are often not fixed quickly or at all\n
      - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
      \n
      I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
      \n
      On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
      \n
      This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
      \n
      `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
      \n
      But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
      \n
      I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
      \n
      [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
      \n
      The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
      \n
      Maybe nix is a solution? Would this be a good idea?\n
      \n
      Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
      \n
      What do you know about this?
      """
    +type: "link"
    +lang: "en"
    +isOc: false
    +hasEmbed: false
    +commentCount: 8
    +favouriteCount: 36
    +score: 0
    +isAdult: false
    +sticky: false
    +lastActive: DateTime @1700929355 {#2418
      date: 2023-11-25 17:22:35.0 +01:00
    }
    +ip: null
    +adaAmount: 0
    +tags: null
    +mentions: null
    +comments: Doctrine\ORM\PersistentCollection {#1688 …}
    +votes: Doctrine\ORM\PersistentCollection {#1966 …}
    +reports: Doctrine\ORM\PersistentCollection {#1965 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
    +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
    +badges: Doctrine\ORM\PersistentCollection {#2439 …}
    +children: []
    -id: 16138
    -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
    -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
    +cross: false
    +upVotes: 0
    +downVotes: 0
    +ranking: 1700870525
    +visibility: "visible             "
    +apId: "https://feddit.de/post/5981126"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700784125 {#1858
      date: 2023-11-24 01:02:05.0 +01:00
    }
  }
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
}
entries_cross App\Twig\Components\EntriesCrossComponent 14.0 MiB 61.18 ms
Input props
[
  "entry" => App\Entity\Entry {#2412
    +user: Proxies\__CG__\App\Entity\User {#1978
      +avatar: null
      +cover: null
      +email: "Pantherina@feddit.de"
      +username: "@Pantherina@feddit.de"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1721498243 {#1515
        date: 2024-07-20 19:57:23.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
      +entries: Doctrine\ORM\PersistentCollection {#1406 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
      +posts: Doctrine\ORM\PersistentCollection {#1745 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
      +follows: Doctrine\ORM\PersistentCollection {#1409 …}
      +followers: Doctrine\ORM\PersistentCollection {#1624 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
      +reports: Doctrine\ORM\PersistentCollection {#1416 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
      +violations: Doctrine\ORM\PersistentCollection {#1694 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
      +awards: Doctrine\ORM\PersistentCollection {#1434 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
      +categories: Doctrine\ORM\PersistentCollection {#1640 …}
      -id: 48318
      -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
      +apId: "Pantherina@feddit.de"
      +apProfileId: "https://feddit.de/u/Pantherina"
      +apPublicUrl: "https://feddit.de/u/Pantherina"
      +apFollowersUrl: null
      +apInboxUrl: "https://feddit.de/inbox"
      +apDomain: "feddit.de"
      +apPreferredUsername: "Pantherina"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1721236644 {#1516
        date: 2024-07-17 19:17:24.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696428300 {#1518
        date: 2023-10-04 16:05:00.0 +02:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: App\Entity\Magazine {#264
      +icon: Proxies\__CG__\App\Entity\Image {#245 …}
      +name: "linux@lemmy.ml"
      +title: "linux"
      +description: """
        From Wikipedia, the free encyclopedia\n
        \n
        Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
        \n
        Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
        \n
        ### Rules\n
        \n
        - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
        - No misinformation\n
        - No NSFW content\n
        - No hate speech, bigotry, etc\n
        \n
        ### Related Communities\n
        \n
        - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
        - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
        - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
        - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
        \n
        Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
        """
      +rules: null
      +subscriptionsCount: 1
      +entryCount: 1406
      +entryCommentCount: 28632
      +postCount: 6
      +postCommentCount: 214
      +isAdult: false
      +customCss: null
      +lastActive: DateTime @1729583542 {#274
        date: 2024-10-22 09:52:22.0 +02:00
      }
      +markedForDeletionAt: null
      +tags: null
      +moderators: Doctrine\ORM\PersistentCollection {#236 …}
      +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
      +entries: Doctrine\ORM\PersistentCollection {#179 …}
      +posts: Doctrine\ORM\PersistentCollection {#137 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
      +bans: Doctrine\ORM\PersistentCollection {#116 …}
      +reports: Doctrine\ORM\PersistentCollection {#102 …}
      +badges: Doctrine\ORM\PersistentCollection {#80 …}
      +logs: Doctrine\ORM\PersistentCollection {#70 …}
      +awards: Doctrine\ORM\PersistentCollection {#1360 …}
      +categories: Doctrine\ORM\PersistentCollection {#1792 …}
      -id: 73
      +apId: "linux@lemmy.ml"
      +apProfileId: "https://lemmy.ml/c/linux"
      +apPublicUrl: "https://lemmy.ml/c/linux"
      +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
      +apInboxUrl: "https://lemmy.ml/inbox"
      +apDomain: "lemmy.ml"
      +apPreferredUsername: "linux"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: null
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729583596 {#268
        date: 2024-10-22 09:53:16.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1698929468 {#270
        date: 2023-11-02 13:51:08.0 +01:00
      }
    }
    +image: null
    +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
    +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
    +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
    +url: "https://www.madaidans-insecurities.github.io/linux.html"
    +body: """
      Basically\n
      \n
      - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
      - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
      - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
      - X11 is insecure, okay we know that\n
      - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
      - Kernel bugs are often not fixed quickly or at all\n
      - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
      \n
      I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
      \n
      On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
      \n
      This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
      \n
      `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
      \n
      But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
      \n
      I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
      \n
      [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
      \n
      The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
      \n
      Maybe nix is a solution? Would this be a good idea?\n
      \n
      Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
      \n
      What do you know about this?
      """
    +type: "link"
    +lang: "en"
    +isOc: false
    +hasEmbed: false
    +commentCount: 8
    +favouriteCount: 36
    +score: 0
    +isAdult: false
    +sticky: false
    +lastActive: DateTime @1700929355 {#2418
      date: 2023-11-25 17:22:35.0 +01:00
    }
    +ip: null
    +adaAmount: 0
    +tags: null
    +mentions: null
    +comments: Doctrine\ORM\PersistentCollection {#1688 …}
    +votes: Doctrine\ORM\PersistentCollection {#1966 …}
    +reports: Doctrine\ORM\PersistentCollection {#1965 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
    +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
    +badges: Doctrine\ORM\PersistentCollection {#2439 …}
    +children: []
    -id: 16138
    -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
    -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
    +cross: false
    +upVotes: 0
    +downVotes: 0
    +ranking: 1700870525
    +visibility: "visible             "
    +apId: "https://feddit.de/post/5981126"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700784125 {#1858
      date: 2023-11-24 01:02:05.0 +01:00
    }
  }
]
Attributes
[]
Component
App\Twig\Components\EntriesCrossComponent {#3797
  +entry: App\Entity\Entry {#2412
    +user: Proxies\__CG__\App\Entity\User {#1978
      +avatar: null
      +cover: null
      +email: "Pantherina@feddit.de"
      +username: "@Pantherina@feddit.de"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1721498243 {#1515
        date: 2024-07-20 19:57:23.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
      +entries: Doctrine\ORM\PersistentCollection {#1406 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
      +posts: Doctrine\ORM\PersistentCollection {#1745 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
      +follows: Doctrine\ORM\PersistentCollection {#1409 …}
      +followers: Doctrine\ORM\PersistentCollection {#1624 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
      +reports: Doctrine\ORM\PersistentCollection {#1416 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
      +violations: Doctrine\ORM\PersistentCollection {#1694 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
      +awards: Doctrine\ORM\PersistentCollection {#1434 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
      +categories: Doctrine\ORM\PersistentCollection {#1640 …}
      -id: 48318
      -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
      +apId: "Pantherina@feddit.de"
      +apProfileId: "https://feddit.de/u/Pantherina"
      +apPublicUrl: "https://feddit.de/u/Pantherina"
      +apFollowersUrl: null
      +apInboxUrl: "https://feddit.de/inbox"
      +apDomain: "feddit.de"
      +apPreferredUsername: "Pantherina"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1721236644 {#1516
        date: 2024-07-17 19:17:24.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696428300 {#1518
        date: 2023-10-04 16:05:00.0 +02:00
      }
      +__isInitialized__: true
       …2
    }
    +magazine: App\Entity\Magazine {#264
      +icon: Proxies\__CG__\App\Entity\Image {#245 …}
      +name: "linux@lemmy.ml"
      +title: "linux"
      +description: """
        From Wikipedia, the free encyclopedia\n
        \n
        Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
        \n
        Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
        \n
        ### Rules\n
        \n
        - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
        - No misinformation\n
        - No NSFW content\n
        - No hate speech, bigotry, etc\n
        \n
        ### Related Communities\n
        \n
        - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
        - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
        - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
        - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
        \n
        Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
        """
      +rules: null
      +subscriptionsCount: 1
      +entryCount: 1406
      +entryCommentCount: 28632
      +postCount: 6
      +postCommentCount: 214
      +isAdult: false
      +customCss: null
      +lastActive: DateTime @1729583542 {#274
        date: 2024-10-22 09:52:22.0 +02:00
      }
      +markedForDeletionAt: null
      +tags: null
      +moderators: Doctrine\ORM\PersistentCollection {#236 …}
      +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
      +entries: Doctrine\ORM\PersistentCollection {#179 …}
      +posts: Doctrine\ORM\PersistentCollection {#137 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
      +bans: Doctrine\ORM\PersistentCollection {#116 …}
      +reports: Doctrine\ORM\PersistentCollection {#102 …}
      +badges: Doctrine\ORM\PersistentCollection {#80 …}
      +logs: Doctrine\ORM\PersistentCollection {#70 …}
      +awards: Doctrine\ORM\PersistentCollection {#1360 …}
      +categories: Doctrine\ORM\PersistentCollection {#1792 …}
      -id: 73
      +apId: "linux@lemmy.ml"
      +apProfileId: "https://lemmy.ml/c/linux"
      +apPublicUrl: "https://lemmy.ml/c/linux"
      +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
      +apInboxUrl: "https://lemmy.ml/inbox"
      +apDomain: "lemmy.ml"
      +apPreferredUsername: "linux"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: null
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729583596 {#268
        date: 2024-10-22 09:53:16.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1698929468 {#270
        date: 2023-11-02 13:51:08.0 +01:00
      }
    }
    +image: null
    +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
    +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
    +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
    +url: "https://www.madaidans-insecurities.github.io/linux.html"
    +body: """
      Basically\n
      \n
      - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
      - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
      - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
      - X11 is insecure, okay we know that\n
      - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
      - Kernel bugs are often not fixed quickly or at all\n
      - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
      \n
      I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
      \n
      On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
      \n
      This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
      \n
      `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
      \n
      But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
      \n
      I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
      \n
      [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
      \n
      The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
      \n
      Maybe nix is a solution? Would this be a good idea?\n
      \n
      Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
      \n
      What do you know about this?
      """
    +type: "link"
    +lang: "en"
    +isOc: false
    +hasEmbed: false
    +commentCount: 8
    +favouriteCount: 36
    +score: 0
    +isAdult: false
    +sticky: false
    +lastActive: DateTime @1700929355 {#2418
      date: 2023-11-25 17:22:35.0 +01:00
    }
    +ip: null
    +adaAmount: 0
    +tags: null
    +mentions: null
    +comments: Doctrine\ORM\PersistentCollection {#1688 …}
    +votes: Doctrine\ORM\PersistentCollection {#1966 …}
    +reports: Doctrine\ORM\PersistentCollection {#1965 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
    +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
    +badges: Doctrine\ORM\PersistentCollection {#2439 …}
    +children: []
    -id: 16138
    -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
    -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
    +cross: false
    +upVotes: 0
    +downVotes: 0
    +ranking: 1700870525
    +visibility: "visible             "
    +apId: "https://feddit.de/post/5981126"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700784125 {#1858
      date: 2023-11-24 01:02:05.0 +01:00
    }
  }
  -repository: App\Repository\EntryRepository {#269 …}
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
  -twig: Twig\Environment {#1252 …}
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
  -security: Symfony\Bundle\SecurityBundle\Security {#1101 …}
}
editor_toolbar App\Twig\Components\EditorToolbarComponent 14.0 MiB 0.24 ms
Input props
[
  "id" => "entry_comment_6881063129e226.03452604_body"
]
Attributes
[]
Component
App\Twig\Components\EditorToolbarComponent {#3922
  +id: "entry_comment_6881063129e226.03452604_body"
}
entry_comment App\Twig\Components\EntryCommentComponent 14.0 MiB 106.20 ms
Input props
[
  "comment" => App\Entity\EntryComment {#4122
    +user: App\Entity\User {#4070
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#4130
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
      +entries: Doctrine\ORM\PersistentCollection {#4064 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
      +posts: Doctrine\ORM\PersistentCollection {#4054 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
      +follows: Doctrine\ORM\PersistentCollection {#4186 …}
      +followers: Doctrine\ORM\PersistentCollection {#4182 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
      +reports: Doctrine\ORM\PersistentCollection {#4185 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
      +violations: Doctrine\ORM\PersistentCollection {#4175 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
      +awards: Doctrine\ORM\PersistentCollection {#4176 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
      +categories: Doctrine\ORM\PersistentCollection {#4173 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#4126
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#4124
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: """
      “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
      \n
      The irony.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 11
    +score: 0
    +lastActive: DateTime @1701510560 {#4131
      date: 2023-12-02 10:49:20.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4120 …}
    +nested: Doctrine\ORM\PersistentCollection {#4118 …}
    +votes: Doctrine\ORM\PersistentCollection {#4116 …}
    +reports: Doctrine\ORM\PersistentCollection {#4114 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
    -id: 157122
    -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1721846"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700793081 {#4067
      date: 2023-11-24 03:31:21.0 +01:00
    }
  }
  "showNested" => true
  "dateAsUrl" => false
  "showMagazineName" => false
  "showEntryTitle" => false
]
Attributes
[]
Component
App\Twig\Components\EntryCommentComponent {#4440
  +comment: App\Entity\EntryComment {#4122
    +user: App\Entity\User {#4070
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#4130
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
      +entries: Doctrine\ORM\PersistentCollection {#4064 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
      +posts: Doctrine\ORM\PersistentCollection {#4054 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
      +follows: Doctrine\ORM\PersistentCollection {#4186 …}
      +followers: Doctrine\ORM\PersistentCollection {#4182 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
      +reports: Doctrine\ORM\PersistentCollection {#4185 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
      +violations: Doctrine\ORM\PersistentCollection {#4175 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
      +awards: Doctrine\ORM\PersistentCollection {#4176 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
      +categories: Doctrine\ORM\PersistentCollection {#4173 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#4126
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#4124
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: """
      “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
      \n
      The irony.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 11
    +score: 0
    +lastActive: DateTime @1701510560 {#4131
      date: 2023-12-02 10:49:20.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4120 …}
    +nested: Doctrine\ORM\PersistentCollection {#4118 …}
    +votes: Doctrine\ORM\PersistentCollection {#4116 …}
    +reports: Doctrine\ORM\PersistentCollection {#4114 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
    -id: 157122
    -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1721846"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700793081 {#4067
      date: 2023-11-24 03:31:21.0 +01:00
    }
  }
  +showMagazineName: false
  +showEntryTitle: false
  +showNested: true
  +level: 1
  +canSeeTrash: false
  +dateAsUrl: false
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
  -authorizationChecker: Symfony\Component\Security\Core\Authorization\AuthorizationChecker {#931 …}
}
user_inline App\Twig\Components\UserInlineComponent 14.0 MiB 0.15 ms
Input props
[
  "user" => App\Entity\User {#4070
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#4130
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
    +entries: Doctrine\ORM\PersistentCollection {#4064 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
    +posts: Doctrine\ORM\PersistentCollection {#4054 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
    +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
    +follows: Doctrine\ORM\PersistentCollection {#4186 …}
    +followers: Doctrine\ORM\PersistentCollection {#4182 …}
    +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
    +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
    +reports: Doctrine\ORM\PersistentCollection {#4185 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
    +violations: Doctrine\ORM\PersistentCollection {#4175 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
    +awards: Doctrine\ORM\PersistentCollection {#4176 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
    +categories: Doctrine\ORM\PersistentCollection {#4173 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#4126
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#4124
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  "showAvatar" => false
]
Attributes
[]
Component
App\Twig\Components\UserInlineComponent {#4530
  +user: App\Entity\User {#4070
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#4130
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
    +entries: Doctrine\ORM\PersistentCollection {#4064 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
    +posts: Doctrine\ORM\PersistentCollection {#4054 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
    +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
    +follows: Doctrine\ORM\PersistentCollection {#4186 …}
    +followers: Doctrine\ORM\PersistentCollection {#4182 …}
    +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
    +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
    +reports: Doctrine\ORM\PersistentCollection {#4185 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
    +violations: Doctrine\ORM\PersistentCollection {#4175 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
    +awards: Doctrine\ORM\PersistentCollection {#4176 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
    +categories: Doctrine\ORM\PersistentCollection {#4173 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#4126
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#4124
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  +showAvatar: false
}
date App\Twig\Components\DateComponent 14.0 MiB 0.14 ms
Input props
[
  "date" => DateTimeImmutable @1700793081 {#4067
    date: 2023-11-24 03:31:21.0 +01:00
  }
]
Attributes
[]
Component
App\Twig\Components\DateComponent {#4585
  +date: DateTimeImmutable @1700793081 {#4067
    date: 2023-11-24 03:31:21.0 +01:00
  }
}
date_edited App\Twig\Components\DateEditedComponent 14.0 MiB 0.10 ms
Input props
[
  "createdAt" => DateTimeImmutable @1700793081 {#4067
    date: 2023-11-24 03:31:21.0 +01:00
  }
  "editedAt" => null
]
Attributes
[]
Component
App\Twig\Components\DateEditedComponent {#4639
  +createdAt: DateTimeImmutable @1700793081 {#4067
    date: 2023-11-24 03:31:21.0 +01:00
  }
  +editedAt: null
}
user_avatar App\Twig\Components\UserAvatarComponent 14.0 MiB 0.27 ms
Input props
[
  "user" => App\Entity\User {#4070
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#4130
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
    +entries: Doctrine\ORM\PersistentCollection {#4064 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
    +posts: Doctrine\ORM\PersistentCollection {#4054 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
    +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
    +follows: Doctrine\ORM\PersistentCollection {#4186 …}
    +followers: Doctrine\ORM\PersistentCollection {#4182 …}
    +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
    +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
    +reports: Doctrine\ORM\PersistentCollection {#4185 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
    +violations: Doctrine\ORM\PersistentCollection {#4175 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
    +awards: Doctrine\ORM\PersistentCollection {#4176 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
    +categories: Doctrine\ORM\PersistentCollection {#4173 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#4126
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#4124
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  "width" => 40
  "height" => 40
  "asLink" => true
]
Attributes
[]
Component
App\Twig\Components\UserAvatarComponent {#4695
  +width: 40
  +height: 40
  +user: App\Entity\User {#4070
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#4130
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
    +entries: Doctrine\ORM\PersistentCollection {#4064 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
    +posts: Doctrine\ORM\PersistentCollection {#4054 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
    +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
    +follows: Doctrine\ORM\PersistentCollection {#4186 …}
    +followers: Doctrine\ORM\PersistentCollection {#4182 …}
    +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
    +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
    +reports: Doctrine\ORM\PersistentCollection {#4185 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
    +violations: Doctrine\ORM\PersistentCollection {#4175 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
    +awards: Doctrine\ORM\PersistentCollection {#4176 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
    +categories: Doctrine\ORM\PersistentCollection {#4173 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#4126
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#4124
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  +asLink: true
}
vote App\Twig\Components\VoteComponent 14.0 MiB 0.54 ms
Input props
[
  "subject" => App\Entity\EntryComment {#4122
    +user: App\Entity\User {#4070
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#4130
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
      +entries: Doctrine\ORM\PersistentCollection {#4064 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
      +posts: Doctrine\ORM\PersistentCollection {#4054 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
      +follows: Doctrine\ORM\PersistentCollection {#4186 …}
      +followers: Doctrine\ORM\PersistentCollection {#4182 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
      +reports: Doctrine\ORM\PersistentCollection {#4185 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
      +violations: Doctrine\ORM\PersistentCollection {#4175 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
      +awards: Doctrine\ORM\PersistentCollection {#4176 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
      +categories: Doctrine\ORM\PersistentCollection {#4173 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#4126
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#4124
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: """
      “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
      \n
      The irony.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 11
    +score: 0
    +lastActive: DateTime @1701510560 {#4131
      date: 2023-12-02 10:49:20.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4120 …}
    +nested: Doctrine\ORM\PersistentCollection {#4118 …}
    +votes: Doctrine\ORM\PersistentCollection {#4116 …}
    +reports: Doctrine\ORM\PersistentCollection {#4114 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
    -id: 157122
    -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1721846"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700793081 {#4067
      date: 2023-11-24 03:31:21.0 +01:00
    }
  }
]
Attributes
[]
Component
App\Twig\Components\VoteComponent {#4782
  +subject: App\Entity\EntryComment {#4122
    +user: App\Entity\User {#4070
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#4130
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
      +entries: Doctrine\ORM\PersistentCollection {#4064 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
      +posts: Doctrine\ORM\PersistentCollection {#4054 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
      +follows: Doctrine\ORM\PersistentCollection {#4186 …}
      +followers: Doctrine\ORM\PersistentCollection {#4182 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
      +reports: Doctrine\ORM\PersistentCollection {#4185 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
      +violations: Doctrine\ORM\PersistentCollection {#4175 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
      +awards: Doctrine\ORM\PersistentCollection {#4176 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
      +categories: Doctrine\ORM\PersistentCollection {#4173 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#4126
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#4124
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: """
      “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
      \n
      The irony.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 11
    +score: 0
    +lastActive: DateTime @1701510560 {#4131
      date: 2023-12-02 10:49:20.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4120 …}
    +nested: Doctrine\ORM\PersistentCollection {#4118 …}
    +votes: Doctrine\ORM\PersistentCollection {#4116 …}
    +reports: Doctrine\ORM\PersistentCollection {#4114 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
    -id: 157122
    -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1721846"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700793081 {#4067
      date: 2023-11-24 03:31:21.0 +01:00
    }
  }
  +formDest: "entry_comment"
  +showDownvote: true
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
}
boost App\Twig\Components\BoostComponent 14.0 MiB 2.86 ms
Input props
[
  "subject" => App\Entity\EntryComment {#4122
    +user: App\Entity\User {#4070
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#4130
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
      +entries: Doctrine\ORM\PersistentCollection {#4064 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
      +posts: Doctrine\ORM\PersistentCollection {#4054 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
      +follows: Doctrine\ORM\PersistentCollection {#4186 …}
      +followers: Doctrine\ORM\PersistentCollection {#4182 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
      +reports: Doctrine\ORM\PersistentCollection {#4185 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
      +violations: Doctrine\ORM\PersistentCollection {#4175 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
      +awards: Doctrine\ORM\PersistentCollection {#4176 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
      +categories: Doctrine\ORM\PersistentCollection {#4173 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#4126
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#4124
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: """
      “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
      \n
      The irony.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 11
    +score: 0
    +lastActive: DateTime @1701510560 {#4131
      date: 2023-12-02 10:49:20.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4120 …}
    +nested: Doctrine\ORM\PersistentCollection {#4118 …}
    +votes: Doctrine\ORM\PersistentCollection {#4116 …}
    +reports: Doctrine\ORM\PersistentCollection {#4114 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
    -id: 157122
    -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1721846"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700793081 {#4067
      date: 2023-11-24 03:31:21.0 +01:00
    }
  }
]
Attributes
[]
Component
App\Twig\Components\BoostComponent {#4839
  +formDest: "entry_comment"
  +subject: App\Entity\EntryComment {#4122
    +user: App\Entity\User {#4070
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#4130
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
      +entries: Doctrine\ORM\PersistentCollection {#4064 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
      +posts: Doctrine\ORM\PersistentCollection {#4054 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
      +follows: Doctrine\ORM\PersistentCollection {#4186 …}
      +followers: Doctrine\ORM\PersistentCollection {#4182 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
      +reports: Doctrine\ORM\PersistentCollection {#4185 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
      +violations: Doctrine\ORM\PersistentCollection {#4175 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
      +awards: Doctrine\ORM\PersistentCollection {#4176 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
      +categories: Doctrine\ORM\PersistentCollection {#4173 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#4126
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#4124
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: """
      “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
      \n
      The irony.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 11
    +score: 0
    +lastActive: DateTime @1701510560 {#4131
      date: 2023-12-02 10:49:20.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4120 …}
    +nested: Doctrine\ORM\PersistentCollection {#4118 …}
    +votes: Doctrine\ORM\PersistentCollection {#4116 …}
    +reports: Doctrine\ORM\PersistentCollection {#4114 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
    -id: 157122
    -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1721846"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700793081 {#4067
      date: 2023-11-24 03:31:21.0 +01:00
    }
  }
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
}
entry_comments_nested App\Twig\Components\EntryCommentsNestedComponent 14.0 MiB 83.77 ms
Input props
[
  "comment" => App\Entity\EntryComment {#4122
    +user: App\Entity\User {#4070
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#4130
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
      +entries: Doctrine\ORM\PersistentCollection {#4064 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
      +posts: Doctrine\ORM\PersistentCollection {#4054 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
      +follows: Doctrine\ORM\PersistentCollection {#4186 …}
      +followers: Doctrine\ORM\PersistentCollection {#4182 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
      +reports: Doctrine\ORM\PersistentCollection {#4185 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
      +violations: Doctrine\ORM\PersistentCollection {#4175 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
      +awards: Doctrine\ORM\PersistentCollection {#4176 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
      +categories: Doctrine\ORM\PersistentCollection {#4173 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#4126
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#4124
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: """
      “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
      \n
      The irony.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 11
    +score: 0
    +lastActive: DateTime @1701510560 {#4131
      date: 2023-12-02 10:49:20.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4120 …}
    +nested: Doctrine\ORM\PersistentCollection {#4118 …}
    +votes: Doctrine\ORM\PersistentCollection {#4116 …}
    +reports: Doctrine\ORM\PersistentCollection {#4114 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
    -id: 157122
    -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1721846"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700793081 {#4067
      date: 2023-11-24 03:31:21.0 +01:00
    }
  }
  "level" => 1
  "showNested" => true
  "view" => "tree"
]
Attributes
[
  "showNested" => true
]
Component
App\Twig\Components\EntryCommentsNestedComponent {#5084
  +comment: App\Entity\EntryComment {#4122
    +user: App\Entity\User {#4070
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#4130
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
      +entries: Doctrine\ORM\PersistentCollection {#4064 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
      +posts: Doctrine\ORM\PersistentCollection {#4054 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
      +follows: Doctrine\ORM\PersistentCollection {#4186 …}
      +followers: Doctrine\ORM\PersistentCollection {#4182 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
      +reports: Doctrine\ORM\PersistentCollection {#4185 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
      +violations: Doctrine\ORM\PersistentCollection {#4175 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
      +awards: Doctrine\ORM\PersistentCollection {#4176 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
      +categories: Doctrine\ORM\PersistentCollection {#4173 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#4126
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#4124
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: """
      “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
      \n
      The irony.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 11
    +score: 0
    +lastActive: DateTime @1701510560 {#4131
      date: 2023-12-02 10:49:20.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4120 …}
    +nested: Doctrine\ORM\PersistentCollection {#4118 …}
    +votes: Doctrine\ORM\PersistentCollection {#4116 …}
    +reports: Doctrine\ORM\PersistentCollection {#4114 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
    -id: 157122
    -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1721846"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700793081 {#4067
      date: 2023-11-24 03:31:21.0 +01:00
    }
  }
  +nestedComments: [
    158086 => App\Entity\EntryComment {#4398
      +user: Proxies\__CG__\App\Entity\User {#1978 …2}
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: App\Entity\EntryComment {#4122}
      +root: App\Entity\EntryComment {#4122}
      +body: """
        I mean the origin is still legit, so there is no real problem with it, right?\n
        \n
        One cannot just register a site as github.com
        """
      +lang: "en"
      +isAdult: false
      +favouriteCount: 0
      +score: 0
      +lastActive: DateTime @1700824252 {#4397
        date: 2023-11-24 12:10:52.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
        "@ReversalHatchery@beehaw.org"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4401 …}
      +nested: Doctrine\ORM\PersistentCollection {#4406 …}
      +votes: Doctrine\ORM\PersistentCollection {#4402 …}
      +reports: Doctrine\ORM\PersistentCollection {#4408 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4410 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4412 …}
      -id: 158086
      -bodyTs: "'cannot':18 'github.com':24 'legit':7 'mean':2 'one':17 'origin':4 'problem':13 'real':12 'regist':20 'right':16 'site':22 'still':6"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://feddit.de/comment/5103814"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700824252 {#4394
        date: 2023-11-24 12:10:52.0 +01:00
      }
    }
    162857 => App\Entity\EntryComment {#4430
      +user: App\Entity\User {#4070}
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: App\Entity\EntryComment {#4398}
      +root: App\Entity\EntryComment {#4122}
      +body: "I’m not sure if at this point the browser verifies whether the cert is even legit for github.com"
      +lang: "en"
      +isAdult: false
      +favouriteCount: 0
      +score: 0
      +lastActive: DateTime @1700929355 {#4435
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
        "@ReversalHatchery@beehaw.org"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4438 …}
      +nested: Doctrine\ORM\PersistentCollection {#4442 …}
      +votes: Doctrine\ORM\PersistentCollection {#4444 …}
      +reports: Doctrine\ORM\PersistentCollection {#4445 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4447 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4449 …}
      -id: 162857
      -bodyTs: "'browser':10 'cert':14 'even':16 'github.com':19 'legit':17 'm':2 'point':8 'sure':4 'verifi':11 'whether':12"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://beehaw.org/comment/1735772"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700929355 {#4432
        date: 2023-11-25 17:22:35.0 +01:00
      }
    }
    158202 => App\Entity\EntryComment {#4453
      +user: Proxies\__CG__\App\Entity\User {#4454
        +avatar: Proxies\__CG__\App\Entity\Image {#6518 …}
        +cover: null
        +email: "Strit@lemmy.linuxuserspace.show"
        +username: "@Strit@lemmy.linuxuserspace.show"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: "Linux enthusiast, family man and nerd"
        +lastActive: DateTime @1726328845 {#6515
          date: 2024-09-14 17:47:25.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#6519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#6521 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#6523 …}
        +entries: Doctrine\ORM\PersistentCollection {#6525 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#6527 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#6529 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#6531 …}
        +posts: Doctrine\ORM\PersistentCollection {#6533 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#6535 …}
        +postComments: Doctrine\ORM\PersistentCollection {#6537 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#6539 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#6541 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#6543 …}
        +follows: Doctrine\ORM\PersistentCollection {#6545 …}
        +followers: Doctrine\ORM\PersistentCollection {#6547 …}
        +blocks: Doctrine\ORM\PersistentCollection {#6549 …}
        +blockers: Doctrine\ORM\PersistentCollection {#6551 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#6553 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#6555 …}
        +reports: Doctrine\ORM\PersistentCollection {#6557 …}
        +favourites: Doctrine\ORM\PersistentCollection {#6559 …}
        +violations: Doctrine\ORM\PersistentCollection {#6561 …}
        +notifications: Doctrine\ORM\PersistentCollection {#6563 …}
        +awards: Doctrine\ORM\PersistentCollection {#6565 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#6567 …}
        +categories: Doctrine\ORM\PersistentCollection {#6569 …}
        -id: 69878
        -password: "$2y$13$pwWoC7DgFHMWPD06SHqbBu6ejTQ7ZI5lTehnjO.le5nPbpbwlZiiC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#6571 …}
        +apId: "Strit@lemmy.linuxuserspace.show"
        +apProfileId: "https://lemmy.linuxuserspace.show/u/Strit"
        +apPublicUrl: "https://lemmy.linuxuserspace.show/u/Strit"
        +apFollowersUrl: null
        +apInboxUrl: "https://lemmy.linuxuserspace.show/inbox"
        +apDomain: "lemmy.linuxuserspace.show"
        +apPreferredUsername: "Strit"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729027530 {#6516
          date: 2024-10-15 23:25:30.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698931515 {#6517
          date: 2023-11-02 14:25:15.0 +01:00
        }
        +__isInitialized__: true
         …2
      }
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: App\Entity\EntryComment {#4398}
      +root: App\Entity\EntryComment {#4122}
      +body: "It uses the github cert, but that is not set to use the github.io subpages that start with www."
      +lang: "en"
      +isAdult: false
      +favouriteCount: 1
      +score: 0
      +lastActive: DateTime @1700827184 {#4451
        date: 2023-11-24 12:59:44.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
        "@ReversalHatchery@beehaw.org"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4455 …}
      +nested: Doctrine\ORM\PersistentCollection {#4457 …}
      +votes: Doctrine\ORM\PersistentCollection {#4459 …}
      +reports: Doctrine\ORM\PersistentCollection {#4461 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4463 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4465 …}
      -id: 158202
      -bodyTs: "'cert':5 'github':4 'github.io':14 'set':10 'start':17 'subpag':15 'use':2,12 'www':19"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://lemmy.linuxuserspace.show/comment/623231"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700827184 {#4452
        date: 2023-11-24 12:59:44.0 +01:00
      }
    }
  ]
  +level: 1
  +view: "tree"
  -entryCommentRepository: App\Repository\EntryCommentRepository {#555 …}
  -twig: Twig\Environment {#1252 …}
  -security: Symfony\Bundle\SecurityBundle\Security {#1101 …}
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
}
entry_comment App\Twig\Components\EntryCommentComponent 14.0 MiB 79.18 ms
Input props
[
  "comment" => App\Entity\EntryComment {#4398
    +user: Proxies\__CG__\App\Entity\User {#1978
      +avatar: null
      +cover: null
      +email: "Pantherina@feddit.de"
      +username: "@Pantherina@feddit.de"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1721498243 {#1515
        date: 2024-07-20 19:57:23.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
      +entries: Doctrine\ORM\PersistentCollection {#1406 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
      +posts: Doctrine\ORM\PersistentCollection {#1745 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
      +follows: Doctrine\ORM\PersistentCollection {#1409 …}
      +followers: Doctrine\ORM\PersistentCollection {#1624 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
      +reports: Doctrine\ORM\PersistentCollection {#1416 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
      +violations: Doctrine\ORM\PersistentCollection {#1694 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
      +awards: Doctrine\ORM\PersistentCollection {#1434 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
      +categories: Doctrine\ORM\PersistentCollection {#1640 …}
      -id: 48318
      -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
      +apId: "Pantherina@feddit.de"
      +apProfileId: "https://feddit.de/u/Pantherina"
      +apPublicUrl: "https://feddit.de/u/Pantherina"
      +apFollowersUrl: null
      +apInboxUrl: "https://feddit.de/inbox"
      +apDomain: "feddit.de"
      +apPreferredUsername: "Pantherina"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1721236644 {#1516
        date: 2024-07-17 19:17:24.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696428300 {#1518
        date: 2023-10-04 16:05:00.0 +02:00
      }
      +__isInitialized__: true
       …2
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978 …2}
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4122
      +user: App\Entity\User {#4070
        +avatar: null
        +cover: null
        +email: "ReversalHatchery@beehaw.org"
        +username: "@ReversalHatchery@beehaw.org"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: """
          Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
          Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
          """
        +lastActive: DateTime @1729157044 {#4130
          date: 2024-10-17 11:24:04.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
        +entries: Doctrine\ORM\PersistentCollection {#4064 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
        +posts: Doctrine\ORM\PersistentCollection {#4054 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
        +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
        +follows: Doctrine\ORM\PersistentCollection {#4186 …}
        +followers: Doctrine\ORM\PersistentCollection {#4182 …}
        +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
        +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
        +reports: Doctrine\ORM\PersistentCollection {#4185 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
        +violations: Doctrine\ORM\PersistentCollection {#4175 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
        +awards: Doctrine\ORM\PersistentCollection {#4176 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
        +categories: Doctrine\ORM\PersistentCollection {#4173 …}
        -id: 53309
        -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
        +apId: "ReversalHatchery@beehaw.org"
        +apProfileId: "https://beehaw.org/u/ReversalHatchery"
        +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
        +apFollowersUrl: null
        +apInboxUrl: "https://beehaw.org/inbox"
        +apDomain: "beehaw.org"
        +apPreferredUsername: "ReversalHatchery"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729027069 {#4126
          date: 2024-10-15 23:17:49.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696732297 {#4124
          date: 2023-10-08 04:31:37.0 +02:00
        }
      }
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: null
      +root: null
      +body: """
        “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
        \n
        The irony.
        """
      +lang: "en"
      +isAdult: false
      +favouriteCount: 11
      +score: 0
      +lastActive: DateTime @1701510560 {#4131
        date: 2023-12-02 10:49:20.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4120 …}
      +nested: Doctrine\ORM\PersistentCollection {#4118 …}
      +votes: Doctrine\ORM\PersistentCollection {#4116 …}
      +reports: Doctrine\ORM\PersistentCollection {#4114 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
      -id: 157122
      -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://beehaw.org/comment/1721846"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700793081 {#4067
        date: 2023-11-24 03:31:21.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4122}
    +body: """
      I mean the origin is still legit, so there is no real problem with it, right?\n
      \n
      One cannot just register a site as github.com
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 0
    +score: 0
    +lastActive: DateTime @1700824252 {#4397
      date: 2023-11-24 12:10:52.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@ReversalHatchery@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4401 …}
    +nested: Doctrine\ORM\PersistentCollection {#4406 …}
    +votes: Doctrine\ORM\PersistentCollection {#4402 …}
    +reports: Doctrine\ORM\PersistentCollection {#4408 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4410 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4412 …}
    -id: 158086
    -bodyTs: "'cannot':18 'github.com':24 'legit':7 'mean':2 'one':17 'origin':4 'problem':13 'real':12 'regist':20 'right':16 'site':22 'still':6"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://feddit.de/comment/5103814"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700824252 {#4394
      date: 2023-11-24 12:10:52.0 +01:00
    }
  }
  "showNested" => true
  "level" => 2
  "showEntryTitle" => false
  "showMagazineName" => false
]
Attributes
[]
Component
App\Twig\Components\EntryCommentComponent {#5158
  +comment: App\Entity\EntryComment {#4398
    +user: Proxies\__CG__\App\Entity\User {#1978
      +avatar: null
      +cover: null
      +email: "Pantherina@feddit.de"
      +username: "@Pantherina@feddit.de"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1721498243 {#1515
        date: 2024-07-20 19:57:23.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
      +entries: Doctrine\ORM\PersistentCollection {#1406 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
      +posts: Doctrine\ORM\PersistentCollection {#1745 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
      +follows: Doctrine\ORM\PersistentCollection {#1409 …}
      +followers: Doctrine\ORM\PersistentCollection {#1624 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
      +reports: Doctrine\ORM\PersistentCollection {#1416 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
      +violations: Doctrine\ORM\PersistentCollection {#1694 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
      +awards: Doctrine\ORM\PersistentCollection {#1434 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
      +categories: Doctrine\ORM\PersistentCollection {#1640 …}
      -id: 48318
      -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
      +apId: "Pantherina@feddit.de"
      +apProfileId: "https://feddit.de/u/Pantherina"
      +apPublicUrl: "https://feddit.de/u/Pantherina"
      +apFollowersUrl: null
      +apInboxUrl: "https://feddit.de/inbox"
      +apDomain: "feddit.de"
      +apPreferredUsername: "Pantherina"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1721236644 {#1516
        date: 2024-07-17 19:17:24.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696428300 {#1518
        date: 2023-10-04 16:05:00.0 +02:00
      }
      +__isInitialized__: true
       …2
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978 …2}
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4122
      +user: App\Entity\User {#4070
        +avatar: null
        +cover: null
        +email: "ReversalHatchery@beehaw.org"
        +username: "@ReversalHatchery@beehaw.org"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: """
          Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
          Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
          """
        +lastActive: DateTime @1729157044 {#4130
          date: 2024-10-17 11:24:04.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
        +entries: Doctrine\ORM\PersistentCollection {#4064 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
        +posts: Doctrine\ORM\PersistentCollection {#4054 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
        +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
        +follows: Doctrine\ORM\PersistentCollection {#4186 …}
        +followers: Doctrine\ORM\PersistentCollection {#4182 …}
        +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
        +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
        +reports: Doctrine\ORM\PersistentCollection {#4185 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
        +violations: Doctrine\ORM\PersistentCollection {#4175 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
        +awards: Doctrine\ORM\PersistentCollection {#4176 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
        +categories: Doctrine\ORM\PersistentCollection {#4173 …}
        -id: 53309
        -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
        +apId: "ReversalHatchery@beehaw.org"
        +apProfileId: "https://beehaw.org/u/ReversalHatchery"
        +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
        +apFollowersUrl: null
        +apInboxUrl: "https://beehaw.org/inbox"
        +apDomain: "beehaw.org"
        +apPreferredUsername: "ReversalHatchery"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729027069 {#4126
          date: 2024-10-15 23:17:49.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696732297 {#4124
          date: 2023-10-08 04:31:37.0 +02:00
        }
      }
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: null
      +root: null
      +body: """
        “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
        \n
        The irony.
        """
      +lang: "en"
      +isAdult: false
      +favouriteCount: 11
      +score: 0
      +lastActive: DateTime @1701510560 {#4131
        date: 2023-12-02 10:49:20.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4120 …}
      +nested: Doctrine\ORM\PersistentCollection {#4118 …}
      +votes: Doctrine\ORM\PersistentCollection {#4116 …}
      +reports: Doctrine\ORM\PersistentCollection {#4114 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
      -id: 157122
      -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://beehaw.org/comment/1721846"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700793081 {#4067
        date: 2023-11-24 03:31:21.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4122}
    +body: """
      I mean the origin is still legit, so there is no real problem with it, right?\n
      \n
      One cannot just register a site as github.com
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 0
    +score: 0
    +lastActive: DateTime @1700824252 {#4397
      date: 2023-11-24 12:10:52.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@ReversalHatchery@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4401 …}
    +nested: Doctrine\ORM\PersistentCollection {#4406 …}
    +votes: Doctrine\ORM\PersistentCollection {#4402 …}
    +reports: Doctrine\ORM\PersistentCollection {#4408 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4410 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4412 …}
    -id: 158086
    -bodyTs: "'cannot':18 'github.com':24 'legit':7 'mean':2 'one':17 'origin':4 'problem':13 'real':12 'regist':20 'right':16 'site':22 'still':6"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://feddit.de/comment/5103814"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700824252 {#4394
      date: 2023-11-24 12:10:52.0 +01:00
    }
  }
  +showMagazineName: false
  +showEntryTitle: false
  +showNested: true
  +level: 2
  +canSeeTrash: false
  +dateAsUrl: false
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
  -authorizationChecker: Symfony\Component\Security\Core\Authorization\AuthorizationChecker {#931 …}
}
user_inline App\Twig\Components\UserInlineComponent 14.0 MiB 0.17 ms
Input props
[
  "user" => Proxies\__CG__\App\Entity\User {#1978
    +avatar: null
    +cover: null
    +email: "Pantherina@feddit.de"
    +username: "@Pantherina@feddit.de"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: null
    +lastActive: DateTime @1721498243 {#1515
      date: 2024-07-20 19:57:23.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
    +entries: Doctrine\ORM\PersistentCollection {#1406 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
    +posts: Doctrine\ORM\PersistentCollection {#1745 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
    +follows: Doctrine\ORM\PersistentCollection {#1409 …}
    +followers: Doctrine\ORM\PersistentCollection {#1624 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
    +reports: Doctrine\ORM\PersistentCollection {#1416 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
    +violations: Doctrine\ORM\PersistentCollection {#1694 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
    +awards: Doctrine\ORM\PersistentCollection {#1434 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
    +categories: Doctrine\ORM\PersistentCollection {#1640 …}
    -id: 48318
    -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
    +apId: "Pantherina@feddit.de"
    +apProfileId: "https://feddit.de/u/Pantherina"
    +apPublicUrl: "https://feddit.de/u/Pantherina"
    +apFollowersUrl: null
    +apInboxUrl: "https://feddit.de/inbox"
    +apDomain: "feddit.de"
    +apPreferredUsername: "Pantherina"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1721236644 {#1516
      date: 2024-07-17 19:17:24.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696428300 {#1518
      date: 2023-10-04 16:05:00.0 +02:00
    }
    +__isInitialized__: true
     …2
  }
  "showAvatar" => false
]
Attributes
[]
Component
App\Twig\Components\UserInlineComponent {#5205
  +user: Proxies\__CG__\App\Entity\User {#1978
    +avatar: null
    +cover: null
    +email: "Pantherina@feddit.de"
    +username: "@Pantherina@feddit.de"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: null
    +lastActive: DateTime @1721498243 {#1515
      date: 2024-07-20 19:57:23.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
    +entries: Doctrine\ORM\PersistentCollection {#1406 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
    +posts: Doctrine\ORM\PersistentCollection {#1745 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
    +follows: Doctrine\ORM\PersistentCollection {#1409 …}
    +followers: Doctrine\ORM\PersistentCollection {#1624 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
    +reports: Doctrine\ORM\PersistentCollection {#1416 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
    +violations: Doctrine\ORM\PersistentCollection {#1694 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
    +awards: Doctrine\ORM\PersistentCollection {#1434 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
    +categories: Doctrine\ORM\PersistentCollection {#1640 …}
    -id: 48318
    -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
    +apId: "Pantherina@feddit.de"
    +apProfileId: "https://feddit.de/u/Pantherina"
    +apPublicUrl: "https://feddit.de/u/Pantherina"
    +apFollowersUrl: null
    +apInboxUrl: "https://feddit.de/inbox"
    +apDomain: "feddit.de"
    +apPreferredUsername: "Pantherina"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1721236644 {#1516
      date: 2024-07-17 19:17:24.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696428300 {#1518
      date: 2023-10-04 16:05:00.0 +02:00
    }
    +__isInitialized__: true
     …2
  }
  +showAvatar: false
}
date App\Twig\Components\DateComponent 14.0 MiB 0.15 ms
Input props
[
  "date" => DateTimeImmutable @1700824252 {#4394
    date: 2023-11-24 12:10:52.0 +01:00
  }
]
Attributes
[]
Component
App\Twig\Components\DateComponent {#5260
  +date: DateTimeImmutable @1700824252 {#4394
    date: 2023-11-24 12:10:52.0 +01:00
  }
}
date_edited App\Twig\Components\DateEditedComponent 14.0 MiB 0.13 ms
Input props
[
  "createdAt" => DateTimeImmutable @1700824252 {#4394
    date: 2023-11-24 12:10:52.0 +01:00
  }
  "editedAt" => null
]
Attributes
[]
Component
App\Twig\Components\DateEditedComponent {#5314
  +createdAt: DateTimeImmutable @1700824252 {#4394
    date: 2023-11-24 12:10:52.0 +01:00
  }
  +editedAt: null
}
user_avatar App\Twig\Components\UserAvatarComponent 14.0 MiB 0.16 ms
Input props
[
  "user" => Proxies\__CG__\App\Entity\User {#1978
    +avatar: null
    +cover: null
    +email: "Pantherina@feddit.de"
    +username: "@Pantherina@feddit.de"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: null
    +lastActive: DateTime @1721498243 {#1515
      date: 2024-07-20 19:57:23.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
    +entries: Doctrine\ORM\PersistentCollection {#1406 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
    +posts: Doctrine\ORM\PersistentCollection {#1745 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
    +follows: Doctrine\ORM\PersistentCollection {#1409 …}
    +followers: Doctrine\ORM\PersistentCollection {#1624 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
    +reports: Doctrine\ORM\PersistentCollection {#1416 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
    +violations: Doctrine\ORM\PersistentCollection {#1694 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
    +awards: Doctrine\ORM\PersistentCollection {#1434 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
    +categories: Doctrine\ORM\PersistentCollection {#1640 …}
    -id: 48318
    -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
    +apId: "Pantherina@feddit.de"
    +apProfileId: "https://feddit.de/u/Pantherina"
    +apPublicUrl: "https://feddit.de/u/Pantherina"
    +apFollowersUrl: null
    +apInboxUrl: "https://feddit.de/inbox"
    +apDomain: "feddit.de"
    +apPreferredUsername: "Pantherina"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1721236644 {#1516
      date: 2024-07-17 19:17:24.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696428300 {#1518
      date: 2023-10-04 16:05:00.0 +02:00
    }
    +__isInitialized__: true
     …2
  }
  "width" => 40
  "height" => 40
  "asLink" => true
]
Attributes
[]
Component
App\Twig\Components\UserAvatarComponent {#5368
  +width: 40
  +height: 40
  +user: Proxies\__CG__\App\Entity\User {#1978
    +avatar: null
    +cover: null
    +email: "Pantherina@feddit.de"
    +username: "@Pantherina@feddit.de"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: null
    +lastActive: DateTime @1721498243 {#1515
      date: 2024-07-20 19:57:23.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
    +entries: Doctrine\ORM\PersistentCollection {#1406 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
    +posts: Doctrine\ORM\PersistentCollection {#1745 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
    +follows: Doctrine\ORM\PersistentCollection {#1409 …}
    +followers: Doctrine\ORM\PersistentCollection {#1624 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
    +reports: Doctrine\ORM\PersistentCollection {#1416 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
    +violations: Doctrine\ORM\PersistentCollection {#1694 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
    +awards: Doctrine\ORM\PersistentCollection {#1434 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
    +categories: Doctrine\ORM\PersistentCollection {#1640 …}
    -id: 48318
    -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
    +apId: "Pantherina@feddit.de"
    +apProfileId: "https://feddit.de/u/Pantherina"
    +apPublicUrl: "https://feddit.de/u/Pantherina"
    +apFollowersUrl: null
    +apInboxUrl: "https://feddit.de/inbox"
    +apDomain: "feddit.de"
    +apPreferredUsername: "Pantherina"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1721236644 {#1516
      date: 2024-07-17 19:17:24.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696428300 {#1518
      date: 2023-10-04 16:05:00.0 +02:00
    }
    +__isInitialized__: true
     …2
  }
  +asLink: true
}
vote App\Twig\Components\VoteComponent 14.0 MiB 0.45 ms
Input props
[
  "subject" => App\Entity\EntryComment {#4398
    +user: Proxies\__CG__\App\Entity\User {#1978
      +avatar: null
      +cover: null
      +email: "Pantherina@feddit.de"
      +username: "@Pantherina@feddit.de"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1721498243 {#1515
        date: 2024-07-20 19:57:23.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
      +entries: Doctrine\ORM\PersistentCollection {#1406 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
      +posts: Doctrine\ORM\PersistentCollection {#1745 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
      +follows: Doctrine\ORM\PersistentCollection {#1409 …}
      +followers: Doctrine\ORM\PersistentCollection {#1624 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
      +reports: Doctrine\ORM\PersistentCollection {#1416 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
      +violations: Doctrine\ORM\PersistentCollection {#1694 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
      +awards: Doctrine\ORM\PersistentCollection {#1434 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
      +categories: Doctrine\ORM\PersistentCollection {#1640 …}
      -id: 48318
      -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
      +apId: "Pantherina@feddit.de"
      +apProfileId: "https://feddit.de/u/Pantherina"
      +apPublicUrl: "https://feddit.de/u/Pantherina"
      +apFollowersUrl: null
      +apInboxUrl: "https://feddit.de/inbox"
      +apDomain: "feddit.de"
      +apPreferredUsername: "Pantherina"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1721236644 {#1516
        date: 2024-07-17 19:17:24.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696428300 {#1518
        date: 2023-10-04 16:05:00.0 +02:00
      }
      +__isInitialized__: true
       …2
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978 …2}
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4122
      +user: App\Entity\User {#4070
        +avatar: null
        +cover: null
        +email: "ReversalHatchery@beehaw.org"
        +username: "@ReversalHatchery@beehaw.org"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: """
          Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
          Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
          """
        +lastActive: DateTime @1729157044 {#4130
          date: 2024-10-17 11:24:04.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
        +entries: Doctrine\ORM\PersistentCollection {#4064 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
        +posts: Doctrine\ORM\PersistentCollection {#4054 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
        +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
        +follows: Doctrine\ORM\PersistentCollection {#4186 …}
        +followers: Doctrine\ORM\PersistentCollection {#4182 …}
        +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
        +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
        +reports: Doctrine\ORM\PersistentCollection {#4185 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
        +violations: Doctrine\ORM\PersistentCollection {#4175 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
        +awards: Doctrine\ORM\PersistentCollection {#4176 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
        +categories: Doctrine\ORM\PersistentCollection {#4173 …}
        -id: 53309
        -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
        +apId: "ReversalHatchery@beehaw.org"
        +apProfileId: "https://beehaw.org/u/ReversalHatchery"
        +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
        +apFollowersUrl: null
        +apInboxUrl: "https://beehaw.org/inbox"
        +apDomain: "beehaw.org"
        +apPreferredUsername: "ReversalHatchery"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729027069 {#4126
          date: 2024-10-15 23:17:49.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696732297 {#4124
          date: 2023-10-08 04:31:37.0 +02:00
        }
      }
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: null
      +root: null
      +body: """
        “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
        \n
        The irony.
        """
      +lang: "en"
      +isAdult: false
      +favouriteCount: 11
      +score: 0
      +lastActive: DateTime @1701510560 {#4131
        date: 2023-12-02 10:49:20.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4120 …}
      +nested: Doctrine\ORM\PersistentCollection {#4118 …}
      +votes: Doctrine\ORM\PersistentCollection {#4116 …}
      +reports: Doctrine\ORM\PersistentCollection {#4114 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
      -id: 157122
      -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://beehaw.org/comment/1721846"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700793081 {#4067
        date: 2023-11-24 03:31:21.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4122}
    +body: """
      I mean the origin is still legit, so there is no real problem with it, right?\n
      \n
      One cannot just register a site as github.com
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 0
    +score: 0
    +lastActive: DateTime @1700824252 {#4397
      date: 2023-11-24 12:10:52.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@ReversalHatchery@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4401 …}
    +nested: Doctrine\ORM\PersistentCollection {#4406 …}
    +votes: Doctrine\ORM\PersistentCollection {#4402 …}
    +reports: Doctrine\ORM\PersistentCollection {#4408 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4410 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4412 …}
    -id: 158086
    -bodyTs: "'cannot':18 'github.com':24 'legit':7 'mean':2 'one':17 'origin':4 'problem':13 'real':12 'regist':20 'right':16 'site':22 'still':6"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://feddit.de/comment/5103814"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700824252 {#4394
      date: 2023-11-24 12:10:52.0 +01:00
    }
  }
]
Attributes
[]
Component
App\Twig\Components\VoteComponent {#5441
  +subject: App\Entity\EntryComment {#4398
    +user: Proxies\__CG__\App\Entity\User {#1978
      +avatar: null
      +cover: null
      +email: "Pantherina@feddit.de"
      +username: "@Pantherina@feddit.de"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1721498243 {#1515
        date: 2024-07-20 19:57:23.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
      +entries: Doctrine\ORM\PersistentCollection {#1406 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
      +posts: Doctrine\ORM\PersistentCollection {#1745 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
      +follows: Doctrine\ORM\PersistentCollection {#1409 …}
      +followers: Doctrine\ORM\PersistentCollection {#1624 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
      +reports: Doctrine\ORM\PersistentCollection {#1416 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
      +violations: Doctrine\ORM\PersistentCollection {#1694 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
      +awards: Doctrine\ORM\PersistentCollection {#1434 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
      +categories: Doctrine\ORM\PersistentCollection {#1640 …}
      -id: 48318
      -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
      +apId: "Pantherina@feddit.de"
      +apProfileId: "https://feddit.de/u/Pantherina"
      +apPublicUrl: "https://feddit.de/u/Pantherina"
      +apFollowersUrl: null
      +apInboxUrl: "https://feddit.de/inbox"
      +apDomain: "feddit.de"
      +apPreferredUsername: "Pantherina"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1721236644 {#1516
        date: 2024-07-17 19:17:24.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696428300 {#1518
        date: 2023-10-04 16:05:00.0 +02:00
      }
      +__isInitialized__: true
       …2
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978 …2}
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4122
      +user: App\Entity\User {#4070
        +avatar: null
        +cover: null
        +email: "ReversalHatchery@beehaw.org"
        +username: "@ReversalHatchery@beehaw.org"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: """
          Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
          Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
          """
        +lastActive: DateTime @1729157044 {#4130
          date: 2024-10-17 11:24:04.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
        +entries: Doctrine\ORM\PersistentCollection {#4064 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
        +posts: Doctrine\ORM\PersistentCollection {#4054 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
        +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
        +follows: Doctrine\ORM\PersistentCollection {#4186 …}
        +followers: Doctrine\ORM\PersistentCollection {#4182 …}
        +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
        +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
        +reports: Doctrine\ORM\PersistentCollection {#4185 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
        +violations: Doctrine\ORM\PersistentCollection {#4175 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
        +awards: Doctrine\ORM\PersistentCollection {#4176 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
        +categories: Doctrine\ORM\PersistentCollection {#4173 …}
        -id: 53309
        -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
        +apId: "ReversalHatchery@beehaw.org"
        +apProfileId: "https://beehaw.org/u/ReversalHatchery"
        +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
        +apFollowersUrl: null
        +apInboxUrl: "https://beehaw.org/inbox"
        +apDomain: "beehaw.org"
        +apPreferredUsername: "ReversalHatchery"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729027069 {#4126
          date: 2024-10-15 23:17:49.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696732297 {#4124
          date: 2023-10-08 04:31:37.0 +02:00
        }
      }
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: null
      +root: null
      +body: """
        “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
        \n
        The irony.
        """
      +lang: "en"
      +isAdult: false
      +favouriteCount: 11
      +score: 0
      +lastActive: DateTime @1701510560 {#4131
        date: 2023-12-02 10:49:20.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4120 …}
      +nested: Doctrine\ORM\PersistentCollection {#4118 …}
      +votes: Doctrine\ORM\PersistentCollection {#4116 …}
      +reports: Doctrine\ORM\PersistentCollection {#4114 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
      -id: 157122
      -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://beehaw.org/comment/1721846"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700793081 {#4067
        date: 2023-11-24 03:31:21.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4122}
    +body: """
      I mean the origin is still legit, so there is no real problem with it, right?\n
      \n
      One cannot just register a site as github.com
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 0
    +score: 0
    +lastActive: DateTime @1700824252 {#4397
      date: 2023-11-24 12:10:52.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@ReversalHatchery@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4401 …}
    +nested: Doctrine\ORM\PersistentCollection {#4406 …}
    +votes: Doctrine\ORM\PersistentCollection {#4402 …}
    +reports: Doctrine\ORM\PersistentCollection {#4408 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4410 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4412 …}
    -id: 158086
    -bodyTs: "'cannot':18 'github.com':24 'legit':7 'mean':2 'one':17 'origin':4 'problem':13 'real':12 'regist':20 'right':16 'site':22 'still':6"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://feddit.de/comment/5103814"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700824252 {#4394
      date: 2023-11-24 12:10:52.0 +01:00
    }
  }
  +formDest: "entry_comment"
  +showDownvote: true
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
}
boost App\Twig\Components\BoostComponent 14.0 MiB 0.72 ms
Input props
[
  "subject" => App\Entity\EntryComment {#4398
    +user: Proxies\__CG__\App\Entity\User {#1978
      +avatar: null
      +cover: null
      +email: "Pantherina@feddit.de"
      +username: "@Pantherina@feddit.de"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1721498243 {#1515
        date: 2024-07-20 19:57:23.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
      +entries: Doctrine\ORM\PersistentCollection {#1406 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
      +posts: Doctrine\ORM\PersistentCollection {#1745 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
      +follows: Doctrine\ORM\PersistentCollection {#1409 …}
      +followers: Doctrine\ORM\PersistentCollection {#1624 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
      +reports: Doctrine\ORM\PersistentCollection {#1416 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
      +violations: Doctrine\ORM\PersistentCollection {#1694 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
      +awards: Doctrine\ORM\PersistentCollection {#1434 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
      +categories: Doctrine\ORM\PersistentCollection {#1640 …}
      -id: 48318
      -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
      +apId: "Pantherina@feddit.de"
      +apProfileId: "https://feddit.de/u/Pantherina"
      +apPublicUrl: "https://feddit.de/u/Pantherina"
      +apFollowersUrl: null
      +apInboxUrl: "https://feddit.de/inbox"
      +apDomain: "feddit.de"
      +apPreferredUsername: "Pantherina"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1721236644 {#1516
        date: 2024-07-17 19:17:24.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696428300 {#1518
        date: 2023-10-04 16:05:00.0 +02:00
      }
      +__isInitialized__: true
       …2
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978 …2}
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4122
      +user: App\Entity\User {#4070
        +avatar: null
        +cover: null
        +email: "ReversalHatchery@beehaw.org"
        +username: "@ReversalHatchery@beehaw.org"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: """
          Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
          Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
          """
        +lastActive: DateTime @1729157044 {#4130
          date: 2024-10-17 11:24:04.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
        +entries: Doctrine\ORM\PersistentCollection {#4064 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
        +posts: Doctrine\ORM\PersistentCollection {#4054 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
        +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
        +follows: Doctrine\ORM\PersistentCollection {#4186 …}
        +followers: Doctrine\ORM\PersistentCollection {#4182 …}
        +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
        +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
        +reports: Doctrine\ORM\PersistentCollection {#4185 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
        +violations: Doctrine\ORM\PersistentCollection {#4175 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
        +awards: Doctrine\ORM\PersistentCollection {#4176 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
        +categories: Doctrine\ORM\PersistentCollection {#4173 …}
        -id: 53309
        -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
        +apId: "ReversalHatchery@beehaw.org"
        +apProfileId: "https://beehaw.org/u/ReversalHatchery"
        +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
        +apFollowersUrl: null
        +apInboxUrl: "https://beehaw.org/inbox"
        +apDomain: "beehaw.org"
        +apPreferredUsername: "ReversalHatchery"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729027069 {#4126
          date: 2024-10-15 23:17:49.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696732297 {#4124
          date: 2023-10-08 04:31:37.0 +02:00
        }
      }
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: null
      +root: null
      +body: """
        “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
        \n
        The irony.
        """
      +lang: "en"
      +isAdult: false
      +favouriteCount: 11
      +score: 0
      +lastActive: DateTime @1701510560 {#4131
        date: 2023-12-02 10:49:20.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4120 …}
      +nested: Doctrine\ORM\PersistentCollection {#4118 …}
      +votes: Doctrine\ORM\PersistentCollection {#4116 …}
      +reports: Doctrine\ORM\PersistentCollection {#4114 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
      -id: 157122
      -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://beehaw.org/comment/1721846"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700793081 {#4067
        date: 2023-11-24 03:31:21.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4122}
    +body: """
      I mean the origin is still legit, so there is no real problem with it, right?\n
      \n
      One cannot just register a site as github.com
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 0
    +score: 0
    +lastActive: DateTime @1700824252 {#4397
      date: 2023-11-24 12:10:52.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@ReversalHatchery@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4401 …}
    +nested: Doctrine\ORM\PersistentCollection {#4406 …}
    +votes: Doctrine\ORM\PersistentCollection {#4402 …}
    +reports: Doctrine\ORM\PersistentCollection {#4408 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4410 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4412 …}
    -id: 158086
    -bodyTs: "'cannot':18 'github.com':24 'legit':7 'mean':2 'one':17 'origin':4 'problem':13 'real':12 'regist':20 'right':16 'site':22 'still':6"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://feddit.de/comment/5103814"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700824252 {#4394
      date: 2023-11-24 12:10:52.0 +01:00
    }
  }
]
Attributes
[]
Component
App\Twig\Components\BoostComponent {#5498
  +formDest: "entry_comment"
  +subject: App\Entity\EntryComment {#4398
    +user: Proxies\__CG__\App\Entity\User {#1978
      +avatar: null
      +cover: null
      +email: "Pantherina@feddit.de"
      +username: "@Pantherina@feddit.de"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1721498243 {#1515
        date: 2024-07-20 19:57:23.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
      +entries: Doctrine\ORM\PersistentCollection {#1406 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
      +posts: Doctrine\ORM\PersistentCollection {#1745 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
      +follows: Doctrine\ORM\PersistentCollection {#1409 …}
      +followers: Doctrine\ORM\PersistentCollection {#1624 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
      +reports: Doctrine\ORM\PersistentCollection {#1416 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
      +violations: Doctrine\ORM\PersistentCollection {#1694 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
      +awards: Doctrine\ORM\PersistentCollection {#1434 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
      +categories: Doctrine\ORM\PersistentCollection {#1640 …}
      -id: 48318
      -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
      +apId: "Pantherina@feddit.de"
      +apProfileId: "https://feddit.de/u/Pantherina"
      +apPublicUrl: "https://feddit.de/u/Pantherina"
      +apFollowersUrl: null
      +apInboxUrl: "https://feddit.de/inbox"
      +apDomain: "feddit.de"
      +apPreferredUsername: "Pantherina"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1721236644 {#1516
        date: 2024-07-17 19:17:24.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696428300 {#1518
        date: 2023-10-04 16:05:00.0 +02:00
      }
      +__isInitialized__: true
       …2
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978 …2}
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4122
      +user: App\Entity\User {#4070
        +avatar: null
        +cover: null
        +email: "ReversalHatchery@beehaw.org"
        +username: "@ReversalHatchery@beehaw.org"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: """
          Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
          Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
          """
        +lastActive: DateTime @1729157044 {#4130
          date: 2024-10-17 11:24:04.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
        +entries: Doctrine\ORM\PersistentCollection {#4064 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
        +posts: Doctrine\ORM\PersistentCollection {#4054 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
        +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
        +follows: Doctrine\ORM\PersistentCollection {#4186 …}
        +followers: Doctrine\ORM\PersistentCollection {#4182 …}
        +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
        +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
        +reports: Doctrine\ORM\PersistentCollection {#4185 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
        +violations: Doctrine\ORM\PersistentCollection {#4175 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
        +awards: Doctrine\ORM\PersistentCollection {#4176 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
        +categories: Doctrine\ORM\PersistentCollection {#4173 …}
        -id: 53309
        -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
        +apId: "ReversalHatchery@beehaw.org"
        +apProfileId: "https://beehaw.org/u/ReversalHatchery"
        +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
        +apFollowersUrl: null
        +apInboxUrl: "https://beehaw.org/inbox"
        +apDomain: "beehaw.org"
        +apPreferredUsername: "ReversalHatchery"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729027069 {#4126
          date: 2024-10-15 23:17:49.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696732297 {#4124
          date: 2023-10-08 04:31:37.0 +02:00
        }
      }
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: null
      +root: null
      +body: """
        “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
        \n
        The irony.
        """
      +lang: "en"
      +isAdult: false
      +favouriteCount: 11
      +score: 0
      +lastActive: DateTime @1701510560 {#4131
        date: 2023-12-02 10:49:20.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4120 …}
      +nested: Doctrine\ORM\PersistentCollection {#4118 …}
      +votes: Doctrine\ORM\PersistentCollection {#4116 …}
      +reports: Doctrine\ORM\PersistentCollection {#4114 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
      -id: 157122
      -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://beehaw.org/comment/1721846"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700793081 {#4067
        date: 2023-11-24 03:31:21.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4122}
    +body: """
      I mean the origin is still legit, so there is no real problem with it, right?\n
      \n
      One cannot just register a site as github.com
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 0
    +score: 0
    +lastActive: DateTime @1700824252 {#4397
      date: 2023-11-24 12:10:52.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@ReversalHatchery@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4401 …}
    +nested: Doctrine\ORM\PersistentCollection {#4406 …}
    +votes: Doctrine\ORM\PersistentCollection {#4402 …}
    +reports: Doctrine\ORM\PersistentCollection {#4408 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4410 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4412 …}
    -id: 158086
    -bodyTs: "'cannot':18 'github.com':24 'legit':7 'mean':2 'one':17 'origin':4 'problem':13 'real':12 'regist':20 'right':16 'site':22 'still':6"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://feddit.de/comment/5103814"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700824252 {#4394
      date: 2023-11-24 12:10:52.0 +01:00
    }
  }
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
}
entry_comments_nested App\Twig\Components\EntryCommentsNestedComponent 14.0 MiB 59.48 ms
Input props
[
  "comment" => App\Entity\EntryComment {#4398
    +user: Proxies\__CG__\App\Entity\User {#1978
      +avatar: null
      +cover: null
      +email: "Pantherina@feddit.de"
      +username: "@Pantherina@feddit.de"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1721498243 {#1515
        date: 2024-07-20 19:57:23.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
      +entries: Doctrine\ORM\PersistentCollection {#1406 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
      +posts: Doctrine\ORM\PersistentCollection {#1745 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
      +follows: Doctrine\ORM\PersistentCollection {#1409 …}
      +followers: Doctrine\ORM\PersistentCollection {#1624 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
      +reports: Doctrine\ORM\PersistentCollection {#1416 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
      +violations: Doctrine\ORM\PersistentCollection {#1694 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
      +awards: Doctrine\ORM\PersistentCollection {#1434 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
      +categories: Doctrine\ORM\PersistentCollection {#1640 …}
      -id: 48318
      -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
      +apId: "Pantherina@feddit.de"
      +apProfileId: "https://feddit.de/u/Pantherina"
      +apPublicUrl: "https://feddit.de/u/Pantherina"
      +apFollowersUrl: null
      +apInboxUrl: "https://feddit.de/inbox"
      +apDomain: "feddit.de"
      +apPreferredUsername: "Pantherina"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1721236644 {#1516
        date: 2024-07-17 19:17:24.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696428300 {#1518
        date: 2023-10-04 16:05:00.0 +02:00
      }
      +__isInitialized__: true
       …2
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978 …2}
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4122
      +user: App\Entity\User {#4070
        +avatar: null
        +cover: null
        +email: "ReversalHatchery@beehaw.org"
        +username: "@ReversalHatchery@beehaw.org"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: """
          Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
          Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
          """
        +lastActive: DateTime @1729157044 {#4130
          date: 2024-10-17 11:24:04.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
        +entries: Doctrine\ORM\PersistentCollection {#4064 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
        +posts: Doctrine\ORM\PersistentCollection {#4054 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
        +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
        +follows: Doctrine\ORM\PersistentCollection {#4186 …}
        +followers: Doctrine\ORM\PersistentCollection {#4182 …}
        +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
        +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
        +reports: Doctrine\ORM\PersistentCollection {#4185 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
        +violations: Doctrine\ORM\PersistentCollection {#4175 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
        +awards: Doctrine\ORM\PersistentCollection {#4176 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
        +categories: Doctrine\ORM\PersistentCollection {#4173 …}
        -id: 53309
        -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
        +apId: "ReversalHatchery@beehaw.org"
        +apProfileId: "https://beehaw.org/u/ReversalHatchery"
        +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
        +apFollowersUrl: null
        +apInboxUrl: "https://beehaw.org/inbox"
        +apDomain: "beehaw.org"
        +apPreferredUsername: "ReversalHatchery"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729027069 {#4126
          date: 2024-10-15 23:17:49.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696732297 {#4124
          date: 2023-10-08 04:31:37.0 +02:00
        }
      }
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: null
      +root: null
      +body: """
        “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
        \n
        The irony.
        """
      +lang: "en"
      +isAdult: false
      +favouriteCount: 11
      +score: 0
      +lastActive: DateTime @1701510560 {#4131
        date: 2023-12-02 10:49:20.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4120 …}
      +nested: Doctrine\ORM\PersistentCollection {#4118 …}
      +votes: Doctrine\ORM\PersistentCollection {#4116 …}
      +reports: Doctrine\ORM\PersistentCollection {#4114 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
      -id: 157122
      -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://beehaw.org/comment/1721846"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700793081 {#4067
        date: 2023-11-24 03:31:21.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4122}
    +body: """
      I mean the origin is still legit, so there is no real problem with it, right?\n
      \n
      One cannot just register a site as github.com
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 0
    +score: 0
    +lastActive: DateTime @1700824252 {#4397
      date: 2023-11-24 12:10:52.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@ReversalHatchery@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4401 …}
    +nested: Doctrine\ORM\PersistentCollection {#4406 …}
    +votes: Doctrine\ORM\PersistentCollection {#4402 …}
    +reports: Doctrine\ORM\PersistentCollection {#4408 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4410 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4412 …}
    -id: 158086
    -bodyTs: "'cannot':18 'github.com':24 'legit':7 'mean':2 'one':17 'origin':4 'problem':13 'real':12 'regist':20 'right':16 'site':22 'still':6"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://feddit.de/comment/5103814"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700824252 {#4394
      date: 2023-11-24 12:10:52.0 +01:00
    }
  }
  "level" => 2
  "showNested" => true
  "view" => "tree"
]
Attributes
[
  "showNested" => true
]
Component
App\Twig\Components\EntryCommentsNestedComponent {#5738
  +comment: App\Entity\EntryComment {#4398
    +user: Proxies\__CG__\App\Entity\User {#1978
      +avatar: null
      +cover: null
      +email: "Pantherina@feddit.de"
      +username: "@Pantherina@feddit.de"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1721498243 {#1515
        date: 2024-07-20 19:57:23.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
      +entries: Doctrine\ORM\PersistentCollection {#1406 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
      +posts: Doctrine\ORM\PersistentCollection {#1745 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
      +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
      +follows: Doctrine\ORM\PersistentCollection {#1409 …}
      +followers: Doctrine\ORM\PersistentCollection {#1624 …}
      +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
      +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
      +reports: Doctrine\ORM\PersistentCollection {#1416 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
      +violations: Doctrine\ORM\PersistentCollection {#1694 …}
      +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
      +awards: Doctrine\ORM\PersistentCollection {#1434 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
      +categories: Doctrine\ORM\PersistentCollection {#1640 …}
      -id: 48318
      -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
      +apId: "Pantherina@feddit.de"
      +apProfileId: "https://feddit.de/u/Pantherina"
      +apPublicUrl: "https://feddit.de/u/Pantherina"
      +apFollowersUrl: null
      +apInboxUrl: "https://feddit.de/inbox"
      +apDomain: "feddit.de"
      +apPreferredUsername: "Pantherina"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1721236644 {#1516
        date: 2024-07-17 19:17:24.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696428300 {#1518
        date: 2023-10-04 16:05:00.0 +02:00
      }
      +__isInitialized__: true
       …2
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978 …2}
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4122
      +user: App\Entity\User {#4070
        +avatar: null
        +cover: null
        +email: "ReversalHatchery@beehaw.org"
        +username: "@ReversalHatchery@beehaw.org"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: """
          Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
          Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
          """
        +lastActive: DateTime @1729157044 {#4130
          date: 2024-10-17 11:24:04.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
        +entries: Doctrine\ORM\PersistentCollection {#4064 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
        +posts: Doctrine\ORM\PersistentCollection {#4054 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
        +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
        +follows: Doctrine\ORM\PersistentCollection {#4186 …}
        +followers: Doctrine\ORM\PersistentCollection {#4182 …}
        +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
        +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
        +reports: Doctrine\ORM\PersistentCollection {#4185 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
        +violations: Doctrine\ORM\PersistentCollection {#4175 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
        +awards: Doctrine\ORM\PersistentCollection {#4176 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
        +categories: Doctrine\ORM\PersistentCollection {#4173 …}
        -id: 53309
        -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
        +apId: "ReversalHatchery@beehaw.org"
        +apProfileId: "https://beehaw.org/u/ReversalHatchery"
        +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
        +apFollowersUrl: null
        +apInboxUrl: "https://beehaw.org/inbox"
        +apDomain: "beehaw.org"
        +apPreferredUsername: "ReversalHatchery"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729027069 {#4126
          date: 2024-10-15 23:17:49.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696732297 {#4124
          date: 2023-10-08 04:31:37.0 +02:00
        }
      }
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: null
      +root: null
      +body: """
        “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
        \n
        The irony.
        """
      +lang: "en"
      +isAdult: false
      +favouriteCount: 11
      +score: 0
      +lastActive: DateTime @1701510560 {#4131
        date: 2023-12-02 10:49:20.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4120 …}
      +nested: Doctrine\ORM\PersistentCollection {#4118 …}
      +votes: Doctrine\ORM\PersistentCollection {#4116 …}
      +reports: Doctrine\ORM\PersistentCollection {#4114 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
      -id: 157122
      -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://beehaw.org/comment/1721846"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700793081 {#4067
        date: 2023-11-24 03:31:21.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4122}
    +body: """
      I mean the origin is still legit, so there is no real problem with it, right?\n
      \n
      One cannot just register a site as github.com
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 0
    +score: 0
    +lastActive: DateTime @1700824252 {#4397
      date: 2023-11-24 12:10:52.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@ReversalHatchery@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4401 …}
    +nested: Doctrine\ORM\PersistentCollection {#4406 …}
    +votes: Doctrine\ORM\PersistentCollection {#4402 …}
    +reports: Doctrine\ORM\PersistentCollection {#4408 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4410 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4412 …}
    -id: 158086
    -bodyTs: "'cannot':18 'github.com':24 'legit':7 'mean':2 'one':17 'origin':4 'problem':13 'real':12 'regist':20 'right':16 'site':22 'still':6"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://feddit.de/comment/5103814"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700824252 {#4394
      date: 2023-11-24 12:10:52.0 +01:00
    }
  }
  +nestedComments: []
  +level: 2
  +view: "tree"
  -entryCommentRepository: App\Repository\EntryCommentRepository {#555 …}
  -twig: Twig\Environment {#1252 …}
  -security: Symfony\Bundle\SecurityBundle\Security {#1101 …}
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
}
entry_comment App\Twig\Components\EntryCommentComponent 14.0 MiB 21.89 ms
Input props
[
  "comment" => App\Entity\EntryComment {#4430
    +user: App\Entity\User {#4070
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#4130
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
      +entries: Doctrine\ORM\PersistentCollection {#4064 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
      +posts: Doctrine\ORM\PersistentCollection {#4054 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
      +follows: Doctrine\ORM\PersistentCollection {#4186 …}
      +followers: Doctrine\ORM\PersistentCollection {#4182 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
      +reports: Doctrine\ORM\PersistentCollection {#4185 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
      +violations: Doctrine\ORM\PersistentCollection {#4175 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
      +awards: Doctrine\ORM\PersistentCollection {#4176 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
      +categories: Doctrine\ORM\PersistentCollection {#4173 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#4126
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#4124
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4398
      +user: Proxies\__CG__\App\Entity\User {#1978 …2}
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: App\Entity\EntryComment {#4122
        +user: App\Entity\User {#4070}
        +entry: App\Entity\Entry {#2412}
        +magazine: App\Entity\Magazine {#264}
        +image: null
        +parent: null
        +root: null
        +body: """
          “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
          \n
          The irony.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 11
        +score: 0
        +lastActive: DateTime @1701510560 {#4131
          date: 2023-12-02 10:49:20.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
        ]
        +children: Doctrine\ORM\PersistentCollection {#4120 …}
        +nested: Doctrine\ORM\PersistentCollection {#4118 …}
        +votes: Doctrine\ORM\PersistentCollection {#4116 …}
        +reports: Doctrine\ORM\PersistentCollection {#4114 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
        -id: 157122
        -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1721846"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700793081 {#4067
          date: 2023-11-24 03:31:21.0 +01:00
        }
      }
      +root: App\Entity\EntryComment {#4122}
      +body: """
        I mean the origin is still legit, so there is no real problem with it, right?\n
        \n
        One cannot just register a site as github.com
        """
      +lang: "en"
      +isAdult: false
      +favouriteCount: 0
      +score: 0
      +lastActive: DateTime @1700824252 {#4397
        date: 2023-11-24 12:10:52.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
        "@ReversalHatchery@beehaw.org"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4401 …}
      +nested: Doctrine\ORM\PersistentCollection {#4406 …}
      +votes: Doctrine\ORM\PersistentCollection {#4402 …}
      +reports: Doctrine\ORM\PersistentCollection {#4408 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4410 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4412 …}
      -id: 158086
      -bodyTs: "'cannot':18 'github.com':24 'legit':7 'mean':2 'one':17 'origin':4 'problem':13 'real':12 'regist':20 'right':16 'site':22 'still':6"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://feddit.de/comment/5103814"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700824252 {#4394
        date: 2023-11-24 12:10:52.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4122}
    +body: "I’m not sure if at this point the browser verifies whether the cert is even legit for github.com"
    +lang: "en"
    +isAdult: false
    +favouriteCount: 0
    +score: 0
    +lastActive: DateTime @1700929355 {#4435
      date: 2023-11-25 17:22:35.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@ReversalHatchery@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4438 …}
    +nested: Doctrine\ORM\PersistentCollection {#4442 …}
    +votes: Doctrine\ORM\PersistentCollection {#4444 …}
    +reports: Doctrine\ORM\PersistentCollection {#4445 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4447 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4449 …}
    -id: 162857
    -bodyTs: "'browser':10 'cert':14 'even':16 'github.com':19 'legit':17 'm':2 'point':8 'sure':4 'verifi':11 'whether':12"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1735772"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700929355 {#4432
      date: 2023-11-25 17:22:35.0 +01:00
    }
  }
  "showNested" => true
  "level" => 3
  "showEntryTitle" => false
  "showMagazineName" => false
]
Attributes
[]
Component
App\Twig\Components\EntryCommentComponent {#5793
  +comment: App\Entity\EntryComment {#4430
    +user: App\Entity\User {#4070
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#4130
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
      +entries: Doctrine\ORM\PersistentCollection {#4064 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
      +posts: Doctrine\ORM\PersistentCollection {#4054 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
      +follows: Doctrine\ORM\PersistentCollection {#4186 …}
      +followers: Doctrine\ORM\PersistentCollection {#4182 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
      +reports: Doctrine\ORM\PersistentCollection {#4185 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
      +violations: Doctrine\ORM\PersistentCollection {#4175 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
      +awards: Doctrine\ORM\PersistentCollection {#4176 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
      +categories: Doctrine\ORM\PersistentCollection {#4173 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#4126
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#4124
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4398
      +user: Proxies\__CG__\App\Entity\User {#1978 …2}
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: App\Entity\EntryComment {#4122
        +user: App\Entity\User {#4070}
        +entry: App\Entity\Entry {#2412}
        +magazine: App\Entity\Magazine {#264}
        +image: null
        +parent: null
        +root: null
        +body: """
          “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
          \n
          The irony.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 11
        +score: 0
        +lastActive: DateTime @1701510560 {#4131
          date: 2023-12-02 10:49:20.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
        ]
        +children: Doctrine\ORM\PersistentCollection {#4120 …}
        +nested: Doctrine\ORM\PersistentCollection {#4118 …}
        +votes: Doctrine\ORM\PersistentCollection {#4116 …}
        +reports: Doctrine\ORM\PersistentCollection {#4114 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
        -id: 157122
        -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1721846"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700793081 {#4067
          date: 2023-11-24 03:31:21.0 +01:00
        }
      }
      +root: App\Entity\EntryComment {#4122}
      +body: """
        I mean the origin is still legit, so there is no real problem with it, right?\n
        \n
        One cannot just register a site as github.com
        """
      +lang: "en"
      +isAdult: false
      +favouriteCount: 0
      +score: 0
      +lastActive: DateTime @1700824252 {#4397
        date: 2023-11-24 12:10:52.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
        "@ReversalHatchery@beehaw.org"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4401 …}
      +nested: Doctrine\ORM\PersistentCollection {#4406 …}
      +votes: Doctrine\ORM\PersistentCollection {#4402 …}
      +reports: Doctrine\ORM\PersistentCollection {#4408 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4410 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4412 …}
      -id: 158086
      -bodyTs: "'cannot':18 'github.com':24 'legit':7 'mean':2 'one':17 'origin':4 'problem':13 'real':12 'regist':20 'right':16 'site':22 'still':6"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://feddit.de/comment/5103814"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700824252 {#4394
        date: 2023-11-24 12:10:52.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4122}
    +body: "I’m not sure if at this point the browser verifies whether the cert is even legit for github.com"
    +lang: "en"
    +isAdult: false
    +favouriteCount: 0
    +score: 0
    +lastActive: DateTime @1700929355 {#4435
      date: 2023-11-25 17:22:35.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@ReversalHatchery@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4438 …}
    +nested: Doctrine\ORM\PersistentCollection {#4442 …}
    +votes: Doctrine\ORM\PersistentCollection {#4444 …}
    +reports: Doctrine\ORM\PersistentCollection {#4445 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4447 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4449 …}
    -id: 162857
    -bodyTs: "'browser':10 'cert':14 'even':16 'github.com':19 'legit':17 'm':2 'point':8 'sure':4 'verifi':11 'whether':12"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1735772"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700929355 {#4432
      date: 2023-11-25 17:22:35.0 +01:00
    }
  }
  +showMagazineName: false
  +showEntryTitle: false
  +showNested: true
  +level: 3
  +canSeeTrash: false
  +dateAsUrl: false
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
  -authorizationChecker: Symfony\Component\Security\Core\Authorization\AuthorizationChecker {#931 …}
}
user_inline App\Twig\Components\UserInlineComponent 14.0 MiB 0.17 ms
Input props
[
  "user" => App\Entity\User {#4070
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#4130
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
    +entries: Doctrine\ORM\PersistentCollection {#4064 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
    +posts: Doctrine\ORM\PersistentCollection {#4054 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
    +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
    +follows: Doctrine\ORM\PersistentCollection {#4186 …}
    +followers: Doctrine\ORM\PersistentCollection {#4182 …}
    +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
    +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
    +reports: Doctrine\ORM\PersistentCollection {#4185 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
    +violations: Doctrine\ORM\PersistentCollection {#4175 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
    +awards: Doctrine\ORM\PersistentCollection {#4176 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
    +categories: Doctrine\ORM\PersistentCollection {#4173 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#4126
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#4124
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  "showAvatar" => false
]
Attributes
[]
Component
App\Twig\Components\UserInlineComponent {#5838
  +user: App\Entity\User {#4070
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#4130
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
    +entries: Doctrine\ORM\PersistentCollection {#4064 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
    +posts: Doctrine\ORM\PersistentCollection {#4054 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
    +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
    +follows: Doctrine\ORM\PersistentCollection {#4186 …}
    +followers: Doctrine\ORM\PersistentCollection {#4182 …}
    +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
    +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
    +reports: Doctrine\ORM\PersistentCollection {#4185 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
    +violations: Doctrine\ORM\PersistentCollection {#4175 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
    +awards: Doctrine\ORM\PersistentCollection {#4176 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
    +categories: Doctrine\ORM\PersistentCollection {#4173 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#4126
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#4124
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  +showAvatar: false
}
date App\Twig\Components\DateComponent 14.0 MiB 0.16 ms
Input props
[
  "date" => DateTimeImmutable @1700929355 {#4432
    date: 2023-11-25 17:22:35.0 +01:00
  }
]
Attributes
[]
Component
App\Twig\Components\DateComponent {#5893
  +date: DateTimeImmutable @1700929355 {#4432
    date: 2023-11-25 17:22:35.0 +01:00
  }
}
date_edited App\Twig\Components\DateEditedComponent 14.0 MiB 0.10 ms
Input props
[
  "createdAt" => DateTimeImmutable @1700929355 {#4432
    date: 2023-11-25 17:22:35.0 +01:00
  }
  "editedAt" => null
]
Attributes
[]
Component
App\Twig\Components\DateEditedComponent {#5947
  +createdAt: DateTimeImmutable @1700929355 {#4432
    date: 2023-11-25 17:22:35.0 +01:00
  }
  +editedAt: null
}
user_avatar App\Twig\Components\UserAvatarComponent 14.0 MiB 0.19 ms
Input props
[
  "user" => App\Entity\User {#4070
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#4130
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
    +entries: Doctrine\ORM\PersistentCollection {#4064 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
    +posts: Doctrine\ORM\PersistentCollection {#4054 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
    +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
    +follows: Doctrine\ORM\PersistentCollection {#4186 …}
    +followers: Doctrine\ORM\PersistentCollection {#4182 …}
    +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
    +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
    +reports: Doctrine\ORM\PersistentCollection {#4185 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
    +violations: Doctrine\ORM\PersistentCollection {#4175 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
    +awards: Doctrine\ORM\PersistentCollection {#4176 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
    +categories: Doctrine\ORM\PersistentCollection {#4173 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#4126
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#4124
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  "width" => 40
  "height" => 40
  "asLink" => true
]
Attributes
[]
Component
App\Twig\Components\UserAvatarComponent {#6001
  +width: 40
  +height: 40
  +user: App\Entity\User {#4070
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#4130
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
    +entries: Doctrine\ORM\PersistentCollection {#4064 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
    +posts: Doctrine\ORM\PersistentCollection {#4054 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
    +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
    +follows: Doctrine\ORM\PersistentCollection {#4186 …}
    +followers: Doctrine\ORM\PersistentCollection {#4182 …}
    +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
    +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
    +reports: Doctrine\ORM\PersistentCollection {#4185 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
    +violations: Doctrine\ORM\PersistentCollection {#4175 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
    +awards: Doctrine\ORM\PersistentCollection {#4176 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
    +categories: Doctrine\ORM\PersistentCollection {#4173 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#4126
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#4124
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  +asLink: true
}
vote App\Twig\Components\VoteComponent 14.0 MiB 6.14 ms
Input props
[
  "subject" => App\Entity\EntryComment {#4430
    +user: App\Entity\User {#4070
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#4130
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
      +entries: Doctrine\ORM\PersistentCollection {#4064 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
      +posts: Doctrine\ORM\PersistentCollection {#4054 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
      +follows: Doctrine\ORM\PersistentCollection {#4186 …}
      +followers: Doctrine\ORM\PersistentCollection {#4182 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
      +reports: Doctrine\ORM\PersistentCollection {#4185 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
      +violations: Doctrine\ORM\PersistentCollection {#4175 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
      +awards: Doctrine\ORM\PersistentCollection {#4176 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
      +categories: Doctrine\ORM\PersistentCollection {#4173 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#4126
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#4124
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4398
      +user: Proxies\__CG__\App\Entity\User {#1978 …2}
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: App\Entity\EntryComment {#4122
        +user: App\Entity\User {#4070}
        +entry: App\Entity\Entry {#2412}
        +magazine: App\Entity\Magazine {#264}
        +image: null
        +parent: null
        +root: null
        +body: """
          “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
          \n
          The irony.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 11
        +score: 0
        +lastActive: DateTime @1701510560 {#4131
          date: 2023-12-02 10:49:20.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
        ]
        +children: Doctrine\ORM\PersistentCollection {#4120 …}
        +nested: Doctrine\ORM\PersistentCollection {#4118 …}
        +votes: Doctrine\ORM\PersistentCollection {#4116 …}
        +reports: Doctrine\ORM\PersistentCollection {#4114 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
        -id: 157122
        -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1721846"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700793081 {#4067
          date: 2023-11-24 03:31:21.0 +01:00
        }
      }
      +root: App\Entity\EntryComment {#4122}
      +body: """
        I mean the origin is still legit, so there is no real problem with it, right?\n
        \n
        One cannot just register a site as github.com
        """
      +lang: "en"
      +isAdult: false
      +favouriteCount: 0
      +score: 0
      +lastActive: DateTime @1700824252 {#4397
        date: 2023-11-24 12:10:52.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
        "@ReversalHatchery@beehaw.org"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4401 …}
      +nested: Doctrine\ORM\PersistentCollection {#4406 …}
      +votes: Doctrine\ORM\PersistentCollection {#4402 …}
      +reports: Doctrine\ORM\PersistentCollection {#4408 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4410 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4412 …}
      -id: 158086
      -bodyTs: "'cannot':18 'github.com':24 'legit':7 'mean':2 'one':17 'origin':4 'problem':13 'real':12 'regist':20 'right':16 'site':22 'still':6"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://feddit.de/comment/5103814"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700824252 {#4394
        date: 2023-11-24 12:10:52.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4122}
    +body: "I’m not sure if at this point the browser verifies whether the cert is even legit for github.com"
    +lang: "en"
    +isAdult: false
    +favouriteCount: 0
    +score: 0
    +lastActive: DateTime @1700929355 {#4435
      date: 2023-11-25 17:22:35.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@ReversalHatchery@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4438 …}
    +nested: Doctrine\ORM\PersistentCollection {#4442 …}
    +votes: Doctrine\ORM\PersistentCollection {#4444 …}
    +reports: Doctrine\ORM\PersistentCollection {#4445 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4447 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4449 …}
    -id: 162857
    -bodyTs: "'browser':10 'cert':14 'even':16 'github.com':19 'legit':17 'm':2 'point':8 'sure':4 'verifi':11 'whether':12"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1735772"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700929355 {#4432
      date: 2023-11-25 17:22:35.0 +01:00
    }
  }
]
Attributes
[]
Component
App\Twig\Components\VoteComponent {#6070
  +subject: App\Entity\EntryComment {#4430
    +user: App\Entity\User {#4070
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#4130
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
      +entries: Doctrine\ORM\PersistentCollection {#4064 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
      +posts: Doctrine\ORM\PersistentCollection {#4054 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
      +follows: Doctrine\ORM\PersistentCollection {#4186 …}
      +followers: Doctrine\ORM\PersistentCollection {#4182 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
      +reports: Doctrine\ORM\PersistentCollection {#4185 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
      +violations: Doctrine\ORM\PersistentCollection {#4175 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
      +awards: Doctrine\ORM\PersistentCollection {#4176 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
      +categories: Doctrine\ORM\PersistentCollection {#4173 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#4126
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#4124
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4398
      +user: Proxies\__CG__\App\Entity\User {#1978 …2}
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: App\Entity\EntryComment {#4122
        +user: App\Entity\User {#4070}
        +entry: App\Entity\Entry {#2412}
        +magazine: App\Entity\Magazine {#264}
        +image: null
        +parent: null
        +root: null
        +body: """
          “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
          \n
          The irony.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 11
        +score: 0
        +lastActive: DateTime @1701510560 {#4131
          date: 2023-12-02 10:49:20.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
        ]
        +children: Doctrine\ORM\PersistentCollection {#4120 …}
        +nested: Doctrine\ORM\PersistentCollection {#4118 …}
        +votes: Doctrine\ORM\PersistentCollection {#4116 …}
        +reports: Doctrine\ORM\PersistentCollection {#4114 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
        -id: 157122
        -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1721846"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700793081 {#4067
          date: 2023-11-24 03:31:21.0 +01:00
        }
      }
      +root: App\Entity\EntryComment {#4122}
      +body: """
        I mean the origin is still legit, so there is no real problem with it, right?\n
        \n
        One cannot just register a site as github.com
        """
      +lang: "en"
      +isAdult: false
      +favouriteCount: 0
      +score: 0
      +lastActive: DateTime @1700824252 {#4397
        date: 2023-11-24 12:10:52.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
        "@ReversalHatchery@beehaw.org"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4401 …}
      +nested: Doctrine\ORM\PersistentCollection {#4406 …}
      +votes: Doctrine\ORM\PersistentCollection {#4402 …}
      +reports: Doctrine\ORM\PersistentCollection {#4408 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4410 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4412 …}
      -id: 158086
      -bodyTs: "'cannot':18 'github.com':24 'legit':7 'mean':2 'one':17 'origin':4 'problem':13 'real':12 'regist':20 'right':16 'site':22 'still':6"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://feddit.de/comment/5103814"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700824252 {#4394
        date: 2023-11-24 12:10:52.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4122}
    +body: "I’m not sure if at this point the browser verifies whether the cert is even legit for github.com"
    +lang: "en"
    +isAdult: false
    +favouriteCount: 0
    +score: 0
    +lastActive: DateTime @1700929355 {#4435
      date: 2023-11-25 17:22:35.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@ReversalHatchery@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4438 …}
    +nested: Doctrine\ORM\PersistentCollection {#4442 …}
    +votes: Doctrine\ORM\PersistentCollection {#4444 …}
    +reports: Doctrine\ORM\PersistentCollection {#4445 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4447 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4449 …}
    -id: 162857
    -bodyTs: "'browser':10 'cert':14 'even':16 'github.com':19 'legit':17 'm':2 'point':8 'sure':4 'verifi':11 'whether':12"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1735772"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700929355 {#4432
      date: 2023-11-25 17:22:35.0 +01:00
    }
  }
  +formDest: "entry_comment"
  +showDownvote: true
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
}
boost App\Twig\Components\BoostComponent 14.0 MiB 0.78 ms
Input props
[
  "subject" => App\Entity\EntryComment {#4430
    +user: App\Entity\User {#4070
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#4130
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
      +entries: Doctrine\ORM\PersistentCollection {#4064 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
      +posts: Doctrine\ORM\PersistentCollection {#4054 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
      +follows: Doctrine\ORM\PersistentCollection {#4186 …}
      +followers: Doctrine\ORM\PersistentCollection {#4182 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
      +reports: Doctrine\ORM\PersistentCollection {#4185 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
      +violations: Doctrine\ORM\PersistentCollection {#4175 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
      +awards: Doctrine\ORM\PersistentCollection {#4176 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
      +categories: Doctrine\ORM\PersistentCollection {#4173 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#4126
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#4124
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4398
      +user: Proxies\__CG__\App\Entity\User {#1978 …2}
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: App\Entity\EntryComment {#4122
        +user: App\Entity\User {#4070}
        +entry: App\Entity\Entry {#2412}
        +magazine: App\Entity\Magazine {#264}
        +image: null
        +parent: null
        +root: null
        +body: """
          “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
          \n
          The irony.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 11
        +score: 0
        +lastActive: DateTime @1701510560 {#4131
          date: 2023-12-02 10:49:20.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
        ]
        +children: Doctrine\ORM\PersistentCollection {#4120 …}
        +nested: Doctrine\ORM\PersistentCollection {#4118 …}
        +votes: Doctrine\ORM\PersistentCollection {#4116 …}
        +reports: Doctrine\ORM\PersistentCollection {#4114 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
        -id: 157122
        -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1721846"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700793081 {#4067
          date: 2023-11-24 03:31:21.0 +01:00
        }
      }
      +root: App\Entity\EntryComment {#4122}
      +body: """
        I mean the origin is still legit, so there is no real problem with it, right?\n
        \n
        One cannot just register a site as github.com
        """
      +lang: "en"
      +isAdult: false
      +favouriteCount: 0
      +score: 0
      +lastActive: DateTime @1700824252 {#4397
        date: 2023-11-24 12:10:52.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
        "@ReversalHatchery@beehaw.org"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4401 …}
      +nested: Doctrine\ORM\PersistentCollection {#4406 …}
      +votes: Doctrine\ORM\PersistentCollection {#4402 …}
      +reports: Doctrine\ORM\PersistentCollection {#4408 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4410 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4412 …}
      -id: 158086
      -bodyTs: "'cannot':18 'github.com':24 'legit':7 'mean':2 'one':17 'origin':4 'problem':13 'real':12 'regist':20 'right':16 'site':22 'still':6"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://feddit.de/comment/5103814"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700824252 {#4394
        date: 2023-11-24 12:10:52.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4122}
    +body: "I’m not sure if at this point the browser verifies whether the cert is even legit for github.com"
    +lang: "en"
    +isAdult: false
    +favouriteCount: 0
    +score: 0
    +lastActive: DateTime @1700929355 {#4435
      date: 2023-11-25 17:22:35.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@ReversalHatchery@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4438 …}
    +nested: Doctrine\ORM\PersistentCollection {#4442 …}
    +votes: Doctrine\ORM\PersistentCollection {#4444 …}
    +reports: Doctrine\ORM\PersistentCollection {#4445 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4447 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4449 …}
    -id: 162857
    -bodyTs: "'browser':10 'cert':14 'even':16 'github.com':19 'legit':17 'm':2 'point':8 'sure':4 'verifi':11 'whether':12"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1735772"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700929355 {#4432
      date: 2023-11-25 17:22:35.0 +01:00
    }
  }
]
Attributes
[]
Component
App\Twig\Components\BoostComponent {#6127
  +formDest: "entry_comment"
  +subject: App\Entity\EntryComment {#4430
    +user: App\Entity\User {#4070
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#4130
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
      +entries: Doctrine\ORM\PersistentCollection {#4064 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
      +posts: Doctrine\ORM\PersistentCollection {#4054 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
      +follows: Doctrine\ORM\PersistentCollection {#4186 …}
      +followers: Doctrine\ORM\PersistentCollection {#4182 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
      +reports: Doctrine\ORM\PersistentCollection {#4185 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
      +violations: Doctrine\ORM\PersistentCollection {#4175 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
      +awards: Doctrine\ORM\PersistentCollection {#4176 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
      +categories: Doctrine\ORM\PersistentCollection {#4173 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#4126
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#4124
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4398
      +user: Proxies\__CG__\App\Entity\User {#1978 …2}
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: App\Entity\EntryComment {#4122
        +user: App\Entity\User {#4070}
        +entry: App\Entity\Entry {#2412}
        +magazine: App\Entity\Magazine {#264}
        +image: null
        +parent: null
        +root: null
        +body: """
          “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
          \n
          The irony.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 11
        +score: 0
        +lastActive: DateTime @1701510560 {#4131
          date: 2023-12-02 10:49:20.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
        ]
        +children: Doctrine\ORM\PersistentCollection {#4120 …}
        +nested: Doctrine\ORM\PersistentCollection {#4118 …}
        +votes: Doctrine\ORM\PersistentCollection {#4116 …}
        +reports: Doctrine\ORM\PersistentCollection {#4114 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
        -id: 157122
        -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1721846"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700793081 {#4067
          date: 2023-11-24 03:31:21.0 +01:00
        }
      }
      +root: App\Entity\EntryComment {#4122}
      +body: """
        I mean the origin is still legit, so there is no real problem with it, right?\n
        \n
        One cannot just register a site as github.com
        """
      +lang: "en"
      +isAdult: false
      +favouriteCount: 0
      +score: 0
      +lastActive: DateTime @1700824252 {#4397
        date: 2023-11-24 12:10:52.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
        "@ReversalHatchery@beehaw.org"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4401 …}
      +nested: Doctrine\ORM\PersistentCollection {#4406 …}
      +votes: Doctrine\ORM\PersistentCollection {#4402 …}
      +reports: Doctrine\ORM\PersistentCollection {#4408 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4410 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4412 …}
      -id: 158086
      -bodyTs: "'cannot':18 'github.com':24 'legit':7 'mean':2 'one':17 'origin':4 'problem':13 'real':12 'regist':20 'right':16 'site':22 'still':6"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://feddit.de/comment/5103814"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700824252 {#4394
        date: 2023-11-24 12:10:52.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4122}
    +body: "I’m not sure if at this point the browser verifies whether the cert is even legit for github.com"
    +lang: "en"
    +isAdult: false
    +favouriteCount: 0
    +score: 0
    +lastActive: DateTime @1700929355 {#4435
      date: 2023-11-25 17:22:35.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@ReversalHatchery@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4438 …}
    +nested: Doctrine\ORM\PersistentCollection {#4442 …}
    +votes: Doctrine\ORM\PersistentCollection {#4444 …}
    +reports: Doctrine\ORM\PersistentCollection {#4445 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4447 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4449 …}
    -id: 162857
    -bodyTs: "'browser':10 'cert':14 'even':16 'github.com':19 'legit':17 'm':2 'point':8 'sure':4 'verifi':11 'whether':12"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1735772"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700929355 {#4432
      date: 2023-11-25 17:22:35.0 +01:00
    }
  }
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
}
entry_comments_nested App\Twig\Components\EntryCommentsNestedComponent 14.0 MiB 2.51 ms
Input props
[
  "comment" => App\Entity\EntryComment {#4430
    +user: App\Entity\User {#4070
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#4130
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
      +entries: Doctrine\ORM\PersistentCollection {#4064 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
      +posts: Doctrine\ORM\PersistentCollection {#4054 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
      +follows: Doctrine\ORM\PersistentCollection {#4186 …}
      +followers: Doctrine\ORM\PersistentCollection {#4182 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
      +reports: Doctrine\ORM\PersistentCollection {#4185 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
      +violations: Doctrine\ORM\PersistentCollection {#4175 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
      +awards: Doctrine\ORM\PersistentCollection {#4176 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
      +categories: Doctrine\ORM\PersistentCollection {#4173 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#4126
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#4124
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4398
      +user: Proxies\__CG__\App\Entity\User {#1978 …2}
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: App\Entity\EntryComment {#4122
        +user: App\Entity\User {#4070}
        +entry: App\Entity\Entry {#2412}
        +magazine: App\Entity\Magazine {#264}
        +image: null
        +parent: null
        +root: null
        +body: """
          “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
          \n
          The irony.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 11
        +score: 0
        +lastActive: DateTime @1701510560 {#4131
          date: 2023-12-02 10:49:20.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
        ]
        +children: Doctrine\ORM\PersistentCollection {#4120 …}
        +nested: Doctrine\ORM\PersistentCollection {#4118 …}
        +votes: Doctrine\ORM\PersistentCollection {#4116 …}
        +reports: Doctrine\ORM\PersistentCollection {#4114 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
        -id: 157122
        -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1721846"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700793081 {#4067
          date: 2023-11-24 03:31:21.0 +01:00
        }
      }
      +root: App\Entity\EntryComment {#4122}
      +body: """
        I mean the origin is still legit, so there is no real problem with it, right?\n
        \n
        One cannot just register a site as github.com
        """
      +lang: "en"
      +isAdult: false
      +favouriteCount: 0
      +score: 0
      +lastActive: DateTime @1700824252 {#4397
        date: 2023-11-24 12:10:52.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
        "@ReversalHatchery@beehaw.org"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4401 …}
      +nested: Doctrine\ORM\PersistentCollection {#4406 …}
      +votes: Doctrine\ORM\PersistentCollection {#4402 …}
      +reports: Doctrine\ORM\PersistentCollection {#4408 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4410 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4412 …}
      -id: 158086
      -bodyTs: "'cannot':18 'github.com':24 'legit':7 'mean':2 'one':17 'origin':4 'problem':13 'real':12 'regist':20 'right':16 'site':22 'still':6"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://feddit.de/comment/5103814"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700824252 {#4394
        date: 2023-11-24 12:10:52.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4122}
    +body: "I’m not sure if at this point the browser verifies whether the cert is even legit for github.com"
    +lang: "en"
    +isAdult: false
    +favouriteCount: 0
    +score: 0
    +lastActive: DateTime @1700929355 {#4435
      date: 2023-11-25 17:22:35.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@ReversalHatchery@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4438 …}
    +nested: Doctrine\ORM\PersistentCollection {#4442 …}
    +votes: Doctrine\ORM\PersistentCollection {#4444 …}
    +reports: Doctrine\ORM\PersistentCollection {#4445 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4447 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4449 …}
    -id: 162857
    -bodyTs: "'browser':10 'cert':14 'even':16 'github.com':19 'legit':17 'm':2 'point':8 'sure':4 'verifi':11 'whether':12"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1735772"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700929355 {#4432
      date: 2023-11-25 17:22:35.0 +01:00
    }
  }
  "level" => 3
  "showNested" => true
  "view" => "tree"
]
Attributes
[
  "showNested" => true
]
Component
App\Twig\Components\EntryCommentsNestedComponent {#6367
  +comment: App\Entity\EntryComment {#4430
    +user: App\Entity\User {#4070
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#4130
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
      +entries: Doctrine\ORM\PersistentCollection {#4064 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
      +posts: Doctrine\ORM\PersistentCollection {#4054 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
      +follows: Doctrine\ORM\PersistentCollection {#4186 …}
      +followers: Doctrine\ORM\PersistentCollection {#4182 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
      +reports: Doctrine\ORM\PersistentCollection {#4185 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
      +violations: Doctrine\ORM\PersistentCollection {#4175 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
      +awards: Doctrine\ORM\PersistentCollection {#4176 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
      +categories: Doctrine\ORM\PersistentCollection {#4173 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#4126
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#4124
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4398
      +user: Proxies\__CG__\App\Entity\User {#1978 …2}
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: App\Entity\EntryComment {#4122
        +user: App\Entity\User {#4070}
        +entry: App\Entity\Entry {#2412}
        +magazine: App\Entity\Magazine {#264}
        +image: null
        +parent: null
        +root: null
        +body: """
          “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
          \n
          The irony.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 11
        +score: 0
        +lastActive: DateTime @1701510560 {#4131
          date: 2023-12-02 10:49:20.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
        ]
        +children: Doctrine\ORM\PersistentCollection {#4120 …}
        +nested: Doctrine\ORM\PersistentCollection {#4118 …}
        +votes: Doctrine\ORM\PersistentCollection {#4116 …}
        +reports: Doctrine\ORM\PersistentCollection {#4114 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
        -id: 157122
        -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1721846"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700793081 {#4067
          date: 2023-11-24 03:31:21.0 +01:00
        }
      }
      +root: App\Entity\EntryComment {#4122}
      +body: """
        I mean the origin is still legit, so there is no real problem with it, right?\n
        \n
        One cannot just register a site as github.com
        """
      +lang: "en"
      +isAdult: false
      +favouriteCount: 0
      +score: 0
      +lastActive: DateTime @1700824252 {#4397
        date: 2023-11-24 12:10:52.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
        "@ReversalHatchery@beehaw.org"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4401 …}
      +nested: Doctrine\ORM\PersistentCollection {#4406 …}
      +votes: Doctrine\ORM\PersistentCollection {#4402 …}
      +reports: Doctrine\ORM\PersistentCollection {#4408 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4410 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4412 …}
      -id: 158086
      -bodyTs: "'cannot':18 'github.com':24 'legit':7 'mean':2 'one':17 'origin':4 'problem':13 'real':12 'regist':20 'right':16 'site':22 'still':6"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://feddit.de/comment/5103814"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700824252 {#4394
        date: 2023-11-24 12:10:52.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4122}
    +body: "I’m not sure if at this point the browser verifies whether the cert is even legit for github.com"
    +lang: "en"
    +isAdult: false
    +favouriteCount: 0
    +score: 0
    +lastActive: DateTime @1700929355 {#4435
      date: 2023-11-25 17:22:35.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@ReversalHatchery@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4438 …}
    +nested: Doctrine\ORM\PersistentCollection {#4442 …}
    +votes: Doctrine\ORM\PersistentCollection {#4444 …}
    +reports: Doctrine\ORM\PersistentCollection {#4445 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4447 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4449 …}
    -id: 162857
    -bodyTs: "'browser':10 'cert':14 'even':16 'github.com':19 'legit':17 'm':2 'point':8 'sure':4 'verifi':11 'whether':12"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1735772"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700929355 {#4432
      date: 2023-11-25 17:22:35.0 +01:00
    }
  }
  +nestedComments: []
  +level: 3
  +view: "tree"
  -entryCommentRepository: App\Repository\EntryCommentRepository {#555 …}
  -twig: Twig\Environment {#1252 …}
  -security: Symfony\Bundle\SecurityBundle\Security {#1101 …}
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
}
entry_comment App\Twig\Components\EntryCommentComponent 14.0 MiB 33.84 ms
Input props
[
  "comment" => App\Entity\EntryComment {#4453
    +user: Proxies\__CG__\App\Entity\User {#4454
      +avatar: Proxies\__CG__\App\Entity\Image {#6518 …}
      +cover: null
      +email: "Strit@lemmy.linuxuserspace.show"
      +username: "@Strit@lemmy.linuxuserspace.show"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: "Linux enthusiast, family man and nerd"
      +lastActive: DateTime @1726328845 {#6515
        date: 2024-09-14 17:47:25.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#6519 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#6521 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#6523 …}
      +entries: Doctrine\ORM\PersistentCollection {#6525 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#6527 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#6529 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#6531 …}
      +posts: Doctrine\ORM\PersistentCollection {#6533 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#6535 …}
      +postComments: Doctrine\ORM\PersistentCollection {#6537 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#6539 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#6541 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#6543 …}
      +follows: Doctrine\ORM\PersistentCollection {#6545 …}
      +followers: Doctrine\ORM\PersistentCollection {#6547 …}
      +blocks: Doctrine\ORM\PersistentCollection {#6549 …}
      +blockers: Doctrine\ORM\PersistentCollection {#6551 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#6553 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#6555 …}
      +reports: Doctrine\ORM\PersistentCollection {#6557 …}
      +favourites: Doctrine\ORM\PersistentCollection {#6559 …}
      +violations: Doctrine\ORM\PersistentCollection {#6561 …}
      +notifications: Doctrine\ORM\PersistentCollection {#6563 …}
      +awards: Doctrine\ORM\PersistentCollection {#6565 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#6567 …}
      +categories: Doctrine\ORM\PersistentCollection {#6569 …}
      -id: 69878
      -password: "$2y$13$pwWoC7DgFHMWPD06SHqbBu6ejTQ7ZI5lTehnjO.le5nPbpbwlZiiC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#6571 …}
      +apId: "Strit@lemmy.linuxuserspace.show"
      +apProfileId: "https://lemmy.linuxuserspace.show/u/Strit"
      +apPublicUrl: "https://lemmy.linuxuserspace.show/u/Strit"
      +apFollowersUrl: null
      +apInboxUrl: "https://lemmy.linuxuserspace.show/inbox"
      +apDomain: "lemmy.linuxuserspace.show"
      +apPreferredUsername: "Strit"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027530 {#6516
        date: 2024-10-15 23:25:30.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1698931515 {#6517
        date: 2023-11-02 14:25:15.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4398
      +user: Proxies\__CG__\App\Entity\User {#1978 …2}
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: App\Entity\EntryComment {#4122
        +user: App\Entity\User {#4070
          +avatar: null
          +cover: null
          +email: "ReversalHatchery@beehaw.org"
          +username: "@ReversalHatchery@beehaw.org"
          +roles: []
          +followersCount: 0
          +homepage: "front"
          +about: """
            Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
            Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
            """
          +lastActive: DateTime @1729157044 {#4130
            date: 2024-10-17 11:24:04.0 +02:00
          }
          +markedForDeletionAt: null
          +fields: null
          +oauthGithubId: null
          +oauthGoogleId: null
          +oauthFacebookId: null
          +oauthKeycloakId: null
          +hideAdult: true
          +showSubscribedUsers: true
          +showSubscribedMagazines: true
          +showSubscribedDomains: true
          +preferredLanguages: []
          +featuredMagazines: null
          +showProfileSubscriptions: false
          +showProfileFollowings: true
          +markNewComments: false
          +notifyOnNewEntry: false
          +notifyOnNewEntryReply: true
          +notifyOnNewEntryCommentReply: true
          +notifyOnNewPost: false
          +notifyOnNewPostReply: true
          +notifyOnNewPostCommentReply: true
          +addMentionsEntries: false
          +addMentionsPosts: true
          +isBanned: false
          +isVerified: false
          +isDeleted: false
          +isBot: false
          +spamProtection: true
          +customCss: null
          +ignoreMagazinesCustomCss: false
          +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
          +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
          +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
          +entries: Doctrine\ORM\PersistentCollection {#4064 …}
          +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
          +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
          +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
          +posts: Doctrine\ORM\PersistentCollection {#4054 …}
          +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
          +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
          +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
          +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
          +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
          +follows: Doctrine\ORM\PersistentCollection {#4186 …}
          +followers: Doctrine\ORM\PersistentCollection {#4182 …}
          +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
          +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
          +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
          +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
          +reports: Doctrine\ORM\PersistentCollection {#4185 …}
          +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
          +violations: Doctrine\ORM\PersistentCollection {#4175 …}
          +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
          +awards: Doctrine\ORM\PersistentCollection {#4176 …}
          +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
          +categories: Doctrine\ORM\PersistentCollection {#4173 …}
          -id: 53309
          -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
          -totpSecret: null
          -totpBackupCodes: []
          -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
          +apId: "ReversalHatchery@beehaw.org"
          +apProfileId: "https://beehaw.org/u/ReversalHatchery"
          +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
          +apFollowersUrl: null
          +apInboxUrl: "https://beehaw.org/inbox"
          +apDomain: "beehaw.org"
          +apPreferredUsername: "ReversalHatchery"
          +apDiscoverable: true
          +apManuallyApprovesFollowers: false
          +privateKey: null
          +publicKey: null
          +apFetchedAt: DateTime @1729027069 {#4126
            date: 2024-10-15 23:17:49.0 +02:00
          }
          +apDeletedAt: null
          +apTimeoutAt: null
          +visibility: "visible             "
          +createdAt: DateTimeImmutable @1696732297 {#4124
            date: 2023-10-08 04:31:37.0 +02:00
          }
        }
        +entry: App\Entity\Entry {#2412}
        +magazine: App\Entity\Magazine {#264}
        +image: null
        +parent: null
        +root: null
        +body: """
          “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
          \n
          The irony.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 11
        +score: 0
        +lastActive: DateTime @1701510560 {#4131
          date: 2023-12-02 10:49:20.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
        ]
        +children: Doctrine\ORM\PersistentCollection {#4120 …}
        +nested: Doctrine\ORM\PersistentCollection {#4118 …}
        +votes: Doctrine\ORM\PersistentCollection {#4116 …}
        +reports: Doctrine\ORM\PersistentCollection {#4114 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
        -id: 157122
        -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1721846"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700793081 {#4067
          date: 2023-11-24 03:31:21.0 +01:00
        }
      }
      +root: App\Entity\EntryComment {#4122}
      +body: """
        I mean the origin is still legit, so there is no real problem with it, right?\n
        \n
        One cannot just register a site as github.com
        """
      +lang: "en"
      +isAdult: false
      +favouriteCount: 0
      +score: 0
      +lastActive: DateTime @1700824252 {#4397
        date: 2023-11-24 12:10:52.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
        "@ReversalHatchery@beehaw.org"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4401 …}
      +nested: Doctrine\ORM\PersistentCollection {#4406 …}
      +votes: Doctrine\ORM\PersistentCollection {#4402 …}
      +reports: Doctrine\ORM\PersistentCollection {#4408 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4410 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4412 …}
      -id: 158086
      -bodyTs: "'cannot':18 'github.com':24 'legit':7 'mean':2 'one':17 'origin':4 'problem':13 'real':12 'regist':20 'right':16 'site':22 'still':6"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://feddit.de/comment/5103814"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700824252 {#4394
        date: 2023-11-24 12:10:52.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4122}
    +body: "It uses the github cert, but that is not set to use the github.io subpages that start with www."
    +lang: "en"
    +isAdult: false
    +favouriteCount: 1
    +score: 0
    +lastActive: DateTime @1700827184 {#4451
      date: 2023-11-24 12:59:44.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@ReversalHatchery@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4455 …}
    +nested: Doctrine\ORM\PersistentCollection {#4457 …}
    +votes: Doctrine\ORM\PersistentCollection {#4459 …}
    +reports: Doctrine\ORM\PersistentCollection {#4461 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4463 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4465 …}
    -id: 158202
    -bodyTs: "'cert':5 'github':4 'github.io':14 'set':10 'start':17 'subpag':15 'use':2,12 'www':19"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://lemmy.linuxuserspace.show/comment/623231"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700827184 {#4452
      date: 2023-11-24 12:59:44.0 +01:00
    }
  }
  "showNested" => true
  "level" => 3
  "showEntryTitle" => false
  "showMagazineName" => false
]
Attributes
[]
Component
App\Twig\Components\EntryCommentComponent {#6433
  +comment: App\Entity\EntryComment {#4453
    +user: Proxies\__CG__\App\Entity\User {#4454
      +avatar: Proxies\__CG__\App\Entity\Image {#6518 …}
      +cover: null
      +email: "Strit@lemmy.linuxuserspace.show"
      +username: "@Strit@lemmy.linuxuserspace.show"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: "Linux enthusiast, family man and nerd"
      +lastActive: DateTime @1726328845 {#6515
        date: 2024-09-14 17:47:25.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#6519 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#6521 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#6523 …}
      +entries: Doctrine\ORM\PersistentCollection {#6525 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#6527 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#6529 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#6531 …}
      +posts: Doctrine\ORM\PersistentCollection {#6533 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#6535 …}
      +postComments: Doctrine\ORM\PersistentCollection {#6537 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#6539 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#6541 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#6543 …}
      +follows: Doctrine\ORM\PersistentCollection {#6545 …}
      +followers: Doctrine\ORM\PersistentCollection {#6547 …}
      +blocks: Doctrine\ORM\PersistentCollection {#6549 …}
      +blockers: Doctrine\ORM\PersistentCollection {#6551 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#6553 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#6555 …}
      +reports: Doctrine\ORM\PersistentCollection {#6557 …}
      +favourites: Doctrine\ORM\PersistentCollection {#6559 …}
      +violations: Doctrine\ORM\PersistentCollection {#6561 …}
      +notifications: Doctrine\ORM\PersistentCollection {#6563 …}
      +awards: Doctrine\ORM\PersistentCollection {#6565 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#6567 …}
      +categories: Doctrine\ORM\PersistentCollection {#6569 …}
      -id: 69878
      -password: "$2y$13$pwWoC7DgFHMWPD06SHqbBu6ejTQ7ZI5lTehnjO.le5nPbpbwlZiiC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#6571 …}
      +apId: "Strit@lemmy.linuxuserspace.show"
      +apProfileId: "https://lemmy.linuxuserspace.show/u/Strit"
      +apPublicUrl: "https://lemmy.linuxuserspace.show/u/Strit"
      +apFollowersUrl: null
      +apInboxUrl: "https://lemmy.linuxuserspace.show/inbox"
      +apDomain: "lemmy.linuxuserspace.show"
      +apPreferredUsername: "Strit"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027530 {#6516
        date: 2024-10-15 23:25:30.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1698931515 {#6517
        date: 2023-11-02 14:25:15.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4398
      +user: Proxies\__CG__\App\Entity\User {#1978 …2}
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: App\Entity\EntryComment {#4122
        +user: App\Entity\User {#4070
          +avatar: null
          +cover: null
          +email: "ReversalHatchery@beehaw.org"
          +username: "@ReversalHatchery@beehaw.org"
          +roles: []
          +followersCount: 0
          +homepage: "front"
          +about: """
            Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
            Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
            """
          +lastActive: DateTime @1729157044 {#4130
            date: 2024-10-17 11:24:04.0 +02:00
          }
          +markedForDeletionAt: null
          +fields: null
          +oauthGithubId: null
          +oauthGoogleId: null
          +oauthFacebookId: null
          +oauthKeycloakId: null
          +hideAdult: true
          +showSubscribedUsers: true
          +showSubscribedMagazines: true
          +showSubscribedDomains: true
          +preferredLanguages: []
          +featuredMagazines: null
          +showProfileSubscriptions: false
          +showProfileFollowings: true
          +markNewComments: false
          +notifyOnNewEntry: false
          +notifyOnNewEntryReply: true
          +notifyOnNewEntryCommentReply: true
          +notifyOnNewPost: false
          +notifyOnNewPostReply: true
          +notifyOnNewPostCommentReply: true
          +addMentionsEntries: false
          +addMentionsPosts: true
          +isBanned: false
          +isVerified: false
          +isDeleted: false
          +isBot: false
          +spamProtection: true
          +customCss: null
          +ignoreMagazinesCustomCss: false
          +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
          +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
          +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
          +entries: Doctrine\ORM\PersistentCollection {#4064 …}
          +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
          +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
          +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
          +posts: Doctrine\ORM\PersistentCollection {#4054 …}
          +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
          +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
          +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
          +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
          +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
          +follows: Doctrine\ORM\PersistentCollection {#4186 …}
          +followers: Doctrine\ORM\PersistentCollection {#4182 …}
          +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
          +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
          +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
          +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
          +reports: Doctrine\ORM\PersistentCollection {#4185 …}
          +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
          +violations: Doctrine\ORM\PersistentCollection {#4175 …}
          +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
          +awards: Doctrine\ORM\PersistentCollection {#4176 …}
          +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
          +categories: Doctrine\ORM\PersistentCollection {#4173 …}
          -id: 53309
          -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
          -totpSecret: null
          -totpBackupCodes: []
          -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
          +apId: "ReversalHatchery@beehaw.org"
          +apProfileId: "https://beehaw.org/u/ReversalHatchery"
          +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
          +apFollowersUrl: null
          +apInboxUrl: "https://beehaw.org/inbox"
          +apDomain: "beehaw.org"
          +apPreferredUsername: "ReversalHatchery"
          +apDiscoverable: true
          +apManuallyApprovesFollowers: false
          +privateKey: null
          +publicKey: null
          +apFetchedAt: DateTime @1729027069 {#4126
            date: 2024-10-15 23:17:49.0 +02:00
          }
          +apDeletedAt: null
          +apTimeoutAt: null
          +visibility: "visible             "
          +createdAt: DateTimeImmutable @1696732297 {#4124
            date: 2023-10-08 04:31:37.0 +02:00
          }
        }
        +entry: App\Entity\Entry {#2412}
        +magazine: App\Entity\Magazine {#264}
        +image: null
        +parent: null
        +root: null
        +body: """
          “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
          \n
          The irony.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 11
        +score: 0
        +lastActive: DateTime @1701510560 {#4131
          date: 2023-12-02 10:49:20.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
        ]
        +children: Doctrine\ORM\PersistentCollection {#4120 …}
        +nested: Doctrine\ORM\PersistentCollection {#4118 …}
        +votes: Doctrine\ORM\PersistentCollection {#4116 …}
        +reports: Doctrine\ORM\PersistentCollection {#4114 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
        -id: 157122
        -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1721846"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700793081 {#4067
          date: 2023-11-24 03:31:21.0 +01:00
        }
      }
      +root: App\Entity\EntryComment {#4122}
      +body: """
        I mean the origin is still legit, so there is no real problem with it, right?\n
        \n
        One cannot just register a site as github.com
        """
      +lang: "en"
      +isAdult: false
      +favouriteCount: 0
      +score: 0
      +lastActive: DateTime @1700824252 {#4397
        date: 2023-11-24 12:10:52.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
        "@ReversalHatchery@beehaw.org"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4401 …}
      +nested: Doctrine\ORM\PersistentCollection {#4406 …}
      +votes: Doctrine\ORM\PersistentCollection {#4402 …}
      +reports: Doctrine\ORM\PersistentCollection {#4408 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4410 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4412 …}
      -id: 158086
      -bodyTs: "'cannot':18 'github.com':24 'legit':7 'mean':2 'one':17 'origin':4 'problem':13 'real':12 'regist':20 'right':16 'site':22 'still':6"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://feddit.de/comment/5103814"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700824252 {#4394
        date: 2023-11-24 12:10:52.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4122}
    +body: "It uses the github cert, but that is not set to use the github.io subpages that start with www."
    +lang: "en"
    +isAdult: false
    +favouriteCount: 1
    +score: 0
    +lastActive: DateTime @1700827184 {#4451
      date: 2023-11-24 12:59:44.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@ReversalHatchery@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4455 …}
    +nested: Doctrine\ORM\PersistentCollection {#4457 …}
    +votes: Doctrine\ORM\PersistentCollection {#4459 …}
    +reports: Doctrine\ORM\PersistentCollection {#4461 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4463 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4465 …}
    -id: 158202
    -bodyTs: "'cert':5 'github':4 'github.io':14 'set':10 'start':17 'subpag':15 'use':2,12 'www':19"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://lemmy.linuxuserspace.show/comment/623231"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700827184 {#4452
      date: 2023-11-24 12:59:44.0 +01:00
    }
  }
  +showMagazineName: false
  +showEntryTitle: false
  +showNested: true
  +level: 3
  +canSeeTrash: false
  +dateAsUrl: false
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
  -authorizationChecker: Symfony\Component\Security\Core\Authorization\AuthorizationChecker {#931 …}
}
user_inline App\Twig\Components\UserInlineComponent 14.0 MiB 6.39 ms
Input props
[
  "user" => Proxies\__CG__\App\Entity\User {#4454
    +avatar: Proxies\__CG__\App\Entity\Image {#6518 …}
    +cover: null
    +email: "Strit@lemmy.linuxuserspace.show"
    +username: "@Strit@lemmy.linuxuserspace.show"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: "Linux enthusiast, family man and nerd"
    +lastActive: DateTime @1726328845 {#6515
      date: 2024-09-14 17:47:25.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#6519 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#6521 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#6523 …}
    +entries: Doctrine\ORM\PersistentCollection {#6525 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#6527 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#6529 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#6531 …}
    +posts: Doctrine\ORM\PersistentCollection {#6533 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#6535 …}
    +postComments: Doctrine\ORM\PersistentCollection {#6537 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#6539 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#6541 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#6543 …}
    +follows: Doctrine\ORM\PersistentCollection {#6545 …}
    +followers: Doctrine\ORM\PersistentCollection {#6547 …}
    +blocks: Doctrine\ORM\PersistentCollection {#6549 …}
    +blockers: Doctrine\ORM\PersistentCollection {#6551 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#6553 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#6555 …}
    +reports: Doctrine\ORM\PersistentCollection {#6557 …}
    +favourites: Doctrine\ORM\PersistentCollection {#6559 …}
    +violations: Doctrine\ORM\PersistentCollection {#6561 …}
    +notifications: Doctrine\ORM\PersistentCollection {#6563 …}
    +awards: Doctrine\ORM\PersistentCollection {#6565 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#6567 …}
    +categories: Doctrine\ORM\PersistentCollection {#6569 …}
    -id: 69878
    -password: "$2y$13$pwWoC7DgFHMWPD06SHqbBu6ejTQ7ZI5lTehnjO.le5nPbpbwlZiiC"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#6571 …}
    +apId: "Strit@lemmy.linuxuserspace.show"
    +apProfileId: "https://lemmy.linuxuserspace.show/u/Strit"
    +apPublicUrl: "https://lemmy.linuxuserspace.show/u/Strit"
    +apFollowersUrl: null
    +apInboxUrl: "https://lemmy.linuxuserspace.show/inbox"
    +apDomain: "lemmy.linuxuserspace.show"
    +apPreferredUsername: "Strit"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027530 {#6516
      date: 2024-10-15 23:25:30.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1698931515 {#6517
      date: 2023-11-02 14:25:15.0 +01:00
    }
    +__isInitialized__: true
     …2
  }
  "showAvatar" => false
]
Attributes
[]
Component
App\Twig\Components\UserInlineComponent {#6478
  +user: Proxies\__CG__\App\Entity\User {#4454
    +avatar: Proxies\__CG__\App\Entity\Image {#6518 …}
    +cover: null
    +email: "Strit@lemmy.linuxuserspace.show"
    +username: "@Strit@lemmy.linuxuserspace.show"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: "Linux enthusiast, family man and nerd"
    +lastActive: DateTime @1726328845 {#6515
      date: 2024-09-14 17:47:25.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#6519 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#6521 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#6523 …}
    +entries: Doctrine\ORM\PersistentCollection {#6525 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#6527 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#6529 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#6531 …}
    +posts: Doctrine\ORM\PersistentCollection {#6533 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#6535 …}
    +postComments: Doctrine\ORM\PersistentCollection {#6537 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#6539 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#6541 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#6543 …}
    +follows: Doctrine\ORM\PersistentCollection {#6545 …}
    +followers: Doctrine\ORM\PersistentCollection {#6547 …}
    +blocks: Doctrine\ORM\PersistentCollection {#6549 …}
    +blockers: Doctrine\ORM\PersistentCollection {#6551 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#6553 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#6555 …}
    +reports: Doctrine\ORM\PersistentCollection {#6557 …}
    +favourites: Doctrine\ORM\PersistentCollection {#6559 …}
    +violations: Doctrine\ORM\PersistentCollection {#6561 …}
    +notifications: Doctrine\ORM\PersistentCollection {#6563 …}
    +awards: Doctrine\ORM\PersistentCollection {#6565 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#6567 …}
    +categories: Doctrine\ORM\PersistentCollection {#6569 …}
    -id: 69878
    -password: "$2y$13$pwWoC7DgFHMWPD06SHqbBu6ejTQ7ZI5lTehnjO.le5nPbpbwlZiiC"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#6571 …}
    +apId: "Strit@lemmy.linuxuserspace.show"
    +apProfileId: "https://lemmy.linuxuserspace.show/u/Strit"
    +apPublicUrl: "https://lemmy.linuxuserspace.show/u/Strit"
    +apFollowersUrl: null
    +apInboxUrl: "https://lemmy.linuxuserspace.show/inbox"
    +apDomain: "lemmy.linuxuserspace.show"
    +apPreferredUsername: "Strit"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027530 {#6516
      date: 2024-10-15 23:25:30.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1698931515 {#6517
      date: 2023-11-02 14:25:15.0 +01:00
    }
    +__isInitialized__: true
     …2
  }
  +showAvatar: false
}
date App\Twig\Components\DateComponent 14.0 MiB 0.17 ms
Input props
[
  "date" => DateTimeImmutable @1700827184 {#4452
    date: 2023-11-24 12:59:44.0 +01:00
  }
]
Attributes
[]
Component
App\Twig\Components\DateComponent {#6592
  +date: DateTimeImmutable @1700827184 {#4452
    date: 2023-11-24 12:59:44.0 +01:00
  }
}
date_edited App\Twig\Components\DateEditedComponent 14.0 MiB 0.10 ms
Input props
[
  "createdAt" => DateTimeImmutable @1700827184 {#4452
    date: 2023-11-24 12:59:44.0 +01:00
  }
  "editedAt" => null
]
Attributes
[]
Component
App\Twig\Components\DateEditedComponent {#6646
  +createdAt: DateTimeImmutable @1700827184 {#4452
    date: 2023-11-24 12:59:44.0 +01:00
  }
  +editedAt: null
}
user_avatar App\Twig\Components\UserAvatarComponent 14.0 MiB 10.98 ms
Input props
[
  "user" => Proxies\__CG__\App\Entity\User {#4454
    +avatar: Proxies\__CG__\App\Entity\Image {#6518 …}
    +cover: null
    +email: "Strit@lemmy.linuxuserspace.show"
    +username: "@Strit@lemmy.linuxuserspace.show"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: "Linux enthusiast, family man and nerd"
    +lastActive: DateTime @1726328845 {#6515
      date: 2024-09-14 17:47:25.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#6519 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#6521 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#6523 …}
    +entries: Doctrine\ORM\PersistentCollection {#6525 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#6527 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#6529 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#6531 …}
    +posts: Doctrine\ORM\PersistentCollection {#6533 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#6535 …}
    +postComments: Doctrine\ORM\PersistentCollection {#6537 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#6539 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#6541 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#6543 …}
    +follows: Doctrine\ORM\PersistentCollection {#6545 …}
    +followers: Doctrine\ORM\PersistentCollection {#6547 …}
    +blocks: Doctrine\ORM\PersistentCollection {#6549 …}
    +blockers: Doctrine\ORM\PersistentCollection {#6551 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#6553 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#6555 …}
    +reports: Doctrine\ORM\PersistentCollection {#6557 …}
    +favourites: Doctrine\ORM\PersistentCollection {#6559 …}
    +violations: Doctrine\ORM\PersistentCollection {#6561 …}
    +notifications: Doctrine\ORM\PersistentCollection {#6563 …}
    +awards: Doctrine\ORM\PersistentCollection {#6565 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#6567 …}
    +categories: Doctrine\ORM\PersistentCollection {#6569 …}
    -id: 69878
    -password: "$2y$13$pwWoC7DgFHMWPD06SHqbBu6ejTQ7ZI5lTehnjO.le5nPbpbwlZiiC"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#6571 …}
    +apId: "Strit@lemmy.linuxuserspace.show"
    +apProfileId: "https://lemmy.linuxuserspace.show/u/Strit"
    +apPublicUrl: "https://lemmy.linuxuserspace.show/u/Strit"
    +apFollowersUrl: null
    +apInboxUrl: "https://lemmy.linuxuserspace.show/inbox"
    +apDomain: "lemmy.linuxuserspace.show"
    +apPreferredUsername: "Strit"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027530 {#6516
      date: 2024-10-15 23:25:30.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1698931515 {#6517
      date: 2023-11-02 14:25:15.0 +01:00
    }
    +__isInitialized__: true
     …2
  }
  "width" => 40
  "height" => 40
  "asLink" => true
]
Attributes
[]
Component
App\Twig\Components\UserAvatarComponent {#6700
  +width: 40
  +height: 40
  +user: Proxies\__CG__\App\Entity\User {#4454
    +avatar: Proxies\__CG__\App\Entity\Image {#6518 …}
    +cover: null
    +email: "Strit@lemmy.linuxuserspace.show"
    +username: "@Strit@lemmy.linuxuserspace.show"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: "Linux enthusiast, family man and nerd"
    +lastActive: DateTime @1726328845 {#6515
      date: 2024-09-14 17:47:25.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#6519 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#6521 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#6523 …}
    +entries: Doctrine\ORM\PersistentCollection {#6525 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#6527 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#6529 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#6531 …}
    +posts: Doctrine\ORM\PersistentCollection {#6533 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#6535 …}
    +postComments: Doctrine\ORM\PersistentCollection {#6537 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#6539 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#6541 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#6543 …}
    +follows: Doctrine\ORM\PersistentCollection {#6545 …}
    +followers: Doctrine\ORM\PersistentCollection {#6547 …}
    +blocks: Doctrine\ORM\PersistentCollection {#6549 …}
    +blockers: Doctrine\ORM\PersistentCollection {#6551 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#6553 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#6555 …}
    +reports: Doctrine\ORM\PersistentCollection {#6557 …}
    +favourites: Doctrine\ORM\PersistentCollection {#6559 …}
    +violations: Doctrine\ORM\PersistentCollection {#6561 …}
    +notifications: Doctrine\ORM\PersistentCollection {#6563 …}
    +awards: Doctrine\ORM\PersistentCollection {#6565 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#6567 …}
    +categories: Doctrine\ORM\PersistentCollection {#6569 …}
    -id: 69878
    -password: "$2y$13$pwWoC7DgFHMWPD06SHqbBu6ejTQ7ZI5lTehnjO.le5nPbpbwlZiiC"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#6571 …}
    +apId: "Strit@lemmy.linuxuserspace.show"
    +apProfileId: "https://lemmy.linuxuserspace.show/u/Strit"
    +apPublicUrl: "https://lemmy.linuxuserspace.show/u/Strit"
    +apFollowersUrl: null
    +apInboxUrl: "https://lemmy.linuxuserspace.show/inbox"
    +apDomain: "lemmy.linuxuserspace.show"
    +apPreferredUsername: "Strit"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027530 {#6516
      date: 2024-10-15 23:25:30.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1698931515 {#6517
      date: 2023-11-02 14:25:15.0 +01:00
    }
    +__isInitialized__: true
     …2
  }
  +asLink: true
}
vote App\Twig\Components\VoteComponent 14.0 MiB 0.65 ms
Input props
[
  "subject" => App\Entity\EntryComment {#4453
    +user: Proxies\__CG__\App\Entity\User {#4454
      +avatar: Proxies\__CG__\App\Entity\Image {#6518 …}
      +cover: null
      +email: "Strit@lemmy.linuxuserspace.show"
      +username: "@Strit@lemmy.linuxuserspace.show"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: "Linux enthusiast, family man and nerd"
      +lastActive: DateTime @1726328845 {#6515
        date: 2024-09-14 17:47:25.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#6519 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#6521 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#6523 …}
      +entries: Doctrine\ORM\PersistentCollection {#6525 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#6527 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#6529 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#6531 …}
      +posts: Doctrine\ORM\PersistentCollection {#6533 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#6535 …}
      +postComments: Doctrine\ORM\PersistentCollection {#6537 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#6539 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#6541 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#6543 …}
      +follows: Doctrine\ORM\PersistentCollection {#6545 …}
      +followers: Doctrine\ORM\PersistentCollection {#6547 …}
      +blocks: Doctrine\ORM\PersistentCollection {#6549 …}
      +blockers: Doctrine\ORM\PersistentCollection {#6551 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#6553 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#6555 …}
      +reports: Doctrine\ORM\PersistentCollection {#6557 …}
      +favourites: Doctrine\ORM\PersistentCollection {#6559 …}
      +violations: Doctrine\ORM\PersistentCollection {#6561 …}
      +notifications: Doctrine\ORM\PersistentCollection {#6563 …}
      +awards: Doctrine\ORM\PersistentCollection {#6565 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#6567 …}
      +categories: Doctrine\ORM\PersistentCollection {#6569 …}
      -id: 69878
      -password: "$2y$13$pwWoC7DgFHMWPD06SHqbBu6ejTQ7ZI5lTehnjO.le5nPbpbwlZiiC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#6571 …}
      +apId: "Strit@lemmy.linuxuserspace.show"
      +apProfileId: "https://lemmy.linuxuserspace.show/u/Strit"
      +apPublicUrl: "https://lemmy.linuxuserspace.show/u/Strit"
      +apFollowersUrl: null
      +apInboxUrl: "https://lemmy.linuxuserspace.show/inbox"
      +apDomain: "lemmy.linuxuserspace.show"
      +apPreferredUsername: "Strit"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027530 {#6516
        date: 2024-10-15 23:25:30.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1698931515 {#6517
        date: 2023-11-02 14:25:15.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4398
      +user: Proxies\__CG__\App\Entity\User {#1978 …2}
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: App\Entity\EntryComment {#4122
        +user: App\Entity\User {#4070
          +avatar: null
          +cover: null
          +email: "ReversalHatchery@beehaw.org"
          +username: "@ReversalHatchery@beehaw.org"
          +roles: []
          +followersCount: 0
          +homepage: "front"
          +about: """
            Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
            Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
            """
          +lastActive: DateTime @1729157044 {#4130
            date: 2024-10-17 11:24:04.0 +02:00
          }
          +markedForDeletionAt: null
          +fields: null
          +oauthGithubId: null
          +oauthGoogleId: null
          +oauthFacebookId: null
          +oauthKeycloakId: null
          +hideAdult: true
          +showSubscribedUsers: true
          +showSubscribedMagazines: true
          +showSubscribedDomains: true
          +preferredLanguages: []
          +featuredMagazines: null
          +showProfileSubscriptions: false
          +showProfileFollowings: true
          +markNewComments: false
          +notifyOnNewEntry: false
          +notifyOnNewEntryReply: true
          +notifyOnNewEntryCommentReply: true
          +notifyOnNewPost: false
          +notifyOnNewPostReply: true
          +notifyOnNewPostCommentReply: true
          +addMentionsEntries: false
          +addMentionsPosts: true
          +isBanned: false
          +isVerified: false
          +isDeleted: false
          +isBot: false
          +spamProtection: true
          +customCss: null
          +ignoreMagazinesCustomCss: false
          +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
          +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
          +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
          +entries: Doctrine\ORM\PersistentCollection {#4064 …}
          +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
          +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
          +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
          +posts: Doctrine\ORM\PersistentCollection {#4054 …}
          +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
          +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
          +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
          +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
          +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
          +follows: Doctrine\ORM\PersistentCollection {#4186 …}
          +followers: Doctrine\ORM\PersistentCollection {#4182 …}
          +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
          +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
          +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
          +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
          +reports: Doctrine\ORM\PersistentCollection {#4185 …}
          +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
          +violations: Doctrine\ORM\PersistentCollection {#4175 …}
          +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
          +awards: Doctrine\ORM\PersistentCollection {#4176 …}
          +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
          +categories: Doctrine\ORM\PersistentCollection {#4173 …}
          -id: 53309
          -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
          -totpSecret: null
          -totpBackupCodes: []
          -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
          +apId: "ReversalHatchery@beehaw.org"
          +apProfileId: "https://beehaw.org/u/ReversalHatchery"
          +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
          +apFollowersUrl: null
          +apInboxUrl: "https://beehaw.org/inbox"
          +apDomain: "beehaw.org"
          +apPreferredUsername: "ReversalHatchery"
          +apDiscoverable: true
          +apManuallyApprovesFollowers: false
          +privateKey: null
          +publicKey: null
          +apFetchedAt: DateTime @1729027069 {#4126
            date: 2024-10-15 23:17:49.0 +02:00
          }
          +apDeletedAt: null
          +apTimeoutAt: null
          +visibility: "visible             "
          +createdAt: DateTimeImmutable @1696732297 {#4124
            date: 2023-10-08 04:31:37.0 +02:00
          }
        }
        +entry: App\Entity\Entry {#2412}
        +magazine: App\Entity\Magazine {#264}
        +image: null
        +parent: null
        +root: null
        +body: """
          “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
          \n
          The irony.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 11
        +score: 0
        +lastActive: DateTime @1701510560 {#4131
          date: 2023-12-02 10:49:20.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
        ]
        +children: Doctrine\ORM\PersistentCollection {#4120 …}
        +nested: Doctrine\ORM\PersistentCollection {#4118 …}
        +votes: Doctrine\ORM\PersistentCollection {#4116 …}
        +reports: Doctrine\ORM\PersistentCollection {#4114 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
        -id: 157122
        -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1721846"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700793081 {#4067
          date: 2023-11-24 03:31:21.0 +01:00
        }
      }
      +root: App\Entity\EntryComment {#4122}
      +body: """
        I mean the origin is still legit, so there is no real problem with it, right?\n
        \n
        One cannot just register a site as github.com
        """
      +lang: "en"
      +isAdult: false
      +favouriteCount: 0
      +score: 0
      +lastActive: DateTime @1700824252 {#4397
        date: 2023-11-24 12:10:52.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
        "@ReversalHatchery@beehaw.org"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4401 …}
      +nested: Doctrine\ORM\PersistentCollection {#4406 …}
      +votes: Doctrine\ORM\PersistentCollection {#4402 …}
      +reports: Doctrine\ORM\PersistentCollection {#4408 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4410 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4412 …}
      -id: 158086
      -bodyTs: "'cannot':18 'github.com':24 'legit':7 'mean':2 'one':17 'origin':4 'problem':13 'real':12 'regist':20 'right':16 'site':22 'still':6"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://feddit.de/comment/5103814"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700824252 {#4394
        date: 2023-11-24 12:10:52.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4122}
    +body: "It uses the github cert, but that is not set to use the github.io subpages that start with www."
    +lang: "en"
    +isAdult: false
    +favouriteCount: 1
    +score: 0
    +lastActive: DateTime @1700827184 {#4451
      date: 2023-11-24 12:59:44.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@ReversalHatchery@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4455 …}
    +nested: Doctrine\ORM\PersistentCollection {#4457 …}
    +votes: Doctrine\ORM\PersistentCollection {#4459 …}
    +reports: Doctrine\ORM\PersistentCollection {#4461 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4463 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4465 …}
    -id: 158202
    -bodyTs: "'cert':5 'github':4 'github.io':14 'set':10 'start':17 'subpag':15 'use':2,12 'www':19"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://lemmy.linuxuserspace.show/comment/623231"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700827184 {#4452
      date: 2023-11-24 12:59:44.0 +01:00
    }
  }
]
Attributes
[]
Component
App\Twig\Components\VoteComponent {#6771
  +subject: App\Entity\EntryComment {#4453
    +user: Proxies\__CG__\App\Entity\User {#4454
      +avatar: Proxies\__CG__\App\Entity\Image {#6518 …}
      +cover: null
      +email: "Strit@lemmy.linuxuserspace.show"
      +username: "@Strit@lemmy.linuxuserspace.show"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: "Linux enthusiast, family man and nerd"
      +lastActive: DateTime @1726328845 {#6515
        date: 2024-09-14 17:47:25.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#6519 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#6521 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#6523 …}
      +entries: Doctrine\ORM\PersistentCollection {#6525 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#6527 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#6529 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#6531 …}
      +posts: Doctrine\ORM\PersistentCollection {#6533 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#6535 …}
      +postComments: Doctrine\ORM\PersistentCollection {#6537 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#6539 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#6541 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#6543 …}
      +follows: Doctrine\ORM\PersistentCollection {#6545 …}
      +followers: Doctrine\ORM\PersistentCollection {#6547 …}
      +blocks: Doctrine\ORM\PersistentCollection {#6549 …}
      +blockers: Doctrine\ORM\PersistentCollection {#6551 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#6553 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#6555 …}
      +reports: Doctrine\ORM\PersistentCollection {#6557 …}
      +favourites: Doctrine\ORM\PersistentCollection {#6559 …}
      +violations: Doctrine\ORM\PersistentCollection {#6561 …}
      +notifications: Doctrine\ORM\PersistentCollection {#6563 …}
      +awards: Doctrine\ORM\PersistentCollection {#6565 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#6567 …}
      +categories: Doctrine\ORM\PersistentCollection {#6569 …}
      -id: 69878
      -password: "$2y$13$pwWoC7DgFHMWPD06SHqbBu6ejTQ7ZI5lTehnjO.le5nPbpbwlZiiC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#6571 …}
      +apId: "Strit@lemmy.linuxuserspace.show"
      +apProfileId: "https://lemmy.linuxuserspace.show/u/Strit"
      +apPublicUrl: "https://lemmy.linuxuserspace.show/u/Strit"
      +apFollowersUrl: null
      +apInboxUrl: "https://lemmy.linuxuserspace.show/inbox"
      +apDomain: "lemmy.linuxuserspace.show"
      +apPreferredUsername: "Strit"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027530 {#6516
        date: 2024-10-15 23:25:30.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1698931515 {#6517
        date: 2023-11-02 14:25:15.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4398
      +user: Proxies\__CG__\App\Entity\User {#1978 …2}
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: App\Entity\EntryComment {#4122
        +user: App\Entity\User {#4070
          +avatar: null
          +cover: null
          +email: "ReversalHatchery@beehaw.org"
          +username: "@ReversalHatchery@beehaw.org"
          +roles: []
          +followersCount: 0
          +homepage: "front"
          +about: """
            Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
            Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
            """
          +lastActive: DateTime @1729157044 {#4130
            date: 2024-10-17 11:24:04.0 +02:00
          }
          +markedForDeletionAt: null
          +fields: null
          +oauthGithubId: null
          +oauthGoogleId: null
          +oauthFacebookId: null
          +oauthKeycloakId: null
          +hideAdult: true
          +showSubscribedUsers: true
          +showSubscribedMagazines: true
          +showSubscribedDomains: true
          +preferredLanguages: []
          +featuredMagazines: null
          +showProfileSubscriptions: false
          +showProfileFollowings: true
          +markNewComments: false
          +notifyOnNewEntry: false
          +notifyOnNewEntryReply: true
          +notifyOnNewEntryCommentReply: true
          +notifyOnNewPost: false
          +notifyOnNewPostReply: true
          +notifyOnNewPostCommentReply: true
          +addMentionsEntries: false
          +addMentionsPosts: true
          +isBanned: false
          +isVerified: false
          +isDeleted: false
          +isBot: false
          +spamProtection: true
          +customCss: null
          +ignoreMagazinesCustomCss: false
          +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
          +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
          +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
          +entries: Doctrine\ORM\PersistentCollection {#4064 …}
          +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
          +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
          +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
          +posts: Doctrine\ORM\PersistentCollection {#4054 …}
          +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
          +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
          +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
          +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
          +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
          +follows: Doctrine\ORM\PersistentCollection {#4186 …}
          +followers: Doctrine\ORM\PersistentCollection {#4182 …}
          +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
          +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
          +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
          +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
          +reports: Doctrine\ORM\PersistentCollection {#4185 …}
          +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
          +violations: Doctrine\ORM\PersistentCollection {#4175 …}
          +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
          +awards: Doctrine\ORM\PersistentCollection {#4176 …}
          +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
          +categories: Doctrine\ORM\PersistentCollection {#4173 …}
          -id: 53309
          -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
          -totpSecret: null
          -totpBackupCodes: []
          -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
          +apId: "ReversalHatchery@beehaw.org"
          +apProfileId: "https://beehaw.org/u/ReversalHatchery"
          +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
          +apFollowersUrl: null
          +apInboxUrl: "https://beehaw.org/inbox"
          +apDomain: "beehaw.org"
          +apPreferredUsername: "ReversalHatchery"
          +apDiscoverable: true
          +apManuallyApprovesFollowers: false
          +privateKey: null
          +publicKey: null
          +apFetchedAt: DateTime @1729027069 {#4126
            date: 2024-10-15 23:17:49.0 +02:00
          }
          +apDeletedAt: null
          +apTimeoutAt: null
          +visibility: "visible             "
          +createdAt: DateTimeImmutable @1696732297 {#4124
            date: 2023-10-08 04:31:37.0 +02:00
          }
        }
        +entry: App\Entity\Entry {#2412}
        +magazine: App\Entity\Magazine {#264}
        +image: null
        +parent: null
        +root: null
        +body: """
          “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
          \n
          The irony.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 11
        +score: 0
        +lastActive: DateTime @1701510560 {#4131
          date: 2023-12-02 10:49:20.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
        ]
        +children: Doctrine\ORM\PersistentCollection {#4120 …}
        +nested: Doctrine\ORM\PersistentCollection {#4118 …}
        +votes: Doctrine\ORM\PersistentCollection {#4116 …}
        +reports: Doctrine\ORM\PersistentCollection {#4114 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
        -id: 157122
        -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1721846"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700793081 {#4067
          date: 2023-11-24 03:31:21.0 +01:00
        }
      }
      +root: App\Entity\EntryComment {#4122}
      +body: """
        I mean the origin is still legit, so there is no real problem with it, right?\n
        \n
        One cannot just register a site as github.com
        """
      +lang: "en"
      +isAdult: false
      +favouriteCount: 0
      +score: 0
      +lastActive: DateTime @1700824252 {#4397
        date: 2023-11-24 12:10:52.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
        "@ReversalHatchery@beehaw.org"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4401 …}
      +nested: Doctrine\ORM\PersistentCollection {#4406 …}
      +votes: Doctrine\ORM\PersistentCollection {#4402 …}
      +reports: Doctrine\ORM\PersistentCollection {#4408 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4410 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4412 …}
      -id: 158086
      -bodyTs: "'cannot':18 'github.com':24 'legit':7 'mean':2 'one':17 'origin':4 'problem':13 'real':12 'regist':20 'right':16 'site':22 'still':6"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://feddit.de/comment/5103814"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700824252 {#4394
        date: 2023-11-24 12:10:52.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4122}
    +body: "It uses the github cert, but that is not set to use the github.io subpages that start with www."
    +lang: "en"
    +isAdult: false
    +favouriteCount: 1
    +score: 0
    +lastActive: DateTime @1700827184 {#4451
      date: 2023-11-24 12:59:44.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@ReversalHatchery@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4455 …}
    +nested: Doctrine\ORM\PersistentCollection {#4457 …}
    +votes: Doctrine\ORM\PersistentCollection {#4459 …}
    +reports: Doctrine\ORM\PersistentCollection {#4461 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4463 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4465 …}
    -id: 158202
    -bodyTs: "'cert':5 'github':4 'github.io':14 'set':10 'start':17 'subpag':15 'use':2,12 'www':19"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://lemmy.linuxuserspace.show/comment/623231"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700827184 {#4452
      date: 2023-11-24 12:59:44.0 +01:00
    }
  }
  +formDest: "entry_comment"
  +showDownvote: true
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
}
boost App\Twig\Components\BoostComponent 14.0 MiB 0.78 ms
Input props
[
  "subject" => App\Entity\EntryComment {#4453
    +user: Proxies\__CG__\App\Entity\User {#4454
      +avatar: Proxies\__CG__\App\Entity\Image {#6518 …}
      +cover: null
      +email: "Strit@lemmy.linuxuserspace.show"
      +username: "@Strit@lemmy.linuxuserspace.show"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: "Linux enthusiast, family man and nerd"
      +lastActive: DateTime @1726328845 {#6515
        date: 2024-09-14 17:47:25.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#6519 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#6521 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#6523 …}
      +entries: Doctrine\ORM\PersistentCollection {#6525 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#6527 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#6529 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#6531 …}
      +posts: Doctrine\ORM\PersistentCollection {#6533 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#6535 …}
      +postComments: Doctrine\ORM\PersistentCollection {#6537 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#6539 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#6541 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#6543 …}
      +follows: Doctrine\ORM\PersistentCollection {#6545 …}
      +followers: Doctrine\ORM\PersistentCollection {#6547 …}
      +blocks: Doctrine\ORM\PersistentCollection {#6549 …}
      +blockers: Doctrine\ORM\PersistentCollection {#6551 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#6553 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#6555 …}
      +reports: Doctrine\ORM\PersistentCollection {#6557 …}
      +favourites: Doctrine\ORM\PersistentCollection {#6559 …}
      +violations: Doctrine\ORM\PersistentCollection {#6561 …}
      +notifications: Doctrine\ORM\PersistentCollection {#6563 …}
      +awards: Doctrine\ORM\PersistentCollection {#6565 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#6567 …}
      +categories: Doctrine\ORM\PersistentCollection {#6569 …}
      -id: 69878
      -password: "$2y$13$pwWoC7DgFHMWPD06SHqbBu6ejTQ7ZI5lTehnjO.le5nPbpbwlZiiC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#6571 …}
      +apId: "Strit@lemmy.linuxuserspace.show"
      +apProfileId: "https://lemmy.linuxuserspace.show/u/Strit"
      +apPublicUrl: "https://lemmy.linuxuserspace.show/u/Strit"
      +apFollowersUrl: null
      +apInboxUrl: "https://lemmy.linuxuserspace.show/inbox"
      +apDomain: "lemmy.linuxuserspace.show"
      +apPreferredUsername: "Strit"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027530 {#6516
        date: 2024-10-15 23:25:30.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1698931515 {#6517
        date: 2023-11-02 14:25:15.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4398
      +user: Proxies\__CG__\App\Entity\User {#1978 …2}
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: App\Entity\EntryComment {#4122
        +user: App\Entity\User {#4070
          +avatar: null
          +cover: null
          +email: "ReversalHatchery@beehaw.org"
          +username: "@ReversalHatchery@beehaw.org"
          +roles: []
          +followersCount: 0
          +homepage: "front"
          +about: """
            Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
            Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
            """
          +lastActive: DateTime @1729157044 {#4130
            date: 2024-10-17 11:24:04.0 +02:00
          }
          +markedForDeletionAt: null
          +fields: null
          +oauthGithubId: null
          +oauthGoogleId: null
          +oauthFacebookId: null
          +oauthKeycloakId: null
          +hideAdult: true
          +showSubscribedUsers: true
          +showSubscribedMagazines: true
          +showSubscribedDomains: true
          +preferredLanguages: []
          +featuredMagazines: null
          +showProfileSubscriptions: false
          +showProfileFollowings: true
          +markNewComments: false
          +notifyOnNewEntry: false
          +notifyOnNewEntryReply: true
          +notifyOnNewEntryCommentReply: true
          +notifyOnNewPost: false
          +notifyOnNewPostReply: true
          +notifyOnNewPostCommentReply: true
          +addMentionsEntries: false
          +addMentionsPosts: true
          +isBanned: false
          +isVerified: false
          +isDeleted: false
          +isBot: false
          +spamProtection: true
          +customCss: null
          +ignoreMagazinesCustomCss: false
          +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
          +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
          +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
          +entries: Doctrine\ORM\PersistentCollection {#4064 …}
          +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
          +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
          +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
          +posts: Doctrine\ORM\PersistentCollection {#4054 …}
          +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
          +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
          +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
          +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
          +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
          +follows: Doctrine\ORM\PersistentCollection {#4186 …}
          +followers: Doctrine\ORM\PersistentCollection {#4182 …}
          +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
          +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
          +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
          +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
          +reports: Doctrine\ORM\PersistentCollection {#4185 …}
          +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
          +violations: Doctrine\ORM\PersistentCollection {#4175 …}
          +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
          +awards: Doctrine\ORM\PersistentCollection {#4176 …}
          +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
          +categories: Doctrine\ORM\PersistentCollection {#4173 …}
          -id: 53309
          -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
          -totpSecret: null
          -totpBackupCodes: []
          -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
          +apId: "ReversalHatchery@beehaw.org"
          +apProfileId: "https://beehaw.org/u/ReversalHatchery"
          +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
          +apFollowersUrl: null
          +apInboxUrl: "https://beehaw.org/inbox"
          +apDomain: "beehaw.org"
          +apPreferredUsername: "ReversalHatchery"
          +apDiscoverable: true
          +apManuallyApprovesFollowers: false
          +privateKey: null
          +publicKey: null
          +apFetchedAt: DateTime @1729027069 {#4126
            date: 2024-10-15 23:17:49.0 +02:00
          }
          +apDeletedAt: null
          +apTimeoutAt: null
          +visibility: "visible             "
          +createdAt: DateTimeImmutable @1696732297 {#4124
            date: 2023-10-08 04:31:37.0 +02:00
          }
        }
        +entry: App\Entity\Entry {#2412}
        +magazine: App\Entity\Magazine {#264}
        +image: null
        +parent: null
        +root: null
        +body: """
          “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
          \n
          The irony.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 11
        +score: 0
        +lastActive: DateTime @1701510560 {#4131
          date: 2023-12-02 10:49:20.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
        ]
        +children: Doctrine\ORM\PersistentCollection {#4120 …}
        +nested: Doctrine\ORM\PersistentCollection {#4118 …}
        +votes: Doctrine\ORM\PersistentCollection {#4116 …}
        +reports: Doctrine\ORM\PersistentCollection {#4114 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
        -id: 157122
        -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1721846"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700793081 {#4067
          date: 2023-11-24 03:31:21.0 +01:00
        }
      }
      +root: App\Entity\EntryComment {#4122}
      +body: """
        I mean the origin is still legit, so there is no real problem with it, right?\n
        \n
        One cannot just register a site as github.com
        """
      +lang: "en"
      +isAdult: false
      +favouriteCount: 0
      +score: 0
      +lastActive: DateTime @1700824252 {#4397
        date: 2023-11-24 12:10:52.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
        "@ReversalHatchery@beehaw.org"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4401 …}
      +nested: Doctrine\ORM\PersistentCollection {#4406 …}
      +votes: Doctrine\ORM\PersistentCollection {#4402 …}
      +reports: Doctrine\ORM\PersistentCollection {#4408 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4410 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4412 …}
      -id: 158086
      -bodyTs: "'cannot':18 'github.com':24 'legit':7 'mean':2 'one':17 'origin':4 'problem':13 'real':12 'regist':20 'right':16 'site':22 'still':6"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://feddit.de/comment/5103814"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700824252 {#4394
        date: 2023-11-24 12:10:52.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4122}
    +body: "It uses the github cert, but that is not set to use the github.io subpages that start with www."
    +lang: "en"
    +isAdult: false
    +favouriteCount: 1
    +score: 0
    +lastActive: DateTime @1700827184 {#4451
      date: 2023-11-24 12:59:44.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@ReversalHatchery@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4455 …}
    +nested: Doctrine\ORM\PersistentCollection {#4457 …}
    +votes: Doctrine\ORM\PersistentCollection {#4459 …}
    +reports: Doctrine\ORM\PersistentCollection {#4461 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4463 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4465 …}
    -id: 158202
    -bodyTs: "'cert':5 'github':4 'github.io':14 'set':10 'start':17 'subpag':15 'use':2,12 'www':19"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://lemmy.linuxuserspace.show/comment/623231"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700827184 {#4452
      date: 2023-11-24 12:59:44.0 +01:00
    }
  }
]
Attributes
[]
Component
App\Twig\Components\BoostComponent {#6828
  +formDest: "entry_comment"
  +subject: App\Entity\EntryComment {#4453
    +user: Proxies\__CG__\App\Entity\User {#4454
      +avatar: Proxies\__CG__\App\Entity\Image {#6518 …}
      +cover: null
      +email: "Strit@lemmy.linuxuserspace.show"
      +username: "@Strit@lemmy.linuxuserspace.show"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: "Linux enthusiast, family man and nerd"
      +lastActive: DateTime @1726328845 {#6515
        date: 2024-09-14 17:47:25.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#6519 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#6521 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#6523 …}
      +entries: Doctrine\ORM\PersistentCollection {#6525 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#6527 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#6529 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#6531 …}
      +posts: Doctrine\ORM\PersistentCollection {#6533 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#6535 …}
      +postComments: Doctrine\ORM\PersistentCollection {#6537 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#6539 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#6541 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#6543 …}
      +follows: Doctrine\ORM\PersistentCollection {#6545 …}
      +followers: Doctrine\ORM\PersistentCollection {#6547 …}
      +blocks: Doctrine\ORM\PersistentCollection {#6549 …}
      +blockers: Doctrine\ORM\PersistentCollection {#6551 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#6553 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#6555 …}
      +reports: Doctrine\ORM\PersistentCollection {#6557 …}
      +favourites: Doctrine\ORM\PersistentCollection {#6559 …}
      +violations: Doctrine\ORM\PersistentCollection {#6561 …}
      +notifications: Doctrine\ORM\PersistentCollection {#6563 …}
      +awards: Doctrine\ORM\PersistentCollection {#6565 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#6567 …}
      +categories: Doctrine\ORM\PersistentCollection {#6569 …}
      -id: 69878
      -password: "$2y$13$pwWoC7DgFHMWPD06SHqbBu6ejTQ7ZI5lTehnjO.le5nPbpbwlZiiC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#6571 …}
      +apId: "Strit@lemmy.linuxuserspace.show"
      +apProfileId: "https://lemmy.linuxuserspace.show/u/Strit"
      +apPublicUrl: "https://lemmy.linuxuserspace.show/u/Strit"
      +apFollowersUrl: null
      +apInboxUrl: "https://lemmy.linuxuserspace.show/inbox"
      +apDomain: "lemmy.linuxuserspace.show"
      +apPreferredUsername: "Strit"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027530 {#6516
        date: 2024-10-15 23:25:30.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1698931515 {#6517
        date: 2023-11-02 14:25:15.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4398
      +user: Proxies\__CG__\App\Entity\User {#1978 …2}
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: App\Entity\EntryComment {#4122
        +user: App\Entity\User {#4070
          +avatar: null
          +cover: null
          +email: "ReversalHatchery@beehaw.org"
          +username: "@ReversalHatchery@beehaw.org"
          +roles: []
          +followersCount: 0
          +homepage: "front"
          +about: """
            Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
            Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
            """
          +lastActive: DateTime @1729157044 {#4130
            date: 2024-10-17 11:24:04.0 +02:00
          }
          +markedForDeletionAt: null
          +fields: null
          +oauthGithubId: null
          +oauthGoogleId: null
          +oauthFacebookId: null
          +oauthKeycloakId: null
          +hideAdult: true
          +showSubscribedUsers: true
          +showSubscribedMagazines: true
          +showSubscribedDomains: true
          +preferredLanguages: []
          +featuredMagazines: null
          +showProfileSubscriptions: false
          +showProfileFollowings: true
          +markNewComments: false
          +notifyOnNewEntry: false
          +notifyOnNewEntryReply: true
          +notifyOnNewEntryCommentReply: true
          +notifyOnNewPost: false
          +notifyOnNewPostReply: true
          +notifyOnNewPostCommentReply: true
          +addMentionsEntries: false
          +addMentionsPosts: true
          +isBanned: false
          +isVerified: false
          +isDeleted: false
          +isBot: false
          +spamProtection: true
          +customCss: null
          +ignoreMagazinesCustomCss: false
          +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
          +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
          +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
          +entries: Doctrine\ORM\PersistentCollection {#4064 …}
          +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
          +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
          +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
          +posts: Doctrine\ORM\PersistentCollection {#4054 …}
          +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
          +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
          +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
          +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
          +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
          +follows: Doctrine\ORM\PersistentCollection {#4186 …}
          +followers: Doctrine\ORM\PersistentCollection {#4182 …}
          +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
          +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
          +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
          +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
          +reports: Doctrine\ORM\PersistentCollection {#4185 …}
          +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
          +violations: Doctrine\ORM\PersistentCollection {#4175 …}
          +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
          +awards: Doctrine\ORM\PersistentCollection {#4176 …}
          +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
          +categories: Doctrine\ORM\PersistentCollection {#4173 …}
          -id: 53309
          -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
          -totpSecret: null
          -totpBackupCodes: []
          -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
          +apId: "ReversalHatchery@beehaw.org"
          +apProfileId: "https://beehaw.org/u/ReversalHatchery"
          +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
          +apFollowersUrl: null
          +apInboxUrl: "https://beehaw.org/inbox"
          +apDomain: "beehaw.org"
          +apPreferredUsername: "ReversalHatchery"
          +apDiscoverable: true
          +apManuallyApprovesFollowers: false
          +privateKey: null
          +publicKey: null
          +apFetchedAt: DateTime @1729027069 {#4126
            date: 2024-10-15 23:17:49.0 +02:00
          }
          +apDeletedAt: null
          +apTimeoutAt: null
          +visibility: "visible             "
          +createdAt: DateTimeImmutable @1696732297 {#4124
            date: 2023-10-08 04:31:37.0 +02:00
          }
        }
        +entry: App\Entity\Entry {#2412}
        +magazine: App\Entity\Magazine {#264}
        +image: null
        +parent: null
        +root: null
        +body: """
          “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
          \n
          The irony.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 11
        +score: 0
        +lastActive: DateTime @1701510560 {#4131
          date: 2023-12-02 10:49:20.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
        ]
        +children: Doctrine\ORM\PersistentCollection {#4120 …}
        +nested: Doctrine\ORM\PersistentCollection {#4118 …}
        +votes: Doctrine\ORM\PersistentCollection {#4116 …}
        +reports: Doctrine\ORM\PersistentCollection {#4114 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
        -id: 157122
        -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1721846"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700793081 {#4067
          date: 2023-11-24 03:31:21.0 +01:00
        }
      }
      +root: App\Entity\EntryComment {#4122}
      +body: """
        I mean the origin is still legit, so there is no real problem with it, right?\n
        \n
        One cannot just register a site as github.com
        """
      +lang: "en"
      +isAdult: false
      +favouriteCount: 0
      +score: 0
      +lastActive: DateTime @1700824252 {#4397
        date: 2023-11-24 12:10:52.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
        "@ReversalHatchery@beehaw.org"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4401 …}
      +nested: Doctrine\ORM\PersistentCollection {#4406 …}
      +votes: Doctrine\ORM\PersistentCollection {#4402 …}
      +reports: Doctrine\ORM\PersistentCollection {#4408 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4410 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4412 …}
      -id: 158086
      -bodyTs: "'cannot':18 'github.com':24 'legit':7 'mean':2 'one':17 'origin':4 'problem':13 'real':12 'regist':20 'right':16 'site':22 'still':6"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://feddit.de/comment/5103814"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700824252 {#4394
        date: 2023-11-24 12:10:52.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4122}
    +body: "It uses the github cert, but that is not set to use the github.io subpages that start with www."
    +lang: "en"
    +isAdult: false
    +favouriteCount: 1
    +score: 0
    +lastActive: DateTime @1700827184 {#4451
      date: 2023-11-24 12:59:44.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@ReversalHatchery@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4455 …}
    +nested: Doctrine\ORM\PersistentCollection {#4457 …}
    +votes: Doctrine\ORM\PersistentCollection {#4459 …}
    +reports: Doctrine\ORM\PersistentCollection {#4461 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4463 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4465 …}
    -id: 158202
    -bodyTs: "'cert':5 'github':4 'github.io':14 'set':10 'start':17 'subpag':15 'use':2,12 'www':19"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://lemmy.linuxuserspace.show/comment/623231"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700827184 {#4452
      date: 2023-11-24 12:59:44.0 +01:00
    }
  }
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
}
entry_comments_nested App\Twig\Components\EntryCommentsNestedComponent 14.0 MiB 5.05 ms
Input props
[
  "comment" => App\Entity\EntryComment {#4453
    +user: Proxies\__CG__\App\Entity\User {#4454
      +avatar: Proxies\__CG__\App\Entity\Image {#6518 …}
      +cover: null
      +email: "Strit@lemmy.linuxuserspace.show"
      +username: "@Strit@lemmy.linuxuserspace.show"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: "Linux enthusiast, family man and nerd"
      +lastActive: DateTime @1726328845 {#6515
        date: 2024-09-14 17:47:25.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#6519 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#6521 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#6523 …}
      +entries: Doctrine\ORM\PersistentCollection {#6525 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#6527 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#6529 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#6531 …}
      +posts: Doctrine\ORM\PersistentCollection {#6533 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#6535 …}
      +postComments: Doctrine\ORM\PersistentCollection {#6537 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#6539 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#6541 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#6543 …}
      +follows: Doctrine\ORM\PersistentCollection {#6545 …}
      +followers: Doctrine\ORM\PersistentCollection {#6547 …}
      +blocks: Doctrine\ORM\PersistentCollection {#6549 …}
      +blockers: Doctrine\ORM\PersistentCollection {#6551 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#6553 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#6555 …}
      +reports: Doctrine\ORM\PersistentCollection {#6557 …}
      +favourites: Doctrine\ORM\PersistentCollection {#6559 …}
      +violations: Doctrine\ORM\PersistentCollection {#6561 …}
      +notifications: Doctrine\ORM\PersistentCollection {#6563 …}
      +awards: Doctrine\ORM\PersistentCollection {#6565 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#6567 …}
      +categories: Doctrine\ORM\PersistentCollection {#6569 …}
      -id: 69878
      -password: "$2y$13$pwWoC7DgFHMWPD06SHqbBu6ejTQ7ZI5lTehnjO.le5nPbpbwlZiiC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#6571 …}
      +apId: "Strit@lemmy.linuxuserspace.show"
      +apProfileId: "https://lemmy.linuxuserspace.show/u/Strit"
      +apPublicUrl: "https://lemmy.linuxuserspace.show/u/Strit"
      +apFollowersUrl: null
      +apInboxUrl: "https://lemmy.linuxuserspace.show/inbox"
      +apDomain: "lemmy.linuxuserspace.show"
      +apPreferredUsername: "Strit"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027530 {#6516
        date: 2024-10-15 23:25:30.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1698931515 {#6517
        date: 2023-11-02 14:25:15.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4398
      +user: Proxies\__CG__\App\Entity\User {#1978 …2}
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: App\Entity\EntryComment {#4122
        +user: App\Entity\User {#4070
          +avatar: null
          +cover: null
          +email: "ReversalHatchery@beehaw.org"
          +username: "@ReversalHatchery@beehaw.org"
          +roles: []
          +followersCount: 0
          +homepage: "front"
          +about: """
            Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
            Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
            """
          +lastActive: DateTime @1729157044 {#4130
            date: 2024-10-17 11:24:04.0 +02:00
          }
          +markedForDeletionAt: null
          +fields: null
          +oauthGithubId: null
          +oauthGoogleId: null
          +oauthFacebookId: null
          +oauthKeycloakId: null
          +hideAdult: true
          +showSubscribedUsers: true
          +showSubscribedMagazines: true
          +showSubscribedDomains: true
          +preferredLanguages: []
          +featuredMagazines: null
          +showProfileSubscriptions: false
          +showProfileFollowings: true
          +markNewComments: false
          +notifyOnNewEntry: false
          +notifyOnNewEntryReply: true
          +notifyOnNewEntryCommentReply: true
          +notifyOnNewPost: false
          +notifyOnNewPostReply: true
          +notifyOnNewPostCommentReply: true
          +addMentionsEntries: false
          +addMentionsPosts: true
          +isBanned: false
          +isVerified: false
          +isDeleted: false
          +isBot: false
          +spamProtection: true
          +customCss: null
          +ignoreMagazinesCustomCss: false
          +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
          +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
          +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
          +entries: Doctrine\ORM\PersistentCollection {#4064 …}
          +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
          +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
          +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
          +posts: Doctrine\ORM\PersistentCollection {#4054 …}
          +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
          +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
          +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
          +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
          +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
          +follows: Doctrine\ORM\PersistentCollection {#4186 …}
          +followers: Doctrine\ORM\PersistentCollection {#4182 …}
          +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
          +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
          +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
          +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
          +reports: Doctrine\ORM\PersistentCollection {#4185 …}
          +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
          +violations: Doctrine\ORM\PersistentCollection {#4175 …}
          +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
          +awards: Doctrine\ORM\PersistentCollection {#4176 …}
          +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
          +categories: Doctrine\ORM\PersistentCollection {#4173 …}
          -id: 53309
          -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
          -totpSecret: null
          -totpBackupCodes: []
          -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
          +apId: "ReversalHatchery@beehaw.org"
          +apProfileId: "https://beehaw.org/u/ReversalHatchery"
          +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
          +apFollowersUrl: null
          +apInboxUrl: "https://beehaw.org/inbox"
          +apDomain: "beehaw.org"
          +apPreferredUsername: "ReversalHatchery"
          +apDiscoverable: true
          +apManuallyApprovesFollowers: false
          +privateKey: null
          +publicKey: null
          +apFetchedAt: DateTime @1729027069 {#4126
            date: 2024-10-15 23:17:49.0 +02:00
          }
          +apDeletedAt: null
          +apTimeoutAt: null
          +visibility: "visible             "
          +createdAt: DateTimeImmutable @1696732297 {#4124
            date: 2023-10-08 04:31:37.0 +02:00
          }
        }
        +entry: App\Entity\Entry {#2412}
        +magazine: App\Entity\Magazine {#264}
        +image: null
        +parent: null
        +root: null
        +body: """
          “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
          \n
          The irony.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 11
        +score: 0
        +lastActive: DateTime @1701510560 {#4131
          date: 2023-12-02 10:49:20.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
        ]
        +children: Doctrine\ORM\PersistentCollection {#4120 …}
        +nested: Doctrine\ORM\PersistentCollection {#4118 …}
        +votes: Doctrine\ORM\PersistentCollection {#4116 …}
        +reports: Doctrine\ORM\PersistentCollection {#4114 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
        -id: 157122
        -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1721846"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700793081 {#4067
          date: 2023-11-24 03:31:21.0 +01:00
        }
      }
      +root: App\Entity\EntryComment {#4122}
      +body: """
        I mean the origin is still legit, so there is no real problem with it, right?\n
        \n
        One cannot just register a site as github.com
        """
      +lang: "en"
      +isAdult: false
      +favouriteCount: 0
      +score: 0
      +lastActive: DateTime @1700824252 {#4397
        date: 2023-11-24 12:10:52.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
        "@ReversalHatchery@beehaw.org"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4401 …}
      +nested: Doctrine\ORM\PersistentCollection {#4406 …}
      +votes: Doctrine\ORM\PersistentCollection {#4402 …}
      +reports: Doctrine\ORM\PersistentCollection {#4408 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4410 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4412 …}
      -id: 158086
      -bodyTs: "'cannot':18 'github.com':24 'legit':7 'mean':2 'one':17 'origin':4 'problem':13 'real':12 'regist':20 'right':16 'site':22 'still':6"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://feddit.de/comment/5103814"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700824252 {#4394
        date: 2023-11-24 12:10:52.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4122}
    +body: "It uses the github cert, but that is not set to use the github.io subpages that start with www."
    +lang: "en"
    +isAdult: false
    +favouriteCount: 1
    +score: 0
    +lastActive: DateTime @1700827184 {#4451
      date: 2023-11-24 12:59:44.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@ReversalHatchery@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4455 …}
    +nested: Doctrine\ORM\PersistentCollection {#4457 …}
    +votes: Doctrine\ORM\PersistentCollection {#4459 …}
    +reports: Doctrine\ORM\PersistentCollection {#4461 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4463 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4465 …}
    -id: 158202
    -bodyTs: "'cert':5 'github':4 'github.io':14 'set':10 'start':17 'subpag':15 'use':2,12 'www':19"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://lemmy.linuxuserspace.show/comment/623231"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700827184 {#4452
      date: 2023-11-24 12:59:44.0 +01:00
    }
  }
  "level" => 3
  "showNested" => true
  "view" => "tree"
]
Attributes
[
  "showNested" => true
]
Component
App\Twig\Components\EntryCommentsNestedComponent {#7068
  +comment: App\Entity\EntryComment {#4453
    +user: Proxies\__CG__\App\Entity\User {#4454
      +avatar: Proxies\__CG__\App\Entity\Image {#6518 …}
      +cover: null
      +email: "Strit@lemmy.linuxuserspace.show"
      +username: "@Strit@lemmy.linuxuserspace.show"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: "Linux enthusiast, family man and nerd"
      +lastActive: DateTime @1726328845 {#6515
        date: 2024-09-14 17:47:25.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#6519 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#6521 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#6523 …}
      +entries: Doctrine\ORM\PersistentCollection {#6525 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#6527 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#6529 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#6531 …}
      +posts: Doctrine\ORM\PersistentCollection {#6533 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#6535 …}
      +postComments: Doctrine\ORM\PersistentCollection {#6537 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#6539 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#6541 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#6543 …}
      +follows: Doctrine\ORM\PersistentCollection {#6545 …}
      +followers: Doctrine\ORM\PersistentCollection {#6547 …}
      +blocks: Doctrine\ORM\PersistentCollection {#6549 …}
      +blockers: Doctrine\ORM\PersistentCollection {#6551 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#6553 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#6555 …}
      +reports: Doctrine\ORM\PersistentCollection {#6557 …}
      +favourites: Doctrine\ORM\PersistentCollection {#6559 …}
      +violations: Doctrine\ORM\PersistentCollection {#6561 …}
      +notifications: Doctrine\ORM\PersistentCollection {#6563 …}
      +awards: Doctrine\ORM\PersistentCollection {#6565 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#6567 …}
      +categories: Doctrine\ORM\PersistentCollection {#6569 …}
      -id: 69878
      -password: "$2y$13$pwWoC7DgFHMWPD06SHqbBu6ejTQ7ZI5lTehnjO.le5nPbpbwlZiiC"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#6571 …}
      +apId: "Strit@lemmy.linuxuserspace.show"
      +apProfileId: "https://lemmy.linuxuserspace.show/u/Strit"
      +apPublicUrl: "https://lemmy.linuxuserspace.show/u/Strit"
      +apFollowersUrl: null
      +apInboxUrl: "https://lemmy.linuxuserspace.show/inbox"
      +apDomain: "lemmy.linuxuserspace.show"
      +apPreferredUsername: "Strit"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027530 {#6516
        date: 2024-10-15 23:25:30.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1698931515 {#6517
        date: 2023-11-02 14:25:15.0 +01:00
      }
      +__isInitialized__: true
       …2
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4398
      +user: Proxies\__CG__\App\Entity\User {#1978 …2}
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: App\Entity\EntryComment {#4122
        +user: App\Entity\User {#4070
          +avatar: null
          +cover: null
          +email: "ReversalHatchery@beehaw.org"
          +username: "@ReversalHatchery@beehaw.org"
          +roles: []
          +followersCount: 0
          +homepage: "front"
          +about: """
            Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
            Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
            """
          +lastActive: DateTime @1729157044 {#4130
            date: 2024-10-17 11:24:04.0 +02:00
          }
          +markedForDeletionAt: null
          +fields: null
          +oauthGithubId: null
          +oauthGoogleId: null
          +oauthFacebookId: null
          +oauthKeycloakId: null
          +hideAdult: true
          +showSubscribedUsers: true
          +showSubscribedMagazines: true
          +showSubscribedDomains: true
          +preferredLanguages: []
          +featuredMagazines: null
          +showProfileSubscriptions: false
          +showProfileFollowings: true
          +markNewComments: false
          +notifyOnNewEntry: false
          +notifyOnNewEntryReply: true
          +notifyOnNewEntryCommentReply: true
          +notifyOnNewPost: false
          +notifyOnNewPostReply: true
          +notifyOnNewPostCommentReply: true
          +addMentionsEntries: false
          +addMentionsPosts: true
          +isBanned: false
          +isVerified: false
          +isDeleted: false
          +isBot: false
          +spamProtection: true
          +customCss: null
          +ignoreMagazinesCustomCss: false
          +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
          +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
          +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
          +entries: Doctrine\ORM\PersistentCollection {#4064 …}
          +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
          +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
          +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
          +posts: Doctrine\ORM\PersistentCollection {#4054 …}
          +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
          +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
          +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
          +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
          +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
          +follows: Doctrine\ORM\PersistentCollection {#4186 …}
          +followers: Doctrine\ORM\PersistentCollection {#4182 …}
          +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
          +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
          +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
          +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
          +reports: Doctrine\ORM\PersistentCollection {#4185 …}
          +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
          +violations: Doctrine\ORM\PersistentCollection {#4175 …}
          +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
          +awards: Doctrine\ORM\PersistentCollection {#4176 …}
          +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
          +categories: Doctrine\ORM\PersistentCollection {#4173 …}
          -id: 53309
          -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
          -totpSecret: null
          -totpBackupCodes: []
          -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
          +apId: "ReversalHatchery@beehaw.org"
          +apProfileId: "https://beehaw.org/u/ReversalHatchery"
          +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
          +apFollowersUrl: null
          +apInboxUrl: "https://beehaw.org/inbox"
          +apDomain: "beehaw.org"
          +apPreferredUsername: "ReversalHatchery"
          +apDiscoverable: true
          +apManuallyApprovesFollowers: false
          +privateKey: null
          +publicKey: null
          +apFetchedAt: DateTime @1729027069 {#4126
            date: 2024-10-15 23:17:49.0 +02:00
          }
          +apDeletedAt: null
          +apTimeoutAt: null
          +visibility: "visible             "
          +createdAt: DateTimeImmutable @1696732297 {#4124
            date: 2023-10-08 04:31:37.0 +02:00
          }
        }
        +entry: App\Entity\Entry {#2412}
        +magazine: App\Entity\Magazine {#264}
        +image: null
        +parent: null
        +root: null
        +body: """
          “This connection is untrusted” “SSL_ERROR_BAD_CERT_DOMAIN”\n
          \n
          The irony.
          """
        +lang: "en"
        +isAdult: false
        +favouriteCount: 11
        +score: 0
        +lastActive: DateTime @1701510560 {#4131
          date: 2023-12-02 10:49:20.0 +01:00
        }
        +ip: null
        +tags: null
        +mentions: [
          "@Pantherina@feddit.de"
        ]
        +children: Doctrine\ORM\PersistentCollection {#4120 …}
        +nested: Doctrine\ORM\PersistentCollection {#4118 …}
        +votes: Doctrine\ORM\PersistentCollection {#4116 …}
        +reports: Doctrine\ORM\PersistentCollection {#4114 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4082 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4086 …}
        -id: 157122
        -bodyTs: "'bad':7 'cert':8 'connect':2 'domain':9 'error':6 'ironi':11 'ssl':5 'untrust':4"
        +ranking: 0
        +commentCount: 0
        +upVotes: 0
        +downVotes: 0
        +visibility: "visible             "
        +apId: "https://beehaw.org/comment/1721846"
        +editedAt: null
        +createdAt: DateTimeImmutable @1700793081 {#4067
          date: 2023-11-24 03:31:21.0 +01:00
        }
      }
      +root: App\Entity\EntryComment {#4122}
      +body: """
        I mean the origin is still legit, so there is no real problem with it, right?\n
        \n
        One cannot just register a site as github.com
        """
      +lang: "en"
      +isAdult: false
      +favouriteCount: 0
      +score: 0
      +lastActive: DateTime @1700824252 {#4397
        date: 2023-11-24 12:10:52.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
        "@ReversalHatchery@beehaw.org"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4401 …}
      +nested: Doctrine\ORM\PersistentCollection {#4406 …}
      +votes: Doctrine\ORM\PersistentCollection {#4402 …}
      +reports: Doctrine\ORM\PersistentCollection {#4408 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4410 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4412 …}
      -id: 158086
      -bodyTs: "'cannot':18 'github.com':24 'legit':7 'mean':2 'one':17 'origin':4 'problem':13 'real':12 'regist':20 'right':16 'site':22 'still':6"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://feddit.de/comment/5103814"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700824252 {#4394
        date: 2023-11-24 12:10:52.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4122}
    +body: "It uses the github cert, but that is not set to use the github.io subpages that start with www."
    +lang: "en"
    +isAdult: false
    +favouriteCount: 1
    +score: 0
    +lastActive: DateTime @1700827184 {#4451
      date: 2023-11-24 12:59:44.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@ReversalHatchery@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4455 …}
    +nested: Doctrine\ORM\PersistentCollection {#4457 …}
    +votes: Doctrine\ORM\PersistentCollection {#4459 …}
    +reports: Doctrine\ORM\PersistentCollection {#4461 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4463 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4465 …}
    -id: 158202
    -bodyTs: "'cert':5 'github':4 'github.io':14 'set':10 'start':17 'subpag':15 'use':2,12 'www':19"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://lemmy.linuxuserspace.show/comment/623231"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700827184 {#4452
      date: 2023-11-24 12:59:44.0 +01:00
    }
  }
  +nestedComments: []
  +level: 3
  +view: "tree"
  -entryCommentRepository: App\Repository\EntryCommentRepository {#555 …}
  -twig: Twig\Environment {#1252 …}
  -security: Symfony\Bundle\SecurityBundle\Security {#1101 …}
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
}
entry_comment App\Twig\Components\EntryCommentComponent 14.0 MiB 62.54 ms
Input props
[
  "comment" => App\Entity\EntryComment {#4154
    +user: App\Entity\User {#4143
      +avatar: Proxies\__CG__\App\Entity\Image {#4142 …}
      +cover: Proxies\__CG__\App\Entity\Image {#4141 …}
      +email: "bbbhltz@beehaw.org"
      +username: "@bbbhltz@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Music lover and English teacher with an interest in slightly geeky things\n
        \n
        [mastodon](https://framapiaf.org/@bbbhltz) / [blog](https://bbbhltz.codeberg.page) / [listenbrainz](https://listenbrainz.org/user/pasdechance/)
        """
      +lastActive: DateTime @1727694629 {#4163
        date: 2024-09-30 13:10:29.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4140 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4138 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4136 …}
      +entries: Doctrine\ORM\PersistentCollection {#4134 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4132 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4191 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4194 …}
      +posts: Doctrine\ORM\PersistentCollection {#4196 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4198 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4200 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4202 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4204 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4206 …}
      +follows: Doctrine\ORM\PersistentCollection {#4208 …}
      +followers: Doctrine\ORM\PersistentCollection {#4210 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4212 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4214 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4216 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4218 …}
      +reports: Doctrine\ORM\PersistentCollection {#4220 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4222 …}
      +violations: Doctrine\ORM\PersistentCollection {#4224 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4226 …}
      +awards: Doctrine\ORM\PersistentCollection {#4228 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4230 …}
      +categories: Doctrine\ORM\PersistentCollection {#4232 …}
      -id: 57379
      -password: "$2y$13$nMhZ8U2idkzqlUYi/cuTdOzNXk/L9rWzl4lEciiE/JwNGCOOP5Tym"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4234 …}
      +apId: "bbbhltz@beehaw.org"
      +apProfileId: "https://beehaw.org/u/bbbhltz"
      +apPublicUrl: "https://beehaw.org/u/bbbhltz"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "bbbhltz"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1728900248 {#4164
        date: 2024-10-14 12:04:08.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1697173847 {#4161
        date: 2023-10-13 07:10:47.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: "As far as I recall, it never was relevant. It was generally viewed as a rant written by a non-professionnel. Perhaps I am wrong? Sorry if I am wrong?? [Don’t start reporting me, please.](https://chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)"
    +lang: "en"
    +isAdult: false
    +favouriteCount: 12
    +score: 0
    +lastActive: DateTime @1701330385 {#4160
      date: 2023-11-30 08:46:25.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4159 …}
    +nested: Doctrine\ORM\PersistentCollection {#4158 …}
    +votes: Doctrine\ORM\PersistentCollection {#4149 …}
    +reports: Doctrine\ORM\PersistentCollection {#4152 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4147 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4145 …}
    -id: 157570
    -bodyTs: "'/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':40 'chef-koch.bearblog.dev':39 'chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':38 'far':2 'general':12 'never':7 'non':21 'non-professionnel':20 'perhap':23 'pleas':37 'professionnel':22 'rant':16 'recal':5 'relev':9 'report':35 'sorri':27 'start':34 'view':13 'written':17 'wrong':26,31"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1722426"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700807386 {#4165
      date: 2023-11-24 07:29:46.0 +01:00
    }
  }
  "showNested" => true
  "dateAsUrl" => false
  "showMagazineName" => false
  "showEntryTitle" => false
]
Attributes
[]
Component
App\Twig\Components\EntryCommentComponent {#7155
  +comment: App\Entity\EntryComment {#4154
    +user: App\Entity\User {#4143
      +avatar: Proxies\__CG__\App\Entity\Image {#4142 …}
      +cover: Proxies\__CG__\App\Entity\Image {#4141 …}
      +email: "bbbhltz@beehaw.org"
      +username: "@bbbhltz@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Music lover and English teacher with an interest in slightly geeky things\n
        \n
        [mastodon](https://framapiaf.org/@bbbhltz) / [blog](https://bbbhltz.codeberg.page) / [listenbrainz](https://listenbrainz.org/user/pasdechance/)
        """
      +lastActive: DateTime @1727694629 {#4163
        date: 2024-09-30 13:10:29.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4140 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4138 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4136 …}
      +entries: Doctrine\ORM\PersistentCollection {#4134 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4132 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4191 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4194 …}
      +posts: Doctrine\ORM\PersistentCollection {#4196 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4198 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4200 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4202 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4204 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4206 …}
      +follows: Doctrine\ORM\PersistentCollection {#4208 …}
      +followers: Doctrine\ORM\PersistentCollection {#4210 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4212 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4214 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4216 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4218 …}
      +reports: Doctrine\ORM\PersistentCollection {#4220 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4222 …}
      +violations: Doctrine\ORM\PersistentCollection {#4224 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4226 …}
      +awards: Doctrine\ORM\PersistentCollection {#4228 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4230 …}
      +categories: Doctrine\ORM\PersistentCollection {#4232 …}
      -id: 57379
      -password: "$2y$13$nMhZ8U2idkzqlUYi/cuTdOzNXk/L9rWzl4lEciiE/JwNGCOOP5Tym"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4234 …}
      +apId: "bbbhltz@beehaw.org"
      +apProfileId: "https://beehaw.org/u/bbbhltz"
      +apPublicUrl: "https://beehaw.org/u/bbbhltz"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "bbbhltz"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1728900248 {#4164
        date: 2024-10-14 12:04:08.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1697173847 {#4161
        date: 2023-10-13 07:10:47.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: "As far as I recall, it never was relevant. It was generally viewed as a rant written by a non-professionnel. Perhaps I am wrong? Sorry if I am wrong?? [Don’t start reporting me, please.](https://chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)"
    +lang: "en"
    +isAdult: false
    +favouriteCount: 12
    +score: 0
    +lastActive: DateTime @1701330385 {#4160
      date: 2023-11-30 08:46:25.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4159 …}
    +nested: Doctrine\ORM\PersistentCollection {#4158 …}
    +votes: Doctrine\ORM\PersistentCollection {#4149 …}
    +reports: Doctrine\ORM\PersistentCollection {#4152 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4147 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4145 …}
    -id: 157570
    -bodyTs: "'/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':40 'chef-koch.bearblog.dev':39 'chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':38 'far':2 'general':12 'never':7 'non':21 'non-professionnel':20 'perhap':23 'pleas':37 'professionnel':22 'rant':16 'recal':5 'relev':9 'report':35 'sorri':27 'start':34 'view':13 'written':17 'wrong':26,31"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1722426"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700807386 {#4165
      date: 2023-11-24 07:29:46.0 +01:00
    }
  }
  +showMagazineName: false
  +showEntryTitle: false
  +showNested: true
  +level: 1
  +canSeeTrash: false
  +dateAsUrl: false
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
  -authorizationChecker: Symfony\Component\Security\Core\Authorization\AuthorizationChecker {#931 …}
}
user_inline App\Twig\Components\UserInlineComponent 14.0 MiB 0.20 ms
Input props
[
  "user" => App\Entity\User {#4143
    +avatar: Proxies\__CG__\App\Entity\Image {#4142 …}
    +cover: Proxies\__CG__\App\Entity\Image {#4141 …}
    +email: "bbbhltz@beehaw.org"
    +username: "@bbbhltz@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Music lover and English teacher with an interest in slightly geeky things\n
      \n
      [mastodon](https://framapiaf.org/@bbbhltz) / [blog](https://bbbhltz.codeberg.page) / [listenbrainz](https://listenbrainz.org/user/pasdechance/)
      """
    +lastActive: DateTime @1727694629 {#4163
      date: 2024-09-30 13:10:29.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#4140 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4138 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#4136 …}
    +entries: Doctrine\ORM\PersistentCollection {#4134 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#4132 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#4191 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4194 …}
    +posts: Doctrine\ORM\PersistentCollection {#4196 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#4198 …}
    +postComments: Doctrine\ORM\PersistentCollection {#4200 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#4202 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#4204 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#4206 …}
    +follows: Doctrine\ORM\PersistentCollection {#4208 …}
    +followers: Doctrine\ORM\PersistentCollection {#4210 …}
    +blocks: Doctrine\ORM\PersistentCollection {#4212 …}
    +blockers: Doctrine\ORM\PersistentCollection {#4214 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#4216 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#4218 …}
    +reports: Doctrine\ORM\PersistentCollection {#4220 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4222 …}
    +violations: Doctrine\ORM\PersistentCollection {#4224 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4226 …}
    +awards: Doctrine\ORM\PersistentCollection {#4228 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#4230 …}
    +categories: Doctrine\ORM\PersistentCollection {#4232 …}
    -id: 57379
    -password: "$2y$13$nMhZ8U2idkzqlUYi/cuTdOzNXk/L9rWzl4lEciiE/JwNGCOOP5Tym"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4234 …}
    +apId: "bbbhltz@beehaw.org"
    +apProfileId: "https://beehaw.org/u/bbbhltz"
    +apPublicUrl: "https://beehaw.org/u/bbbhltz"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "bbbhltz"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1728900248 {#4164
      date: 2024-10-14 12:04:08.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1697173847 {#4161
      date: 2023-10-13 07:10:47.0 +02:00
    }
  }
  "showAvatar" => false
]
Attributes
[]
Component
App\Twig\Components\UserInlineComponent {#7200
  +user: App\Entity\User {#4143
    +avatar: Proxies\__CG__\App\Entity\Image {#4142 …}
    +cover: Proxies\__CG__\App\Entity\Image {#4141 …}
    +email: "bbbhltz@beehaw.org"
    +username: "@bbbhltz@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Music lover and English teacher with an interest in slightly geeky things\n
      \n
      [mastodon](https://framapiaf.org/@bbbhltz) / [blog](https://bbbhltz.codeberg.page) / [listenbrainz](https://listenbrainz.org/user/pasdechance/)
      """
    +lastActive: DateTime @1727694629 {#4163
      date: 2024-09-30 13:10:29.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#4140 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4138 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#4136 …}
    +entries: Doctrine\ORM\PersistentCollection {#4134 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#4132 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#4191 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4194 …}
    +posts: Doctrine\ORM\PersistentCollection {#4196 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#4198 …}
    +postComments: Doctrine\ORM\PersistentCollection {#4200 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#4202 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#4204 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#4206 …}
    +follows: Doctrine\ORM\PersistentCollection {#4208 …}
    +followers: Doctrine\ORM\PersistentCollection {#4210 …}
    +blocks: Doctrine\ORM\PersistentCollection {#4212 …}
    +blockers: Doctrine\ORM\PersistentCollection {#4214 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#4216 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#4218 …}
    +reports: Doctrine\ORM\PersistentCollection {#4220 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4222 …}
    +violations: Doctrine\ORM\PersistentCollection {#4224 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4226 …}
    +awards: Doctrine\ORM\PersistentCollection {#4228 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#4230 …}
    +categories: Doctrine\ORM\PersistentCollection {#4232 …}
    -id: 57379
    -password: "$2y$13$nMhZ8U2idkzqlUYi/cuTdOzNXk/L9rWzl4lEciiE/JwNGCOOP5Tym"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4234 …}
    +apId: "bbbhltz@beehaw.org"
    +apProfileId: "https://beehaw.org/u/bbbhltz"
    +apPublicUrl: "https://beehaw.org/u/bbbhltz"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "bbbhltz"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1728900248 {#4164
      date: 2024-10-14 12:04:08.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1697173847 {#4161
      date: 2023-10-13 07:10:47.0 +02:00
    }
  }
  +showAvatar: false
}
date App\Twig\Components\DateComponent 14.0 MiB 0.15 ms
Input props
[
  "date" => DateTimeImmutable @1700807386 {#4165
    date: 2023-11-24 07:29:46.0 +01:00
  }
]
Attributes
[]
Component
App\Twig\Components\DateComponent {#7255
  +date: DateTimeImmutable @1700807386 {#4165
    date: 2023-11-24 07:29:46.0 +01:00
  }
}
date_edited App\Twig\Components\DateEditedComponent 14.0 MiB 0.10 ms
Input props
[
  "createdAt" => DateTimeImmutable @1700807386 {#4165
    date: 2023-11-24 07:29:46.0 +01:00
  }
  "editedAt" => null
]
Attributes
[]
Component
App\Twig\Components\DateEditedComponent {#7309
  +createdAt: DateTimeImmutable @1700807386 {#4165
    date: 2023-11-24 07:29:46.0 +01:00
  }
  +editedAt: null
}
user_avatar App\Twig\Components\UserAvatarComponent 14.0 MiB 10.60 ms
Input props
[
  "user" => App\Entity\User {#4143
    +avatar: Proxies\__CG__\App\Entity\Image {#4142 …}
    +cover: Proxies\__CG__\App\Entity\Image {#4141 …}
    +email: "bbbhltz@beehaw.org"
    +username: "@bbbhltz@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Music lover and English teacher with an interest in slightly geeky things\n
      \n
      [mastodon](https://framapiaf.org/@bbbhltz) / [blog](https://bbbhltz.codeberg.page) / [listenbrainz](https://listenbrainz.org/user/pasdechance/)
      """
    +lastActive: DateTime @1727694629 {#4163
      date: 2024-09-30 13:10:29.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#4140 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4138 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#4136 …}
    +entries: Doctrine\ORM\PersistentCollection {#4134 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#4132 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#4191 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4194 …}
    +posts: Doctrine\ORM\PersistentCollection {#4196 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#4198 …}
    +postComments: Doctrine\ORM\PersistentCollection {#4200 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#4202 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#4204 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#4206 …}
    +follows: Doctrine\ORM\PersistentCollection {#4208 …}
    +followers: Doctrine\ORM\PersistentCollection {#4210 …}
    +blocks: Doctrine\ORM\PersistentCollection {#4212 …}
    +blockers: Doctrine\ORM\PersistentCollection {#4214 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#4216 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#4218 …}
    +reports: Doctrine\ORM\PersistentCollection {#4220 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4222 …}
    +violations: Doctrine\ORM\PersistentCollection {#4224 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4226 …}
    +awards: Doctrine\ORM\PersistentCollection {#4228 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#4230 …}
    +categories: Doctrine\ORM\PersistentCollection {#4232 …}
    -id: 57379
    -password: "$2y$13$nMhZ8U2idkzqlUYi/cuTdOzNXk/L9rWzl4lEciiE/JwNGCOOP5Tym"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4234 …}
    +apId: "bbbhltz@beehaw.org"
    +apProfileId: "https://beehaw.org/u/bbbhltz"
    +apPublicUrl: "https://beehaw.org/u/bbbhltz"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "bbbhltz"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1728900248 {#4164
      date: 2024-10-14 12:04:08.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1697173847 {#4161
      date: 2023-10-13 07:10:47.0 +02:00
    }
  }
  "width" => 40
  "height" => 40
  "asLink" => true
]
Attributes
[]
Component
App\Twig\Components\UserAvatarComponent {#7363
  +width: 40
  +height: 40
  +user: App\Entity\User {#4143
    +avatar: Proxies\__CG__\App\Entity\Image {#4142 …}
    +cover: Proxies\__CG__\App\Entity\Image {#4141 …}
    +email: "bbbhltz@beehaw.org"
    +username: "@bbbhltz@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Music lover and English teacher with an interest in slightly geeky things\n
      \n
      [mastodon](https://framapiaf.org/@bbbhltz) / [blog](https://bbbhltz.codeberg.page) / [listenbrainz](https://listenbrainz.org/user/pasdechance/)
      """
    +lastActive: DateTime @1727694629 {#4163
      date: 2024-09-30 13:10:29.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#4140 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4138 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#4136 …}
    +entries: Doctrine\ORM\PersistentCollection {#4134 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#4132 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#4191 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4194 …}
    +posts: Doctrine\ORM\PersistentCollection {#4196 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#4198 …}
    +postComments: Doctrine\ORM\PersistentCollection {#4200 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#4202 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#4204 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#4206 …}
    +follows: Doctrine\ORM\PersistentCollection {#4208 …}
    +followers: Doctrine\ORM\PersistentCollection {#4210 …}
    +blocks: Doctrine\ORM\PersistentCollection {#4212 …}
    +blockers: Doctrine\ORM\PersistentCollection {#4214 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#4216 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#4218 …}
    +reports: Doctrine\ORM\PersistentCollection {#4220 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4222 …}
    +violations: Doctrine\ORM\PersistentCollection {#4224 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4226 …}
    +awards: Doctrine\ORM\PersistentCollection {#4228 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#4230 …}
    +categories: Doctrine\ORM\PersistentCollection {#4232 …}
    -id: 57379
    -password: "$2y$13$nMhZ8U2idkzqlUYi/cuTdOzNXk/L9rWzl4lEciiE/JwNGCOOP5Tym"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4234 …}
    +apId: "bbbhltz@beehaw.org"
    +apProfileId: "https://beehaw.org/u/bbbhltz"
    +apPublicUrl: "https://beehaw.org/u/bbbhltz"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "bbbhltz"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1728900248 {#4164
      date: 2024-10-14 12:04:08.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1697173847 {#4161
      date: 2023-10-13 07:10:47.0 +02:00
    }
  }
  +asLink: true
}
vote App\Twig\Components\VoteComponent 14.0 MiB 0.46 ms
Input props
[
  "subject" => App\Entity\EntryComment {#4154
    +user: App\Entity\User {#4143
      +avatar: Proxies\__CG__\App\Entity\Image {#4142 …}
      +cover: Proxies\__CG__\App\Entity\Image {#4141 …}
      +email: "bbbhltz@beehaw.org"
      +username: "@bbbhltz@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Music lover and English teacher with an interest in slightly geeky things\n
        \n
        [mastodon](https://framapiaf.org/@bbbhltz) / [blog](https://bbbhltz.codeberg.page) / [listenbrainz](https://listenbrainz.org/user/pasdechance/)
        """
      +lastActive: DateTime @1727694629 {#4163
        date: 2024-09-30 13:10:29.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4140 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4138 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4136 …}
      +entries: Doctrine\ORM\PersistentCollection {#4134 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4132 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4191 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4194 …}
      +posts: Doctrine\ORM\PersistentCollection {#4196 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4198 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4200 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4202 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4204 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4206 …}
      +follows: Doctrine\ORM\PersistentCollection {#4208 …}
      +followers: Doctrine\ORM\PersistentCollection {#4210 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4212 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4214 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4216 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4218 …}
      +reports: Doctrine\ORM\PersistentCollection {#4220 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4222 …}
      +violations: Doctrine\ORM\PersistentCollection {#4224 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4226 …}
      +awards: Doctrine\ORM\PersistentCollection {#4228 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4230 …}
      +categories: Doctrine\ORM\PersistentCollection {#4232 …}
      -id: 57379
      -password: "$2y$13$nMhZ8U2idkzqlUYi/cuTdOzNXk/L9rWzl4lEciiE/JwNGCOOP5Tym"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4234 …}
      +apId: "bbbhltz@beehaw.org"
      +apProfileId: "https://beehaw.org/u/bbbhltz"
      +apPublicUrl: "https://beehaw.org/u/bbbhltz"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "bbbhltz"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1728900248 {#4164
        date: 2024-10-14 12:04:08.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1697173847 {#4161
        date: 2023-10-13 07:10:47.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: "As far as I recall, it never was relevant. It was generally viewed as a rant written by a non-professionnel. Perhaps I am wrong? Sorry if I am wrong?? [Don’t start reporting me, please.](https://chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)"
    +lang: "en"
    +isAdult: false
    +favouriteCount: 12
    +score: 0
    +lastActive: DateTime @1701330385 {#4160
      date: 2023-11-30 08:46:25.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4159 …}
    +nested: Doctrine\ORM\PersistentCollection {#4158 …}
    +votes: Doctrine\ORM\PersistentCollection {#4149 …}
    +reports: Doctrine\ORM\PersistentCollection {#4152 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4147 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4145 …}
    -id: 157570
    -bodyTs: "'/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':40 'chef-koch.bearblog.dev':39 'chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':38 'far':2 'general':12 'never':7 'non':21 'non-professionnel':20 'perhap':23 'pleas':37 'professionnel':22 'rant':16 'recal':5 'relev':9 'report':35 'sorri':27 'start':34 'view':13 'written':17 'wrong':26,31"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1722426"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700807386 {#4165
      date: 2023-11-24 07:29:46.0 +01:00
    }
  }
]
Attributes
[]
Component
App\Twig\Components\VoteComponent {#7444
  +subject: App\Entity\EntryComment {#4154
    +user: App\Entity\User {#4143
      +avatar: Proxies\__CG__\App\Entity\Image {#4142 …}
      +cover: Proxies\__CG__\App\Entity\Image {#4141 …}
      +email: "bbbhltz@beehaw.org"
      +username: "@bbbhltz@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Music lover and English teacher with an interest in slightly geeky things\n
        \n
        [mastodon](https://framapiaf.org/@bbbhltz) / [blog](https://bbbhltz.codeberg.page) / [listenbrainz](https://listenbrainz.org/user/pasdechance/)
        """
      +lastActive: DateTime @1727694629 {#4163
        date: 2024-09-30 13:10:29.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4140 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4138 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4136 …}
      +entries: Doctrine\ORM\PersistentCollection {#4134 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4132 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4191 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4194 …}
      +posts: Doctrine\ORM\PersistentCollection {#4196 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4198 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4200 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4202 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4204 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4206 …}
      +follows: Doctrine\ORM\PersistentCollection {#4208 …}
      +followers: Doctrine\ORM\PersistentCollection {#4210 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4212 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4214 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4216 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4218 …}
      +reports: Doctrine\ORM\PersistentCollection {#4220 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4222 …}
      +violations: Doctrine\ORM\PersistentCollection {#4224 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4226 …}
      +awards: Doctrine\ORM\PersistentCollection {#4228 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4230 …}
      +categories: Doctrine\ORM\PersistentCollection {#4232 …}
      -id: 57379
      -password: "$2y$13$nMhZ8U2idkzqlUYi/cuTdOzNXk/L9rWzl4lEciiE/JwNGCOOP5Tym"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4234 …}
      +apId: "bbbhltz@beehaw.org"
      +apProfileId: "https://beehaw.org/u/bbbhltz"
      +apPublicUrl: "https://beehaw.org/u/bbbhltz"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "bbbhltz"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1728900248 {#4164
        date: 2024-10-14 12:04:08.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1697173847 {#4161
        date: 2023-10-13 07:10:47.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: "As far as I recall, it never was relevant. It was generally viewed as a rant written by a non-professionnel. Perhaps I am wrong? Sorry if I am wrong?? [Don’t start reporting me, please.](https://chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)"
    +lang: "en"
    +isAdult: false
    +favouriteCount: 12
    +score: 0
    +lastActive: DateTime @1701330385 {#4160
      date: 2023-11-30 08:46:25.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4159 …}
    +nested: Doctrine\ORM\PersistentCollection {#4158 …}
    +votes: Doctrine\ORM\PersistentCollection {#4149 …}
    +reports: Doctrine\ORM\PersistentCollection {#4152 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4147 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4145 …}
    -id: 157570
    -bodyTs: "'/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':40 'chef-koch.bearblog.dev':39 'chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':38 'far':2 'general':12 'never':7 'non':21 'non-professionnel':20 'perhap':23 'pleas':37 'professionnel':22 'rant':16 'recal':5 'relev':9 'report':35 'sorri':27 'start':34 'view':13 'written':17 'wrong':26,31"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1722426"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700807386 {#4165
      date: 2023-11-24 07:29:46.0 +01:00
    }
  }
  +formDest: "entry_comment"
  +showDownvote: true
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
}
boost App\Twig\Components\BoostComponent 14.0 MiB 0.76 ms
Input props
[
  "subject" => App\Entity\EntryComment {#4154
    +user: App\Entity\User {#4143
      +avatar: Proxies\__CG__\App\Entity\Image {#4142 …}
      +cover: Proxies\__CG__\App\Entity\Image {#4141 …}
      +email: "bbbhltz@beehaw.org"
      +username: "@bbbhltz@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Music lover and English teacher with an interest in slightly geeky things\n
        \n
        [mastodon](https://framapiaf.org/@bbbhltz) / [blog](https://bbbhltz.codeberg.page) / [listenbrainz](https://listenbrainz.org/user/pasdechance/)
        """
      +lastActive: DateTime @1727694629 {#4163
        date: 2024-09-30 13:10:29.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4140 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4138 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4136 …}
      +entries: Doctrine\ORM\PersistentCollection {#4134 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4132 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4191 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4194 …}
      +posts: Doctrine\ORM\PersistentCollection {#4196 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4198 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4200 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4202 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4204 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4206 …}
      +follows: Doctrine\ORM\PersistentCollection {#4208 …}
      +followers: Doctrine\ORM\PersistentCollection {#4210 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4212 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4214 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4216 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4218 …}
      +reports: Doctrine\ORM\PersistentCollection {#4220 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4222 …}
      +violations: Doctrine\ORM\PersistentCollection {#4224 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4226 …}
      +awards: Doctrine\ORM\PersistentCollection {#4228 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4230 …}
      +categories: Doctrine\ORM\PersistentCollection {#4232 …}
      -id: 57379
      -password: "$2y$13$nMhZ8U2idkzqlUYi/cuTdOzNXk/L9rWzl4lEciiE/JwNGCOOP5Tym"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4234 …}
      +apId: "bbbhltz@beehaw.org"
      +apProfileId: "https://beehaw.org/u/bbbhltz"
      +apPublicUrl: "https://beehaw.org/u/bbbhltz"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "bbbhltz"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1728900248 {#4164
        date: 2024-10-14 12:04:08.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1697173847 {#4161
        date: 2023-10-13 07:10:47.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: "As far as I recall, it never was relevant. It was generally viewed as a rant written by a non-professionnel. Perhaps I am wrong? Sorry if I am wrong?? [Don’t start reporting me, please.](https://chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)"
    +lang: "en"
    +isAdult: false
    +favouriteCount: 12
    +score: 0
    +lastActive: DateTime @1701330385 {#4160
      date: 2023-11-30 08:46:25.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4159 …}
    +nested: Doctrine\ORM\PersistentCollection {#4158 …}
    +votes: Doctrine\ORM\PersistentCollection {#4149 …}
    +reports: Doctrine\ORM\PersistentCollection {#4152 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4147 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4145 …}
    -id: 157570
    -bodyTs: "'/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':40 'chef-koch.bearblog.dev':39 'chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':38 'far':2 'general':12 'never':7 'non':21 'non-professionnel':20 'perhap':23 'pleas':37 'professionnel':22 'rant':16 'recal':5 'relev':9 'report':35 'sorri':27 'start':34 'view':13 'written':17 'wrong':26,31"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1722426"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700807386 {#4165
      date: 2023-11-24 07:29:46.0 +01:00
    }
  }
]
Attributes
[]
Component
App\Twig\Components\BoostComponent {#3169
  +formDest: "entry_comment"
  +subject: App\Entity\EntryComment {#4154
    +user: App\Entity\User {#4143
      +avatar: Proxies\__CG__\App\Entity\Image {#4142 …}
      +cover: Proxies\__CG__\App\Entity\Image {#4141 …}
      +email: "bbbhltz@beehaw.org"
      +username: "@bbbhltz@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Music lover and English teacher with an interest in slightly geeky things\n
        \n
        [mastodon](https://framapiaf.org/@bbbhltz) / [blog](https://bbbhltz.codeberg.page) / [listenbrainz](https://listenbrainz.org/user/pasdechance/)
        """
      +lastActive: DateTime @1727694629 {#4163
        date: 2024-09-30 13:10:29.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4140 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4138 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4136 …}
      +entries: Doctrine\ORM\PersistentCollection {#4134 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4132 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4191 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4194 …}
      +posts: Doctrine\ORM\PersistentCollection {#4196 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4198 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4200 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4202 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4204 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4206 …}
      +follows: Doctrine\ORM\PersistentCollection {#4208 …}
      +followers: Doctrine\ORM\PersistentCollection {#4210 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4212 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4214 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4216 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4218 …}
      +reports: Doctrine\ORM\PersistentCollection {#4220 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4222 …}
      +violations: Doctrine\ORM\PersistentCollection {#4224 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4226 …}
      +awards: Doctrine\ORM\PersistentCollection {#4228 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4230 …}
      +categories: Doctrine\ORM\PersistentCollection {#4232 …}
      -id: 57379
      -password: "$2y$13$nMhZ8U2idkzqlUYi/cuTdOzNXk/L9rWzl4lEciiE/JwNGCOOP5Tym"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4234 …}
      +apId: "bbbhltz@beehaw.org"
      +apProfileId: "https://beehaw.org/u/bbbhltz"
      +apPublicUrl: "https://beehaw.org/u/bbbhltz"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "bbbhltz"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1728900248 {#4164
        date: 2024-10-14 12:04:08.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1697173847 {#4161
        date: 2023-10-13 07:10:47.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: "As far as I recall, it never was relevant. It was generally viewed as a rant written by a non-professionnel. Perhaps I am wrong? Sorry if I am wrong?? [Don’t start reporting me, please.](https://chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)"
    +lang: "en"
    +isAdult: false
    +favouriteCount: 12
    +score: 0
    +lastActive: DateTime @1701330385 {#4160
      date: 2023-11-30 08:46:25.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4159 …}
    +nested: Doctrine\ORM\PersistentCollection {#4158 …}
    +votes: Doctrine\ORM\PersistentCollection {#4149 …}
    +reports: Doctrine\ORM\PersistentCollection {#4152 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4147 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4145 …}
    -id: 157570
    -bodyTs: "'/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':40 'chef-koch.bearblog.dev':39 'chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':38 'far':2 'general':12 'never':7 'non':21 'non-professionnel':20 'perhap':23 'pleas':37 'professionnel':22 'rant':16 'recal':5 'relev':9 'report':35 'sorri':27 'start':34 'view':13 'written':17 'wrong':26,31"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1722426"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700807386 {#4165
      date: 2023-11-24 07:29:46.0 +01:00
    }
  }
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
}
entry_comments_nested App\Twig\Components\EntryCommentsNestedComponent 14.0 MiB 14.80 ms
Input props
[
  "comment" => App\Entity\EntryComment {#4154
    +user: App\Entity\User {#4143
      +avatar: Proxies\__CG__\App\Entity\Image {#4142 …}
      +cover: Proxies\__CG__\App\Entity\Image {#4141 …}
      +email: "bbbhltz@beehaw.org"
      +username: "@bbbhltz@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Music lover and English teacher with an interest in slightly geeky things\n
        \n
        [mastodon](https://framapiaf.org/@bbbhltz) / [blog](https://bbbhltz.codeberg.page) / [listenbrainz](https://listenbrainz.org/user/pasdechance/)
        """
      +lastActive: DateTime @1727694629 {#4163
        date: 2024-09-30 13:10:29.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4140 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4138 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4136 …}
      +entries: Doctrine\ORM\PersistentCollection {#4134 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4132 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4191 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4194 …}
      +posts: Doctrine\ORM\PersistentCollection {#4196 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4198 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4200 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4202 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4204 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4206 …}
      +follows: Doctrine\ORM\PersistentCollection {#4208 …}
      +followers: Doctrine\ORM\PersistentCollection {#4210 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4212 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4214 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4216 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4218 …}
      +reports: Doctrine\ORM\PersistentCollection {#4220 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4222 …}
      +violations: Doctrine\ORM\PersistentCollection {#4224 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4226 …}
      +awards: Doctrine\ORM\PersistentCollection {#4228 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4230 …}
      +categories: Doctrine\ORM\PersistentCollection {#4232 …}
      -id: 57379
      -password: "$2y$13$nMhZ8U2idkzqlUYi/cuTdOzNXk/L9rWzl4lEciiE/JwNGCOOP5Tym"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4234 …}
      +apId: "bbbhltz@beehaw.org"
      +apProfileId: "https://beehaw.org/u/bbbhltz"
      +apPublicUrl: "https://beehaw.org/u/bbbhltz"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "bbbhltz"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1728900248 {#4164
        date: 2024-10-14 12:04:08.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1697173847 {#4161
        date: 2023-10-13 07:10:47.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: "As far as I recall, it never was relevant. It was generally viewed as a rant written by a non-professionnel. Perhaps I am wrong? Sorry if I am wrong?? [Don’t start reporting me, please.](https://chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)"
    +lang: "en"
    +isAdult: false
    +favouriteCount: 12
    +score: 0
    +lastActive: DateTime @1701330385 {#4160
      date: 2023-11-30 08:46:25.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4159 …}
    +nested: Doctrine\ORM\PersistentCollection {#4158 …}
    +votes: Doctrine\ORM\PersistentCollection {#4149 …}
    +reports: Doctrine\ORM\PersistentCollection {#4152 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4147 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4145 …}
    -id: 157570
    -bodyTs: "'/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':40 'chef-koch.bearblog.dev':39 'chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':38 'far':2 'general':12 'never':7 'non':21 'non-professionnel':20 'perhap':23 'pleas':37 'professionnel':22 'rant':16 'recal':5 'relev':9 'report':35 'sorri':27 'start':34 'view':13 'written':17 'wrong':26,31"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1722426"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700807386 {#4165
      date: 2023-11-24 07:29:46.0 +01:00
    }
  }
  "level" => 1
  "showNested" => true
  "view" => "tree"
]
Attributes
[
  "showNested" => true
]
Component
App\Twig\Components\EntryCommentsNestedComponent {#7498
  +comment: App\Entity\EntryComment {#4154
    +user: App\Entity\User {#4143
      +avatar: Proxies\__CG__\App\Entity\Image {#4142 …}
      +cover: Proxies\__CG__\App\Entity\Image {#4141 …}
      +email: "bbbhltz@beehaw.org"
      +username: "@bbbhltz@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Music lover and English teacher with an interest in slightly geeky things\n
        \n
        [mastodon](https://framapiaf.org/@bbbhltz) / [blog](https://bbbhltz.codeberg.page) / [listenbrainz](https://listenbrainz.org/user/pasdechance/)
        """
      +lastActive: DateTime @1727694629 {#4163
        date: 2024-09-30 13:10:29.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4140 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4138 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4136 …}
      +entries: Doctrine\ORM\PersistentCollection {#4134 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4132 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4191 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4194 …}
      +posts: Doctrine\ORM\PersistentCollection {#4196 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4198 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4200 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4202 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4204 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4206 …}
      +follows: Doctrine\ORM\PersistentCollection {#4208 …}
      +followers: Doctrine\ORM\PersistentCollection {#4210 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4212 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4214 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4216 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4218 …}
      +reports: Doctrine\ORM\PersistentCollection {#4220 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4222 …}
      +violations: Doctrine\ORM\PersistentCollection {#4224 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4226 …}
      +awards: Doctrine\ORM\PersistentCollection {#4228 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4230 …}
      +categories: Doctrine\ORM\PersistentCollection {#4232 …}
      -id: 57379
      -password: "$2y$13$nMhZ8U2idkzqlUYi/cuTdOzNXk/L9rWzl4lEciiE/JwNGCOOP5Tym"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4234 …}
      +apId: "bbbhltz@beehaw.org"
      +apProfileId: "https://beehaw.org/u/bbbhltz"
      +apPublicUrl: "https://beehaw.org/u/bbbhltz"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "bbbhltz"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1728900248 {#4164
        date: 2024-10-14 12:04:08.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1697173847 {#4161
        date: 2023-10-13 07:10:47.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: "As far as I recall, it never was relevant. It was generally viewed as a rant written by a non-professionnel. Perhaps I am wrong? Sorry if I am wrong?? [Don’t start reporting me, please.](https://chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)"
    +lang: "en"
    +isAdult: false
    +favouriteCount: 12
    +score: 0
    +lastActive: DateTime @1701330385 {#4160
      date: 2023-11-30 08:46:25.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4159 …}
    +nested: Doctrine\ORM\PersistentCollection {#4158 …}
    +votes: Doctrine\ORM\PersistentCollection {#4149 …}
    +reports: Doctrine\ORM\PersistentCollection {#4152 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4147 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4145 …}
    -id: 157570
    -bodyTs: "'/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':40 'chef-koch.bearblog.dev':39 'chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':38 'far':2 'general':12 'never':7 'non':21 'non-professionnel':20 'perhap':23 'pleas':37 'professionnel':22 'rant':16 'recal':5 'relev':9 'report':35 'sorri':27 'start':34 'view':13 'written':17 'wrong':26,31"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1722426"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700807386 {#4165
      date: 2023-11-24 07:29:46.0 +01:00
    }
  }
  +nestedComments: [
    157623 => App\Entity\EntryComment {#4416
      +user: App\Entity\User {#4070
        +avatar: null
        +cover: null
        +email: "ReversalHatchery@beehaw.org"
        +username: "@ReversalHatchery@beehaw.org"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: """
          Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
          Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
          """
        +lastActive: DateTime @1729157044 {#4130
          date: 2024-10-17 11:24:04.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
        +entries: Doctrine\ORM\PersistentCollection {#4064 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
        +posts: Doctrine\ORM\PersistentCollection {#4054 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
        +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
        +follows: Doctrine\ORM\PersistentCollection {#4186 …}
        +followers: Doctrine\ORM\PersistentCollection {#4182 …}
        +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
        +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
        +reports: Doctrine\ORM\PersistentCollection {#4185 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
        +violations: Doctrine\ORM\PersistentCollection {#4175 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
        +awards: Doctrine\ORM\PersistentCollection {#4176 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
        +categories: Doctrine\ORM\PersistentCollection {#4173 …}
        -id: 53309
        -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
        +apId: "ReversalHatchery@beehaw.org"
        +apProfileId: "https://beehaw.org/u/ReversalHatchery"
        +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
        +apFollowersUrl: null
        +apInboxUrl: "https://beehaw.org/inbox"
        +apDomain: "beehaw.org"
        +apPreferredUsername: "ReversalHatchery"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729027069 {#4126
          date: 2024-10-15 23:17:49.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696732297 {#4124
          date: 2023-10-08 04:31:37.0 +02:00
        }
      }
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: App\Entity\EntryComment {#4154}
      +root: App\Entity\EntryComment {#4154}
      +body: """
        I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
        \n
        Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
        """
      +lang: "en"
      +isAdult: false
      +favouriteCount: 2
      +score: 0
      +lastActive: DateTime @1700809862 {#4414
        date: 2023-11-24 08:11:02.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
        "@bbbhltz@beehaw.org"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4417 …}
      +nested: Doctrine\ORM\PersistentCollection {#4419 …}
      +votes: Doctrine\ORM\PersistentCollection {#4421 …}
      +reports: Doctrine\ORM\PersistentCollection {#4423 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4425 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4427 …}
      -id: 157623
      -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://beehaw.org/comment/1722547"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700809862 {#4415
        date: 2023-11-24 08:11:02.0 +01:00
      }
    }
  ]
  +level: 1
  +view: "tree"
  -entryCommentRepository: App\Repository\EntryCommentRepository {#555 …}
  -twig: Twig\Environment {#1252 …}
  -security: Symfony\Bundle\SecurityBundle\Security {#1101 …}
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
}
entry_comment App\Twig\Components\EntryCommentComponent 14.0 MiB 13.40 ms
Input props
[
  "comment" => App\Entity\EntryComment {#4416
    +user: App\Entity\User {#4070
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#4130
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
      +entries: Doctrine\ORM\PersistentCollection {#4064 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
      +posts: Doctrine\ORM\PersistentCollection {#4054 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
      +follows: Doctrine\ORM\PersistentCollection {#4186 …}
      +followers: Doctrine\ORM\PersistentCollection {#4182 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
      +reports: Doctrine\ORM\PersistentCollection {#4185 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
      +violations: Doctrine\ORM\PersistentCollection {#4175 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
      +awards: Doctrine\ORM\PersistentCollection {#4176 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
      +categories: Doctrine\ORM\PersistentCollection {#4173 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#4126
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#4124
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4154
      +user: App\Entity\User {#4143
        +avatar: Proxies\__CG__\App\Entity\Image {#4142 …}
        +cover: Proxies\__CG__\App\Entity\Image {#4141 …}
        +email: "bbbhltz@beehaw.org"
        +username: "@bbbhltz@beehaw.org"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: """
          Music lover and English teacher with an interest in slightly geeky things\n
          \n
          [mastodon](https://framapiaf.org/@bbbhltz) / [blog](https://bbbhltz.codeberg.page) / [listenbrainz](https://listenbrainz.org/user/pasdechance/)
          """
        +lastActive: DateTime @1727694629 {#4163
          date: 2024-09-30 13:10:29.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#4140 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4138 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#4136 …}
        +entries: Doctrine\ORM\PersistentCollection {#4134 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#4132 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#4191 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4194 …}
        +posts: Doctrine\ORM\PersistentCollection {#4196 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#4198 …}
        +postComments: Doctrine\ORM\PersistentCollection {#4200 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#4202 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#4204 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#4206 …}
        +follows: Doctrine\ORM\PersistentCollection {#4208 …}
        +followers: Doctrine\ORM\PersistentCollection {#4210 …}
        +blocks: Doctrine\ORM\PersistentCollection {#4212 …}
        +blockers: Doctrine\ORM\PersistentCollection {#4214 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#4216 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#4218 …}
        +reports: Doctrine\ORM\PersistentCollection {#4220 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4222 …}
        +violations: Doctrine\ORM\PersistentCollection {#4224 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4226 …}
        +awards: Doctrine\ORM\PersistentCollection {#4228 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#4230 …}
        +categories: Doctrine\ORM\PersistentCollection {#4232 …}
        -id: 57379
        -password: "$2y$13$nMhZ8U2idkzqlUYi/cuTdOzNXk/L9rWzl4lEciiE/JwNGCOOP5Tym"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4234 …}
        +apId: "bbbhltz@beehaw.org"
        +apProfileId: "https://beehaw.org/u/bbbhltz"
        +apPublicUrl: "https://beehaw.org/u/bbbhltz"
        +apFollowersUrl: null
        +apInboxUrl: "https://beehaw.org/inbox"
        +apDomain: "beehaw.org"
        +apPreferredUsername: "bbbhltz"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1728900248 {#4164
          date: 2024-10-14 12:04:08.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1697173847 {#4161
          date: 2023-10-13 07:10:47.0 +02:00
        }
      }
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: null
      +root: null
      +body: "As far as I recall, it never was relevant. It was generally viewed as a rant written by a non-professionnel. Perhaps I am wrong? Sorry if I am wrong?? [Don’t start reporting me, please.](https://chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)"
      +lang: "en"
      +isAdult: false
      +favouriteCount: 12
      +score: 0
      +lastActive: DateTime @1701330385 {#4160
        date: 2023-11-30 08:46:25.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4159 …}
      +nested: Doctrine\ORM\PersistentCollection {#4158 …}
      +votes: Doctrine\ORM\PersistentCollection {#4149 …}
      +reports: Doctrine\ORM\PersistentCollection {#4152 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4147 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4145 …}
      -id: 157570
      -bodyTs: "'/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':40 'chef-koch.bearblog.dev':39 'chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':38 'far':2 'general':12 'never':7 'non':21 'non-professionnel':20 'perhap':23 'pleas':37 'professionnel':22 'rant':16 'recal':5 'relev':9 'report':35 'sorri':27 'start':34 'view':13 'written':17 'wrong':26,31"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://beehaw.org/comment/1722426"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700807386 {#4165
        date: 2023-11-24 07:29:46.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4154}
    +body: """
      I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
      \n
      Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 2
    +score: 0
    +lastActive: DateTime @1700809862 {#4414
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@bbbhltz@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4417 …}
    +nested: Doctrine\ORM\PersistentCollection {#4419 …}
    +votes: Doctrine\ORM\PersistentCollection {#4421 …}
    +reports: Doctrine\ORM\PersistentCollection {#4423 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4425 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4427 …}
    -id: 157623
    -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1722547"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700809862 {#4415
      date: 2023-11-24 08:11:02.0 +01:00
    }
  }
  "showNested" => true
  "level" => 2
  "showEntryTitle" => false
  "showMagazineName" => false
]
Attributes
[]
Component
App\Twig\Components\EntryCommentComponent {#7558
  +comment: App\Entity\EntryComment {#4416
    +user: App\Entity\User {#4070
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#4130
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
      +entries: Doctrine\ORM\PersistentCollection {#4064 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
      +posts: Doctrine\ORM\PersistentCollection {#4054 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
      +follows: Doctrine\ORM\PersistentCollection {#4186 …}
      +followers: Doctrine\ORM\PersistentCollection {#4182 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
      +reports: Doctrine\ORM\PersistentCollection {#4185 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
      +violations: Doctrine\ORM\PersistentCollection {#4175 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
      +awards: Doctrine\ORM\PersistentCollection {#4176 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
      +categories: Doctrine\ORM\PersistentCollection {#4173 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#4126
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#4124
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4154
      +user: App\Entity\User {#4143
        +avatar: Proxies\__CG__\App\Entity\Image {#4142 …}
        +cover: Proxies\__CG__\App\Entity\Image {#4141 …}
        +email: "bbbhltz@beehaw.org"
        +username: "@bbbhltz@beehaw.org"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: """
          Music lover and English teacher with an interest in slightly geeky things\n
          \n
          [mastodon](https://framapiaf.org/@bbbhltz) / [blog](https://bbbhltz.codeberg.page) / [listenbrainz](https://listenbrainz.org/user/pasdechance/)
          """
        +lastActive: DateTime @1727694629 {#4163
          date: 2024-09-30 13:10:29.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#4140 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4138 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#4136 …}
        +entries: Doctrine\ORM\PersistentCollection {#4134 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#4132 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#4191 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4194 …}
        +posts: Doctrine\ORM\PersistentCollection {#4196 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#4198 …}
        +postComments: Doctrine\ORM\PersistentCollection {#4200 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#4202 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#4204 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#4206 …}
        +follows: Doctrine\ORM\PersistentCollection {#4208 …}
        +followers: Doctrine\ORM\PersistentCollection {#4210 …}
        +blocks: Doctrine\ORM\PersistentCollection {#4212 …}
        +blockers: Doctrine\ORM\PersistentCollection {#4214 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#4216 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#4218 …}
        +reports: Doctrine\ORM\PersistentCollection {#4220 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4222 …}
        +violations: Doctrine\ORM\PersistentCollection {#4224 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4226 …}
        +awards: Doctrine\ORM\PersistentCollection {#4228 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#4230 …}
        +categories: Doctrine\ORM\PersistentCollection {#4232 …}
        -id: 57379
        -password: "$2y$13$nMhZ8U2idkzqlUYi/cuTdOzNXk/L9rWzl4lEciiE/JwNGCOOP5Tym"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4234 …}
        +apId: "bbbhltz@beehaw.org"
        +apProfileId: "https://beehaw.org/u/bbbhltz"
        +apPublicUrl: "https://beehaw.org/u/bbbhltz"
        +apFollowersUrl: null
        +apInboxUrl: "https://beehaw.org/inbox"
        +apDomain: "beehaw.org"
        +apPreferredUsername: "bbbhltz"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1728900248 {#4164
          date: 2024-10-14 12:04:08.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1697173847 {#4161
          date: 2023-10-13 07:10:47.0 +02:00
        }
      }
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: null
      +root: null
      +body: "As far as I recall, it never was relevant. It was generally viewed as a rant written by a non-professionnel. Perhaps I am wrong? Sorry if I am wrong?? [Don’t start reporting me, please.](https://chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)"
      +lang: "en"
      +isAdult: false
      +favouriteCount: 12
      +score: 0
      +lastActive: DateTime @1701330385 {#4160
        date: 2023-11-30 08:46:25.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4159 …}
      +nested: Doctrine\ORM\PersistentCollection {#4158 …}
      +votes: Doctrine\ORM\PersistentCollection {#4149 …}
      +reports: Doctrine\ORM\PersistentCollection {#4152 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4147 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4145 …}
      -id: 157570
      -bodyTs: "'/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':40 'chef-koch.bearblog.dev':39 'chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':38 'far':2 'general':12 'never':7 'non':21 'non-professionnel':20 'perhap':23 'pleas':37 'professionnel':22 'rant':16 'recal':5 'relev':9 'report':35 'sorri':27 'start':34 'view':13 'written':17 'wrong':26,31"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://beehaw.org/comment/1722426"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700807386 {#4165
        date: 2023-11-24 07:29:46.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4154}
    +body: """
      I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
      \n
      Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 2
    +score: 0
    +lastActive: DateTime @1700809862 {#4414
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@bbbhltz@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4417 …}
    +nested: Doctrine\ORM\PersistentCollection {#4419 …}
    +votes: Doctrine\ORM\PersistentCollection {#4421 …}
    +reports: Doctrine\ORM\PersistentCollection {#4423 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4425 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4427 …}
    -id: 157623
    -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1722547"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700809862 {#4415
      date: 2023-11-24 08:11:02.0 +01:00
    }
  }
  +showMagazineName: false
  +showEntryTitle: false
  +showNested: true
  +level: 2
  +canSeeTrash: false
  +dateAsUrl: false
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
  -authorizationChecker: Symfony\Component\Security\Core\Authorization\AuthorizationChecker {#931 …}
}
user_inline App\Twig\Components\UserInlineComponent 14.0 MiB 0.17 ms
Input props
[
  "user" => App\Entity\User {#4070
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#4130
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
    +entries: Doctrine\ORM\PersistentCollection {#4064 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
    +posts: Doctrine\ORM\PersistentCollection {#4054 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
    +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
    +follows: Doctrine\ORM\PersistentCollection {#4186 …}
    +followers: Doctrine\ORM\PersistentCollection {#4182 …}
    +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
    +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
    +reports: Doctrine\ORM\PersistentCollection {#4185 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
    +violations: Doctrine\ORM\PersistentCollection {#4175 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
    +awards: Doctrine\ORM\PersistentCollection {#4176 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
    +categories: Doctrine\ORM\PersistentCollection {#4173 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#4126
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#4124
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  "showAvatar" => false
]
Attributes
[]
Component
App\Twig\Components\UserInlineComponent {#7603
  +user: App\Entity\User {#4070
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#4130
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
    +entries: Doctrine\ORM\PersistentCollection {#4064 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
    +posts: Doctrine\ORM\PersistentCollection {#4054 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
    +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
    +follows: Doctrine\ORM\PersistentCollection {#4186 …}
    +followers: Doctrine\ORM\PersistentCollection {#4182 …}
    +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
    +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
    +reports: Doctrine\ORM\PersistentCollection {#4185 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
    +violations: Doctrine\ORM\PersistentCollection {#4175 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
    +awards: Doctrine\ORM\PersistentCollection {#4176 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
    +categories: Doctrine\ORM\PersistentCollection {#4173 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#4126
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#4124
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  +showAvatar: false
}
date App\Twig\Components\DateComponent 14.0 MiB 0.15 ms
Input props
[
  "date" => DateTimeImmutable @1700809862 {#4415
    date: 2023-11-24 08:11:02.0 +01:00
  }
]
Attributes
[]
Component
App\Twig\Components\DateComponent {#7658
  +date: DateTimeImmutable @1700809862 {#4415
    date: 2023-11-24 08:11:02.0 +01:00
  }
}
date_edited App\Twig\Components\DateEditedComponent 14.0 MiB 0.09 ms
Input props
[
  "createdAt" => DateTimeImmutable @1700809862 {#4415
    date: 2023-11-24 08:11:02.0 +01:00
  }
  "editedAt" => null
]
Attributes
[]
Component
App\Twig\Components\DateEditedComponent {#7712
  +createdAt: DateTimeImmutable @1700809862 {#4415
    date: 2023-11-24 08:11:02.0 +01:00
  }
  +editedAt: null
}
user_avatar App\Twig\Components\UserAvatarComponent 14.0 MiB 0.14 ms
Input props
[
  "user" => App\Entity\User {#4070
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#4130
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
    +entries: Doctrine\ORM\PersistentCollection {#4064 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
    +posts: Doctrine\ORM\PersistentCollection {#4054 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
    +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
    +follows: Doctrine\ORM\PersistentCollection {#4186 …}
    +followers: Doctrine\ORM\PersistentCollection {#4182 …}
    +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
    +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
    +reports: Doctrine\ORM\PersistentCollection {#4185 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
    +violations: Doctrine\ORM\PersistentCollection {#4175 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
    +awards: Doctrine\ORM\PersistentCollection {#4176 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
    +categories: Doctrine\ORM\PersistentCollection {#4173 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#4126
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#4124
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  "width" => 40
  "height" => 40
  "asLink" => true
]
Attributes
[]
Component
App\Twig\Components\UserAvatarComponent {#7766
  +width: 40
  +height: 40
  +user: App\Entity\User {#4070
    +avatar: null
    +cover: null
    +email: "ReversalHatchery@beehaw.org"
    +username: "@ReversalHatchery@beehaw.org"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: """
      Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
      Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
      """
    +lastActive: DateTime @1729157044 {#4130
      date: 2024-10-17 11:24:04.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
    +entries: Doctrine\ORM\PersistentCollection {#4064 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
    +posts: Doctrine\ORM\PersistentCollection {#4054 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
    +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
    +follows: Doctrine\ORM\PersistentCollection {#4186 …}
    +followers: Doctrine\ORM\PersistentCollection {#4182 …}
    +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
    +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
    +reports: Doctrine\ORM\PersistentCollection {#4185 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
    +violations: Doctrine\ORM\PersistentCollection {#4175 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
    +awards: Doctrine\ORM\PersistentCollection {#4176 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
    +categories: Doctrine\ORM\PersistentCollection {#4173 …}
    -id: 53309
    -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
    +apId: "ReversalHatchery@beehaw.org"
    +apProfileId: "https://beehaw.org/u/ReversalHatchery"
    +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
    +apFollowersUrl: null
    +apInboxUrl: "https://beehaw.org/inbox"
    +apDomain: "beehaw.org"
    +apPreferredUsername: "ReversalHatchery"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729027069 {#4126
      date: 2024-10-15 23:17:49.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696732297 {#4124
      date: 2023-10-08 04:31:37.0 +02:00
    }
  }
  +asLink: true
}
vote App\Twig\Components\VoteComponent 14.0 MiB 0.60 ms
Input props
[
  "subject" => App\Entity\EntryComment {#4416
    +user: App\Entity\User {#4070
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#4130
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
      +entries: Doctrine\ORM\PersistentCollection {#4064 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
      +posts: Doctrine\ORM\PersistentCollection {#4054 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
      +follows: Doctrine\ORM\PersistentCollection {#4186 …}
      +followers: Doctrine\ORM\PersistentCollection {#4182 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
      +reports: Doctrine\ORM\PersistentCollection {#4185 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
      +violations: Doctrine\ORM\PersistentCollection {#4175 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
      +awards: Doctrine\ORM\PersistentCollection {#4176 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
      +categories: Doctrine\ORM\PersistentCollection {#4173 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#4126
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#4124
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4154
      +user: App\Entity\User {#4143
        +avatar: Proxies\__CG__\App\Entity\Image {#4142 …}
        +cover: Proxies\__CG__\App\Entity\Image {#4141 …}
        +email: "bbbhltz@beehaw.org"
        +username: "@bbbhltz@beehaw.org"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: """
          Music lover and English teacher with an interest in slightly geeky things\n
          \n
          [mastodon](https://framapiaf.org/@bbbhltz) / [blog](https://bbbhltz.codeberg.page) / [listenbrainz](https://listenbrainz.org/user/pasdechance/)
          """
        +lastActive: DateTime @1727694629 {#4163
          date: 2024-09-30 13:10:29.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#4140 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4138 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#4136 …}
        +entries: Doctrine\ORM\PersistentCollection {#4134 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#4132 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#4191 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4194 …}
        +posts: Doctrine\ORM\PersistentCollection {#4196 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#4198 …}
        +postComments: Doctrine\ORM\PersistentCollection {#4200 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#4202 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#4204 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#4206 …}
        +follows: Doctrine\ORM\PersistentCollection {#4208 …}
        +followers: Doctrine\ORM\PersistentCollection {#4210 …}
        +blocks: Doctrine\ORM\PersistentCollection {#4212 …}
        +blockers: Doctrine\ORM\PersistentCollection {#4214 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#4216 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#4218 …}
        +reports: Doctrine\ORM\PersistentCollection {#4220 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4222 …}
        +violations: Doctrine\ORM\PersistentCollection {#4224 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4226 …}
        +awards: Doctrine\ORM\PersistentCollection {#4228 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#4230 …}
        +categories: Doctrine\ORM\PersistentCollection {#4232 …}
        -id: 57379
        -password: "$2y$13$nMhZ8U2idkzqlUYi/cuTdOzNXk/L9rWzl4lEciiE/JwNGCOOP5Tym"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4234 …}
        +apId: "bbbhltz@beehaw.org"
        +apProfileId: "https://beehaw.org/u/bbbhltz"
        +apPublicUrl: "https://beehaw.org/u/bbbhltz"
        +apFollowersUrl: null
        +apInboxUrl: "https://beehaw.org/inbox"
        +apDomain: "beehaw.org"
        +apPreferredUsername: "bbbhltz"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1728900248 {#4164
          date: 2024-10-14 12:04:08.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1697173847 {#4161
          date: 2023-10-13 07:10:47.0 +02:00
        }
      }
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: null
      +root: null
      +body: "As far as I recall, it never was relevant. It was generally viewed as a rant written by a non-professionnel. Perhaps I am wrong? Sorry if I am wrong?? [Don’t start reporting me, please.](https://chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)"
      +lang: "en"
      +isAdult: false
      +favouriteCount: 12
      +score: 0
      +lastActive: DateTime @1701330385 {#4160
        date: 2023-11-30 08:46:25.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4159 …}
      +nested: Doctrine\ORM\PersistentCollection {#4158 …}
      +votes: Doctrine\ORM\PersistentCollection {#4149 …}
      +reports: Doctrine\ORM\PersistentCollection {#4152 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4147 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4145 …}
      -id: 157570
      -bodyTs: "'/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':40 'chef-koch.bearblog.dev':39 'chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':38 'far':2 'general':12 'never':7 'non':21 'non-professionnel':20 'perhap':23 'pleas':37 'professionnel':22 'rant':16 'recal':5 'relev':9 'report':35 'sorri':27 'start':34 'view':13 'written':17 'wrong':26,31"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://beehaw.org/comment/1722426"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700807386 {#4165
        date: 2023-11-24 07:29:46.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4154}
    +body: """
      I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
      \n
      Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 2
    +score: 0
    +lastActive: DateTime @1700809862 {#4414
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@bbbhltz@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4417 …}
    +nested: Doctrine\ORM\PersistentCollection {#4419 …}
    +votes: Doctrine\ORM\PersistentCollection {#4421 …}
    +reports: Doctrine\ORM\PersistentCollection {#4423 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4425 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4427 …}
    -id: 157623
    -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1722547"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700809862 {#4415
      date: 2023-11-24 08:11:02.0 +01:00
    }
  }
]
Attributes
[]
Component
App\Twig\Components\VoteComponent {#7839
  +subject: App\Entity\EntryComment {#4416
    +user: App\Entity\User {#4070
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#4130
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
      +entries: Doctrine\ORM\PersistentCollection {#4064 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
      +posts: Doctrine\ORM\PersistentCollection {#4054 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
      +follows: Doctrine\ORM\PersistentCollection {#4186 …}
      +followers: Doctrine\ORM\PersistentCollection {#4182 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
      +reports: Doctrine\ORM\PersistentCollection {#4185 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
      +violations: Doctrine\ORM\PersistentCollection {#4175 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
      +awards: Doctrine\ORM\PersistentCollection {#4176 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
      +categories: Doctrine\ORM\PersistentCollection {#4173 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#4126
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#4124
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4154
      +user: App\Entity\User {#4143
        +avatar: Proxies\__CG__\App\Entity\Image {#4142 …}
        +cover: Proxies\__CG__\App\Entity\Image {#4141 …}
        +email: "bbbhltz@beehaw.org"
        +username: "@bbbhltz@beehaw.org"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: """
          Music lover and English teacher with an interest in slightly geeky things\n
          \n
          [mastodon](https://framapiaf.org/@bbbhltz) / [blog](https://bbbhltz.codeberg.page) / [listenbrainz](https://listenbrainz.org/user/pasdechance/)
          """
        +lastActive: DateTime @1727694629 {#4163
          date: 2024-09-30 13:10:29.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#4140 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4138 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#4136 …}
        +entries: Doctrine\ORM\PersistentCollection {#4134 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#4132 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#4191 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4194 …}
        +posts: Doctrine\ORM\PersistentCollection {#4196 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#4198 …}
        +postComments: Doctrine\ORM\PersistentCollection {#4200 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#4202 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#4204 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#4206 …}
        +follows: Doctrine\ORM\PersistentCollection {#4208 …}
        +followers: Doctrine\ORM\PersistentCollection {#4210 …}
        +blocks: Doctrine\ORM\PersistentCollection {#4212 …}
        +blockers: Doctrine\ORM\PersistentCollection {#4214 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#4216 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#4218 …}
        +reports: Doctrine\ORM\PersistentCollection {#4220 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4222 …}
        +violations: Doctrine\ORM\PersistentCollection {#4224 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4226 …}
        +awards: Doctrine\ORM\PersistentCollection {#4228 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#4230 …}
        +categories: Doctrine\ORM\PersistentCollection {#4232 …}
        -id: 57379
        -password: "$2y$13$nMhZ8U2idkzqlUYi/cuTdOzNXk/L9rWzl4lEciiE/JwNGCOOP5Tym"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4234 …}
        +apId: "bbbhltz@beehaw.org"
        +apProfileId: "https://beehaw.org/u/bbbhltz"
        +apPublicUrl: "https://beehaw.org/u/bbbhltz"
        +apFollowersUrl: null
        +apInboxUrl: "https://beehaw.org/inbox"
        +apDomain: "beehaw.org"
        +apPreferredUsername: "bbbhltz"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1728900248 {#4164
          date: 2024-10-14 12:04:08.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1697173847 {#4161
          date: 2023-10-13 07:10:47.0 +02:00
        }
      }
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: null
      +root: null
      +body: "As far as I recall, it never was relevant. It was generally viewed as a rant written by a non-professionnel. Perhaps I am wrong? Sorry if I am wrong?? [Don’t start reporting me, please.](https://chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)"
      +lang: "en"
      +isAdult: false
      +favouriteCount: 12
      +score: 0
      +lastActive: DateTime @1701330385 {#4160
        date: 2023-11-30 08:46:25.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4159 …}
      +nested: Doctrine\ORM\PersistentCollection {#4158 …}
      +votes: Doctrine\ORM\PersistentCollection {#4149 …}
      +reports: Doctrine\ORM\PersistentCollection {#4152 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4147 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4145 …}
      -id: 157570
      -bodyTs: "'/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':40 'chef-koch.bearblog.dev':39 'chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':38 'far':2 'general':12 'never':7 'non':21 'non-professionnel':20 'perhap':23 'pleas':37 'professionnel':22 'rant':16 'recal':5 'relev':9 'report':35 'sorri':27 'start':34 'view':13 'written':17 'wrong':26,31"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://beehaw.org/comment/1722426"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700807386 {#4165
        date: 2023-11-24 07:29:46.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4154}
    +body: """
      I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
      \n
      Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 2
    +score: 0
    +lastActive: DateTime @1700809862 {#4414
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@bbbhltz@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4417 …}
    +nested: Doctrine\ORM\PersistentCollection {#4419 …}
    +votes: Doctrine\ORM\PersistentCollection {#4421 …}
    +reports: Doctrine\ORM\PersistentCollection {#4423 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4425 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4427 …}
    -id: 157623
    -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1722547"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700809862 {#4415
      date: 2023-11-24 08:11:02.0 +01:00
    }
  }
  +formDest: "entry_comment"
  +showDownvote: true
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
}
boost App\Twig\Components\BoostComponent 14.0 MiB 2.79 ms
Input props
[
  "subject" => App\Entity\EntryComment {#4416
    +user: App\Entity\User {#4070
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#4130
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
      +entries: Doctrine\ORM\PersistentCollection {#4064 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
      +posts: Doctrine\ORM\PersistentCollection {#4054 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
      +follows: Doctrine\ORM\PersistentCollection {#4186 …}
      +followers: Doctrine\ORM\PersistentCollection {#4182 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
      +reports: Doctrine\ORM\PersistentCollection {#4185 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
      +violations: Doctrine\ORM\PersistentCollection {#4175 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
      +awards: Doctrine\ORM\PersistentCollection {#4176 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
      +categories: Doctrine\ORM\PersistentCollection {#4173 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#4126
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#4124
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4154
      +user: App\Entity\User {#4143
        +avatar: Proxies\__CG__\App\Entity\Image {#4142 …}
        +cover: Proxies\__CG__\App\Entity\Image {#4141 …}
        +email: "bbbhltz@beehaw.org"
        +username: "@bbbhltz@beehaw.org"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: """
          Music lover and English teacher with an interest in slightly geeky things\n
          \n
          [mastodon](https://framapiaf.org/@bbbhltz) / [blog](https://bbbhltz.codeberg.page) / [listenbrainz](https://listenbrainz.org/user/pasdechance/)
          """
        +lastActive: DateTime @1727694629 {#4163
          date: 2024-09-30 13:10:29.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#4140 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4138 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#4136 …}
        +entries: Doctrine\ORM\PersistentCollection {#4134 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#4132 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#4191 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4194 …}
        +posts: Doctrine\ORM\PersistentCollection {#4196 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#4198 …}
        +postComments: Doctrine\ORM\PersistentCollection {#4200 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#4202 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#4204 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#4206 …}
        +follows: Doctrine\ORM\PersistentCollection {#4208 …}
        +followers: Doctrine\ORM\PersistentCollection {#4210 …}
        +blocks: Doctrine\ORM\PersistentCollection {#4212 …}
        +blockers: Doctrine\ORM\PersistentCollection {#4214 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#4216 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#4218 …}
        +reports: Doctrine\ORM\PersistentCollection {#4220 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4222 …}
        +violations: Doctrine\ORM\PersistentCollection {#4224 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4226 …}
        +awards: Doctrine\ORM\PersistentCollection {#4228 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#4230 …}
        +categories: Doctrine\ORM\PersistentCollection {#4232 …}
        -id: 57379
        -password: "$2y$13$nMhZ8U2idkzqlUYi/cuTdOzNXk/L9rWzl4lEciiE/JwNGCOOP5Tym"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4234 …}
        +apId: "bbbhltz@beehaw.org"
        +apProfileId: "https://beehaw.org/u/bbbhltz"
        +apPublicUrl: "https://beehaw.org/u/bbbhltz"
        +apFollowersUrl: null
        +apInboxUrl: "https://beehaw.org/inbox"
        +apDomain: "beehaw.org"
        +apPreferredUsername: "bbbhltz"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1728900248 {#4164
          date: 2024-10-14 12:04:08.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1697173847 {#4161
          date: 2023-10-13 07:10:47.0 +02:00
        }
      }
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: null
      +root: null
      +body: "As far as I recall, it never was relevant. It was generally viewed as a rant written by a non-professionnel. Perhaps I am wrong? Sorry if I am wrong?? [Don’t start reporting me, please.](https://chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)"
      +lang: "en"
      +isAdult: false
      +favouriteCount: 12
      +score: 0
      +lastActive: DateTime @1701330385 {#4160
        date: 2023-11-30 08:46:25.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4159 …}
      +nested: Doctrine\ORM\PersistentCollection {#4158 …}
      +votes: Doctrine\ORM\PersistentCollection {#4149 …}
      +reports: Doctrine\ORM\PersistentCollection {#4152 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4147 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4145 …}
      -id: 157570
      -bodyTs: "'/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':40 'chef-koch.bearblog.dev':39 'chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':38 'far':2 'general':12 'never':7 'non':21 'non-professionnel':20 'perhap':23 'pleas':37 'professionnel':22 'rant':16 'recal':5 'relev':9 'report':35 'sorri':27 'start':34 'view':13 'written':17 'wrong':26,31"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://beehaw.org/comment/1722426"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700807386 {#4165
        date: 2023-11-24 07:29:46.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4154}
    +body: """
      I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
      \n
      Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 2
    +score: 0
    +lastActive: DateTime @1700809862 {#4414
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@bbbhltz@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4417 …}
    +nested: Doctrine\ORM\PersistentCollection {#4419 …}
    +votes: Doctrine\ORM\PersistentCollection {#4421 …}
    +reports: Doctrine\ORM\PersistentCollection {#4423 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4425 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4427 …}
    -id: 157623
    -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1722547"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700809862 {#4415
      date: 2023-11-24 08:11:02.0 +01:00
    }
  }
]
Attributes
[]
Component
App\Twig\Components\BoostComponent {#7896
  +formDest: "entry_comment"
  +subject: App\Entity\EntryComment {#4416
    +user: App\Entity\User {#4070
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#4130
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
      +entries: Doctrine\ORM\PersistentCollection {#4064 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
      +posts: Doctrine\ORM\PersistentCollection {#4054 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
      +follows: Doctrine\ORM\PersistentCollection {#4186 …}
      +followers: Doctrine\ORM\PersistentCollection {#4182 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
      +reports: Doctrine\ORM\PersistentCollection {#4185 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
      +violations: Doctrine\ORM\PersistentCollection {#4175 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
      +awards: Doctrine\ORM\PersistentCollection {#4176 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
      +categories: Doctrine\ORM\PersistentCollection {#4173 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#4126
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#4124
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4154
      +user: App\Entity\User {#4143
        +avatar: Proxies\__CG__\App\Entity\Image {#4142 …}
        +cover: Proxies\__CG__\App\Entity\Image {#4141 …}
        +email: "bbbhltz@beehaw.org"
        +username: "@bbbhltz@beehaw.org"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: """
          Music lover and English teacher with an interest in slightly geeky things\n
          \n
          [mastodon](https://framapiaf.org/@bbbhltz) / [blog](https://bbbhltz.codeberg.page) / [listenbrainz](https://listenbrainz.org/user/pasdechance/)
          """
        +lastActive: DateTime @1727694629 {#4163
          date: 2024-09-30 13:10:29.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#4140 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4138 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#4136 …}
        +entries: Doctrine\ORM\PersistentCollection {#4134 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#4132 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#4191 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4194 …}
        +posts: Doctrine\ORM\PersistentCollection {#4196 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#4198 …}
        +postComments: Doctrine\ORM\PersistentCollection {#4200 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#4202 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#4204 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#4206 …}
        +follows: Doctrine\ORM\PersistentCollection {#4208 …}
        +followers: Doctrine\ORM\PersistentCollection {#4210 …}
        +blocks: Doctrine\ORM\PersistentCollection {#4212 …}
        +blockers: Doctrine\ORM\PersistentCollection {#4214 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#4216 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#4218 …}
        +reports: Doctrine\ORM\PersistentCollection {#4220 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4222 …}
        +violations: Doctrine\ORM\PersistentCollection {#4224 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4226 …}
        +awards: Doctrine\ORM\PersistentCollection {#4228 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#4230 …}
        +categories: Doctrine\ORM\PersistentCollection {#4232 …}
        -id: 57379
        -password: "$2y$13$nMhZ8U2idkzqlUYi/cuTdOzNXk/L9rWzl4lEciiE/JwNGCOOP5Tym"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4234 …}
        +apId: "bbbhltz@beehaw.org"
        +apProfileId: "https://beehaw.org/u/bbbhltz"
        +apPublicUrl: "https://beehaw.org/u/bbbhltz"
        +apFollowersUrl: null
        +apInboxUrl: "https://beehaw.org/inbox"
        +apDomain: "beehaw.org"
        +apPreferredUsername: "bbbhltz"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1728900248 {#4164
          date: 2024-10-14 12:04:08.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1697173847 {#4161
          date: 2023-10-13 07:10:47.0 +02:00
        }
      }
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: null
      +root: null
      +body: "As far as I recall, it never was relevant. It was generally viewed as a rant written by a non-professionnel. Perhaps I am wrong? Sorry if I am wrong?? [Don’t start reporting me, please.](https://chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)"
      +lang: "en"
      +isAdult: false
      +favouriteCount: 12
      +score: 0
      +lastActive: DateTime @1701330385 {#4160
        date: 2023-11-30 08:46:25.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4159 …}
      +nested: Doctrine\ORM\PersistentCollection {#4158 …}
      +votes: Doctrine\ORM\PersistentCollection {#4149 …}
      +reports: Doctrine\ORM\PersistentCollection {#4152 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4147 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4145 …}
      -id: 157570
      -bodyTs: "'/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':40 'chef-koch.bearblog.dev':39 'chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':38 'far':2 'general':12 'never':7 'non':21 'non-professionnel':20 'perhap':23 'pleas':37 'professionnel':22 'rant':16 'recal':5 'relev':9 'report':35 'sorri':27 'start':34 'view':13 'written':17 'wrong':26,31"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://beehaw.org/comment/1722426"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700807386 {#4165
        date: 2023-11-24 07:29:46.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4154}
    +body: """
      I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
      \n
      Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 2
    +score: 0
    +lastActive: DateTime @1700809862 {#4414
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@bbbhltz@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4417 …}
    +nested: Doctrine\ORM\PersistentCollection {#4419 …}
    +votes: Doctrine\ORM\PersistentCollection {#4421 …}
    +reports: Doctrine\ORM\PersistentCollection {#4423 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4425 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4427 …}
    -id: 157623
    -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1722547"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700809862 {#4415
      date: 2023-11-24 08:11:02.0 +01:00
    }
  }
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
}
entry_comments_nested App\Twig\Components\EntryCommentsNestedComponent 14.0 MiB 0.52 ms
Input props
[
  "comment" => App\Entity\EntryComment {#4416
    +user: App\Entity\User {#4070
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#4130
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
      +entries: Doctrine\ORM\PersistentCollection {#4064 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
      +posts: Doctrine\ORM\PersistentCollection {#4054 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
      +follows: Doctrine\ORM\PersistentCollection {#4186 …}
      +followers: Doctrine\ORM\PersistentCollection {#4182 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
      +reports: Doctrine\ORM\PersistentCollection {#4185 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
      +violations: Doctrine\ORM\PersistentCollection {#4175 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
      +awards: Doctrine\ORM\PersistentCollection {#4176 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
      +categories: Doctrine\ORM\PersistentCollection {#4173 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#4126
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#4124
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4154
      +user: App\Entity\User {#4143
        +avatar: Proxies\__CG__\App\Entity\Image {#4142 …}
        +cover: Proxies\__CG__\App\Entity\Image {#4141 …}
        +email: "bbbhltz@beehaw.org"
        +username: "@bbbhltz@beehaw.org"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: """
          Music lover and English teacher with an interest in slightly geeky things\n
          \n
          [mastodon](https://framapiaf.org/@bbbhltz) / [blog](https://bbbhltz.codeberg.page) / [listenbrainz](https://listenbrainz.org/user/pasdechance/)
          """
        +lastActive: DateTime @1727694629 {#4163
          date: 2024-09-30 13:10:29.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#4140 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4138 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#4136 …}
        +entries: Doctrine\ORM\PersistentCollection {#4134 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#4132 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#4191 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4194 …}
        +posts: Doctrine\ORM\PersistentCollection {#4196 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#4198 …}
        +postComments: Doctrine\ORM\PersistentCollection {#4200 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#4202 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#4204 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#4206 …}
        +follows: Doctrine\ORM\PersistentCollection {#4208 …}
        +followers: Doctrine\ORM\PersistentCollection {#4210 …}
        +blocks: Doctrine\ORM\PersistentCollection {#4212 …}
        +blockers: Doctrine\ORM\PersistentCollection {#4214 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#4216 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#4218 …}
        +reports: Doctrine\ORM\PersistentCollection {#4220 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4222 …}
        +violations: Doctrine\ORM\PersistentCollection {#4224 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4226 …}
        +awards: Doctrine\ORM\PersistentCollection {#4228 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#4230 …}
        +categories: Doctrine\ORM\PersistentCollection {#4232 …}
        -id: 57379
        -password: "$2y$13$nMhZ8U2idkzqlUYi/cuTdOzNXk/L9rWzl4lEciiE/JwNGCOOP5Tym"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4234 …}
        +apId: "bbbhltz@beehaw.org"
        +apProfileId: "https://beehaw.org/u/bbbhltz"
        +apPublicUrl: "https://beehaw.org/u/bbbhltz"
        +apFollowersUrl: null
        +apInboxUrl: "https://beehaw.org/inbox"
        +apDomain: "beehaw.org"
        +apPreferredUsername: "bbbhltz"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1728900248 {#4164
          date: 2024-10-14 12:04:08.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1697173847 {#4161
          date: 2023-10-13 07:10:47.0 +02:00
        }
      }
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: null
      +root: null
      +body: "As far as I recall, it never was relevant. It was generally viewed as a rant written by a non-professionnel. Perhaps I am wrong? Sorry if I am wrong?? [Don’t start reporting me, please.](https://chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)"
      +lang: "en"
      +isAdult: false
      +favouriteCount: 12
      +score: 0
      +lastActive: DateTime @1701330385 {#4160
        date: 2023-11-30 08:46:25.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4159 …}
      +nested: Doctrine\ORM\PersistentCollection {#4158 …}
      +votes: Doctrine\ORM\PersistentCollection {#4149 …}
      +reports: Doctrine\ORM\PersistentCollection {#4152 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4147 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4145 …}
      -id: 157570
      -bodyTs: "'/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':40 'chef-koch.bearblog.dev':39 'chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':38 'far':2 'general':12 'never':7 'non':21 'non-professionnel':20 'perhap':23 'pleas':37 'professionnel':22 'rant':16 'recal':5 'relev':9 'report':35 'sorri':27 'start':34 'view':13 'written':17 'wrong':26,31"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://beehaw.org/comment/1722426"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700807386 {#4165
        date: 2023-11-24 07:29:46.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4154}
    +body: """
      I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
      \n
      Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 2
    +score: 0
    +lastActive: DateTime @1700809862 {#4414
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@bbbhltz@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4417 …}
    +nested: Doctrine\ORM\PersistentCollection {#4419 …}
    +votes: Doctrine\ORM\PersistentCollection {#4421 …}
    +reports: Doctrine\ORM\PersistentCollection {#4423 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4425 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4427 …}
    -id: 157623
    -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1722547"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700809862 {#4415
      date: 2023-11-24 08:11:02.0 +01:00
    }
  }
  "level" => 2
  "showNested" => true
  "view" => "tree"
]
Attributes
[
  "showNested" => true
]
Component
App\Twig\Components\EntryCommentsNestedComponent {#8136
  +comment: App\Entity\EntryComment {#4416
    +user: App\Entity\User {#4070
      +avatar: null
      +cover: null
      +email: "ReversalHatchery@beehaw.org"
      +username: "@ReversalHatchery@beehaw.org"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: """
        Computers and the internet gave you freedom. Trusted Computing would take your freedom.  \n
        Learn why: [vimeo.com/5168045](https://vimeo.com/5168045)
        """
      +lastActive: DateTime @1729157044 {#4130
        date: 2024-10-17 11:24:04.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4071 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4074 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4066 …}
      +entries: Doctrine\ORM\PersistentCollection {#4064 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4062 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4059 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4057 …}
      +posts: Doctrine\ORM\PersistentCollection {#4054 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4052 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4050 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4047 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4045 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4043 …}
      +follows: Doctrine\ORM\PersistentCollection {#4186 …}
      +followers: Doctrine\ORM\PersistentCollection {#4182 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4171 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4162 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4151 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4188 …}
      +reports: Doctrine\ORM\PersistentCollection {#4185 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4148 …}
      +violations: Doctrine\ORM\PersistentCollection {#4175 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4178 …}
      +awards: Doctrine\ORM\PersistentCollection {#4176 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4174 …}
      +categories: Doctrine\ORM\PersistentCollection {#4173 …}
      -id: 53309
      -password: "$2y$13$yaMDirBnxPglTi1FZcWHeeIsQV58zcvh5YhOYRzceTdPE6xctuKvu"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4166 …}
      +apId: "ReversalHatchery@beehaw.org"
      +apProfileId: "https://beehaw.org/u/ReversalHatchery"
      +apPublicUrl: "https://beehaw.org/u/ReversalHatchery"
      +apFollowersUrl: null
      +apInboxUrl: "https://beehaw.org/inbox"
      +apDomain: "beehaw.org"
      +apPreferredUsername: "ReversalHatchery"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1729027069 {#4126
        date: 2024-10-15 23:17:49.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696732297 {#4124
        date: 2023-10-08 04:31:37.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: App\Entity\EntryComment {#4154
      +user: App\Entity\User {#4143
        +avatar: Proxies\__CG__\App\Entity\Image {#4142 …}
        +cover: Proxies\__CG__\App\Entity\Image {#4141 …}
        +email: "bbbhltz@beehaw.org"
        +username: "@bbbhltz@beehaw.org"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: """
          Music lover and English teacher with an interest in slightly geeky things\n
          \n
          [mastodon](https://framapiaf.org/@bbbhltz) / [blog](https://bbbhltz.codeberg.page) / [listenbrainz](https://listenbrainz.org/user/pasdechance/)
          """
        +lastActive: DateTime @1727694629 {#4163
          date: 2024-09-30 13:10:29.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#4140 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4138 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#4136 …}
        +entries: Doctrine\ORM\PersistentCollection {#4134 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#4132 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#4191 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4194 …}
        +posts: Doctrine\ORM\PersistentCollection {#4196 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#4198 …}
        +postComments: Doctrine\ORM\PersistentCollection {#4200 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#4202 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#4204 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#4206 …}
        +follows: Doctrine\ORM\PersistentCollection {#4208 …}
        +followers: Doctrine\ORM\PersistentCollection {#4210 …}
        +blocks: Doctrine\ORM\PersistentCollection {#4212 …}
        +blockers: Doctrine\ORM\PersistentCollection {#4214 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#4216 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#4218 …}
        +reports: Doctrine\ORM\PersistentCollection {#4220 …}
        +favourites: Doctrine\ORM\PersistentCollection {#4222 …}
        +violations: Doctrine\ORM\PersistentCollection {#4224 …}
        +notifications: Doctrine\ORM\PersistentCollection {#4226 …}
        +awards: Doctrine\ORM\PersistentCollection {#4228 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#4230 …}
        +categories: Doctrine\ORM\PersistentCollection {#4232 …}
        -id: 57379
        -password: "$2y$13$nMhZ8U2idkzqlUYi/cuTdOzNXk/L9rWzl4lEciiE/JwNGCOOP5Tym"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4234 …}
        +apId: "bbbhltz@beehaw.org"
        +apProfileId: "https://beehaw.org/u/bbbhltz"
        +apPublicUrl: "https://beehaw.org/u/bbbhltz"
        +apFollowersUrl: null
        +apInboxUrl: "https://beehaw.org/inbox"
        +apDomain: "beehaw.org"
        +apPreferredUsername: "bbbhltz"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1728900248 {#4164
          date: 2024-10-14 12:04:08.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1697173847 {#4161
          date: 2023-10-13 07:10:47.0 +02:00
        }
      }
      +entry: App\Entity\Entry {#2412}
      +magazine: App\Entity\Magazine {#264}
      +image: null
      +parent: null
      +root: null
      +body: "As far as I recall, it never was relevant. It was generally viewed as a rant written by a non-professionnel. Perhaps I am wrong? Sorry if I am wrong?? [Don’t start reporting me, please.](https://chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)"
      +lang: "en"
      +isAdult: false
      +favouriteCount: 12
      +score: 0
      +lastActive: DateTime @1701330385 {#4160
        date: 2023-11-30 08:46:25.0 +01:00
      }
      +ip: null
      +tags: null
      +mentions: [
        "@Pantherina@feddit.de"
      ]
      +children: Doctrine\ORM\PersistentCollection {#4159 …}
      +nested: Doctrine\ORM\PersistentCollection {#4158 …}
      +votes: Doctrine\ORM\PersistentCollection {#4149 …}
      +reports: Doctrine\ORM\PersistentCollection {#4152 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4147 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4145 …}
      -id: 157570
      -bodyTs: "'/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':40 'chef-koch.bearblog.dev':39 'chef-koch.bearblog.dev/attack-on-my-gitlab-account-after-an-engagement-with-madaidan-group/)':38 'far':2 'general':12 'never':7 'non':21 'non-professionnel':20 'perhap':23 'pleas':37 'professionnel':22 'rant':16 'recal':5 'relev':9 'report':35 'sorri':27 'start':34 'view':13 'written':17 'wrong':26,31"
      +ranking: 0
      +commentCount: 0
      +upVotes: 0
      +downVotes: 0
      +visibility: "visible             "
      +apId: "https://beehaw.org/comment/1722426"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700807386 {#4165
        date: 2023-11-24 07:29:46.0 +01:00
      }
    }
    +root: App\Entity\EntryComment {#4154}
    +body: """
      I remember reading there, when it wasn’t on github pages but it’s own website, the recommendation to keep your critical dotfiles permissioned to a different user account of yours. I don’t think that’s bad advice. Yes it is probably not needed if you use the system as a pro sysadmin for server purposes, but for desktop use it’s just natural that you’ll run a lot more programs in a much less controlled manner.\n
      \n
      Of course there were ones that I thought they went overboard, but it has at least a few good pieces, if not more, I don’t really remember.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 2
    +score: 0
    +lastActive: DateTime @1700809862 {#4414
      date: 2023-11-24 08:11:02.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
      "@bbbhltz@beehaw.org"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4417 …}
    +nested: Doctrine\ORM\PersistentCollection {#4419 …}
    +votes: Doctrine\ORM\PersistentCollection {#4421 …}
    +reports: Doctrine\ORM\PersistentCollection {#4423 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4425 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4427 …}
    -id: 157623
    -bodyTs: "'account':29 'advic':39 'bad':38 'control':78 'cours':81 'critic':22 'desktop':60 'differ':27 'dotfil':23 'github':10 'good':98 'keep':20 'least':95 'less':77 'll':68 'lot':71 'manner':79 'much':76 'natur':65 'need':45 'one':84 'overboard':90 'page':11 'permiss':24 'piec':99 'pro':53 'probabl':43 'program':73 'purpos':57 'read':3 'realli':106 'recommend':18 'rememb':2,107 'run':69 'server':56 'sysadmin':54 'system':50 'think':35 'thought':87 'use':48,61 'user':28 'wasn':7 'websit':16 'went':89 'yes':40"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://beehaw.org/comment/1722547"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700809862 {#4415
      date: 2023-11-24 08:11:02.0 +01:00
    }
  }
  +nestedComments: []
  +level: 2
  +view: "tree"
  -entryCommentRepository: App\Repository\EntryCommentRepository {#555 …}
  -twig: Twig\Environment {#1252 …}
  -security: Symfony\Bundle\SecurityBundle\Security {#1101 …}
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
}
entry_comment App\Twig\Components\EntryCommentComponent 14.0 MiB 25.72 ms
Input props
[
  "comment" => App\Entity\EntryComment {#4241
    +user: App\Entity\User {#4254
      +avatar: Proxies\__CG__\App\Entity\Image {#4255 …}
      +cover: Proxies\__CG__\App\Entity\Image {#4256 …}
      +email: "GustavoM@lemmy.world"
      +username: "@GustavoM@lemmy.world"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: "Definitely Not GustavoM. :^)"
      +lastActive: DateTime @1719679748 {#4238
        date: 2024-06-29 18:49:08.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4257 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4259 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4261 …}
      +entries: Doctrine\ORM\PersistentCollection {#4263 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4265 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4267 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4269 …}
      +posts: Doctrine\ORM\PersistentCollection {#4271 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4273 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4275 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4277 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4279 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4281 …}
      +follows: Doctrine\ORM\PersistentCollection {#4283 …}
      +followers: Doctrine\ORM\PersistentCollection {#4285 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4287 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4289 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4291 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4293 …}
      +reports: Doctrine\ORM\PersistentCollection {#4295 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4297 …}
      +violations: Doctrine\ORM\PersistentCollection {#4299 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4301 …}
      +awards: Doctrine\ORM\PersistentCollection {#4303 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4305 …}
      +categories: Doctrine\ORM\PersistentCollection {#4307 …}
      -id: 55594
      -password: "$2y$13$3rtBI4j23F.4f2HFNduFZ.ylG7FHwAbghmxkem/xJ.FpSGPS6xPYO"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4309 …}
      +apId: "GustavoM@lemmy.world"
      +apProfileId: "https://lemmy.world/u/GustavoM"
      +apPublicUrl: "https://lemmy.world/u/GustavoM"
      +apFollowersUrl: null
      +apInboxUrl: "https://lemmy.world/inbox"
      +apDomain: "lemmy.world"
      +apPreferredUsername: "GustavoM"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1727835761 {#4239
        date: 2024-10-02 04:22:41.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696981499 {#4240
        date: 2023-10-11 01:44:59.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: """
      Not really relevant, but I’ve got a “rule of thumb” for all security-related issues;\n
      \n
      “If it doesn’t nuke my PC, then I’m good. If it does, then I’m still good since backups and logs exist, and if it was related to the latest seucirty issue? Then I make a quick patch and/or update. Then back to 1.”
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 2
    +score: 0
    +lastActive: DateTime @1700867849 {#4236
      date: 2023-11-25 00:17:29.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4242 …}
    +nested: Doctrine\ORM\PersistentCollection {#4244 …}
    +votes: Doctrine\ORM\PersistentCollection {#4246 …}
    +reports: Doctrine\ORM\PersistentCollection {#4248 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4250 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4252 …}
    -id: 160365
    -bodyTs: "'1':63 'and/or':58 'back':61 'backup':38 'doesn':20 'exist':41 'good':28,36 'got':7 'issu':17,51 'latest':49 'log':40 'm':27,34 'make':54 'nuke':22 'patch':57 'pc':24 'quick':56 'realli':2 'relat':16,46 'relev':3 'rule':9 'secur':15 'security-rel':14 'seucirti':50 'sinc':37 'still':35 'thumb':11 'updat':59 've':6"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://lemmy.world/comment/5562525"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700867849 {#4237
      date: 2023-11-25 00:17:29.0 +01:00
    }
  }
  "showNested" => true
  "dateAsUrl" => false
  "showMagazineName" => false
  "showEntryTitle" => false
]
Attributes
[]
Component
App\Twig\Components\EntryCommentComponent {#8212
  +comment: App\Entity\EntryComment {#4241
    +user: App\Entity\User {#4254
      +avatar: Proxies\__CG__\App\Entity\Image {#4255 …}
      +cover: Proxies\__CG__\App\Entity\Image {#4256 …}
      +email: "GustavoM@lemmy.world"
      +username: "@GustavoM@lemmy.world"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: "Definitely Not GustavoM. :^)"
      +lastActive: DateTime @1719679748 {#4238
        date: 2024-06-29 18:49:08.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4257 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4259 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4261 …}
      +entries: Doctrine\ORM\PersistentCollection {#4263 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4265 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4267 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4269 …}
      +posts: Doctrine\ORM\PersistentCollection {#4271 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4273 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4275 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4277 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4279 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4281 …}
      +follows: Doctrine\ORM\PersistentCollection {#4283 …}
      +followers: Doctrine\ORM\PersistentCollection {#4285 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4287 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4289 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4291 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4293 …}
      +reports: Doctrine\ORM\PersistentCollection {#4295 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4297 …}
      +violations: Doctrine\ORM\PersistentCollection {#4299 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4301 …}
      +awards: Doctrine\ORM\PersistentCollection {#4303 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4305 …}
      +categories: Doctrine\ORM\PersistentCollection {#4307 …}
      -id: 55594
      -password: "$2y$13$3rtBI4j23F.4f2HFNduFZ.ylG7FHwAbghmxkem/xJ.FpSGPS6xPYO"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4309 …}
      +apId: "GustavoM@lemmy.world"
      +apProfileId: "https://lemmy.world/u/GustavoM"
      +apPublicUrl: "https://lemmy.world/u/GustavoM"
      +apFollowersUrl: null
      +apInboxUrl: "https://lemmy.world/inbox"
      +apDomain: "lemmy.world"
      +apPreferredUsername: "GustavoM"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1727835761 {#4239
        date: 2024-10-02 04:22:41.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696981499 {#4240
        date: 2023-10-11 01:44:59.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: """
      Not really relevant, but I’ve got a “rule of thumb” for all security-related issues;\n
      \n
      “If it doesn’t nuke my PC, then I’m good. If it does, then I’m still good since backups and logs exist, and if it was related to the latest seucirty issue? Then I make a quick patch and/or update. Then back to 1.”
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 2
    +score: 0
    +lastActive: DateTime @1700867849 {#4236
      date: 2023-11-25 00:17:29.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4242 …}
    +nested: Doctrine\ORM\PersistentCollection {#4244 …}
    +votes: Doctrine\ORM\PersistentCollection {#4246 …}
    +reports: Doctrine\ORM\PersistentCollection {#4248 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4250 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4252 …}
    -id: 160365
    -bodyTs: "'1':63 'and/or':58 'back':61 'backup':38 'doesn':20 'exist':41 'good':28,36 'got':7 'issu':17,51 'latest':49 'log':40 'm':27,34 'make':54 'nuke':22 'patch':57 'pc':24 'quick':56 'realli':2 'relat':16,46 'relev':3 'rule':9 'secur':15 'security-rel':14 'seucirti':50 'sinc':37 'still':35 'thumb':11 'updat':59 've':6"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://lemmy.world/comment/5562525"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700867849 {#4237
      date: 2023-11-25 00:17:29.0 +01:00
    }
  }
  +showMagazineName: false
  +showEntryTitle: false
  +showNested: true
  +level: 1
  +canSeeTrash: false
  +dateAsUrl: false
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
  -authorizationChecker: Symfony\Component\Security\Core\Authorization\AuthorizationChecker {#931 …}
}
user_inline App\Twig\Components\UserInlineComponent 14.0 MiB 0.15 ms
Input props
[
  "user" => App\Entity\User {#4254
    +avatar: Proxies\__CG__\App\Entity\Image {#4255 …}
    +cover: Proxies\__CG__\App\Entity\Image {#4256 …}
    +email: "GustavoM@lemmy.world"
    +username: "@GustavoM@lemmy.world"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: "Definitely Not GustavoM. :^)"
    +lastActive: DateTime @1719679748 {#4238
      date: 2024-06-29 18:49:08.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#4257 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4259 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#4261 …}
    +entries: Doctrine\ORM\PersistentCollection {#4263 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#4265 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#4267 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4269 …}
    +posts: Doctrine\ORM\PersistentCollection {#4271 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#4273 …}
    +postComments: Doctrine\ORM\PersistentCollection {#4275 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#4277 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#4279 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#4281 …}
    +follows: Doctrine\ORM\PersistentCollection {#4283 …}
    +followers: Doctrine\ORM\PersistentCollection {#4285 …}
    +blocks: Doctrine\ORM\PersistentCollection {#4287 …}
    +blockers: Doctrine\ORM\PersistentCollection {#4289 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#4291 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#4293 …}
    +reports: Doctrine\ORM\PersistentCollection {#4295 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4297 …}
    +violations: Doctrine\ORM\PersistentCollection {#4299 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4301 …}
    +awards: Doctrine\ORM\PersistentCollection {#4303 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#4305 …}
    +categories: Doctrine\ORM\PersistentCollection {#4307 …}
    -id: 55594
    -password: "$2y$13$3rtBI4j23F.4f2HFNduFZ.ylG7FHwAbghmxkem/xJ.FpSGPS6xPYO"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4309 …}
    +apId: "GustavoM@lemmy.world"
    +apProfileId: "https://lemmy.world/u/GustavoM"
    +apPublicUrl: "https://lemmy.world/u/GustavoM"
    +apFollowersUrl: null
    +apInboxUrl: "https://lemmy.world/inbox"
    +apDomain: "lemmy.world"
    +apPreferredUsername: "GustavoM"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1727835761 {#4239
      date: 2024-10-02 04:22:41.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696981499 {#4240
      date: 2023-10-11 01:44:59.0 +02:00
    }
  }
  "showAvatar" => false
]
Attributes
[]
Component
App\Twig\Components\UserInlineComponent {#8257
  +user: App\Entity\User {#4254
    +avatar: Proxies\__CG__\App\Entity\Image {#4255 …}
    +cover: Proxies\__CG__\App\Entity\Image {#4256 …}
    +email: "GustavoM@lemmy.world"
    +username: "@GustavoM@lemmy.world"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: "Definitely Not GustavoM. :^)"
    +lastActive: DateTime @1719679748 {#4238
      date: 2024-06-29 18:49:08.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#4257 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4259 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#4261 …}
    +entries: Doctrine\ORM\PersistentCollection {#4263 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#4265 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#4267 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4269 …}
    +posts: Doctrine\ORM\PersistentCollection {#4271 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#4273 …}
    +postComments: Doctrine\ORM\PersistentCollection {#4275 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#4277 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#4279 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#4281 …}
    +follows: Doctrine\ORM\PersistentCollection {#4283 …}
    +followers: Doctrine\ORM\PersistentCollection {#4285 …}
    +blocks: Doctrine\ORM\PersistentCollection {#4287 …}
    +blockers: Doctrine\ORM\PersistentCollection {#4289 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#4291 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#4293 …}
    +reports: Doctrine\ORM\PersistentCollection {#4295 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4297 …}
    +violations: Doctrine\ORM\PersistentCollection {#4299 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4301 …}
    +awards: Doctrine\ORM\PersistentCollection {#4303 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#4305 …}
    +categories: Doctrine\ORM\PersistentCollection {#4307 …}
    -id: 55594
    -password: "$2y$13$3rtBI4j23F.4f2HFNduFZ.ylG7FHwAbghmxkem/xJ.FpSGPS6xPYO"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4309 …}
    +apId: "GustavoM@lemmy.world"
    +apProfileId: "https://lemmy.world/u/GustavoM"
    +apPublicUrl: "https://lemmy.world/u/GustavoM"
    +apFollowersUrl: null
    +apInboxUrl: "https://lemmy.world/inbox"
    +apDomain: "lemmy.world"
    +apPreferredUsername: "GustavoM"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1727835761 {#4239
      date: 2024-10-02 04:22:41.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696981499 {#4240
      date: 2023-10-11 01:44:59.0 +02:00
    }
  }
  +showAvatar: false
}
date App\Twig\Components\DateComponent 14.0 MiB 0.17 ms
Input props
[
  "date" => DateTimeImmutable @1700867849 {#4237
    date: 2023-11-25 00:17:29.0 +01:00
  }
]
Attributes
[]
Component
App\Twig\Components\DateComponent {#8312
  +date: DateTimeImmutable @1700867849 {#4237
    date: 2023-11-25 00:17:29.0 +01:00
  }
}
date_edited App\Twig\Components\DateEditedComponent 14.0 MiB 0.10 ms
Input props
[
  "createdAt" => DateTimeImmutable @1700867849 {#4237
    date: 2023-11-25 00:17:29.0 +01:00
  }
  "editedAt" => null
]
Attributes
[]
Component
App\Twig\Components\DateEditedComponent {#8366
  +createdAt: DateTimeImmutable @1700867849 {#4237
    date: 2023-11-25 00:17:29.0 +01:00
  }
  +editedAt: null
}
user_avatar App\Twig\Components\UserAvatarComponent 14.0 MiB 0.45 ms
Input props
[
  "user" => App\Entity\User {#4254
    +avatar: Proxies\__CG__\App\Entity\Image {#4255 …}
    +cover: Proxies\__CG__\App\Entity\Image {#4256 …}
    +email: "GustavoM@lemmy.world"
    +username: "@GustavoM@lemmy.world"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: "Definitely Not GustavoM. :^)"
    +lastActive: DateTime @1719679748 {#4238
      date: 2024-06-29 18:49:08.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#4257 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4259 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#4261 …}
    +entries: Doctrine\ORM\PersistentCollection {#4263 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#4265 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#4267 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4269 …}
    +posts: Doctrine\ORM\PersistentCollection {#4271 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#4273 …}
    +postComments: Doctrine\ORM\PersistentCollection {#4275 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#4277 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#4279 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#4281 …}
    +follows: Doctrine\ORM\PersistentCollection {#4283 …}
    +followers: Doctrine\ORM\PersistentCollection {#4285 …}
    +blocks: Doctrine\ORM\PersistentCollection {#4287 …}
    +blockers: Doctrine\ORM\PersistentCollection {#4289 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#4291 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#4293 …}
    +reports: Doctrine\ORM\PersistentCollection {#4295 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4297 …}
    +violations: Doctrine\ORM\PersistentCollection {#4299 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4301 …}
    +awards: Doctrine\ORM\PersistentCollection {#4303 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#4305 …}
    +categories: Doctrine\ORM\PersistentCollection {#4307 …}
    -id: 55594
    -password: "$2y$13$3rtBI4j23F.4f2HFNduFZ.ylG7FHwAbghmxkem/xJ.FpSGPS6xPYO"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4309 …}
    +apId: "GustavoM@lemmy.world"
    +apProfileId: "https://lemmy.world/u/GustavoM"
    +apPublicUrl: "https://lemmy.world/u/GustavoM"
    +apFollowersUrl: null
    +apInboxUrl: "https://lemmy.world/inbox"
    +apDomain: "lemmy.world"
    +apPreferredUsername: "GustavoM"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1727835761 {#4239
      date: 2024-10-02 04:22:41.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696981499 {#4240
      date: 2023-10-11 01:44:59.0 +02:00
    }
  }
  "width" => 40
  "height" => 40
  "asLink" => true
]
Attributes
[]
Component
App\Twig\Components\UserAvatarComponent {#8420
  +width: 40
  +height: 40
  +user: App\Entity\User {#4254
    +avatar: Proxies\__CG__\App\Entity\Image {#4255 …}
    +cover: Proxies\__CG__\App\Entity\Image {#4256 …}
    +email: "GustavoM@lemmy.world"
    +username: "@GustavoM@lemmy.world"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: "Definitely Not GustavoM. :^)"
    +lastActive: DateTime @1719679748 {#4238
      date: 2024-06-29 18:49:08.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#4257 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4259 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#4261 …}
    +entries: Doctrine\ORM\PersistentCollection {#4263 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#4265 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#4267 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4269 …}
    +posts: Doctrine\ORM\PersistentCollection {#4271 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#4273 …}
    +postComments: Doctrine\ORM\PersistentCollection {#4275 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#4277 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#4279 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#4281 …}
    +follows: Doctrine\ORM\PersistentCollection {#4283 …}
    +followers: Doctrine\ORM\PersistentCollection {#4285 …}
    +blocks: Doctrine\ORM\PersistentCollection {#4287 …}
    +blockers: Doctrine\ORM\PersistentCollection {#4289 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#4291 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#4293 …}
    +reports: Doctrine\ORM\PersistentCollection {#4295 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4297 …}
    +violations: Doctrine\ORM\PersistentCollection {#4299 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4301 …}
    +awards: Doctrine\ORM\PersistentCollection {#4303 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#4305 …}
    +categories: Doctrine\ORM\PersistentCollection {#4307 …}
    -id: 55594
    -password: "$2y$13$3rtBI4j23F.4f2HFNduFZ.ylG7FHwAbghmxkem/xJ.FpSGPS6xPYO"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4309 …}
    +apId: "GustavoM@lemmy.world"
    +apProfileId: "https://lemmy.world/u/GustavoM"
    +apPublicUrl: "https://lemmy.world/u/GustavoM"
    +apFollowersUrl: null
    +apInboxUrl: "https://lemmy.world/inbox"
    +apDomain: "lemmy.world"
    +apPreferredUsername: "GustavoM"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1727835761 {#4239
      date: 2024-10-02 04:22:41.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696981499 {#4240
      date: 2023-10-11 01:44:59.0 +02:00
    }
  }
  +asLink: true
}
vote App\Twig\Components\VoteComponent 14.0 MiB 0.37 ms
Input props
[
  "subject" => App\Entity\EntryComment {#4241
    +user: App\Entity\User {#4254
      +avatar: Proxies\__CG__\App\Entity\Image {#4255 …}
      +cover: Proxies\__CG__\App\Entity\Image {#4256 …}
      +email: "GustavoM@lemmy.world"
      +username: "@GustavoM@lemmy.world"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: "Definitely Not GustavoM. :^)"
      +lastActive: DateTime @1719679748 {#4238
        date: 2024-06-29 18:49:08.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4257 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4259 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4261 …}
      +entries: Doctrine\ORM\PersistentCollection {#4263 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4265 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4267 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4269 …}
      +posts: Doctrine\ORM\PersistentCollection {#4271 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4273 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4275 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4277 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4279 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4281 …}
      +follows: Doctrine\ORM\PersistentCollection {#4283 …}
      +followers: Doctrine\ORM\PersistentCollection {#4285 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4287 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4289 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4291 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4293 …}
      +reports: Doctrine\ORM\PersistentCollection {#4295 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4297 …}
      +violations: Doctrine\ORM\PersistentCollection {#4299 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4301 …}
      +awards: Doctrine\ORM\PersistentCollection {#4303 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4305 …}
      +categories: Doctrine\ORM\PersistentCollection {#4307 …}
      -id: 55594
      -password: "$2y$13$3rtBI4j23F.4f2HFNduFZ.ylG7FHwAbghmxkem/xJ.FpSGPS6xPYO"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4309 …}
      +apId: "GustavoM@lemmy.world"
      +apProfileId: "https://lemmy.world/u/GustavoM"
      +apPublicUrl: "https://lemmy.world/u/GustavoM"
      +apFollowersUrl: null
      +apInboxUrl: "https://lemmy.world/inbox"
      +apDomain: "lemmy.world"
      +apPreferredUsername: "GustavoM"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1727835761 {#4239
        date: 2024-10-02 04:22:41.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696981499 {#4240
        date: 2023-10-11 01:44:59.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: """
      Not really relevant, but I’ve got a “rule of thumb” for all security-related issues;\n
      \n
      “If it doesn’t nuke my PC, then I’m good. If it does, then I’m still good since backups and logs exist, and if it was related to the latest seucirty issue? Then I make a quick patch and/or update. Then back to 1.”
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 2
    +score: 0
    +lastActive: DateTime @1700867849 {#4236
      date: 2023-11-25 00:17:29.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4242 …}
    +nested: Doctrine\ORM\PersistentCollection {#4244 …}
    +votes: Doctrine\ORM\PersistentCollection {#4246 …}
    +reports: Doctrine\ORM\PersistentCollection {#4248 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4250 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4252 …}
    -id: 160365
    -bodyTs: "'1':63 'and/or':58 'back':61 'backup':38 'doesn':20 'exist':41 'good':28,36 'got':7 'issu':17,51 'latest':49 'log':40 'm':27,34 'make':54 'nuke':22 'patch':57 'pc':24 'quick':56 'realli':2 'relat':16,46 'relev':3 'rule':9 'secur':15 'security-rel':14 'seucirti':50 'sinc':37 'still':35 'thumb':11 'updat':59 've':6"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://lemmy.world/comment/5562525"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700867849 {#4237
      date: 2023-11-25 00:17:29.0 +01:00
    }
  }
]
Attributes
[]
Component
App\Twig\Components\VoteComponent {#8495
  +subject: App\Entity\EntryComment {#4241
    +user: App\Entity\User {#4254
      +avatar: Proxies\__CG__\App\Entity\Image {#4255 …}
      +cover: Proxies\__CG__\App\Entity\Image {#4256 …}
      +email: "GustavoM@lemmy.world"
      +username: "@GustavoM@lemmy.world"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: "Definitely Not GustavoM. :^)"
      +lastActive: DateTime @1719679748 {#4238
        date: 2024-06-29 18:49:08.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4257 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4259 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4261 …}
      +entries: Doctrine\ORM\PersistentCollection {#4263 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4265 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4267 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4269 …}
      +posts: Doctrine\ORM\PersistentCollection {#4271 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4273 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4275 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4277 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4279 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4281 …}
      +follows: Doctrine\ORM\PersistentCollection {#4283 …}
      +followers: Doctrine\ORM\PersistentCollection {#4285 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4287 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4289 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4291 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4293 …}
      +reports: Doctrine\ORM\PersistentCollection {#4295 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4297 …}
      +violations: Doctrine\ORM\PersistentCollection {#4299 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4301 …}
      +awards: Doctrine\ORM\PersistentCollection {#4303 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4305 …}
      +categories: Doctrine\ORM\PersistentCollection {#4307 …}
      -id: 55594
      -password: "$2y$13$3rtBI4j23F.4f2HFNduFZ.ylG7FHwAbghmxkem/xJ.FpSGPS6xPYO"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4309 …}
      +apId: "GustavoM@lemmy.world"
      +apProfileId: "https://lemmy.world/u/GustavoM"
      +apPublicUrl: "https://lemmy.world/u/GustavoM"
      +apFollowersUrl: null
      +apInboxUrl: "https://lemmy.world/inbox"
      +apDomain: "lemmy.world"
      +apPreferredUsername: "GustavoM"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1727835761 {#4239
        date: 2024-10-02 04:22:41.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696981499 {#4240
        date: 2023-10-11 01:44:59.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: """
      Not really relevant, but I’ve got a “rule of thumb” for all security-related issues;\n
      \n
      “If it doesn’t nuke my PC, then I’m good. If it does, then I’m still good since backups and logs exist, and if it was related to the latest seucirty issue? Then I make a quick patch and/or update. Then back to 1.”
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 2
    +score: 0
    +lastActive: DateTime @1700867849 {#4236
      date: 2023-11-25 00:17:29.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4242 …}
    +nested: Doctrine\ORM\PersistentCollection {#4244 …}
    +votes: Doctrine\ORM\PersistentCollection {#4246 …}
    +reports: Doctrine\ORM\PersistentCollection {#4248 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4250 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4252 …}
    -id: 160365
    -bodyTs: "'1':63 'and/or':58 'back':61 'backup':38 'doesn':20 'exist':41 'good':28,36 'got':7 'issu':17,51 'latest':49 'log':40 'm':27,34 'make':54 'nuke':22 'patch':57 'pc':24 'quick':56 'realli':2 'relat':16,46 'relev':3 'rule':9 'secur':15 'security-rel':14 'seucirti':50 'sinc':37 'still':35 'thumb':11 'updat':59 've':6"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://lemmy.world/comment/5562525"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700867849 {#4237
      date: 2023-11-25 00:17:29.0 +01:00
    }
  }
  +formDest: "entry_comment"
  +showDownvote: true
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
}
boost App\Twig\Components\BoostComponent 14.0 MiB 0.78 ms
Input props
[
  "subject" => App\Entity\EntryComment {#4241
    +user: App\Entity\User {#4254
      +avatar: Proxies\__CG__\App\Entity\Image {#4255 …}
      +cover: Proxies\__CG__\App\Entity\Image {#4256 …}
      +email: "GustavoM@lemmy.world"
      +username: "@GustavoM@lemmy.world"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: "Definitely Not GustavoM. :^)"
      +lastActive: DateTime @1719679748 {#4238
        date: 2024-06-29 18:49:08.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4257 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4259 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4261 …}
      +entries: Doctrine\ORM\PersistentCollection {#4263 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4265 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4267 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4269 …}
      +posts: Doctrine\ORM\PersistentCollection {#4271 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4273 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4275 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4277 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4279 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4281 …}
      +follows: Doctrine\ORM\PersistentCollection {#4283 …}
      +followers: Doctrine\ORM\PersistentCollection {#4285 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4287 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4289 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4291 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4293 …}
      +reports: Doctrine\ORM\PersistentCollection {#4295 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4297 …}
      +violations: Doctrine\ORM\PersistentCollection {#4299 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4301 …}
      +awards: Doctrine\ORM\PersistentCollection {#4303 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4305 …}
      +categories: Doctrine\ORM\PersistentCollection {#4307 …}
      -id: 55594
      -password: "$2y$13$3rtBI4j23F.4f2HFNduFZ.ylG7FHwAbghmxkem/xJ.FpSGPS6xPYO"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4309 …}
      +apId: "GustavoM@lemmy.world"
      +apProfileId: "https://lemmy.world/u/GustavoM"
      +apPublicUrl: "https://lemmy.world/u/GustavoM"
      +apFollowersUrl: null
      +apInboxUrl: "https://lemmy.world/inbox"
      +apDomain: "lemmy.world"
      +apPreferredUsername: "GustavoM"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1727835761 {#4239
        date: 2024-10-02 04:22:41.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696981499 {#4240
        date: 2023-10-11 01:44:59.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: """
      Not really relevant, but I’ve got a “rule of thumb” for all security-related issues;\n
      \n
      “If it doesn’t nuke my PC, then I’m good. If it does, then I’m still good since backups and logs exist, and if it was related to the latest seucirty issue? Then I make a quick patch and/or update. Then back to 1.”
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 2
    +score: 0
    +lastActive: DateTime @1700867849 {#4236
      date: 2023-11-25 00:17:29.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4242 …}
    +nested: Doctrine\ORM\PersistentCollection {#4244 …}
    +votes: Doctrine\ORM\PersistentCollection {#4246 …}
    +reports: Doctrine\ORM\PersistentCollection {#4248 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4250 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4252 …}
    -id: 160365
    -bodyTs: "'1':63 'and/or':58 'back':61 'backup':38 'doesn':20 'exist':41 'good':28,36 'got':7 'issu':17,51 'latest':49 'log':40 'm':27,34 'make':54 'nuke':22 'patch':57 'pc':24 'quick':56 'realli':2 'relat':16,46 'relev':3 'rule':9 'secur':15 'security-rel':14 'seucirti':50 'sinc':37 'still':35 'thumb':11 'updat':59 've':6"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://lemmy.world/comment/5562525"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700867849 {#4237
      date: 2023-11-25 00:17:29.0 +01:00
    }
  }
]
Attributes
[]
Component
App\Twig\Components\BoostComponent {#8552
  +formDest: "entry_comment"
  +subject: App\Entity\EntryComment {#4241
    +user: App\Entity\User {#4254
      +avatar: Proxies\__CG__\App\Entity\Image {#4255 …}
      +cover: Proxies\__CG__\App\Entity\Image {#4256 …}
      +email: "GustavoM@lemmy.world"
      +username: "@GustavoM@lemmy.world"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: "Definitely Not GustavoM. :^)"
      +lastActive: DateTime @1719679748 {#4238
        date: 2024-06-29 18:49:08.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4257 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4259 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4261 …}
      +entries: Doctrine\ORM\PersistentCollection {#4263 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4265 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4267 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4269 …}
      +posts: Doctrine\ORM\PersistentCollection {#4271 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4273 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4275 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4277 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4279 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4281 …}
      +follows: Doctrine\ORM\PersistentCollection {#4283 …}
      +followers: Doctrine\ORM\PersistentCollection {#4285 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4287 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4289 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4291 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4293 …}
      +reports: Doctrine\ORM\PersistentCollection {#4295 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4297 …}
      +violations: Doctrine\ORM\PersistentCollection {#4299 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4301 …}
      +awards: Doctrine\ORM\PersistentCollection {#4303 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4305 …}
      +categories: Doctrine\ORM\PersistentCollection {#4307 …}
      -id: 55594
      -password: "$2y$13$3rtBI4j23F.4f2HFNduFZ.ylG7FHwAbghmxkem/xJ.FpSGPS6xPYO"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4309 …}
      +apId: "GustavoM@lemmy.world"
      +apProfileId: "https://lemmy.world/u/GustavoM"
      +apPublicUrl: "https://lemmy.world/u/GustavoM"
      +apFollowersUrl: null
      +apInboxUrl: "https://lemmy.world/inbox"
      +apDomain: "lemmy.world"
      +apPreferredUsername: "GustavoM"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1727835761 {#4239
        date: 2024-10-02 04:22:41.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696981499 {#4240
        date: 2023-10-11 01:44:59.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: """
      Not really relevant, but I’ve got a “rule of thumb” for all security-related issues;\n
      \n
      “If it doesn’t nuke my PC, then I’m good. If it does, then I’m still good since backups and logs exist, and if it was related to the latest seucirty issue? Then I make a quick patch and/or update. Then back to 1.”
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 2
    +score: 0
    +lastActive: DateTime @1700867849 {#4236
      date: 2023-11-25 00:17:29.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4242 …}
    +nested: Doctrine\ORM\PersistentCollection {#4244 …}
    +votes: Doctrine\ORM\PersistentCollection {#4246 …}
    +reports: Doctrine\ORM\PersistentCollection {#4248 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4250 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4252 …}
    -id: 160365
    -bodyTs: "'1':63 'and/or':58 'back':61 'backup':38 'doesn':20 'exist':41 'good':28,36 'got':7 'issu':17,51 'latest':49 'log':40 'm':27,34 'make':54 'nuke':22 'patch':57 'pc':24 'quick':56 'realli':2 'relat':16,46 'relev':3 'rule':9 'secur':15 'security-rel':14 'seucirti':50 'sinc':37 'still':35 'thumb':11 'updat':59 've':6"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://lemmy.world/comment/5562525"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700867849 {#4237
      date: 2023-11-25 00:17:29.0 +01:00
    }
  }
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
}
entry_comments_nested App\Twig\Components\EntryCommentsNestedComponent 14.0 MiB 3.38 ms
Input props
[
  "comment" => App\Entity\EntryComment {#4241
    +user: App\Entity\User {#4254
      +avatar: Proxies\__CG__\App\Entity\Image {#4255 …}
      +cover: Proxies\__CG__\App\Entity\Image {#4256 …}
      +email: "GustavoM@lemmy.world"
      +username: "@GustavoM@lemmy.world"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: "Definitely Not GustavoM. :^)"
      +lastActive: DateTime @1719679748 {#4238
        date: 2024-06-29 18:49:08.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4257 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4259 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4261 …}
      +entries: Doctrine\ORM\PersistentCollection {#4263 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4265 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4267 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4269 …}
      +posts: Doctrine\ORM\PersistentCollection {#4271 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4273 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4275 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4277 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4279 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4281 …}
      +follows: Doctrine\ORM\PersistentCollection {#4283 …}
      +followers: Doctrine\ORM\PersistentCollection {#4285 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4287 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4289 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4291 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4293 …}
      +reports: Doctrine\ORM\PersistentCollection {#4295 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4297 …}
      +violations: Doctrine\ORM\PersistentCollection {#4299 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4301 …}
      +awards: Doctrine\ORM\PersistentCollection {#4303 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4305 …}
      +categories: Doctrine\ORM\PersistentCollection {#4307 …}
      -id: 55594
      -password: "$2y$13$3rtBI4j23F.4f2HFNduFZ.ylG7FHwAbghmxkem/xJ.FpSGPS6xPYO"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4309 …}
      +apId: "GustavoM@lemmy.world"
      +apProfileId: "https://lemmy.world/u/GustavoM"
      +apPublicUrl: "https://lemmy.world/u/GustavoM"
      +apFollowersUrl: null
      +apInboxUrl: "https://lemmy.world/inbox"
      +apDomain: "lemmy.world"
      +apPreferredUsername: "GustavoM"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1727835761 {#4239
        date: 2024-10-02 04:22:41.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696981499 {#4240
        date: 2023-10-11 01:44:59.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: """
      Not really relevant, but I’ve got a “rule of thumb” for all security-related issues;\n
      \n
      “If it doesn’t nuke my PC, then I’m good. If it does, then I’m still good since backups and logs exist, and if it was related to the latest seucirty issue? Then I make a quick patch and/or update. Then back to 1.”
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 2
    +score: 0
    +lastActive: DateTime @1700867849 {#4236
      date: 2023-11-25 00:17:29.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4242 …}
    +nested: Doctrine\ORM\PersistentCollection {#4244 …}
    +votes: Doctrine\ORM\PersistentCollection {#4246 …}
    +reports: Doctrine\ORM\PersistentCollection {#4248 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4250 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4252 …}
    -id: 160365
    -bodyTs: "'1':63 'and/or':58 'back':61 'backup':38 'doesn':20 'exist':41 'good':28,36 'got':7 'issu':17,51 'latest':49 'log':40 'm':27,34 'make':54 'nuke':22 'patch':57 'pc':24 'quick':56 'realli':2 'relat':16,46 'relev':3 'rule':9 'secur':15 'security-rel':14 'seucirti':50 'sinc':37 'still':35 'thumb':11 'updat':59 've':6"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://lemmy.world/comment/5562525"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700867849 {#4237
      date: 2023-11-25 00:17:29.0 +01:00
    }
  }
  "level" => 1
  "showNested" => true
  "view" => "tree"
]
Attributes
[
  "showNested" => true
]
Component
App\Twig\Components\EntryCommentsNestedComponent {#8792
  +comment: App\Entity\EntryComment {#4241
    +user: App\Entity\User {#4254
      +avatar: Proxies\__CG__\App\Entity\Image {#4255 …}
      +cover: Proxies\__CG__\App\Entity\Image {#4256 …}
      +email: "GustavoM@lemmy.world"
      +username: "@GustavoM@lemmy.world"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: "Definitely Not GustavoM. :^)"
      +lastActive: DateTime @1719679748 {#4238
        date: 2024-06-29 18:49:08.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: false
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: true
      +notifyOnNewEntryCommentReply: true
      +notifyOnNewPost: false
      +notifyOnNewPostReply: true
      +notifyOnNewPostCommentReply: true
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4257 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4259 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4261 …}
      +entries: Doctrine\ORM\PersistentCollection {#4263 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4265 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4267 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4269 …}
      +posts: Doctrine\ORM\PersistentCollection {#4271 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4273 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4275 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4277 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4279 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4281 …}
      +follows: Doctrine\ORM\PersistentCollection {#4283 …}
      +followers: Doctrine\ORM\PersistentCollection {#4285 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4287 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4289 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4291 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4293 …}
      +reports: Doctrine\ORM\PersistentCollection {#4295 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4297 …}
      +violations: Doctrine\ORM\PersistentCollection {#4299 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4301 …}
      +awards: Doctrine\ORM\PersistentCollection {#4303 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4305 …}
      +categories: Doctrine\ORM\PersistentCollection {#4307 …}
      -id: 55594
      -password: "$2y$13$3rtBI4j23F.4f2HFNduFZ.ylG7FHwAbghmxkem/xJ.FpSGPS6xPYO"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4309 …}
      +apId: "GustavoM@lemmy.world"
      +apProfileId: "https://lemmy.world/u/GustavoM"
      +apPublicUrl: "https://lemmy.world/u/GustavoM"
      +apFollowersUrl: null
      +apInboxUrl: "https://lemmy.world/inbox"
      +apDomain: "lemmy.world"
      +apPreferredUsername: "GustavoM"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1727835761 {#4239
        date: 2024-10-02 04:22:41.0 +02:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1696981499 {#4240
        date: 2023-10-11 01:44:59.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: """
      Not really relevant, but I’ve got a “rule of thumb” for all security-related issues;\n
      \n
      “If it doesn’t nuke my PC, then I’m good. If it does, then I’m still good since backups and logs exist, and if it was related to the latest seucirty issue? Then I make a quick patch and/or update. Then back to 1.”
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 2
    +score: 0
    +lastActive: DateTime @1700867849 {#4236
      date: 2023-11-25 00:17:29.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4242 …}
    +nested: Doctrine\ORM\PersistentCollection {#4244 …}
    +votes: Doctrine\ORM\PersistentCollection {#4246 …}
    +reports: Doctrine\ORM\PersistentCollection {#4248 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4250 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4252 …}
    -id: 160365
    -bodyTs: "'1':63 'and/or':58 'back':61 'backup':38 'doesn':20 'exist':41 'good':28,36 'got':7 'issu':17,51 'latest':49 'log':40 'm':27,34 'make':54 'nuke':22 'patch':57 'pc':24 'quick':56 'realli':2 'relat':16,46 'relev':3 'rule':9 'secur':15 'security-rel':14 'seucirti':50 'sinc':37 'still':35 'thumb':11 'updat':59 've':6"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://lemmy.world/comment/5562525"
    +editedAt: null
    +createdAt: DateTimeImmutable @1700867849 {#4237
      date: 2023-11-25 00:17:29.0 +01:00
    }
  }
  +nestedComments: []
  +level: 1
  +view: "tree"
  -entryCommentRepository: App\Repository\EntryCommentRepository {#555 …}
  -twig: Twig\Environment {#1252 …}
  -security: Symfony\Bundle\SecurityBundle\Security {#1101 …}
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
}
entry_comment App\Twig\Components\EntryCommentComponent 14.0 MiB 49.11 ms
Input props
[
  "comment" => App\Entity\EntryComment {#4317
    +user: App\Entity\User {#4330
      +avatar: Proxies\__CG__\App\Entity\Image {#4331 …}
      +cover: null
      +email: "TheAnonymouseJoker@lemmy.ml"
      +username: "@TheAnonymouseJoker@lemmy.ml"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1719499996 {#4314
        date: 2024-06-27 16:53:16.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: true
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: false
      +notifyOnNewEntryCommentReply: false
      +notifyOnNewPost: false
      +notifyOnNewPostReply: false
      +notifyOnNewPostCommentReply: false
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4332 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4334 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4336 …}
      +entries: Doctrine\ORM\PersistentCollection {#4338 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4340 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4342 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4344 …}
      +posts: Doctrine\ORM\PersistentCollection {#4346 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4348 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4350 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4352 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4354 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4356 …}
      +follows: Doctrine\ORM\PersistentCollection {#4358 …}
      +followers: Doctrine\ORM\PersistentCollection {#4360 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4362 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4364 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4366 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4368 …}
      +reports: Doctrine\ORM\PersistentCollection {#4370 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4372 …}
      +violations: Doctrine\ORM\PersistentCollection {#4374 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4376 …}
      +awards: Doctrine\ORM\PersistentCollection {#4378 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4380 …}
      +categories: Doctrine\ORM\PersistentCollection {#4382 …}
      -id: 8990
      -password: "$2y$13$peWJARQT0roc//u.NSM2EeeeLmDR58xCceUkU3dnR/OYB05tq8Roy"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4384 …}
      +apId: "TheAnonymouseJoker@lemmy.ml"
      +apProfileId: "https://lemmy.ml/u/TheAnonymouseJoker"
      +apPublicUrl: "https://lemmy.ml/u/TheAnonymouseJoker"
      +apFollowersUrl: null
      +apInboxUrl: "https://lemmy.ml/inbox"
      +apDomain: "lemmy.ml"
      +apPreferredUsername: "TheAnonymouseJoker"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1710544259 {#4315
        date: 2024-03-16 00:10:59.0 +01:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1687519621 {#4316
        date: 2023-06-23 13:27:01.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: """
      Some stuff related to madaidan I wrote and compiled a couple years ago.\n
      \n
      [i.imgur.com/FiYhbkk.jpg](https://i.imgur.com/FiYhbkk.jpg): madaidan being very 4chan-y in terms of blaming the computer language for problems in particular software code (in this case Linux kernel), while dismissing everything when it comes to Windows. His blog page about Linux is a massive piece of “toilet paper” repeatedly debunked at this point. If you think the phrase “toilet paper” is mine, come, have a look.\n
      \n
      [web.archive.org/…/thoughts_about_an_article_talki…](https://web.archive.org/web/20210929053611/https://old.reddit.com/r/linux/comments/pwi1l9/thoughts_about_an_article_talking_about_the/)\n
      \n
      [web.archive.org/web/20220111035527/https:/…/item?…](https://web.archive.org/web/20220111035527/https://news.ycombinator.com/item?id=25590079)\n
      \n
      [archive.is/zxS72](https://archive.is/zxS72)\n
      \n
      TL;DR his blog has been dismissed enough at this point to consider it nothing more than digital rag. Security zealots are dangerous to FOSS community, like Brad Spengler/grsecurity, madaidan, GrapheneOS and so on. You can identify them as Big Tech security evangelists trying to shit on FOSS with arguments I would say do not end up being very intelligent and academic, and more reactionary and flakey.\n
      \n
      Also a little note on security. You do not need as much security as much as you need privacy, freedom and anonymity. Security is variable, it only buys you the time against attacker, and is the least priority among these 4 things in computing.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 14
    +score: 0
    +lastActive: DateTime @1700828802 {#4311
      date: 2023-11-24 13:26:42.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4318 …}
    +nested: Doctrine\ORM\PersistentCollection {#4320 …}
    +votes: Doctrine\ORM\PersistentCollection {#4322 …}
    +reports: Doctrine\ORM\PersistentCollection {#4324 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4326 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4328 …}
    -id: 158269
    -bodyTs: "'/fiyhbkk.jpg](https://i.imgur.com/fiyhbkk.jpg):':16 '/item':87 '/thoughts_about_an_article_talki':80 '/web/20210929053611/https://old.reddit.com/r/linux/comments/pwi1l9/thoughts_about_an_article_talking_about_the/)':83 '/web/20220111035527/https:/':86 '/web/20220111035527/https://news.ycombinator.com/item?id=25590079)':90 '/zxs72](https://archive.is/zxs72)':93 '4':201 '4chan':21 '4chan-y':20 'academ':155 'ago':13 'also':161 'among':199 'anonym':182 'archive.is':92 'archive.is/zxs72](https://archive.is/zxs72)':91 'argument':143 'attack':193 'big':133 'blame':26 'blog':50,97 'brad':121 'buy':188 'case':38 'code':35 'come':46,75 'communiti':119 'compil':9 'comput':28,204 'consid':106 'coupl':11 'danger':116 'debunk':62 'digit':111 'dismiss':42,100 'dr':95 'end':149 'enough':101 'evangelist':136 'everyth':43 'flakey':160 'foss':118,141 'freedom':180 'grapheneo':124 'i.imgur.com':15 'i.imgur.com/fiyhbkk.jpg](https://i.imgur.com/fiyhbkk.jpg):':14 'identifi':130 'intellig':153 'kernel':40 'languag':29 'least':197 'like':120 'linux':39,53 'littl':163 'look':78 'madaidan':5,17,123 'massiv':56 'mine':74 'much':172,175 'need':170,178 'note':164 'noth':108 'page':51 'paper':60,72 'particular':33 'phrase':70 'piec':57 'point':65,104 'prioriti':198 'privaci':179 'problem':31 'rag':112 'reactionari':158 'relat':3 'repeat':61 'say':146 'secur':113,135,166,173,183 'shit':139 'softwar':34 'spengler/grsecurity':122 'stuff':2 'tech':134 'term':24 'thing':202 'think':68 'time':191 'tl':94 'toilet':59,71 'tri':137 'variabl':185 'web.archive.org':79,82,85,89 'web.archive.org/web/20210929053611/https://old.reddit.com/r/linux/comments/pwi1l9/thoughts_about_an_article_talking_about_the/)':81 'web.archive.org/web/20220111035527/https:/':84 'web.archive.org/web/20220111035527/https://news.ycombinator.com/item?id=25590079)':88 'window':48 'would':145 'wrote':7 'y':22 'year':12 'zealot':114"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://lemmy.ml/comment/6078314"
    +editedAt: DateTimeImmutable @1701354549 {#4312
      date: 2023-11-30 15:29:09.0 +01:00
    }
    +createdAt: DateTimeImmutable @1700828802 {#4313
      date: 2023-11-24 13:26:42.0 +01:00
    }
  }
  "showNested" => true
  "dateAsUrl" => false
  "showMagazineName" => false
  "showEntryTitle" => false
]
Attributes
[]
Component
App\Twig\Components\EntryCommentComponent {#8862
  +comment: App\Entity\EntryComment {#4317
    +user: App\Entity\User {#4330
      +avatar: Proxies\__CG__\App\Entity\Image {#4331 …}
      +cover: null
      +email: "TheAnonymouseJoker@lemmy.ml"
      +username: "@TheAnonymouseJoker@lemmy.ml"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1719499996 {#4314
        date: 2024-06-27 16:53:16.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: true
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: false
      +notifyOnNewEntryCommentReply: false
      +notifyOnNewPost: false
      +notifyOnNewPostReply: false
      +notifyOnNewPostCommentReply: false
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4332 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4334 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4336 …}
      +entries: Doctrine\ORM\PersistentCollection {#4338 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4340 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4342 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4344 …}
      +posts: Doctrine\ORM\PersistentCollection {#4346 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4348 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4350 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4352 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4354 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4356 …}
      +follows: Doctrine\ORM\PersistentCollection {#4358 …}
      +followers: Doctrine\ORM\PersistentCollection {#4360 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4362 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4364 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4366 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4368 …}
      +reports: Doctrine\ORM\PersistentCollection {#4370 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4372 …}
      +violations: Doctrine\ORM\PersistentCollection {#4374 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4376 …}
      +awards: Doctrine\ORM\PersistentCollection {#4378 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4380 …}
      +categories: Doctrine\ORM\PersistentCollection {#4382 …}
      -id: 8990
      -password: "$2y$13$peWJARQT0roc//u.NSM2EeeeLmDR58xCceUkU3dnR/OYB05tq8Roy"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4384 …}
      +apId: "TheAnonymouseJoker@lemmy.ml"
      +apProfileId: "https://lemmy.ml/u/TheAnonymouseJoker"
      +apPublicUrl: "https://lemmy.ml/u/TheAnonymouseJoker"
      +apFollowersUrl: null
      +apInboxUrl: "https://lemmy.ml/inbox"
      +apDomain: "lemmy.ml"
      +apPreferredUsername: "TheAnonymouseJoker"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1710544259 {#4315
        date: 2024-03-16 00:10:59.0 +01:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1687519621 {#4316
        date: 2023-06-23 13:27:01.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: """
      Some stuff related to madaidan I wrote and compiled a couple years ago.\n
      \n
      [i.imgur.com/FiYhbkk.jpg](https://i.imgur.com/FiYhbkk.jpg): madaidan being very 4chan-y in terms of blaming the computer language for problems in particular software code (in this case Linux kernel), while dismissing everything when it comes to Windows. His blog page about Linux is a massive piece of “toilet paper” repeatedly debunked at this point. If you think the phrase “toilet paper” is mine, come, have a look.\n
      \n
      [web.archive.org/…/thoughts_about_an_article_talki…](https://web.archive.org/web/20210929053611/https://old.reddit.com/r/linux/comments/pwi1l9/thoughts_about_an_article_talking_about_the/)\n
      \n
      [web.archive.org/web/20220111035527/https:/…/item?…](https://web.archive.org/web/20220111035527/https://news.ycombinator.com/item?id=25590079)\n
      \n
      [archive.is/zxS72](https://archive.is/zxS72)\n
      \n
      TL;DR his blog has been dismissed enough at this point to consider it nothing more than digital rag. Security zealots are dangerous to FOSS community, like Brad Spengler/grsecurity, madaidan, GrapheneOS and so on. You can identify them as Big Tech security evangelists trying to shit on FOSS with arguments I would say do not end up being very intelligent and academic, and more reactionary and flakey.\n
      \n
      Also a little note on security. You do not need as much security as much as you need privacy, freedom and anonymity. Security is variable, it only buys you the time against attacker, and is the least priority among these 4 things in computing.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 14
    +score: 0
    +lastActive: DateTime @1700828802 {#4311
      date: 2023-11-24 13:26:42.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4318 …}
    +nested: Doctrine\ORM\PersistentCollection {#4320 …}
    +votes: Doctrine\ORM\PersistentCollection {#4322 …}
    +reports: Doctrine\ORM\PersistentCollection {#4324 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4326 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4328 …}
    -id: 158269
    -bodyTs: "'/fiyhbkk.jpg](https://i.imgur.com/fiyhbkk.jpg):':16 '/item':87 '/thoughts_about_an_article_talki':80 '/web/20210929053611/https://old.reddit.com/r/linux/comments/pwi1l9/thoughts_about_an_article_talking_about_the/)':83 '/web/20220111035527/https:/':86 '/web/20220111035527/https://news.ycombinator.com/item?id=25590079)':90 '/zxs72](https://archive.is/zxs72)':93 '4':201 '4chan':21 '4chan-y':20 'academ':155 'ago':13 'also':161 'among':199 'anonym':182 'archive.is':92 'archive.is/zxs72](https://archive.is/zxs72)':91 'argument':143 'attack':193 'big':133 'blame':26 'blog':50,97 'brad':121 'buy':188 'case':38 'code':35 'come':46,75 'communiti':119 'compil':9 'comput':28,204 'consid':106 'coupl':11 'danger':116 'debunk':62 'digit':111 'dismiss':42,100 'dr':95 'end':149 'enough':101 'evangelist':136 'everyth':43 'flakey':160 'foss':118,141 'freedom':180 'grapheneo':124 'i.imgur.com':15 'i.imgur.com/fiyhbkk.jpg](https://i.imgur.com/fiyhbkk.jpg):':14 'identifi':130 'intellig':153 'kernel':40 'languag':29 'least':197 'like':120 'linux':39,53 'littl':163 'look':78 'madaidan':5,17,123 'massiv':56 'mine':74 'much':172,175 'need':170,178 'note':164 'noth':108 'page':51 'paper':60,72 'particular':33 'phrase':70 'piec':57 'point':65,104 'prioriti':198 'privaci':179 'problem':31 'rag':112 'reactionari':158 'relat':3 'repeat':61 'say':146 'secur':113,135,166,173,183 'shit':139 'softwar':34 'spengler/grsecurity':122 'stuff':2 'tech':134 'term':24 'thing':202 'think':68 'time':191 'tl':94 'toilet':59,71 'tri':137 'variabl':185 'web.archive.org':79,82,85,89 'web.archive.org/web/20210929053611/https://old.reddit.com/r/linux/comments/pwi1l9/thoughts_about_an_article_talking_about_the/)':81 'web.archive.org/web/20220111035527/https:/':84 'web.archive.org/web/20220111035527/https://news.ycombinator.com/item?id=25590079)':88 'window':48 'would':145 'wrote':7 'y':22 'year':12 'zealot':114"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://lemmy.ml/comment/6078314"
    +editedAt: DateTimeImmutable @1701354549 {#4312
      date: 2023-11-30 15:29:09.0 +01:00
    }
    +createdAt: DateTimeImmutable @1700828802 {#4313
      date: 2023-11-24 13:26:42.0 +01:00
    }
  }
  +showMagazineName: false
  +showEntryTitle: false
  +showNested: true
  +level: 1
  +canSeeTrash: false
  +dateAsUrl: false
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
  -authorizationChecker: Symfony\Component\Security\Core\Authorization\AuthorizationChecker {#931 …}
}
user_inline App\Twig\Components\UserInlineComponent 14.0 MiB 0.39 ms
Input props
[
  "user" => App\Entity\User {#4330
    +avatar: Proxies\__CG__\App\Entity\Image {#4331 …}
    +cover: null
    +email: "TheAnonymouseJoker@lemmy.ml"
    +username: "@TheAnonymouseJoker@lemmy.ml"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: null
    +lastActive: DateTime @1719499996 {#4314
      date: 2024-06-27 16:53:16.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: true
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: false
    +notifyOnNewEntryCommentReply: false
    +notifyOnNewPost: false
    +notifyOnNewPostReply: false
    +notifyOnNewPostCommentReply: false
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#4332 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4334 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#4336 …}
    +entries: Doctrine\ORM\PersistentCollection {#4338 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#4340 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#4342 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4344 …}
    +posts: Doctrine\ORM\PersistentCollection {#4346 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#4348 …}
    +postComments: Doctrine\ORM\PersistentCollection {#4350 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#4352 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#4354 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#4356 …}
    +follows: Doctrine\ORM\PersistentCollection {#4358 …}
    +followers: Doctrine\ORM\PersistentCollection {#4360 …}
    +blocks: Doctrine\ORM\PersistentCollection {#4362 …}
    +blockers: Doctrine\ORM\PersistentCollection {#4364 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#4366 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#4368 …}
    +reports: Doctrine\ORM\PersistentCollection {#4370 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4372 …}
    +violations: Doctrine\ORM\PersistentCollection {#4374 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4376 …}
    +awards: Doctrine\ORM\PersistentCollection {#4378 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#4380 …}
    +categories: Doctrine\ORM\PersistentCollection {#4382 …}
    -id: 8990
    -password: "$2y$13$peWJARQT0roc//u.NSM2EeeeLmDR58xCceUkU3dnR/OYB05tq8Roy"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4384 …}
    +apId: "TheAnonymouseJoker@lemmy.ml"
    +apProfileId: "https://lemmy.ml/u/TheAnonymouseJoker"
    +apPublicUrl: "https://lemmy.ml/u/TheAnonymouseJoker"
    +apFollowersUrl: null
    +apInboxUrl: "https://lemmy.ml/inbox"
    +apDomain: "lemmy.ml"
    +apPreferredUsername: "TheAnonymouseJoker"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1710544259 {#4315
      date: 2024-03-16 00:10:59.0 +01:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1687519621 {#4316
      date: 2023-06-23 13:27:01.0 +02:00
    }
  }
  "showAvatar" => false
]
Attributes
[]
Component
App\Twig\Components\UserInlineComponent {#8907
  +user: App\Entity\User {#4330
    +avatar: Proxies\__CG__\App\Entity\Image {#4331 …}
    +cover: null
    +email: "TheAnonymouseJoker@lemmy.ml"
    +username: "@TheAnonymouseJoker@lemmy.ml"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: null
    +lastActive: DateTime @1719499996 {#4314
      date: 2024-06-27 16:53:16.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: true
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: false
    +notifyOnNewEntryCommentReply: false
    +notifyOnNewPost: false
    +notifyOnNewPostReply: false
    +notifyOnNewPostCommentReply: false
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#4332 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4334 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#4336 …}
    +entries: Doctrine\ORM\PersistentCollection {#4338 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#4340 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#4342 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4344 …}
    +posts: Doctrine\ORM\PersistentCollection {#4346 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#4348 …}
    +postComments: Doctrine\ORM\PersistentCollection {#4350 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#4352 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#4354 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#4356 …}
    +follows: Doctrine\ORM\PersistentCollection {#4358 …}
    +followers: Doctrine\ORM\PersistentCollection {#4360 …}
    +blocks: Doctrine\ORM\PersistentCollection {#4362 …}
    +blockers: Doctrine\ORM\PersistentCollection {#4364 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#4366 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#4368 …}
    +reports: Doctrine\ORM\PersistentCollection {#4370 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4372 …}
    +violations: Doctrine\ORM\PersistentCollection {#4374 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4376 …}
    +awards: Doctrine\ORM\PersistentCollection {#4378 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#4380 …}
    +categories: Doctrine\ORM\PersistentCollection {#4382 …}
    -id: 8990
    -password: "$2y$13$peWJARQT0roc//u.NSM2EeeeLmDR58xCceUkU3dnR/OYB05tq8Roy"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4384 …}
    +apId: "TheAnonymouseJoker@lemmy.ml"
    +apProfileId: "https://lemmy.ml/u/TheAnonymouseJoker"
    +apPublicUrl: "https://lemmy.ml/u/TheAnonymouseJoker"
    +apFollowersUrl: null
    +apInboxUrl: "https://lemmy.ml/inbox"
    +apDomain: "lemmy.ml"
    +apPreferredUsername: "TheAnonymouseJoker"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1710544259 {#4315
      date: 2024-03-16 00:10:59.0 +01:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1687519621 {#4316
      date: 2023-06-23 13:27:01.0 +02:00
    }
  }
  +showAvatar: false
}
date App\Twig\Components\DateComponent 14.0 MiB 0.75 ms
Input props
[
  "date" => DateTimeImmutable @1700828802 {#4313
    date: 2023-11-24 13:26:42.0 +01:00
  }
]
Attributes
[]
Component
App\Twig\Components\DateComponent {#8962
  +date: DateTimeImmutable @1700828802 {#4313
    date: 2023-11-24 13:26:42.0 +01:00
  }
}
date_edited App\Twig\Components\DateEditedComponent 14.0 MiB 0.58 ms
Input props
[
  "createdAt" => DateTimeImmutable @1700828802 {#4313
    date: 2023-11-24 13:26:42.0 +01:00
  }
  "editedAt" => DateTimeImmutable @1701354549 {#4312
    date: 2023-11-30 15:29:09.0 +01:00
  }
]
Attributes
[]
Component
App\Twig\Components\DateEditedComponent {#9016
  +createdAt: DateTimeImmutable @1700828802 {#4313
    date: 2023-11-24 13:26:42.0 +01:00
  }
  +editedAt: DateTimeImmutable @1701354549 {#4312
    date: 2023-11-30 15:29:09.0 +01:00
  }
}
user_avatar App\Twig\Components\UserAvatarComponent 14.0 MiB 1.24 ms
Input props
[
  "user" => App\Entity\User {#4330
    +avatar: Proxies\__CG__\App\Entity\Image {#4331 …}
    +cover: null
    +email: "TheAnonymouseJoker@lemmy.ml"
    +username: "@TheAnonymouseJoker@lemmy.ml"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: null
    +lastActive: DateTime @1719499996 {#4314
      date: 2024-06-27 16:53:16.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: true
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: false
    +notifyOnNewEntryCommentReply: false
    +notifyOnNewPost: false
    +notifyOnNewPostReply: false
    +notifyOnNewPostCommentReply: false
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#4332 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4334 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#4336 …}
    +entries: Doctrine\ORM\PersistentCollection {#4338 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#4340 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#4342 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4344 …}
    +posts: Doctrine\ORM\PersistentCollection {#4346 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#4348 …}
    +postComments: Doctrine\ORM\PersistentCollection {#4350 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#4352 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#4354 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#4356 …}
    +follows: Doctrine\ORM\PersistentCollection {#4358 …}
    +followers: Doctrine\ORM\PersistentCollection {#4360 …}
    +blocks: Doctrine\ORM\PersistentCollection {#4362 …}
    +blockers: Doctrine\ORM\PersistentCollection {#4364 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#4366 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#4368 …}
    +reports: Doctrine\ORM\PersistentCollection {#4370 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4372 …}
    +violations: Doctrine\ORM\PersistentCollection {#4374 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4376 …}
    +awards: Doctrine\ORM\PersistentCollection {#4378 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#4380 …}
    +categories: Doctrine\ORM\PersistentCollection {#4382 …}
    -id: 8990
    -password: "$2y$13$peWJARQT0roc//u.NSM2EeeeLmDR58xCceUkU3dnR/OYB05tq8Roy"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4384 …}
    +apId: "TheAnonymouseJoker@lemmy.ml"
    +apProfileId: "https://lemmy.ml/u/TheAnonymouseJoker"
    +apPublicUrl: "https://lemmy.ml/u/TheAnonymouseJoker"
    +apFollowersUrl: null
    +apInboxUrl: "https://lemmy.ml/inbox"
    +apDomain: "lemmy.ml"
    +apPreferredUsername: "TheAnonymouseJoker"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1710544259 {#4315
      date: 2024-03-16 00:10:59.0 +01:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1687519621 {#4316
      date: 2023-06-23 13:27:01.0 +02:00
    }
  }
  "width" => 40
  "height" => 40
  "asLink" => true
]
Attributes
[]
Component
App\Twig\Components\UserAvatarComponent {#9070
  +width: 40
  +height: 40
  +user: App\Entity\User {#4330
    +avatar: Proxies\__CG__\App\Entity\Image {#4331 …}
    +cover: null
    +email: "TheAnonymouseJoker@lemmy.ml"
    +username: "@TheAnonymouseJoker@lemmy.ml"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: null
    +lastActive: DateTime @1719499996 {#4314
      date: 2024-06-27 16:53:16.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: true
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: false
    +notifyOnNewEntryCommentReply: false
    +notifyOnNewPost: false
    +notifyOnNewPostReply: false
    +notifyOnNewPostCommentReply: false
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#4332 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4334 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#4336 …}
    +entries: Doctrine\ORM\PersistentCollection {#4338 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#4340 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#4342 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4344 …}
    +posts: Doctrine\ORM\PersistentCollection {#4346 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#4348 …}
    +postComments: Doctrine\ORM\PersistentCollection {#4350 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#4352 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#4354 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#4356 …}
    +follows: Doctrine\ORM\PersistentCollection {#4358 …}
    +followers: Doctrine\ORM\PersistentCollection {#4360 …}
    +blocks: Doctrine\ORM\PersistentCollection {#4362 …}
    +blockers: Doctrine\ORM\PersistentCollection {#4364 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#4366 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#4368 …}
    +reports: Doctrine\ORM\PersistentCollection {#4370 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4372 …}
    +violations: Doctrine\ORM\PersistentCollection {#4374 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4376 …}
    +awards: Doctrine\ORM\PersistentCollection {#4378 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#4380 …}
    +categories: Doctrine\ORM\PersistentCollection {#4382 …}
    -id: 8990
    -password: "$2y$13$peWJARQT0roc//u.NSM2EeeeLmDR58xCceUkU3dnR/OYB05tq8Roy"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4384 …}
    +apId: "TheAnonymouseJoker@lemmy.ml"
    +apProfileId: "https://lemmy.ml/u/TheAnonymouseJoker"
    +apPublicUrl: "https://lemmy.ml/u/TheAnonymouseJoker"
    +apFollowersUrl: null
    +apInboxUrl: "https://lemmy.ml/inbox"
    +apDomain: "lemmy.ml"
    +apPreferredUsername: "TheAnonymouseJoker"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1710544259 {#4315
      date: 2024-03-16 00:10:59.0 +01:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1687519621 {#4316
      date: 2023-06-23 13:27:01.0 +02:00
    }
  }
  +asLink: true
}
vote App\Twig\Components\VoteComponent 14.0 MiB 1.43 ms
Input props
[
  "subject" => App\Entity\EntryComment {#4317
    +user: App\Entity\User {#4330
      +avatar: Proxies\__CG__\App\Entity\Image {#4331 …}
      +cover: null
      +email: "TheAnonymouseJoker@lemmy.ml"
      +username: "@TheAnonymouseJoker@lemmy.ml"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1719499996 {#4314
        date: 2024-06-27 16:53:16.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: true
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: false
      +notifyOnNewEntryCommentReply: false
      +notifyOnNewPost: false
      +notifyOnNewPostReply: false
      +notifyOnNewPostCommentReply: false
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4332 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4334 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4336 …}
      +entries: Doctrine\ORM\PersistentCollection {#4338 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4340 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4342 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4344 …}
      +posts: Doctrine\ORM\PersistentCollection {#4346 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4348 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4350 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4352 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4354 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4356 …}
      +follows: Doctrine\ORM\PersistentCollection {#4358 …}
      +followers: Doctrine\ORM\PersistentCollection {#4360 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4362 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4364 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4366 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4368 …}
      +reports: Doctrine\ORM\PersistentCollection {#4370 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4372 …}
      +violations: Doctrine\ORM\PersistentCollection {#4374 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4376 …}
      +awards: Doctrine\ORM\PersistentCollection {#4378 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4380 …}
      +categories: Doctrine\ORM\PersistentCollection {#4382 …}
      -id: 8990
      -password: "$2y$13$peWJARQT0roc//u.NSM2EeeeLmDR58xCceUkU3dnR/OYB05tq8Roy"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4384 …}
      +apId: "TheAnonymouseJoker@lemmy.ml"
      +apProfileId: "https://lemmy.ml/u/TheAnonymouseJoker"
      +apPublicUrl: "https://lemmy.ml/u/TheAnonymouseJoker"
      +apFollowersUrl: null
      +apInboxUrl: "https://lemmy.ml/inbox"
      +apDomain: "lemmy.ml"
      +apPreferredUsername: "TheAnonymouseJoker"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1710544259 {#4315
        date: 2024-03-16 00:10:59.0 +01:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1687519621 {#4316
        date: 2023-06-23 13:27:01.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: """
      Some stuff related to madaidan I wrote and compiled a couple years ago.\n
      \n
      [i.imgur.com/FiYhbkk.jpg](https://i.imgur.com/FiYhbkk.jpg): madaidan being very 4chan-y in terms of blaming the computer language for problems in particular software code (in this case Linux kernel), while dismissing everything when it comes to Windows. His blog page about Linux is a massive piece of “toilet paper” repeatedly debunked at this point. If you think the phrase “toilet paper” is mine, come, have a look.\n
      \n
      [web.archive.org/…/thoughts_about_an_article_talki…](https://web.archive.org/web/20210929053611/https://old.reddit.com/r/linux/comments/pwi1l9/thoughts_about_an_article_talking_about_the/)\n
      \n
      [web.archive.org/web/20220111035527/https:/…/item?…](https://web.archive.org/web/20220111035527/https://news.ycombinator.com/item?id=25590079)\n
      \n
      [archive.is/zxS72](https://archive.is/zxS72)\n
      \n
      TL;DR his blog has been dismissed enough at this point to consider it nothing more than digital rag. Security zealots are dangerous to FOSS community, like Brad Spengler/grsecurity, madaidan, GrapheneOS and so on. You can identify them as Big Tech security evangelists trying to shit on FOSS with arguments I would say do not end up being very intelligent and academic, and more reactionary and flakey.\n
      \n
      Also a little note on security. You do not need as much security as much as you need privacy, freedom and anonymity. Security is variable, it only buys you the time against attacker, and is the least priority among these 4 things in computing.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 14
    +score: 0
    +lastActive: DateTime @1700828802 {#4311
      date: 2023-11-24 13:26:42.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4318 …}
    +nested: Doctrine\ORM\PersistentCollection {#4320 …}
    +votes: Doctrine\ORM\PersistentCollection {#4322 …}
    +reports: Doctrine\ORM\PersistentCollection {#4324 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4326 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4328 …}
    -id: 158269
    -bodyTs: "'/fiyhbkk.jpg](https://i.imgur.com/fiyhbkk.jpg):':16 '/item':87 '/thoughts_about_an_article_talki':80 '/web/20210929053611/https://old.reddit.com/r/linux/comments/pwi1l9/thoughts_about_an_article_talking_about_the/)':83 '/web/20220111035527/https:/':86 '/web/20220111035527/https://news.ycombinator.com/item?id=25590079)':90 '/zxs72](https://archive.is/zxs72)':93 '4':201 '4chan':21 '4chan-y':20 'academ':155 'ago':13 'also':161 'among':199 'anonym':182 'archive.is':92 'archive.is/zxs72](https://archive.is/zxs72)':91 'argument':143 'attack':193 'big':133 'blame':26 'blog':50,97 'brad':121 'buy':188 'case':38 'code':35 'come':46,75 'communiti':119 'compil':9 'comput':28,204 'consid':106 'coupl':11 'danger':116 'debunk':62 'digit':111 'dismiss':42,100 'dr':95 'end':149 'enough':101 'evangelist':136 'everyth':43 'flakey':160 'foss':118,141 'freedom':180 'grapheneo':124 'i.imgur.com':15 'i.imgur.com/fiyhbkk.jpg](https://i.imgur.com/fiyhbkk.jpg):':14 'identifi':130 'intellig':153 'kernel':40 'languag':29 'least':197 'like':120 'linux':39,53 'littl':163 'look':78 'madaidan':5,17,123 'massiv':56 'mine':74 'much':172,175 'need':170,178 'note':164 'noth':108 'page':51 'paper':60,72 'particular':33 'phrase':70 'piec':57 'point':65,104 'prioriti':198 'privaci':179 'problem':31 'rag':112 'reactionari':158 'relat':3 'repeat':61 'say':146 'secur':113,135,166,173,183 'shit':139 'softwar':34 'spengler/grsecurity':122 'stuff':2 'tech':134 'term':24 'thing':202 'think':68 'time':191 'tl':94 'toilet':59,71 'tri':137 'variabl':185 'web.archive.org':79,82,85,89 'web.archive.org/web/20210929053611/https://old.reddit.com/r/linux/comments/pwi1l9/thoughts_about_an_article_talking_about_the/)':81 'web.archive.org/web/20220111035527/https:/':84 'web.archive.org/web/20220111035527/https://news.ycombinator.com/item?id=25590079)':88 'window':48 'would':145 'wrote':7 'y':22 'year':12 'zealot':114"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://lemmy.ml/comment/6078314"
    +editedAt: DateTimeImmutable @1701354549 {#4312
      date: 2023-11-30 15:29:09.0 +01:00
    }
    +createdAt: DateTimeImmutable @1700828802 {#4313
      date: 2023-11-24 13:26:42.0 +01:00
    }
  }
]
Attributes
[]
Component
App\Twig\Components\VoteComponent {#9175
  +subject: App\Entity\EntryComment {#4317
    +user: App\Entity\User {#4330
      +avatar: Proxies\__CG__\App\Entity\Image {#4331 …}
      +cover: null
      +email: "TheAnonymouseJoker@lemmy.ml"
      +username: "@TheAnonymouseJoker@lemmy.ml"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1719499996 {#4314
        date: 2024-06-27 16:53:16.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: true
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: false
      +notifyOnNewEntryCommentReply: false
      +notifyOnNewPost: false
      +notifyOnNewPostReply: false
      +notifyOnNewPostCommentReply: false
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4332 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4334 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4336 …}
      +entries: Doctrine\ORM\PersistentCollection {#4338 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4340 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4342 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4344 …}
      +posts: Doctrine\ORM\PersistentCollection {#4346 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4348 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4350 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4352 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4354 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4356 …}
      +follows: Doctrine\ORM\PersistentCollection {#4358 …}
      +followers: Doctrine\ORM\PersistentCollection {#4360 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4362 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4364 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4366 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4368 …}
      +reports: Doctrine\ORM\PersistentCollection {#4370 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4372 …}
      +violations: Doctrine\ORM\PersistentCollection {#4374 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4376 …}
      +awards: Doctrine\ORM\PersistentCollection {#4378 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4380 …}
      +categories: Doctrine\ORM\PersistentCollection {#4382 …}
      -id: 8990
      -password: "$2y$13$peWJARQT0roc//u.NSM2EeeeLmDR58xCceUkU3dnR/OYB05tq8Roy"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4384 …}
      +apId: "TheAnonymouseJoker@lemmy.ml"
      +apProfileId: "https://lemmy.ml/u/TheAnonymouseJoker"
      +apPublicUrl: "https://lemmy.ml/u/TheAnonymouseJoker"
      +apFollowersUrl: null
      +apInboxUrl: "https://lemmy.ml/inbox"
      +apDomain: "lemmy.ml"
      +apPreferredUsername: "TheAnonymouseJoker"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1710544259 {#4315
        date: 2024-03-16 00:10:59.0 +01:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1687519621 {#4316
        date: 2023-06-23 13:27:01.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: """
      Some stuff related to madaidan I wrote and compiled a couple years ago.\n
      \n
      [i.imgur.com/FiYhbkk.jpg](https://i.imgur.com/FiYhbkk.jpg): madaidan being very 4chan-y in terms of blaming the computer language for problems in particular software code (in this case Linux kernel), while dismissing everything when it comes to Windows. His blog page about Linux is a massive piece of “toilet paper” repeatedly debunked at this point. If you think the phrase “toilet paper” is mine, come, have a look.\n
      \n
      [web.archive.org/…/thoughts_about_an_article_talki…](https://web.archive.org/web/20210929053611/https://old.reddit.com/r/linux/comments/pwi1l9/thoughts_about_an_article_talking_about_the/)\n
      \n
      [web.archive.org/web/20220111035527/https:/…/item?…](https://web.archive.org/web/20220111035527/https://news.ycombinator.com/item?id=25590079)\n
      \n
      [archive.is/zxS72](https://archive.is/zxS72)\n
      \n
      TL;DR his blog has been dismissed enough at this point to consider it nothing more than digital rag. Security zealots are dangerous to FOSS community, like Brad Spengler/grsecurity, madaidan, GrapheneOS and so on. You can identify them as Big Tech security evangelists trying to shit on FOSS with arguments I would say do not end up being very intelligent and academic, and more reactionary and flakey.\n
      \n
      Also a little note on security. You do not need as much security as much as you need privacy, freedom and anonymity. Security is variable, it only buys you the time against attacker, and is the least priority among these 4 things in computing.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 14
    +score: 0
    +lastActive: DateTime @1700828802 {#4311
      date: 2023-11-24 13:26:42.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4318 …}
    +nested: Doctrine\ORM\PersistentCollection {#4320 …}
    +votes: Doctrine\ORM\PersistentCollection {#4322 …}
    +reports: Doctrine\ORM\PersistentCollection {#4324 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4326 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4328 …}
    -id: 158269
    -bodyTs: "'/fiyhbkk.jpg](https://i.imgur.com/fiyhbkk.jpg):':16 '/item':87 '/thoughts_about_an_article_talki':80 '/web/20210929053611/https://old.reddit.com/r/linux/comments/pwi1l9/thoughts_about_an_article_talking_about_the/)':83 '/web/20220111035527/https:/':86 '/web/20220111035527/https://news.ycombinator.com/item?id=25590079)':90 '/zxs72](https://archive.is/zxs72)':93 '4':201 '4chan':21 '4chan-y':20 'academ':155 'ago':13 'also':161 'among':199 'anonym':182 'archive.is':92 'archive.is/zxs72](https://archive.is/zxs72)':91 'argument':143 'attack':193 'big':133 'blame':26 'blog':50,97 'brad':121 'buy':188 'case':38 'code':35 'come':46,75 'communiti':119 'compil':9 'comput':28,204 'consid':106 'coupl':11 'danger':116 'debunk':62 'digit':111 'dismiss':42,100 'dr':95 'end':149 'enough':101 'evangelist':136 'everyth':43 'flakey':160 'foss':118,141 'freedom':180 'grapheneo':124 'i.imgur.com':15 'i.imgur.com/fiyhbkk.jpg](https://i.imgur.com/fiyhbkk.jpg):':14 'identifi':130 'intellig':153 'kernel':40 'languag':29 'least':197 'like':120 'linux':39,53 'littl':163 'look':78 'madaidan':5,17,123 'massiv':56 'mine':74 'much':172,175 'need':170,178 'note':164 'noth':108 'page':51 'paper':60,72 'particular':33 'phrase':70 'piec':57 'point':65,104 'prioriti':198 'privaci':179 'problem':31 'rag':112 'reactionari':158 'relat':3 'repeat':61 'say':146 'secur':113,135,166,173,183 'shit':139 'softwar':34 'spengler/grsecurity':122 'stuff':2 'tech':134 'term':24 'thing':202 'think':68 'time':191 'tl':94 'toilet':59,71 'tri':137 'variabl':185 'web.archive.org':79,82,85,89 'web.archive.org/web/20210929053611/https://old.reddit.com/r/linux/comments/pwi1l9/thoughts_about_an_article_talking_about_the/)':81 'web.archive.org/web/20220111035527/https:/':84 'web.archive.org/web/20220111035527/https://news.ycombinator.com/item?id=25590079)':88 'window':48 'would':145 'wrote':7 'y':22 'year':12 'zealot':114"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://lemmy.ml/comment/6078314"
    +editedAt: DateTimeImmutable @1701354549 {#4312
      date: 2023-11-30 15:29:09.0 +01:00
    }
    +createdAt: DateTimeImmutable @1700828802 {#4313
      date: 2023-11-24 13:26:42.0 +01:00
    }
  }
  +formDest: "entry_comment"
  +showDownvote: true
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
}
boost App\Twig\Components\BoostComponent 14.0 MiB 2.53 ms
Input props
[
  "subject" => App\Entity\EntryComment {#4317
    +user: App\Entity\User {#4330
      +avatar: Proxies\__CG__\App\Entity\Image {#4331 …}
      +cover: null
      +email: "TheAnonymouseJoker@lemmy.ml"
      +username: "@TheAnonymouseJoker@lemmy.ml"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1719499996 {#4314
        date: 2024-06-27 16:53:16.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: true
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: false
      +notifyOnNewEntryCommentReply: false
      +notifyOnNewPost: false
      +notifyOnNewPostReply: false
      +notifyOnNewPostCommentReply: false
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4332 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4334 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4336 …}
      +entries: Doctrine\ORM\PersistentCollection {#4338 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4340 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4342 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4344 …}
      +posts: Doctrine\ORM\PersistentCollection {#4346 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4348 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4350 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4352 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4354 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4356 …}
      +follows: Doctrine\ORM\PersistentCollection {#4358 …}
      +followers: Doctrine\ORM\PersistentCollection {#4360 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4362 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4364 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4366 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4368 …}
      +reports: Doctrine\ORM\PersistentCollection {#4370 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4372 …}
      +violations: Doctrine\ORM\PersistentCollection {#4374 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4376 …}
      +awards: Doctrine\ORM\PersistentCollection {#4378 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4380 …}
      +categories: Doctrine\ORM\PersistentCollection {#4382 …}
      -id: 8990
      -password: "$2y$13$peWJARQT0roc//u.NSM2EeeeLmDR58xCceUkU3dnR/OYB05tq8Roy"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4384 …}
      +apId: "TheAnonymouseJoker@lemmy.ml"
      +apProfileId: "https://lemmy.ml/u/TheAnonymouseJoker"
      +apPublicUrl: "https://lemmy.ml/u/TheAnonymouseJoker"
      +apFollowersUrl: null
      +apInboxUrl: "https://lemmy.ml/inbox"
      +apDomain: "lemmy.ml"
      +apPreferredUsername: "TheAnonymouseJoker"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1710544259 {#4315
        date: 2024-03-16 00:10:59.0 +01:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1687519621 {#4316
        date: 2023-06-23 13:27:01.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: """
      Some stuff related to madaidan I wrote and compiled a couple years ago.\n
      \n
      [i.imgur.com/FiYhbkk.jpg](https://i.imgur.com/FiYhbkk.jpg): madaidan being very 4chan-y in terms of blaming the computer language for problems in particular software code (in this case Linux kernel), while dismissing everything when it comes to Windows. His blog page about Linux is a massive piece of “toilet paper” repeatedly debunked at this point. If you think the phrase “toilet paper” is mine, come, have a look.\n
      \n
      [web.archive.org/…/thoughts_about_an_article_talki…](https://web.archive.org/web/20210929053611/https://old.reddit.com/r/linux/comments/pwi1l9/thoughts_about_an_article_talking_about_the/)\n
      \n
      [web.archive.org/web/20220111035527/https:/…/item?…](https://web.archive.org/web/20220111035527/https://news.ycombinator.com/item?id=25590079)\n
      \n
      [archive.is/zxS72](https://archive.is/zxS72)\n
      \n
      TL;DR his blog has been dismissed enough at this point to consider it nothing more than digital rag. Security zealots are dangerous to FOSS community, like Brad Spengler/grsecurity, madaidan, GrapheneOS and so on. You can identify them as Big Tech security evangelists trying to shit on FOSS with arguments I would say do not end up being very intelligent and academic, and more reactionary and flakey.\n
      \n
      Also a little note on security. You do not need as much security as much as you need privacy, freedom and anonymity. Security is variable, it only buys you the time against attacker, and is the least priority among these 4 things in computing.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 14
    +score: 0
    +lastActive: DateTime @1700828802 {#4311
      date: 2023-11-24 13:26:42.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4318 …}
    +nested: Doctrine\ORM\PersistentCollection {#4320 …}
    +votes: Doctrine\ORM\PersistentCollection {#4322 …}
    +reports: Doctrine\ORM\PersistentCollection {#4324 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4326 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4328 …}
    -id: 158269
    -bodyTs: "'/fiyhbkk.jpg](https://i.imgur.com/fiyhbkk.jpg):':16 '/item':87 '/thoughts_about_an_article_talki':80 '/web/20210929053611/https://old.reddit.com/r/linux/comments/pwi1l9/thoughts_about_an_article_talking_about_the/)':83 '/web/20220111035527/https:/':86 '/web/20220111035527/https://news.ycombinator.com/item?id=25590079)':90 '/zxs72](https://archive.is/zxs72)':93 '4':201 '4chan':21 '4chan-y':20 'academ':155 'ago':13 'also':161 'among':199 'anonym':182 'archive.is':92 'archive.is/zxs72](https://archive.is/zxs72)':91 'argument':143 'attack':193 'big':133 'blame':26 'blog':50,97 'brad':121 'buy':188 'case':38 'code':35 'come':46,75 'communiti':119 'compil':9 'comput':28,204 'consid':106 'coupl':11 'danger':116 'debunk':62 'digit':111 'dismiss':42,100 'dr':95 'end':149 'enough':101 'evangelist':136 'everyth':43 'flakey':160 'foss':118,141 'freedom':180 'grapheneo':124 'i.imgur.com':15 'i.imgur.com/fiyhbkk.jpg](https://i.imgur.com/fiyhbkk.jpg):':14 'identifi':130 'intellig':153 'kernel':40 'languag':29 'least':197 'like':120 'linux':39,53 'littl':163 'look':78 'madaidan':5,17,123 'massiv':56 'mine':74 'much':172,175 'need':170,178 'note':164 'noth':108 'page':51 'paper':60,72 'particular':33 'phrase':70 'piec':57 'point':65,104 'prioriti':198 'privaci':179 'problem':31 'rag':112 'reactionari':158 'relat':3 'repeat':61 'say':146 'secur':113,135,166,173,183 'shit':139 'softwar':34 'spengler/grsecurity':122 'stuff':2 'tech':134 'term':24 'thing':202 'think':68 'time':191 'tl':94 'toilet':59,71 'tri':137 'variabl':185 'web.archive.org':79,82,85,89 'web.archive.org/web/20210929053611/https://old.reddit.com/r/linux/comments/pwi1l9/thoughts_about_an_article_talking_about_the/)':81 'web.archive.org/web/20220111035527/https:/':84 'web.archive.org/web/20220111035527/https://news.ycombinator.com/item?id=25590079)':88 'window':48 'would':145 'wrote':7 'y':22 'year':12 'zealot':114"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://lemmy.ml/comment/6078314"
    +editedAt: DateTimeImmutable @1701354549 {#4312
      date: 2023-11-30 15:29:09.0 +01:00
    }
    +createdAt: DateTimeImmutable @1700828802 {#4313
      date: 2023-11-24 13:26:42.0 +01:00
    }
  }
]
Attributes
[]
Component
App\Twig\Components\BoostComponent {#9232
  +formDest: "entry_comment"
  +subject: App\Entity\EntryComment {#4317
    +user: App\Entity\User {#4330
      +avatar: Proxies\__CG__\App\Entity\Image {#4331 …}
      +cover: null
      +email: "TheAnonymouseJoker@lemmy.ml"
      +username: "@TheAnonymouseJoker@lemmy.ml"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1719499996 {#4314
        date: 2024-06-27 16:53:16.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: true
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: false
      +notifyOnNewEntryCommentReply: false
      +notifyOnNewPost: false
      +notifyOnNewPostReply: false
      +notifyOnNewPostCommentReply: false
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4332 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4334 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4336 …}
      +entries: Doctrine\ORM\PersistentCollection {#4338 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4340 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4342 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4344 …}
      +posts: Doctrine\ORM\PersistentCollection {#4346 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4348 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4350 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4352 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4354 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4356 …}
      +follows: Doctrine\ORM\PersistentCollection {#4358 …}
      +followers: Doctrine\ORM\PersistentCollection {#4360 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4362 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4364 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4366 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4368 …}
      +reports: Doctrine\ORM\PersistentCollection {#4370 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4372 …}
      +violations: Doctrine\ORM\PersistentCollection {#4374 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4376 …}
      +awards: Doctrine\ORM\PersistentCollection {#4378 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4380 …}
      +categories: Doctrine\ORM\PersistentCollection {#4382 …}
      -id: 8990
      -password: "$2y$13$peWJARQT0roc//u.NSM2EeeeLmDR58xCceUkU3dnR/OYB05tq8Roy"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4384 …}
      +apId: "TheAnonymouseJoker@lemmy.ml"
      +apProfileId: "https://lemmy.ml/u/TheAnonymouseJoker"
      +apPublicUrl: "https://lemmy.ml/u/TheAnonymouseJoker"
      +apFollowersUrl: null
      +apInboxUrl: "https://lemmy.ml/inbox"
      +apDomain: "lemmy.ml"
      +apPreferredUsername: "TheAnonymouseJoker"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1710544259 {#4315
        date: 2024-03-16 00:10:59.0 +01:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1687519621 {#4316
        date: 2023-06-23 13:27:01.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: """
      Some stuff related to madaidan I wrote and compiled a couple years ago.\n
      \n
      [i.imgur.com/FiYhbkk.jpg](https://i.imgur.com/FiYhbkk.jpg): madaidan being very 4chan-y in terms of blaming the computer language for problems in particular software code (in this case Linux kernel), while dismissing everything when it comes to Windows. His blog page about Linux is a massive piece of “toilet paper” repeatedly debunked at this point. If you think the phrase “toilet paper” is mine, come, have a look.\n
      \n
      [web.archive.org/…/thoughts_about_an_article_talki…](https://web.archive.org/web/20210929053611/https://old.reddit.com/r/linux/comments/pwi1l9/thoughts_about_an_article_talking_about_the/)\n
      \n
      [web.archive.org/web/20220111035527/https:/…/item?…](https://web.archive.org/web/20220111035527/https://news.ycombinator.com/item?id=25590079)\n
      \n
      [archive.is/zxS72](https://archive.is/zxS72)\n
      \n
      TL;DR his blog has been dismissed enough at this point to consider it nothing more than digital rag. Security zealots are dangerous to FOSS community, like Brad Spengler/grsecurity, madaidan, GrapheneOS and so on. You can identify them as Big Tech security evangelists trying to shit on FOSS with arguments I would say do not end up being very intelligent and academic, and more reactionary and flakey.\n
      \n
      Also a little note on security. You do not need as much security as much as you need privacy, freedom and anonymity. Security is variable, it only buys you the time against attacker, and is the least priority among these 4 things in computing.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 14
    +score: 0
    +lastActive: DateTime @1700828802 {#4311
      date: 2023-11-24 13:26:42.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4318 …}
    +nested: Doctrine\ORM\PersistentCollection {#4320 …}
    +votes: Doctrine\ORM\PersistentCollection {#4322 …}
    +reports: Doctrine\ORM\PersistentCollection {#4324 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4326 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4328 …}
    -id: 158269
    -bodyTs: "'/fiyhbkk.jpg](https://i.imgur.com/fiyhbkk.jpg):':16 '/item':87 '/thoughts_about_an_article_talki':80 '/web/20210929053611/https://old.reddit.com/r/linux/comments/pwi1l9/thoughts_about_an_article_talking_about_the/)':83 '/web/20220111035527/https:/':86 '/web/20220111035527/https://news.ycombinator.com/item?id=25590079)':90 '/zxs72](https://archive.is/zxs72)':93 '4':201 '4chan':21 '4chan-y':20 'academ':155 'ago':13 'also':161 'among':199 'anonym':182 'archive.is':92 'archive.is/zxs72](https://archive.is/zxs72)':91 'argument':143 'attack':193 'big':133 'blame':26 'blog':50,97 'brad':121 'buy':188 'case':38 'code':35 'come':46,75 'communiti':119 'compil':9 'comput':28,204 'consid':106 'coupl':11 'danger':116 'debunk':62 'digit':111 'dismiss':42,100 'dr':95 'end':149 'enough':101 'evangelist':136 'everyth':43 'flakey':160 'foss':118,141 'freedom':180 'grapheneo':124 'i.imgur.com':15 'i.imgur.com/fiyhbkk.jpg](https://i.imgur.com/fiyhbkk.jpg):':14 'identifi':130 'intellig':153 'kernel':40 'languag':29 'least':197 'like':120 'linux':39,53 'littl':163 'look':78 'madaidan':5,17,123 'massiv':56 'mine':74 'much':172,175 'need':170,178 'note':164 'noth':108 'page':51 'paper':60,72 'particular':33 'phrase':70 'piec':57 'point':65,104 'prioriti':198 'privaci':179 'problem':31 'rag':112 'reactionari':158 'relat':3 'repeat':61 'say':146 'secur':113,135,166,173,183 'shit':139 'softwar':34 'spengler/grsecurity':122 'stuff':2 'tech':134 'term':24 'thing':202 'think':68 'time':191 'tl':94 'toilet':59,71 'tri':137 'variabl':185 'web.archive.org':79,82,85,89 'web.archive.org/web/20210929053611/https://old.reddit.com/r/linux/comments/pwi1l9/thoughts_about_an_article_talking_about_the/)':81 'web.archive.org/web/20220111035527/https:/':84 'web.archive.org/web/20220111035527/https://news.ycombinator.com/item?id=25590079)':88 'window':48 'would':145 'wrote':7 'y':22 'year':12 'zealot':114"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://lemmy.ml/comment/6078314"
    +editedAt: DateTimeImmutable @1701354549 {#4312
      date: 2023-11-30 15:29:09.0 +01:00
    }
    +createdAt: DateTimeImmutable @1700828802 {#4313
      date: 2023-11-24 13:26:42.0 +01:00
    }
  }
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
}
entry_comments_nested App\Twig\Components\EntryCommentsNestedComponent 14.0 MiB 23.06 ms
Input props
[
  "comment" => App\Entity\EntryComment {#4317
    +user: App\Entity\User {#4330
      +avatar: Proxies\__CG__\App\Entity\Image {#4331 …}
      +cover: null
      +email: "TheAnonymouseJoker@lemmy.ml"
      +username: "@TheAnonymouseJoker@lemmy.ml"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1719499996 {#4314
        date: 2024-06-27 16:53:16.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: true
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: false
      +notifyOnNewEntryCommentReply: false
      +notifyOnNewPost: false
      +notifyOnNewPostReply: false
      +notifyOnNewPostCommentReply: false
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4332 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4334 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4336 …}
      +entries: Doctrine\ORM\PersistentCollection {#4338 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4340 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4342 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4344 …}
      +posts: Doctrine\ORM\PersistentCollection {#4346 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4348 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4350 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4352 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4354 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4356 …}
      +follows: Doctrine\ORM\PersistentCollection {#4358 …}
      +followers: Doctrine\ORM\PersistentCollection {#4360 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4362 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4364 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4366 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4368 …}
      +reports: Doctrine\ORM\PersistentCollection {#4370 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4372 …}
      +violations: Doctrine\ORM\PersistentCollection {#4374 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4376 …}
      +awards: Doctrine\ORM\PersistentCollection {#4378 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4380 …}
      +categories: Doctrine\ORM\PersistentCollection {#4382 …}
      -id: 8990
      -password: "$2y$13$peWJARQT0roc//u.NSM2EeeeLmDR58xCceUkU3dnR/OYB05tq8Roy"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4384 …}
      +apId: "TheAnonymouseJoker@lemmy.ml"
      +apProfileId: "https://lemmy.ml/u/TheAnonymouseJoker"
      +apPublicUrl: "https://lemmy.ml/u/TheAnonymouseJoker"
      +apFollowersUrl: null
      +apInboxUrl: "https://lemmy.ml/inbox"
      +apDomain: "lemmy.ml"
      +apPreferredUsername: "TheAnonymouseJoker"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1710544259 {#4315
        date: 2024-03-16 00:10:59.0 +01:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1687519621 {#4316
        date: 2023-06-23 13:27:01.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: """
      Some stuff related to madaidan I wrote and compiled a couple years ago.\n
      \n
      [i.imgur.com/FiYhbkk.jpg](https://i.imgur.com/FiYhbkk.jpg): madaidan being very 4chan-y in terms of blaming the computer language for problems in particular software code (in this case Linux kernel), while dismissing everything when it comes to Windows. His blog page about Linux is a massive piece of “toilet paper” repeatedly debunked at this point. If you think the phrase “toilet paper” is mine, come, have a look.\n
      \n
      [web.archive.org/…/thoughts_about_an_article_talki…](https://web.archive.org/web/20210929053611/https://old.reddit.com/r/linux/comments/pwi1l9/thoughts_about_an_article_talking_about_the/)\n
      \n
      [web.archive.org/web/20220111035527/https:/…/item?…](https://web.archive.org/web/20220111035527/https://news.ycombinator.com/item?id=25590079)\n
      \n
      [archive.is/zxS72](https://archive.is/zxS72)\n
      \n
      TL;DR his blog has been dismissed enough at this point to consider it nothing more than digital rag. Security zealots are dangerous to FOSS community, like Brad Spengler/grsecurity, madaidan, GrapheneOS and so on. You can identify them as Big Tech security evangelists trying to shit on FOSS with arguments I would say do not end up being very intelligent and academic, and more reactionary and flakey.\n
      \n
      Also a little note on security. You do not need as much security as much as you need privacy, freedom and anonymity. Security is variable, it only buys you the time against attacker, and is the least priority among these 4 things in computing.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 14
    +score: 0
    +lastActive: DateTime @1700828802 {#4311
      date: 2023-11-24 13:26:42.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4318 …}
    +nested: Doctrine\ORM\PersistentCollection {#4320 …}
    +votes: Doctrine\ORM\PersistentCollection {#4322 …}
    +reports: Doctrine\ORM\PersistentCollection {#4324 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4326 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4328 …}
    -id: 158269
    -bodyTs: "'/fiyhbkk.jpg](https://i.imgur.com/fiyhbkk.jpg):':16 '/item':87 '/thoughts_about_an_article_talki':80 '/web/20210929053611/https://old.reddit.com/r/linux/comments/pwi1l9/thoughts_about_an_article_talking_about_the/)':83 '/web/20220111035527/https:/':86 '/web/20220111035527/https://news.ycombinator.com/item?id=25590079)':90 '/zxs72](https://archive.is/zxs72)':93 '4':201 '4chan':21 '4chan-y':20 'academ':155 'ago':13 'also':161 'among':199 'anonym':182 'archive.is':92 'archive.is/zxs72](https://archive.is/zxs72)':91 'argument':143 'attack':193 'big':133 'blame':26 'blog':50,97 'brad':121 'buy':188 'case':38 'code':35 'come':46,75 'communiti':119 'compil':9 'comput':28,204 'consid':106 'coupl':11 'danger':116 'debunk':62 'digit':111 'dismiss':42,100 'dr':95 'end':149 'enough':101 'evangelist':136 'everyth':43 'flakey':160 'foss':118,141 'freedom':180 'grapheneo':124 'i.imgur.com':15 'i.imgur.com/fiyhbkk.jpg](https://i.imgur.com/fiyhbkk.jpg):':14 'identifi':130 'intellig':153 'kernel':40 'languag':29 'least':197 'like':120 'linux':39,53 'littl':163 'look':78 'madaidan':5,17,123 'massiv':56 'mine':74 'much':172,175 'need':170,178 'note':164 'noth':108 'page':51 'paper':60,72 'particular':33 'phrase':70 'piec':57 'point':65,104 'prioriti':198 'privaci':179 'problem':31 'rag':112 'reactionari':158 'relat':3 'repeat':61 'say':146 'secur':113,135,166,173,183 'shit':139 'softwar':34 'spengler/grsecurity':122 'stuff':2 'tech':134 'term':24 'thing':202 'think':68 'time':191 'tl':94 'toilet':59,71 'tri':137 'variabl':185 'web.archive.org':79,82,85,89 'web.archive.org/web/20210929053611/https://old.reddit.com/r/linux/comments/pwi1l9/thoughts_about_an_article_talking_about_the/)':81 'web.archive.org/web/20220111035527/https:/':84 'web.archive.org/web/20220111035527/https://news.ycombinator.com/item?id=25590079)':88 'window':48 'would':145 'wrote':7 'y':22 'year':12 'zealot':114"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://lemmy.ml/comment/6078314"
    +editedAt: DateTimeImmutable @1701354549 {#4312
      date: 2023-11-30 15:29:09.0 +01:00
    }
    +createdAt: DateTimeImmutable @1700828802 {#4313
      date: 2023-11-24 13:26:42.0 +01:00
    }
  }
  "level" => 1
  "showNested" => true
  "view" => "tree"
]
Attributes
[
  "showNested" => true
]
Component
App\Twig\Components\EntryCommentsNestedComponent {#9472
  +comment: App\Entity\EntryComment {#4317
    +user: App\Entity\User {#4330
      +avatar: Proxies\__CG__\App\Entity\Image {#4331 …}
      +cover: null
      +email: "TheAnonymouseJoker@lemmy.ml"
      +username: "@TheAnonymouseJoker@lemmy.ml"
      +roles: []
      +followersCount: 0
      +homepage: "front"
      +about: null
      +lastActive: DateTime @1719499996 {#4314
        date: 2024-06-27 16:53:16.0 +02:00
      }
      +markedForDeletionAt: null
      +fields: null
      +oauthGithubId: null
      +oauthGoogleId: null
      +oauthFacebookId: null
      +oauthKeycloakId: null
      +hideAdult: true
      +showSubscribedUsers: true
      +showSubscribedMagazines: true
      +showSubscribedDomains: true
      +preferredLanguages: []
      +featuredMagazines: null
      +showProfileSubscriptions: true
      +showProfileFollowings: true
      +markNewComments: false
      +notifyOnNewEntry: false
      +notifyOnNewEntryReply: false
      +notifyOnNewEntryCommentReply: false
      +notifyOnNewPost: false
      +notifyOnNewPostReply: false
      +notifyOnNewPostCommentReply: false
      +addMentionsEntries: false
      +addMentionsPosts: true
      +isBanned: false
      +isVerified: false
      +isDeleted: false
      +isBot: false
      +spamProtection: true
      +customCss: null
      +ignoreMagazinesCustomCss: false
      +moderatorTokens: Doctrine\ORM\PersistentCollection {#4332 …}
      +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#4334 …}
      +moderatorRequests: Doctrine\ORM\PersistentCollection {#4336 …}
      +entries: Doctrine\ORM\PersistentCollection {#4338 …}
      +entryVotes: Doctrine\ORM\PersistentCollection {#4340 …}
      +entryComments: Doctrine\ORM\PersistentCollection {#4342 …}
      +entryCommentVotes: Doctrine\ORM\PersistentCollection {#4344 …}
      +posts: Doctrine\ORM\PersistentCollection {#4346 …}
      +postVotes: Doctrine\ORM\PersistentCollection {#4348 …}
      +postComments: Doctrine\ORM\PersistentCollection {#4350 …}
      +postCommentVotes: Doctrine\ORM\PersistentCollection {#4352 …}
      +subscriptions: Doctrine\ORM\PersistentCollection {#4354 …}
      +subscribedDomains: Doctrine\ORM\PersistentCollection {#4356 …}
      +follows: Doctrine\ORM\PersistentCollection {#4358 …}
      +followers: Doctrine\ORM\PersistentCollection {#4360 …}
      +blocks: Doctrine\ORM\PersistentCollection {#4362 …}
      +blockers: Doctrine\ORM\PersistentCollection {#4364 …}
      +blockedMagazines: Doctrine\ORM\PersistentCollection {#4366 …}
      +blockedDomains: Doctrine\ORM\PersistentCollection {#4368 …}
      +reports: Doctrine\ORM\PersistentCollection {#4370 …}
      +favourites: Doctrine\ORM\PersistentCollection {#4372 …}
      +violations: Doctrine\ORM\PersistentCollection {#4374 …}
      +notifications: Doctrine\ORM\PersistentCollection {#4376 …}
      +awards: Doctrine\ORM\PersistentCollection {#4378 …}
      +subscribedCategories: Doctrine\ORM\PersistentCollection {#4380 …}
      +categories: Doctrine\ORM\PersistentCollection {#4382 …}
      -id: 8990
      -password: "$2y$13$peWJARQT0roc//u.NSM2EeeeLmDR58xCceUkU3dnR/OYB05tq8Roy"
      -totpSecret: null
      -totpBackupCodes: []
      -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#4384 …}
      +apId: "TheAnonymouseJoker@lemmy.ml"
      +apProfileId: "https://lemmy.ml/u/TheAnonymouseJoker"
      +apPublicUrl: "https://lemmy.ml/u/TheAnonymouseJoker"
      +apFollowersUrl: null
      +apInboxUrl: "https://lemmy.ml/inbox"
      +apDomain: "lemmy.ml"
      +apPreferredUsername: "TheAnonymouseJoker"
      +apDiscoverable: true
      +apManuallyApprovesFollowers: false
      +privateKey: null
      +publicKey: null
      +apFetchedAt: DateTime @1710544259 {#4315
        date: 2024-03-16 00:10:59.0 +01:00
      }
      +apDeletedAt: null
      +apTimeoutAt: null
      +visibility: "visible             "
      +createdAt: DateTimeImmutable @1687519621 {#4316
        date: 2023-06-23 13:27:01.0 +02:00
      }
    }
    +entry: App\Entity\Entry {#2412
      +user: Proxies\__CG__\App\Entity\User {#1978
        +avatar: null
        +cover: null
        +email: "Pantherina@feddit.de"
        +username: "@Pantherina@feddit.de"
        +roles: []
        +followersCount: 0
        +homepage: "front"
        +about: null
        +lastActive: DateTime @1721498243 {#1515
          date: 2024-07-20 19:57:23.0 +02:00
        }
        +markedForDeletionAt: null
        +fields: null
        +oauthGithubId: null
        +oauthGoogleId: null
        +oauthFacebookId: null
        +oauthKeycloakId: null
        +hideAdult: true
        +showSubscribedUsers: true
        +showSubscribedMagazines: true
        +showSubscribedDomains: true
        +preferredLanguages: []
        +featuredMagazines: null
        +showProfileSubscriptions: false
        +showProfileFollowings: true
        +markNewComments: false
        +notifyOnNewEntry: false
        +notifyOnNewEntryReply: true
        +notifyOnNewEntryCommentReply: true
        +notifyOnNewPost: false
        +notifyOnNewPostReply: true
        +notifyOnNewPostCommentReply: true
        +addMentionsEntries: false
        +addMentionsPosts: true
        +isBanned: false
        +isVerified: false
        +isDeleted: false
        +isBot: false
        +spamProtection: true
        +customCss: null
        +ignoreMagazinesCustomCss: false
        +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
        +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
        +entries: Doctrine\ORM\PersistentCollection {#1406 …}
        +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
        +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
        +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
        +posts: Doctrine\ORM\PersistentCollection {#1745 …}
        +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
        +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
        +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
        +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
        +follows: Doctrine\ORM\PersistentCollection {#1409 …}
        +followers: Doctrine\ORM\PersistentCollection {#1624 …}
        +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
        +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
        +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
        +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
        +reports: Doctrine\ORM\PersistentCollection {#1416 …}
        +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
        +violations: Doctrine\ORM\PersistentCollection {#1694 …}
        +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
        +awards: Doctrine\ORM\PersistentCollection {#1434 …}
        +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
        +categories: Doctrine\ORM\PersistentCollection {#1640 …}
        -id: 48318
        -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
        -totpSecret: null
        -totpBackupCodes: []
        -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
        +apId: "Pantherina@feddit.de"
        +apProfileId: "https://feddit.de/u/Pantherina"
        +apPublicUrl: "https://feddit.de/u/Pantherina"
        +apFollowersUrl: null
        +apInboxUrl: "https://feddit.de/inbox"
        +apDomain: "feddit.de"
        +apPreferredUsername: "Pantherina"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: false
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1721236644 {#1516
          date: 2024-07-17 19:17:24.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1696428300 {#1518
          date: 2023-10-04 16:05:00.0 +02:00
        }
        +__isInitialized__: true
         …2
      }
      +magazine: App\Entity\Magazine {#264
        +icon: Proxies\__CG__\App\Entity\Image {#245 …}
        +name: "linux@lemmy.ml"
        +title: "linux"
        +description: """
          From Wikipedia, the free encyclopedia\n
          \n
          Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
          \n
          Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
          \n
          ### Rules\n
          \n
          - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
          - No misinformation\n
          - No NSFW content\n
          - No hate speech, bigotry, etc\n
          \n
          ### Related Communities\n
          \n
          - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
          - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
          - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
          - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
          \n
          Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
          """
        +rules: null
        +subscriptionsCount: 1
        +entryCount: 1406
        +entryCommentCount: 28632
        +postCount: 6
        +postCommentCount: 214
        +isAdult: false
        +customCss: null
        +lastActive: DateTime @1729583542 {#274
          date: 2024-10-22 09:52:22.0 +02:00
        }
        +markedForDeletionAt: null
        +tags: null
        +moderators: Doctrine\ORM\PersistentCollection {#236 …}
        +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
        +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
        +entries: Doctrine\ORM\PersistentCollection {#179 …}
        +posts: Doctrine\ORM\PersistentCollection {#137 …}
        +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
        +bans: Doctrine\ORM\PersistentCollection {#116 …}
        +reports: Doctrine\ORM\PersistentCollection {#102 …}
        +badges: Doctrine\ORM\PersistentCollection {#80 …}
        +logs: Doctrine\ORM\PersistentCollection {#70 …}
        +awards: Doctrine\ORM\PersistentCollection {#1360 …}
        +categories: Doctrine\ORM\PersistentCollection {#1792 …}
        -id: 73
        +apId: "linux@lemmy.ml"
        +apProfileId: "https://lemmy.ml/c/linux"
        +apPublicUrl: "https://lemmy.ml/c/linux"
        +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
        +apInboxUrl: "https://lemmy.ml/inbox"
        +apDomain: "lemmy.ml"
        +apPreferredUsername: "linux"
        +apDiscoverable: true
        +apManuallyApprovesFollowers: null
        +privateKey: null
        +publicKey: null
        +apFetchedAt: DateTime @1729583596 {#268
          date: 2024-10-22 09:53:16.0 +02:00
        }
        +apDeletedAt: null
        +apTimeoutAt: null
        +visibility: "visible             "
        +createdAt: DateTimeImmutable @1698929468 {#270
          date: 2023-11-02 13:51:08.0 +01:00
        }
      }
      +image: null
      +domain: Proxies\__CG__\App\Entity\Domain {#1889 …}
      +slug: "Just-read-Madaidans-Insecurities-Do-you-know-how-much-is"
      +title: "Just read Madaidans Insecurities. Do you know how much is still relevant?"
      +url: "https://www.madaidans-insecurities.github.io/linux.html"
      +body: """
        Basically\n
        \n
        - Sandboxing is bad, bubblewrap (used in Flatpak) is a really good implementation though. Firefox and other apps are not very well sandboxed though\n
        - The kernel is endangered through user namespaces (used in Flatpak and Podman/Docker containers i.e. in Distrobox and Toolbox too)\n
        - the root password can be extracted veeery easily, especially when entering it through a terminal. Windows “okay” button might actually be more secure!\n
        - X11 is insecure, okay we know that\n
        - the kernel is very bloated and everything in there has all the permissions, which is not needed\n
        - Kernel bugs are often not fixed quickly or at all\n
        - Stable Distros are insecure if only CVE bugs are backported, as many security bugs dont get a CVE\n
        \n
        I am currently experimenting with the hardened Kernel and hardened_malloc, I use GrapheneOS since over a year.\n
        \n
        On Linux its a bit more difficult though, as Flatpak and Distrobox dont work anymore.\n
        \n
        This would mean user namespaces need to be enabled again, which I can’t seem to make work with\n
        \n
        `sudo sysctl -w kernel.unprivileged_users_clone=1`\n
        \n
        But the file doesnt exist and creating it doesnt work, probably needs to be a karg or something?\n
        \n
        I am testing all this using the hardened mod of Ublue (a slight Fedora deviation using its image-based distribution model):\n
        \n
        [github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)\n
        \n
        The images are rather opinionated though and have things like Flatpak removed, making them nearly unusable.\n
        \n
        Maybe nix is a solution? Would this be a good idea?\n
        \n
        Another point, bubblejail is not yet in the Fedora repos, which would be a way to make secure sandboxing accessible. [Here](https://github.com/rusty-snake/fedora-extras/tree/main/bubblejail) is a spec file from rusty-snake.\n
        \n
        What do you know about this?
        """
      +type: "link"
      +lang: "en"
      +isOc: false
      +hasEmbed: false
      +commentCount: 8
      +favouriteCount: 36
      +score: 0
      +isAdult: false
      +sticky: false
      +lastActive: DateTime @1700929355 {#2418
        date: 2023-11-25 17:22:35.0 +01:00
      }
      +ip: null
      +adaAmount: 0
      +tags: null
      +mentions: null
      +comments: Doctrine\ORM\PersistentCollection {#1688 …}
      +votes: Doctrine\ORM\PersistentCollection {#1966 …}
      +reports: Doctrine\ORM\PersistentCollection {#1965 …}
      +favourites: Doctrine\ORM\PersistentCollection {#1368 …}
      +notifications: Doctrine\ORM\PersistentCollection {#2426 …}
      +badges: Doctrine\ORM\PersistentCollection {#2439 …}
      +children: []
      -id: 16138
      -titleTs: "'insecur':4 'know':7 'madaidan':3 'much':9 'read':2 'relev':12 'still':11"
      -bodyTs: "'/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':220 '/rusty-snake/fedora-extras/tree/main/bubblejail)':271 '1':177 'access':267 'actual':63 'anoth':248 'anymor':151 'app':18 'backport':110 'bad':4 'base':215 'basic':1 'bit':141 'bloat':78 'bubblejail':250 'bubblewrap':5 'bug':92,108,114 'button':61 'clone':176 'contain':37 'creat':184 'current':121 'cve':107,118 'deviat':210 'difficult':143 'distribut':216 'distro':102 'distrobox':40,148 'doesnt':181,186 'dont':115,149 'easili':51 'enabl':160 'endang':28 'enter':54 'especi':52 'everyth':80 'exist':182 'experi':122 'extract':49 'fedora':209,256 'file':180,275 'firefox':15 'fix':96 'flatpak':8,34,146,231 'get':116 'github.com':219,270 'github.com/qoijjj/hardened-images](https://github.com/qoijjj/hardened-images)':218 'github.com/rusty-snake/fedora-extras/tree/main/bubblejail)':269 'good':12,246 'grapheneo':132 'harden':125,128,203 'i.e':38 'idea':247 'imag':214,222 'image-bas':213 'implement':13 'insecur':69,104 'karg':193 'kernel':26,75,91,126 'kernel.unprivileged':174 'know':72,283 'like':230 'linux':138 'make':168,233,264 'malloc':129 'mani':112 'mayb':237 'mean':154 'might':62 'mod':204 'model':217 'namespac':31,156 'near':235 'need':90,157,189 'nix':238 'often':94 'okay':60,70 'opinion':225 'password':46 'permiss':86 'podman/docker':36 'point':249 'probabl':188 'quick':97 'rather':224 'realli':11 'remov':232 'repo':257 'root':45 'rusti':278 'rusty-snak':277 'sandbox':2,23,266 'secur':66,113,265 'seem':166 'sinc':133 'slight':208 'snake':279 'solut':241 'someth':195 'spec':274 'stabl':101 'sudo':171 'sysctl':172 'termin':58 'test':198 'thing':229 'though':14,24,144,226 'toolbox':42 'ublu':206 'unus':236 'use':6,32,131,201,211 'user':30,155,175 'veeeri':50 'w':173 'way':262 'well':22 'window':59 'work':150,169,187 'would':153,242,259 'x11':67 'year':136 'yet':253"
      +cross: false
      +upVotes: 0
      +downVotes: 0
      +ranking: 1700870525
      +visibility: "visible             "
      +apId: "https://feddit.de/post/5981126"
      +editedAt: null
      +createdAt: DateTimeImmutable @1700784125 {#1858
        date: 2023-11-24 01:02:05.0 +01:00
      }
    }
    +magazine: App\Entity\Magazine {#264}
    +image: null
    +parent: null
    +root: null
    +body: """
      Some stuff related to madaidan I wrote and compiled a couple years ago.\n
      \n
      [i.imgur.com/FiYhbkk.jpg](https://i.imgur.com/FiYhbkk.jpg): madaidan being very 4chan-y in terms of blaming the computer language for problems in particular software code (in this case Linux kernel), while dismissing everything when it comes to Windows. His blog page about Linux is a massive piece of “toilet paper” repeatedly debunked at this point. If you think the phrase “toilet paper” is mine, come, have a look.\n
      \n
      [web.archive.org/…/thoughts_about_an_article_talki…](https://web.archive.org/web/20210929053611/https://old.reddit.com/r/linux/comments/pwi1l9/thoughts_about_an_article_talking_about_the/)\n
      \n
      [web.archive.org/web/20220111035527/https:/…/item?…](https://web.archive.org/web/20220111035527/https://news.ycombinator.com/item?id=25590079)\n
      \n
      [archive.is/zxS72](https://archive.is/zxS72)\n
      \n
      TL;DR his blog has been dismissed enough at this point to consider it nothing more than digital rag. Security zealots are dangerous to FOSS community, like Brad Spengler/grsecurity, madaidan, GrapheneOS and so on. You can identify them as Big Tech security evangelists trying to shit on FOSS with arguments I would say do not end up being very intelligent and academic, and more reactionary and flakey.\n
      \n
      Also a little note on security. You do not need as much security as much as you need privacy, freedom and anonymity. Security is variable, it only buys you the time against attacker, and is the least priority among these 4 things in computing.
      """
    +lang: "en"
    +isAdult: false
    +favouriteCount: 14
    +score: 0
    +lastActive: DateTime @1700828802 {#4311
      date: 2023-11-24 13:26:42.0 +01:00
    }
    +ip: null
    +tags: null
    +mentions: [
      "@Pantherina@feddit.de"
    ]
    +children: Doctrine\ORM\PersistentCollection {#4318 …}
    +nested: Doctrine\ORM\PersistentCollection {#4320 …}
    +votes: Doctrine\ORM\PersistentCollection {#4322 …}
    +reports: Doctrine\ORM\PersistentCollection {#4324 …}
    +favourites: Doctrine\ORM\PersistentCollection {#4326 …}
    +notifications: Doctrine\ORM\PersistentCollection {#4328 …}
    -id: 158269
    -bodyTs: "'/fiyhbkk.jpg](https://i.imgur.com/fiyhbkk.jpg):':16 '/item':87 '/thoughts_about_an_article_talki':80 '/web/20210929053611/https://old.reddit.com/r/linux/comments/pwi1l9/thoughts_about_an_article_talking_about_the/)':83 '/web/20220111035527/https:/':86 '/web/20220111035527/https://news.ycombinator.com/item?id=25590079)':90 '/zxs72](https://archive.is/zxs72)':93 '4':201 '4chan':21 '4chan-y':20 'academ':155 'ago':13 'also':161 'among':199 'anonym':182 'archive.is':92 'archive.is/zxs72](https://archive.is/zxs72)':91 'argument':143 'attack':193 'big':133 'blame':26 'blog':50,97 'brad':121 'buy':188 'case':38 'code':35 'come':46,75 'communiti':119 'compil':9 'comput':28,204 'consid':106 'coupl':11 'danger':116 'debunk':62 'digit':111 'dismiss':42,100 'dr':95 'end':149 'enough':101 'evangelist':136 'everyth':43 'flakey':160 'foss':118,141 'freedom':180 'grapheneo':124 'i.imgur.com':15 'i.imgur.com/fiyhbkk.jpg](https://i.imgur.com/fiyhbkk.jpg):':14 'identifi':130 'intellig':153 'kernel':40 'languag':29 'least':197 'like':120 'linux':39,53 'littl':163 'look':78 'madaidan':5,17,123 'massiv':56 'mine':74 'much':172,175 'need':170,178 'note':164 'noth':108 'page':51 'paper':60,72 'particular':33 'phrase':70 'piec':57 'point':65,104 'prioriti':198 'privaci':179 'problem':31 'rag':112 'reactionari':158 'relat':3 'repeat':61 'say':146 'secur':113,135,166,173,183 'shit':139 'softwar':34 'spengler/grsecurity':122 'stuff':2 'tech':134 'term':24 'thing':202 'think':68 'time':191 'tl':94 'toilet':59,71 'tri':137 'variabl':185 'web.archive.org':79,82,85,89 'web.archive.org/web/20210929053611/https://old.reddit.com/r/linux/comments/pwi1l9/thoughts_about_an_article_talking_about_the/)':81 'web.archive.org/web/20220111035527/https:/':84 'web.archive.org/web/20220111035527/https://news.ycombinator.com/item?id=25590079)':88 'window':48 'would':145 'wrote':7 'y':22 'year':12 'zealot':114"
    +ranking: 0
    +commentCount: 0
    +upVotes: 0
    +downVotes: 0
    +visibility: "visible             "
    +apId: "https://lemmy.ml/comment/6078314"
    +editedAt: DateTimeImmutable @1701354549 {#4312
      date: 2023-11-30 15:29:09.0 +01:00
    }
    +createdAt: DateTimeImmutable @1700828802 {#4313
      date: 2023-11-24 13:26:42.0 +01:00
    }
  }
  +nestedComments: []
  +level: 1
  +view: "tree"
  -entryCommentRepository: App\Repository\EntryCommentRepository {#555 …}
  -twig: Twig\Environment {#1252 …}
  -security: Symfony\Bundle\SecurityBundle\Security {#1101 …}
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
}
settings_row_enum App\Twig\Components\SettingsRowEnumComponent 14.0 MiB 0.84 ms
Input props
[
  "label" => "Sidebar position"
  "settingsKey" => "KBIN_GENERAL_SIDEBAR_POSITION"
  "values" => [
    [
      "name" => "Left"
      "value" => "LEFT"
    ]
    [
      "name" => "Right"
      "value" => "RIGHT"
    ]
  ]
  "defaultValue" => "RIGHT"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowEnumComponent {#9597
  +label: "Sidebar position"
  +help: ""
  +settingsKey: "KBIN_GENERAL_SIDEBAR_POSITION"
  +values: [
    [
      "name" => "Left"
      "value" => "LEFT"
    ]
    [
      "name" => "Right"
      "value" => "RIGHT"
    ]
  ]
  +defaultValue: "RIGHT"
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 14.0 MiB 0.83 ms
Input props
[
  "label" => "Dynamic lists"
  "settingsKey" => "KBIN_GENERAL_DYNAMIC_LISTS"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#9661
  +label: "Dynamic lists"
  +help: ""
  +settingsKey: "KBIN_GENERAL_DYNAMIC_LISTS"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 14.0 MiB 0.49 ms
Input props
[
  "label" => "Rounded edges"
  "settingsKey" => "KBIN_GENERAL_ROUNDED_EDGES"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#9726
  +label: "Rounded edges"
  +help: ""
  +settingsKey: "KBIN_GENERAL_ROUNDED_EDGES"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 14.0 MiB 0.56 ms
Input props
[
  "label" => "Infinite scrolling"
  "help" => "Automatically load more content when you reach the bottom of the page."
  "settingsKey" => "KBIN_GENERAL_INFINITE_SCROLL"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#9782
  +label: "Infinite scrolling"
  +help: "Automatically load more content when you reach the bottom of the page."
  +settingsKey: "KBIN_GENERAL_INFINITE_SCROLL"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 14.0 MiB 0.61 ms
Input props
[
  "label" => "Sticky navbar"
  "help" => "The navbar will stick to the top of the page when you scroll down."
  "settingsKey" => "KBIN_GENERAL_FIXED_NAVBAR"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#9841
  +label: "Sticky navbar"
  +help: "The navbar will stick to the top of the page when you scroll down."
  +settingsKey: "KBIN_GENERAL_FIXED_NAVBAR"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 14.0 MiB 0.89 ms
Input props
[
  "label" => "Show top bar"
  "settingsKey" => "KBIN_GENERAL_TOPBAR"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#9897
  +label: "Show top bar"
  +help: ""
  +settingsKey: "KBIN_GENERAL_TOPBAR"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 14.0 MiB 0.64 ms
Input props
[
  "label" => "Turbo mode (experimental)"
  "settingsKey" => "KBIN_GENERAL_TURBO"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#9953
  +label: "Turbo mode (experimental)"
  +help: ""
  +settingsKey: "KBIN_GENERAL_TURBO"
  +defaultValue: false
  +reloadRequired: true
}
user_settings_row_switch App\Twig\Components\UserSettingsRowSwitchComponent 14.0 MiB 1.04 ms
Input props
[
  "label" => "Mark new comments"
  "settingsKey" => "KBIN_MARK_NEW_COMMENTS"
]
Attributes
[]
Component
App\Twig\Components\UserSettingsRowSwitchComponent {#10011
  +label: "Mark new comments"
  +help: ""
  +settingsKey: "KBIN_MARK_NEW_COMMENTS"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 14.0 MiB 0.60 ms
Input props
[
  "label" => "Show "Support Us" block"
  "settingsKey" => "KBIN_GENERAL_SUPPORT_US_BLOCK"
  "defaultValue" => true
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#10074
  +label: "Show "Support Us" block"
  +help: ""
  +settingsKey: "KBIN_GENERAL_SUPPORT_US_BLOCK"
  +defaultValue: true
  +reloadRequired: true
}
user_settings_row_switch App\Twig\Components\UserSettingsRowSwitchComponent 14.0 MiB 0.71 ms
Input props
[
  "label" => "Show subscribed users"
  "settingsKey" => "KBIN_SUB_CHANNEL_USERS"
]
Attributes
[]
Component
App\Twig\Components\UserSettingsRowSwitchComponent {#10132
  +label: "Show subscribed users"
  +help: ""
  +settingsKey: "KBIN_SUB_CHANNEL_USERS"
  +defaultValue: false
  +reloadRequired: true
}
user_settings_row_switch App\Twig\Components\UserSettingsRowSwitchComponent 14.0 MiB 0.72 ms
Input props
[
  "label" => "Show subscribed magazines"
  "settingsKey" => "KBIN_SUB_CHANNEL_MAGAZINES"
]
Attributes
[]
Component
App\Twig\Components\UserSettingsRowSwitchComponent {#10188
  +label: "Show subscribed magazines"
  +help: ""
  +settingsKey: "KBIN_SUB_CHANNEL_MAGAZINES"
  +defaultValue: false
  +reloadRequired: true
}
user_settings_row_switch App\Twig\Components\UserSettingsRowSwitchComponent 14.0 MiB 0.68 ms
Input props
[
  "label" => "Show subscribed domains"
  "settingsKey" => "KBIN_SUB_CHANNEL_DOMAINS"
]
Attributes
[]
Component
App\Twig\Components\UserSettingsRowSwitchComponent {#10244
  +label: "Show subscribed domains"
  +help: ""
  +settingsKey: "KBIN_SUB_CHANNEL_DOMAINS"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 14.0 MiB 0.51 ms
Input props
[
  "label" => "Auto media preview"
  "help" => "Automatically expand media previews."
  "settingsKey" => "KBIN_ENTRIES_SHOW_PREVIEW"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#10300
  +label: "Auto media preview"
  +help: "Automatically expand media previews."
  +settingsKey: "KBIN_ENTRIES_SHOW_PREVIEW"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 14.0 MiB 0.47 ms
Input props
[
  "label" => "Compact view"
  "settingsKey" => "KBIN_ENTRIES_COMPACT"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#10356
  +label: "Compact view"
  +help: ""
  +settingsKey: "KBIN_ENTRIES_COMPACT"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 14.0 MiB 0.63 ms
Input props
[
  "label" => "Show users’ avatars"
  "settingsKey" => "KBIN_ENTRIES_SHOW_USERS_AVATARS"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#10412
  +label: "Show users’ avatars"
  +help: ""
  +settingsKey: "KBIN_ENTRIES_SHOW_USERS_AVATARS"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 14.0 MiB 0.51 ms
Input props
[
  "label" => "Show magazines’ icons"
  "settingsKey" => "KBIN_ENTRIES_SHOW_MAGAZINES_ICONS"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#10468
  +label: "Show magazines’ icons"
  +help: ""
  +settingsKey: "KBIN_ENTRIES_SHOW_MAGAZINES_ICONS"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 14.0 MiB 1.20 ms
Input props
[
  "label" => "Show thumbnails"
  "settingsKey" => "KBIN_ENTRIES_SHOW_THUMBNAILS"
  "defaultValue" => true
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#10524
  +label: "Show thumbnails"
  +help: ""
  +settingsKey: "KBIN_ENTRIES_SHOW_THUMBNAILS"
  +defaultValue: true
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 14.0 MiB 0.60 ms
Input props
[
  "label" => "Auto media preview"
  "help" => "Automatically expand media previews."
  "settingsKey" => "KBIN_POSTS_SHOW_PREVIEW"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#10580
  +label: "Auto media preview"
  +help: "Automatically expand media previews."
  +settingsKey: "KBIN_POSTS_SHOW_PREVIEW"
  +defaultValue: false
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 14.0 MiB 0.36 ms
Input props
[
  "label" => "Show users’ avatars"
  "settingsKey" => "KBIN_POSTS_SHOW_USERS_AVATARS"
  "defaultValue" => true
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#10636
  +label: "Show users’ avatars"
  +help: ""
  +settingsKey: "KBIN_POSTS_SHOW_USERS_AVATARS"
  +defaultValue: true
  +reloadRequired: true
}
settings_row_enum App\Twig\Components\SettingsRowEnumComponent 14.0 MiB 0.58 ms
Input props
[
  "label" => "Comment reply position"
  "help" => "Display the comment reply form either at the top or bottom of the page. When 'infinite scroll' is enabled the position will always appear at the top."
  "settingsKey" => "KBIN_COMMENTS_REPLY_POSITION"
  "values" => [
    [
      "name" => "top"
      "value" => "TOP"
    ]
    [
      "name" => "bottom"
      "value" => "BOTTOM"
    ]
  ]
  "defaultValue" => "TOP"
]
Attributes
[]
Component
App\Twig\Components\SettingsRowEnumComponent {#10692
  +label: "Comment reply position"
  +help: "Display the comment reply form either at the top or bottom of the page. When 'infinite scroll' is enabled the position will always appear at the top."
  +settingsKey: "KBIN_COMMENTS_REPLY_POSITION"
  +values: [
    [
      "name" => "top"
      "value" => "TOP"
    ]
    [
      "name" => "bottom"
      "value" => "BOTTOM"
    ]
  ]
  +defaultValue: "TOP"
  +reloadRequired: true
}
settings_row_switch App\Twig\Components\SettingsRowSwitchComponent 14.0 MiB 0.50 ms
Input props
[
  "label" => "Show Comment Avatars"
  "help" => "Display/hide user avatars when viewing comments on a single thread or post."
  "settingsKey" => "KBIN_COMMENTS_SHOW_USER_AVATAR"
  "defaultValue" => true
]
Attributes
[]
Component
App\Twig\Components\SettingsRowSwitchComponent {#10750
  +label: "Show Comment Avatars"
  +help: "Display/hide user avatars when viewing comments on a single thread or post."
  +settingsKey: "KBIN_COMMENTS_SHOW_USER_AVATAR"
  +defaultValue: true
  +reloadRequired: true
}
user_actions App\Twig\Components\UserActionsComponent 14.0 MiB 1.81 ms
Input props
[
  "user" => Proxies\__CG__\App\Entity\User {#1978
    +avatar: null
    +cover: null
    +email: "Pantherina@feddit.de"
    +username: "@Pantherina@feddit.de"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: null
    +lastActive: DateTime @1721498243 {#1515
      date: 2024-07-20 19:57:23.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
    +entries: Doctrine\ORM\PersistentCollection {#1406 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
    +posts: Doctrine\ORM\PersistentCollection {#1745 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
    +follows: Doctrine\ORM\PersistentCollection {#1409 …}
    +followers: Doctrine\ORM\PersistentCollection {#1624 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
    +reports: Doctrine\ORM\PersistentCollection {#1416 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
    +violations: Doctrine\ORM\PersistentCollection {#1694 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
    +awards: Doctrine\ORM\PersistentCollection {#1434 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
    +categories: Doctrine\ORM\PersistentCollection {#1640 …}
    -id: 48318
    -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
    +apId: "Pantherina@feddit.de"
    +apProfileId: "https://feddit.de/u/Pantherina"
    +apPublicUrl: "https://feddit.de/u/Pantherina"
    +apFollowersUrl: null
    +apInboxUrl: "https://feddit.de/inbox"
    +apDomain: "feddit.de"
    +apPreferredUsername: "Pantherina"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1721236644 {#1516
      date: 2024-07-17 19:17:24.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696428300 {#1518
      date: 2023-10-04 16:05:00.0 +02:00
    }
    +__isInitialized__: true
     …2
  }
]
Attributes
[]
Component
App\Twig\Components\UserActionsComponent {#10827
  +user: Proxies\__CG__\App\Entity\User {#1978
    +avatar: null
    +cover: null
    +email: "Pantherina@feddit.de"
    +username: "@Pantherina@feddit.de"
    +roles: []
    +followersCount: 0
    +homepage: "front"
    +about: null
    +lastActive: DateTime @1721498243 {#1515
      date: 2024-07-20 19:57:23.0 +02:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: false
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: true
    +notifyOnNewEntryCommentReply: true
    +notifyOnNewPost: false
    +notifyOnNewPostReply: true
    +notifyOnNewPostCommentReply: true
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: false
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#1519 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#1517 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#1623 …}
    +entries: Doctrine\ORM\PersistentCollection {#1406 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#1713 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#1710 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#1474 …}
    +posts: Doctrine\ORM\PersistentCollection {#1745 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#1485 …}
    +postComments: Doctrine\ORM\PersistentCollection {#1759 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#1637 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#1475 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#1636 …}
    +follows: Doctrine\ORM\PersistentCollection {#1409 …}
    +followers: Doctrine\ORM\PersistentCollection {#1624 …}
    +blocks: Doctrine\ORM\PersistentCollection {#1425 …}
    +blockers: Doctrine\ORM\PersistentCollection {#1441 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#1460 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#1439 …}
    +reports: Doctrine\ORM\PersistentCollection {#1416 …}
    +favourites: Doctrine\ORM\PersistentCollection {#1430 …}
    +violations: Doctrine\ORM\PersistentCollection {#1694 …}
    +notifications: Doctrine\ORM\PersistentCollection {#1700 …}
    +awards: Doctrine\ORM\PersistentCollection {#1434 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#1610 …}
    +categories: Doctrine\ORM\PersistentCollection {#1640 …}
    -id: 48318
    -password: "$2y$13$ltFqzTJ0eHIMY8NTIUV0JOoX1AZlaj64ntUxYh5oQTJrg6.lxQmuC"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#1669 …}
    +apId: "Pantherina@feddit.de"
    +apProfileId: "https://feddit.de/u/Pantherina"
    +apPublicUrl: "https://feddit.de/u/Pantherina"
    +apFollowersUrl: null
    +apInboxUrl: "https://feddit.de/inbox"
    +apDomain: "feddit.de"
    +apPreferredUsername: "Pantherina"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: false
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1721236644 {#1516
      date: 2024-07-17 19:17:24.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1696428300 {#1518
      date: 2023-10-04 16:05:00.0 +02:00
    }
    +__isInitialized__: true
     …2
  }
}
date App\Twig\Components\DateComponent 14.0 MiB 0.56 ms
Input props
[
  "date" => DateTimeImmutable @1700784125 {#1858
    date: 2023-11-24 01:02:05.0 +01:00
  }
]
Attributes
[]
Component
App\Twig\Components\DateComponent {#10888
  +date: DateTimeImmutable @1700784125 {#1858
    date: 2023-11-24 01:02:05.0 +01:00
  }
}
magazine_box App\Twig\Components\MagazineBoxComponent 14.0 MiB 24.18 ms
Input props
[
  "magazine" => App\Entity\Magazine {#264
    +icon: Proxies\__CG__\App\Entity\Image {#245 …}
    +name: "linux@lemmy.ml"
    +title: "linux"
    +description: """
      From Wikipedia, the free encyclopedia\n
      \n
      Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
      \n
      Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
      \n
      ### Rules\n
      \n
      - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
      - No misinformation\n
      - No NSFW content\n
      - No hate speech, bigotry, etc\n
      \n
      ### Related Communities\n
      \n
      - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
      - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
      - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
      - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
      \n
      Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
      """
    +rules: null
    +subscriptionsCount: 1
    +entryCount: 1406
    +entryCommentCount: 28632
    +postCount: 6
    +postCommentCount: 214
    +isAdult: false
    +customCss: null
    +lastActive: DateTime @1729583542 {#274
      date: 2024-10-22 09:52:22.0 +02:00
    }
    +markedForDeletionAt: null
    +tags: null
    +moderators: Doctrine\ORM\PersistentCollection {#236 …}
    +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
    +entries: Doctrine\ORM\PersistentCollection {#179 …}
    +posts: Doctrine\ORM\PersistentCollection {#137 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
    +bans: Doctrine\ORM\PersistentCollection {#116 …}
    +reports: Doctrine\ORM\PersistentCollection {#102 …}
    +badges: Doctrine\ORM\PersistentCollection {#80 …}
    +logs: Doctrine\ORM\PersistentCollection {#70 …}
    +awards: Doctrine\ORM\PersistentCollection {#1360 …}
    +categories: Doctrine\ORM\PersistentCollection {#1792 …}
    -id: 73
    +apId: "linux@lemmy.ml"
    +apProfileId: "https://lemmy.ml/c/linux"
    +apPublicUrl: "https://lemmy.ml/c/linux"
    +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
    +apInboxUrl: "https://lemmy.ml/inbox"
    +apDomain: "lemmy.ml"
    +apPreferredUsername: "linux"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: null
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729583596 {#268
      date: 2024-10-22 09:53:16.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1698929468 {#270
      date: 2023-11-02 13:51:08.0 +01:00
    }
  }
  "showSectionTitle" => true
]
Attributes
[]
Component
App\Twig\Components\MagazineBoxComponent {#10944
  +magazine: App\Entity\Magazine {#264
    +icon: Proxies\__CG__\App\Entity\Image {#245 …}
    +name: "linux@lemmy.ml"
    +title: "linux"
    +description: """
      From Wikipedia, the free encyclopedia\n
      \n
      Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
      \n
      Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
      \n
      ### Rules\n
      \n
      - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
      - No misinformation\n
      - No NSFW content\n
      - No hate speech, bigotry, etc\n
      \n
      ### Related Communities\n
      \n
      - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
      - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
      - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
      - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
      \n
      Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
      """
    +rules: null
    +subscriptionsCount: 1
    +entryCount: 1406
    +entryCommentCount: 28632
    +postCount: 6
    +postCommentCount: 214
    +isAdult: false
    +customCss: null
    +lastActive: DateTime @1729583542 {#274
      date: 2024-10-22 09:52:22.0 +02:00
    }
    +markedForDeletionAt: null
    +tags: null
    +moderators: Doctrine\ORM\PersistentCollection {#236 …}
    +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
    +entries: Doctrine\ORM\PersistentCollection {#179 …}
    +posts: Doctrine\ORM\PersistentCollection {#137 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
    +bans: Doctrine\ORM\PersistentCollection {#116 …}
    +reports: Doctrine\ORM\PersistentCollection {#102 …}
    +badges: Doctrine\ORM\PersistentCollection {#80 …}
    +logs: Doctrine\ORM\PersistentCollection {#70 …}
    +awards: Doctrine\ORM\PersistentCollection {#1360 …}
    +categories: Doctrine\ORM\PersistentCollection {#1792 …}
    -id: 73
    +apId: "linux@lemmy.ml"
    +apProfileId: "https://lemmy.ml/c/linux"
    +apPublicUrl: "https://lemmy.ml/c/linux"
    +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
    +apInboxUrl: "https://lemmy.ml/inbox"
    +apDomain: "lemmy.ml"
    +apPreferredUsername: "linux"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: null
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729583596 {#268
      date: 2024-10-22 09:53:16.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1698929468 {#270
      date: 2023-11-02 13:51:08.0 +01:00
    }
  }
  +showCover: true
  +showDescription: true
  +showRules: true
  +showSubscribeButton: true
  +showInfo: true
  +showMeta: true
  +showSectionTitle: true
  +stretchedLink: true
}
magazine_sub App\Twig\Components\MagazineSubComponent 14.0 MiB 1.96 ms
Input props
[
  "magazine" => App\Entity\Magazine {#264
    +icon: Proxies\__CG__\App\Entity\Image {#245 …}
    +name: "linux@lemmy.ml"
    +title: "linux"
    +description: """
      From Wikipedia, the free encyclopedia\n
      \n
      Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
      \n
      Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
      \n
      ### Rules\n
      \n
      - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
      - No misinformation\n
      - No NSFW content\n
      - No hate speech, bigotry, etc\n
      \n
      ### Related Communities\n
      \n
      - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
      - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
      - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
      - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
      \n
      Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
      """
    +rules: null
    +subscriptionsCount: 1
    +entryCount: 1406
    +entryCommentCount: 28632
    +postCount: 6
    +postCommentCount: 214
    +isAdult: false
    +customCss: null
    +lastActive: DateTime @1729583542 {#274
      date: 2024-10-22 09:52:22.0 +02:00
    }
    +markedForDeletionAt: null
    +tags: null
    +moderators: Doctrine\ORM\PersistentCollection {#236 …}
    +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
    +entries: Doctrine\ORM\PersistentCollection {#179 …}
    +posts: Doctrine\ORM\PersistentCollection {#137 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
    +bans: Doctrine\ORM\PersistentCollection {#116 …}
    +reports: Doctrine\ORM\PersistentCollection {#102 …}
    +badges: Doctrine\ORM\PersistentCollection {#80 …}
    +logs: Doctrine\ORM\PersistentCollection {#70 …}
    +awards: Doctrine\ORM\PersistentCollection {#1360 …}
    +categories: Doctrine\ORM\PersistentCollection {#1792 …}
    -id: 73
    +apId: "linux@lemmy.ml"
    +apProfileId: "https://lemmy.ml/c/linux"
    +apPublicUrl: "https://lemmy.ml/c/linux"
    +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
    +apInboxUrl: "https://lemmy.ml/inbox"
    +apDomain: "lemmy.ml"
    +apPreferredUsername: "linux"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: null
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729583596 {#268
      date: 2024-10-22 09:53:16.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1698929468 {#270
      date: 2023-11-02 13:51:08.0 +01:00
    }
  }
]
Attributes
[]
Component
App\Twig\Components\MagazineSubComponent {#11002
  +magazine: App\Entity\Magazine {#264
    +icon: Proxies\__CG__\App\Entity\Image {#245 …}
    +name: "linux@lemmy.ml"
    +title: "linux"
    +description: """
      From Wikipedia, the free encyclopedia\n
      \n
      Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
      \n
      Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
      \n
      ### Rules\n
      \n
      - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
      - No misinformation\n
      - No NSFW content\n
      - No hate speech, bigotry, etc\n
      \n
      ### Related Communities\n
      \n
      - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
      - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
      - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
      - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
      \n
      Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
      """
    +rules: null
    +subscriptionsCount: 1
    +entryCount: 1406
    +entryCommentCount: 28632
    +postCount: 6
    +postCommentCount: 214
    +isAdult: false
    +customCss: null
    +lastActive: DateTime @1729583542 {#274
      date: 2024-10-22 09:52:22.0 +02:00
    }
    +markedForDeletionAt: null
    +tags: null
    +moderators: Doctrine\ORM\PersistentCollection {#236 …}
    +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
    +entries: Doctrine\ORM\PersistentCollection {#179 …}
    +posts: Doctrine\ORM\PersistentCollection {#137 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
    +bans: Doctrine\ORM\PersistentCollection {#116 …}
    +reports: Doctrine\ORM\PersistentCollection {#102 …}
    +badges: Doctrine\ORM\PersistentCollection {#80 …}
    +logs: Doctrine\ORM\PersistentCollection {#70 …}
    +awards: Doctrine\ORM\PersistentCollection {#1360 …}
    +categories: Doctrine\ORM\PersistentCollection {#1792 …}
    -id: 73
    +apId: "linux@lemmy.ml"
    +apProfileId: "https://lemmy.ml/c/linux"
    +apPublicUrl: "https://lemmy.ml/c/linux"
    +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
    +apInboxUrl: "https://lemmy.ml/inbox"
    +apDomain: "lemmy.ml"
    +apPreferredUsername: "linux"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: null
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729583596 {#268
      date: 2024-10-22 09:53:16.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1698929468 {#270
      date: 2023-11-02 13:51:08.0 +01:00
    }
  }
}
date App\Twig\Components\DateComponent 14.0 MiB 0.59 ms
Input props
[
  "date" => DateTimeImmutable @1698929468 {#270
    date: 2023-11-02 13:51:08.0 +01:00
  }
]
Attributes
[]
Component
App\Twig\Components\DateComponent {#11176
  +date: DateTimeImmutable @1698929468 {#270
    date: 2023-11-02 13:51:08.0 +01:00
  }
}
user_inline App\Twig\Components\UserInlineComponent 14.0 MiB 1.74 ms
Input props
[
  "user" => Proxies\__CG__\App\Entity\User {#11235
    +avatar: null
    +cover: null
    +email: "kbin@j0h.nl"
    +username: "Sprite_tm"
    +roles: [
      "ROLE_ADMIN"
    ]
    +followersCount: 0
    +homepage: "front"
    +about: "Hi! I'm Sprite_tm. You may know me from sites like https://spritesmods.com."
    +lastActive: DateTime @1707547382 {#11282
      date: 2024-02-10 07:43:02.0 +01:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: true
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: false
    +notifyOnNewEntryCommentReply: false
    +notifyOnNewPost: false
    +notifyOnNewPostReply: false
    +notifyOnNewPostCommentReply: false
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: true
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#11284 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#11286 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#11288 …}
    +entries: Doctrine\ORM\PersistentCollection {#11290 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#11292 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#11294 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#11296 …}
    +posts: Doctrine\ORM\PersistentCollection {#11298 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#11300 …}
    +postComments: Doctrine\ORM\PersistentCollection {#11302 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#11304 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#11306 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#11308 …}
    +follows: Doctrine\ORM\PersistentCollection {#11310 …}
    +followers: Doctrine\ORM\PersistentCollection {#11312 …}
    +blocks: Doctrine\ORM\PersistentCollection {#11314 …}
    +blockers: Doctrine\ORM\PersistentCollection {#11316 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#11318 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#11320 …}
    +reports: Doctrine\ORM\PersistentCollection {#11322 …}
    +favourites: Doctrine\ORM\PersistentCollection {#11324 …}
    +violations: Doctrine\ORM\PersistentCollection {#11326 …}
    +notifications: Doctrine\ORM\PersistentCollection {#11328 …}
    +awards: Doctrine\ORM\PersistentCollection {#11330 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#11332 …}
    +categories: Doctrine\ORM\PersistentCollection {#11334 …}
    -id: 1
    -password: "$2y$13$ZX7Aou2QOPRGkHPp4y5x8OWfxZMoT1BGH7bRLlPP7mwZFTkfiaPGG"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#11336 …}
    +apId: null
    +apProfileId: null
    +apPublicUrl: null
    +apFollowersUrl: null
    +apInboxUrl: null
    +apDomain: null
    +apPreferredUsername: null
    +apDiscoverable: null
    +apManuallyApprovesFollowers: null
    +privateKey: """
      -----BEGIN PRIVATE KEY-----\r\n
      MIIJQgIBADANBgkqhkiG9w0BAQEFAASCCSwwggkoAgEAAoICAQDleeotz5TBiMlC\r\n
      YsJYJHVNxjvnvt0qsQA282B7vdqBTbARfD49iKPiMIwgU2yhCI0oTSQwc2Zy9AQ+\r\n
      31rwmvBx8VvcLgQvKpNzPVhMQjelK7k5iPiPc/W1soaauepq3YwQKgGod4c5Vh9f\r\n
      MInSANfOLOUSo3pUzfaQaGEvQc5DbKjDgIjsv/OKI1acbzu067KQzIThu+1BvcqQ\r\n
      Ypo2Ux5W23nNqkrRZ++z/r1MI2jS3vwi5OSwz4fWhLPJXE6lwokc6b/uAZe7sLT6\r\n
      QQtjevLnmMyRIVnmxbtHPMSfhLdz8ssQhoNCfAkMnBjDUX31SSs67pU8v5O3Fn2H\r\n
      d+qFWCjrREwSpBAd24INJqKsjSa6j3oLL8Xw8HZf+x6QRPJch/c3FNWRtM2b9n8V\r\n
      sAQiD985pafyeQ1TqIe4iSjI0iUgy2WgwO0C1Z0PNbQzQmRk0EOAlxIXjPmB229P\r\n
      V4+OcZxLT9phP/rid1Qt9Ro+2LdkS9Zqe8c2JHeJKc5Nv/8OOX5uQ/B82JXnuXYi\r\n
      /oVEJb5t42G8u3IIkYM5G/Gt033WU6dbyKOBmdnbXaPw9LC3M7oop3yyCb3UDLfg\r\n
      g/XnZVvZxSPCPlh5G1Lb0r47siKq/0k9YRua0AFsVg0dhqfuwsb6G9Hx5EicuPsu\r\n
      OIjXINBTjlnE4SdMz0ZJt7bLjwlKdQIDAQABAoICAAlWo8QHfYs+sMoF0Njbavam\r\n
      SYvNxZxWJacW0mdWu4ylh7O+dZ31cI3k4d7y5inLeksYkI90MsgczAtu9XlzJLPO\r\n
      WamlKcBtoCCBb5Vy4GbVV61SuKLF2krxn+6uAC8nIusJepXLf3JC4fXyuLkWFbIr\r\n
      O4s9od3Pn+gSh1nv+J/fzSJfmbLgwN1vQLgPAsQDD3o7CHFTP318ZsDnclUhnst0\r\n
      FQnckzzgWO3fQP7XNg3WyzX0UKYtW97L+bEJE55FQ2Us0gWyhOU7dLH2casztqzc\r\n
      F/8T91+fzlZAz9OaCAks6Tyb7L2I5KlhtNRF/bU8rAiy6tnVBgLeZG9d3upcQxX0\r\n
      L+SMPWg55qERGI5mO+BxFdUnVtcmswziKmySYtzgm+c4jmPS5cWhGB9HFCTW2S0x\r\n
      GoVA2cZGWjMTrbZQhgJjBqzp76fhLtXTufd328sYmX7fBYKEWFYNwrEJaWYUNl/V\r\n
      yEyl0aMQWKhVokx6eCqnuDZUc77LeuGuCleIdhQ53NYHrXMCmgVyLfmGdrOS3Uh6\r\n
      RrAYmnvvMkAUTOQajW2csC345PmgBOjE7vB7349ylKUkXvN4L+9xZCYaVjBt3O24\r\n
      aRoQSQDGhk+NIaYleiFx+u7dJSryxdx/6ut6dQ2S+jKlm1oN1qq6ppO5y/TFRQ1e\r\n
      qn7kjIGzUT80fANDFqdhAoIBAQD1+cGiWXRQhUrJc5X3ngH1zHoLWpmSZcUUDFn/\r\n
      bV/CChd2M43fOpneIQETZ1oS7BsU3y92kTw63ytYOUg7C5iT5/r9ZoBGq0HZSbll\r\n
      riRJWGiajr2aYCmIes++CrfUvCcD6+l8QMZ3s8eXdk80GX+vt1xEfRpWV9e9huJK\r\n
      K1e8wXfFmPAmxUi63IePscdc+SVQGeooMYDnMwLWvxpAtp5mGOaQc4D5dviWXjSE\r\n
      Z/PJa+gectpD1iDIPUXm3o17ivE2UYFia8/FCGUN6Yz7ucRKF+2SPO8hLefk5UvJ\r\n
      Lxlkh67MXKkneDqRU9C82Qmcfz5nQLQadC0nbE44YeXrnlIdAoIBAQDu1AWMIe6f\r\n
      7TZYCWnTa3nT6penJ9CMaGDPI/62dKTmGnI4oo3u9DGGrnuWbcFFCQA02vcYdpuw\r\n
      CVy6mkP/yqN5VSV3EHZiJUA0aKIxot3o3YOiobpVYn9hwvzzOdMZO4SOuevNfY1c\r\n
      qmnLGhYoDvR1c2yaudCf/BDwQqlLoSg9F5X57bRtwaRyUjhtXVKXWb59qtiwwrvp\r\n
      1vPjxciEIxAtgSXtIUQz3ljDRNUHjpyfYM3ska5jkxMIPNYUYFMX2x+Gxn9PZEG3\r\n
      Im391BRynZsnkvJO6i4i5N1xsPK5SyPiKBnlMxW/6ZLi5aAQHV3cc2KLzV+T+s2B\r\n
      v9LTAyO7nWo5AoIBAASA/jqqyKZwyl3F8AkIq6CEjfeHQSidFG65iyxSJF65MJTJ\r\n
      fN+Jgye+Evb3/X47NIO9UnEpV6D8VR7YbaonHDQZG09ogRDKMfp4jxx9g8yUAdZS\r\n
      psYc3KXTGdqw94y9pTk9KJlN1lR6xjzPvcOGdAATq2zVnZXXJewifCI/iOu73yWP\r\n
      F1aeZiaFwzWuW6goJ7a/wrnZrjKNjI/CEAj/TwcvjYk3lDT9KLAYKX4DKUOW5jko\r\n
      gTacxRzlglIn4Q9SC/iipWvX7YX+EVuf2yUA0cdJiOAUnYxN+uEGEc0tP5nHoju7\r\n
      tp0yZmAi2L+cecCT0+CwHpwdZHZEVWpS4JLf40ECggEBALFSZIgGDZlaU5YL7zHV\r\n
      Q5APRugKDLKjMPW7IPwxINnj2tioAL/hOQBpfkNTXEM4ipmz1fCo57FNUjcOINzD\r\n
      hJqqmHWNmIgIZmJDKeG2rhKenYTblXCeADwCvTKNxWmfoi0iZ6ybwqCBuqjcxoSZ\r\n
      jfHCcGl0+yw9yAnLRM1ta2XopCb70ZIIS2PCHjk9J/xN2ryNY/PhsgnN2ilMiTNq\r\n
      oTFYCWPF5lCojrj020KQJUPEaUBzbcpqwZ/FI6HfXvKAdCjqKk40/wHNI2Np2oC6\r\n
      +h7o4NWs0/J+gNhP6/edjZf19DwTsNtbvf6PRUeRtkXeudVY99T0Sy9B0HNxik9b\r\n
      cikCggEAM2wassiP1i0Gc3wrbNLHyQN+yqMaAp0xF+8l0fU3T8zPL/tYDcITnZPY\r\n
      pEFV/aodP9X7XFuQD0iGTOTGDXiMSLPOLI/ifmwbT41rgIN9x14MpU2EtWeVz7sx\r\n
      ZIFMt98rHx6BsZx/DnSFDQ8iqrKF3u+OOv7s6j+8odz4Rq53+16vMev5VUMOPq+E\r\n
      aQn8SDKkOjZzwb9QGB9bXS5s9yyj4pLyggQ0O5S2ugZjUcmCecNpktN8bUR3I9VQ\r\n
      KWkcQa9yCpidp/JYrQtlbqAPiIzptA4T4RNh+F6pKbmw7hNMIPipPzbQezEMaBOn\r\n
      Cgb38EldyAVGjCzRGfhu9SNU9B03bg==\r\n
      -----END PRIVATE KEY-----
      """
    +publicKey: """
      -----BEGIN PUBLIC KEY-----\r\n
      MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEA5XnqLc+UwYjJQmLCWCR1\r\n
      TcY7577dKrEANvNge73agU2wEXw+PYij4jCMIFNsoQiNKE0kMHNmcvQEPt9a8Jrw\r\n
      cfFb3C4ELyqTcz1YTEI3pSu5OYj4j3P1tbKGmrnqat2MECoBqHeHOVYfXzCJ0gDX\r\n
      zizlEqN6VM32kGhhL0HOQ2yow4CI7L/ziiNWnG87tOuykMyE4bvtQb3KkGKaNlMe\r\n
      Vtt5zapK0Wfvs/69TCNo0t78IuTksM+H1oSzyVxOpcKJHOm/7gGXu7C0+kELY3ry\r\n
      55jMkSFZ5sW7RzzEn4S3c/LLEIaDQnwJDJwYw1F99UkrOu6VPL+TtxZ9h3fqhVgo\r\n
      60RMEqQQHduCDSairI0muo96Cy/F8PB2X/sekETyXIf3NxTVkbTNm/Z/FbAEIg/f\r\n
      OaWn8nkNU6iHuIkoyNIlIMtloMDtAtWdDzW0M0JkZNBDgJcSF4z5gdtvT1ePjnGc\r\n
      S0/aYT/64ndULfUaPti3ZEvWanvHNiR3iSnOTb//Djl+bkPwfNiV57l2Iv6FRCW+\r\n
      beNhvLtyCJGDORvxrdN91lOnW8ijgZnZ212j8PSwtzO6KKd8sgm91Ay34IP152Vb\r\n
      2cUjwj5YeRtS29K+O7Iiqv9JPWEbmtABbFYNHYan7sLG+hvR8eRInLj7LjiI1yDQ\r\n
      U45ZxOEnTM9GSbe2y48JSnUCAwEAAQ==\r\n
      -----END PUBLIC KEY-----
      """
    +apFetchedAt: null
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1686560440 {#11283
      date: 2023-06-12 11:00:40.0 +02:00
    }
    +__isInitialized__: true
     …2
  }
]
Attributes
[]
Component
App\Twig\Components\UserInlineComponent {#11253
  +user: Proxies\__CG__\App\Entity\User {#11235
    +avatar: null
    +cover: null
    +email: "kbin@j0h.nl"
    +username: "Sprite_tm"
    +roles: [
      "ROLE_ADMIN"
    ]
    +followersCount: 0
    +homepage: "front"
    +about: "Hi! I'm Sprite_tm. You may know me from sites like https://spritesmods.com."
    +lastActive: DateTime @1707547382 {#11282
      date: 2024-02-10 07:43:02.0 +01:00
    }
    +markedForDeletionAt: null
    +fields: null
    +oauthGithubId: null
    +oauthGoogleId: null
    +oauthFacebookId: null
    +oauthKeycloakId: null
    +hideAdult: true
    +showSubscribedUsers: true
    +showSubscribedMagazines: true
    +showSubscribedDomains: true
    +preferredLanguages: []
    +featuredMagazines: null
    +showProfileSubscriptions: true
    +showProfileFollowings: true
    +markNewComments: false
    +notifyOnNewEntry: false
    +notifyOnNewEntryReply: false
    +notifyOnNewEntryCommentReply: false
    +notifyOnNewPost: false
    +notifyOnNewPostReply: false
    +notifyOnNewPostCommentReply: false
    +addMentionsEntries: false
    +addMentionsPosts: true
    +isBanned: false
    +isVerified: true
    +isDeleted: false
    +isBot: false
    +spamProtection: true
    +customCss: null
    +ignoreMagazinesCustomCss: false
    +moderatorTokens: Doctrine\ORM\PersistentCollection {#11284 …}
    +magazineOwnershipRequests: Doctrine\ORM\PersistentCollection {#11286 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#11288 …}
    +entries: Doctrine\ORM\PersistentCollection {#11290 …}
    +entryVotes: Doctrine\ORM\PersistentCollection {#11292 …}
    +entryComments: Doctrine\ORM\PersistentCollection {#11294 …}
    +entryCommentVotes: Doctrine\ORM\PersistentCollection {#11296 …}
    +posts: Doctrine\ORM\PersistentCollection {#11298 …}
    +postVotes: Doctrine\ORM\PersistentCollection {#11300 …}
    +postComments: Doctrine\ORM\PersistentCollection {#11302 …}
    +postCommentVotes: Doctrine\ORM\PersistentCollection {#11304 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#11306 …}
    +subscribedDomains: Doctrine\ORM\PersistentCollection {#11308 …}
    +follows: Doctrine\ORM\PersistentCollection {#11310 …}
    +followers: Doctrine\ORM\PersistentCollection {#11312 …}
    +blocks: Doctrine\ORM\PersistentCollection {#11314 …}
    +blockers: Doctrine\ORM\PersistentCollection {#11316 …}
    +blockedMagazines: Doctrine\ORM\PersistentCollection {#11318 …}
    +blockedDomains: Doctrine\ORM\PersistentCollection {#11320 …}
    +reports: Doctrine\ORM\PersistentCollection {#11322 …}
    +favourites: Doctrine\ORM\PersistentCollection {#11324 …}
    +violations: Doctrine\ORM\PersistentCollection {#11326 …}
    +notifications: Doctrine\ORM\PersistentCollection {#11328 …}
    +awards: Doctrine\ORM\PersistentCollection {#11330 …}
    +subscribedCategories: Doctrine\ORM\PersistentCollection {#11332 …}
    +categories: Doctrine\ORM\PersistentCollection {#11334 …}
    -id: 1
    -password: "$2y$13$ZX7Aou2QOPRGkHPp4y5x8OWfxZMoT1BGH7bRLlPP7mwZFTkfiaPGG"
    -totpSecret: null
    -totpBackupCodes: []
    -oAuth2UserConsents: Doctrine\ORM\PersistentCollection {#11336 …}
    +apId: null
    +apProfileId: null
    +apPublicUrl: null
    +apFollowersUrl: null
    +apInboxUrl: null
    +apDomain: null
    +apPreferredUsername: null
    +apDiscoverable: null
    +apManuallyApprovesFollowers: null
    +privateKey: """
      -----BEGIN PRIVATE KEY-----\r\n
      MIIJQgIBADANBgkqhkiG9w0BAQEFAASCCSwwggkoAgEAAoICAQDleeotz5TBiMlC\r\n
      YsJYJHVNxjvnvt0qsQA282B7vdqBTbARfD49iKPiMIwgU2yhCI0oTSQwc2Zy9AQ+\r\n
      31rwmvBx8VvcLgQvKpNzPVhMQjelK7k5iPiPc/W1soaauepq3YwQKgGod4c5Vh9f\r\n
      MInSANfOLOUSo3pUzfaQaGEvQc5DbKjDgIjsv/OKI1acbzu067KQzIThu+1BvcqQ\r\n
      Ypo2Ux5W23nNqkrRZ++z/r1MI2jS3vwi5OSwz4fWhLPJXE6lwokc6b/uAZe7sLT6\r\n
      QQtjevLnmMyRIVnmxbtHPMSfhLdz8ssQhoNCfAkMnBjDUX31SSs67pU8v5O3Fn2H\r\n
      d+qFWCjrREwSpBAd24INJqKsjSa6j3oLL8Xw8HZf+x6QRPJch/c3FNWRtM2b9n8V\r\n
      sAQiD985pafyeQ1TqIe4iSjI0iUgy2WgwO0C1Z0PNbQzQmRk0EOAlxIXjPmB229P\r\n
      V4+OcZxLT9phP/rid1Qt9Ro+2LdkS9Zqe8c2JHeJKc5Nv/8OOX5uQ/B82JXnuXYi\r\n
      /oVEJb5t42G8u3IIkYM5G/Gt033WU6dbyKOBmdnbXaPw9LC3M7oop3yyCb3UDLfg\r\n
      g/XnZVvZxSPCPlh5G1Lb0r47siKq/0k9YRua0AFsVg0dhqfuwsb6G9Hx5EicuPsu\r\n
      OIjXINBTjlnE4SdMz0ZJt7bLjwlKdQIDAQABAoICAAlWo8QHfYs+sMoF0Njbavam\r\n
      SYvNxZxWJacW0mdWu4ylh7O+dZ31cI3k4d7y5inLeksYkI90MsgczAtu9XlzJLPO\r\n
      WamlKcBtoCCBb5Vy4GbVV61SuKLF2krxn+6uAC8nIusJepXLf3JC4fXyuLkWFbIr\r\n
      O4s9od3Pn+gSh1nv+J/fzSJfmbLgwN1vQLgPAsQDD3o7CHFTP318ZsDnclUhnst0\r\n
      FQnckzzgWO3fQP7XNg3WyzX0UKYtW97L+bEJE55FQ2Us0gWyhOU7dLH2casztqzc\r\n
      F/8T91+fzlZAz9OaCAks6Tyb7L2I5KlhtNRF/bU8rAiy6tnVBgLeZG9d3upcQxX0\r\n
      L+SMPWg55qERGI5mO+BxFdUnVtcmswziKmySYtzgm+c4jmPS5cWhGB9HFCTW2S0x\r\n
      GoVA2cZGWjMTrbZQhgJjBqzp76fhLtXTufd328sYmX7fBYKEWFYNwrEJaWYUNl/V\r\n
      yEyl0aMQWKhVokx6eCqnuDZUc77LeuGuCleIdhQ53NYHrXMCmgVyLfmGdrOS3Uh6\r\n
      RrAYmnvvMkAUTOQajW2csC345PmgBOjE7vB7349ylKUkXvN4L+9xZCYaVjBt3O24\r\n
      aRoQSQDGhk+NIaYleiFx+u7dJSryxdx/6ut6dQ2S+jKlm1oN1qq6ppO5y/TFRQ1e\r\n
      qn7kjIGzUT80fANDFqdhAoIBAQD1+cGiWXRQhUrJc5X3ngH1zHoLWpmSZcUUDFn/\r\n
      bV/CChd2M43fOpneIQETZ1oS7BsU3y92kTw63ytYOUg7C5iT5/r9ZoBGq0HZSbll\r\n
      riRJWGiajr2aYCmIes++CrfUvCcD6+l8QMZ3s8eXdk80GX+vt1xEfRpWV9e9huJK\r\n
      K1e8wXfFmPAmxUi63IePscdc+SVQGeooMYDnMwLWvxpAtp5mGOaQc4D5dviWXjSE\r\n
      Z/PJa+gectpD1iDIPUXm3o17ivE2UYFia8/FCGUN6Yz7ucRKF+2SPO8hLefk5UvJ\r\n
      Lxlkh67MXKkneDqRU9C82Qmcfz5nQLQadC0nbE44YeXrnlIdAoIBAQDu1AWMIe6f\r\n
      7TZYCWnTa3nT6penJ9CMaGDPI/62dKTmGnI4oo3u9DGGrnuWbcFFCQA02vcYdpuw\r\n
      CVy6mkP/yqN5VSV3EHZiJUA0aKIxot3o3YOiobpVYn9hwvzzOdMZO4SOuevNfY1c\r\n
      qmnLGhYoDvR1c2yaudCf/BDwQqlLoSg9F5X57bRtwaRyUjhtXVKXWb59qtiwwrvp\r\n
      1vPjxciEIxAtgSXtIUQz3ljDRNUHjpyfYM3ska5jkxMIPNYUYFMX2x+Gxn9PZEG3\r\n
      Im391BRynZsnkvJO6i4i5N1xsPK5SyPiKBnlMxW/6ZLi5aAQHV3cc2KLzV+T+s2B\r\n
      v9LTAyO7nWo5AoIBAASA/jqqyKZwyl3F8AkIq6CEjfeHQSidFG65iyxSJF65MJTJ\r\n
      fN+Jgye+Evb3/X47NIO9UnEpV6D8VR7YbaonHDQZG09ogRDKMfp4jxx9g8yUAdZS\r\n
      psYc3KXTGdqw94y9pTk9KJlN1lR6xjzPvcOGdAATq2zVnZXXJewifCI/iOu73yWP\r\n
      F1aeZiaFwzWuW6goJ7a/wrnZrjKNjI/CEAj/TwcvjYk3lDT9KLAYKX4DKUOW5jko\r\n
      gTacxRzlglIn4Q9SC/iipWvX7YX+EVuf2yUA0cdJiOAUnYxN+uEGEc0tP5nHoju7\r\n
      tp0yZmAi2L+cecCT0+CwHpwdZHZEVWpS4JLf40ECggEBALFSZIgGDZlaU5YL7zHV\r\n
      Q5APRugKDLKjMPW7IPwxINnj2tioAL/hOQBpfkNTXEM4ipmz1fCo57FNUjcOINzD\r\n
      hJqqmHWNmIgIZmJDKeG2rhKenYTblXCeADwCvTKNxWmfoi0iZ6ybwqCBuqjcxoSZ\r\n
      jfHCcGl0+yw9yAnLRM1ta2XopCb70ZIIS2PCHjk9J/xN2ryNY/PhsgnN2ilMiTNq\r\n
      oTFYCWPF5lCojrj020KQJUPEaUBzbcpqwZ/FI6HfXvKAdCjqKk40/wHNI2Np2oC6\r\n
      +h7o4NWs0/J+gNhP6/edjZf19DwTsNtbvf6PRUeRtkXeudVY99T0Sy9B0HNxik9b\r\n
      cikCggEAM2wassiP1i0Gc3wrbNLHyQN+yqMaAp0xF+8l0fU3T8zPL/tYDcITnZPY\r\n
      pEFV/aodP9X7XFuQD0iGTOTGDXiMSLPOLI/ifmwbT41rgIN9x14MpU2EtWeVz7sx\r\n
      ZIFMt98rHx6BsZx/DnSFDQ8iqrKF3u+OOv7s6j+8odz4Rq53+16vMev5VUMOPq+E\r\n
      aQn8SDKkOjZzwb9QGB9bXS5s9yyj4pLyggQ0O5S2ugZjUcmCecNpktN8bUR3I9VQ\r\n
      KWkcQa9yCpidp/JYrQtlbqAPiIzptA4T4RNh+F6pKbmw7hNMIPipPzbQezEMaBOn\r\n
      Cgb38EldyAVGjCzRGfhu9SNU9B03bg==\r\n
      -----END PRIVATE KEY-----
      """
    +publicKey: """
      -----BEGIN PUBLIC KEY-----\r\n
      MIICIjANBgkqhkiG9w0BAQEFAAOCAg8AMIICCgKCAgEA5XnqLc+UwYjJQmLCWCR1\r\n
      TcY7577dKrEANvNge73agU2wEXw+PYij4jCMIFNsoQiNKE0kMHNmcvQEPt9a8Jrw\r\n
      cfFb3C4ELyqTcz1YTEI3pSu5OYj4j3P1tbKGmrnqat2MECoBqHeHOVYfXzCJ0gDX\r\n
      zizlEqN6VM32kGhhL0HOQ2yow4CI7L/ziiNWnG87tOuykMyE4bvtQb3KkGKaNlMe\r\n
      Vtt5zapK0Wfvs/69TCNo0t78IuTksM+H1oSzyVxOpcKJHOm/7gGXu7C0+kELY3ry\r\n
      55jMkSFZ5sW7RzzEn4S3c/LLEIaDQnwJDJwYw1F99UkrOu6VPL+TtxZ9h3fqhVgo\r\n
      60RMEqQQHduCDSairI0muo96Cy/F8PB2X/sekETyXIf3NxTVkbTNm/Z/FbAEIg/f\r\n
      OaWn8nkNU6iHuIkoyNIlIMtloMDtAtWdDzW0M0JkZNBDgJcSF4z5gdtvT1ePjnGc\r\n
      S0/aYT/64ndULfUaPti3ZEvWanvHNiR3iSnOTb//Djl+bkPwfNiV57l2Iv6FRCW+\r\n
      beNhvLtyCJGDORvxrdN91lOnW8ijgZnZ212j8PSwtzO6KKd8sgm91Ay34IP152Vb\r\n
      2cUjwj5YeRtS29K+O7Iiqv9JPWEbmtABbFYNHYan7sLG+hvR8eRInLj7LjiI1yDQ\r\n
      U45ZxOEnTM9GSbe2y48JSnUCAwEAAQ==\r\n
      -----END PUBLIC KEY-----
      """
    +apFetchedAt: null
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1686560440 {#11283
      date: 2023-06-12 11:00:40.0 +02:00
    }
    +__isInitialized__: true
     …2
  }
  +showAvatar: true
}
related_magazines App\Twig\Components\RelatedMagazinesComponent 14.0 MiB 6.03 ms
Input props
[
  "magazine" => "linux@lemmy.ml"
  "tag" => null
]
Attributes
[]
Component
App\Twig\Components\RelatedMagazinesComponent {#11444
  +limit: 4
  +tag: null
  +magazine: "linux@lemmy.ml"
  +type: "magazine"
  +title: "related_magazines"
  +refreshedRandom: false
  -repository: App\Repository\MagazineRepository {#332 …}
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
  -twig: Twig\Environment {#1252 …}
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
}
active_users App\Twig\Components\ActiveUsersComponent 14.0 MiB 0.83 ms
Input props
[
  "magazine" => App\Entity\Magazine {#264
    +icon: Proxies\__CG__\App\Entity\Image {#245 …}
    +name: "linux@lemmy.ml"
    +title: "linux"
    +description: """
      From Wikipedia, the free encyclopedia\n
      \n
      Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
      \n
      Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
      \n
      ### Rules\n
      \n
      - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
      - No misinformation\n
      - No NSFW content\n
      - No hate speech, bigotry, etc\n
      \n
      ### Related Communities\n
      \n
      - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
      - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
      - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
      - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
      \n
      Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
      """
    +rules: null
    +subscriptionsCount: 1
    +entryCount: 1406
    +entryCommentCount: 28632
    +postCount: 6
    +postCommentCount: 214
    +isAdult: false
    +customCss: null
    +lastActive: DateTime @1729583542 {#274
      date: 2024-10-22 09:52:22.0 +02:00
    }
    +markedForDeletionAt: null
    +tags: null
    +moderators: Doctrine\ORM\PersistentCollection {#236 …}
    +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
    +entries: Doctrine\ORM\PersistentCollection {#179 …}
    +posts: Doctrine\ORM\PersistentCollection {#137 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
    +bans: Doctrine\ORM\PersistentCollection {#116 …}
    +reports: Doctrine\ORM\PersistentCollection {#102 …}
    +badges: Doctrine\ORM\PersistentCollection {#80 …}
    +logs: Doctrine\ORM\PersistentCollection {#70 …}
    +awards: Doctrine\ORM\PersistentCollection {#1360 …}
    +categories: Doctrine\ORM\PersistentCollection {#1792 …}
    -id: 73
    +apId: "linux@lemmy.ml"
    +apProfileId: "https://lemmy.ml/c/linux"
    +apPublicUrl: "https://lemmy.ml/c/linux"
    +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
    +apInboxUrl: "https://lemmy.ml/inbox"
    +apDomain: "lemmy.ml"
    +apPreferredUsername: "linux"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: null
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729583596 {#268
      date: 2024-10-22 09:53:16.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1698929468 {#270
      date: 2023-11-02 13:51:08.0 +01:00
    }
  }
]
Attributes
[]
Component
App\Twig\Components\ActiveUsersComponent {#11531
  +magazine: App\Entity\Magazine {#264
    +icon: Proxies\__CG__\App\Entity\Image {#245 …}
    +name: "linux@lemmy.ml"
    +title: "linux"
    +description: """
      From Wikipedia, the free encyclopedia\n
      \n
      Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
      \n
      Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
      \n
      ### Rules\n
      \n
      - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
      - No misinformation\n
      - No NSFW content\n
      - No hate speech, bigotry, etc\n
      \n
      ### Related Communities\n
      \n
      - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
      - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
      - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
      - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
      \n
      Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
      """
    +rules: null
    +subscriptionsCount: 1
    +entryCount: 1406
    +entryCommentCount: 28632
    +postCount: 6
    +postCommentCount: 214
    +isAdult: false
    +customCss: null
    +lastActive: DateTime @1729583542 {#274
      date: 2024-10-22 09:52:22.0 +02:00
    }
    +markedForDeletionAt: null
    +tags: null
    +moderators: Doctrine\ORM\PersistentCollection {#236 …}
    +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
    +entries: Doctrine\ORM\PersistentCollection {#179 …}
    +posts: Doctrine\ORM\PersistentCollection {#137 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
    +bans: Doctrine\ORM\PersistentCollection {#116 …}
    +reports: Doctrine\ORM\PersistentCollection {#102 …}
    +badges: Doctrine\ORM\PersistentCollection {#80 …}
    +logs: Doctrine\ORM\PersistentCollection {#70 …}
    +awards: Doctrine\ORM\PersistentCollection {#1360 …}
    +categories: Doctrine\ORM\PersistentCollection {#1792 …}
    -id: 73
    +apId: "linux@lemmy.ml"
    +apProfileId: "https://lemmy.ml/c/linux"
    +apPublicUrl: "https://lemmy.ml/c/linux"
    +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
    +apInboxUrl: "https://lemmy.ml/inbox"
    +apDomain: "lemmy.ml"
    +apPreferredUsername: "linux"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: null
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729583596 {#268
      date: 2024-10-22 09:53:16.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1698929468 {#270
      date: 2023-11-02 13:51:08.0 +01:00
    }
  }
  -userRepository: App\Repository\UserRepository {#603 …}
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
  -twig: Twig\Environment {#1252 …}
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
}
related_categories App\Twig\Components\RelatedCategoriesComponent 14.0 MiB 4.84 ms
Input props
[
  "magazine" => "linux@lemmy.ml"
  "tag" => null
]
Attributes
[]
Component
App\Twig\Components\RelatedCategoriesComponent {#11590
  +limit: 4
  +tag: null
  +magazine: "linux@lemmy.ml"
  +type: "related"
  +title: "related_categories"
  +refreshedRandom: false
  -repository: App\Repository\CategoryRepository {#11591 …}
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
  -twig: Twig\Environment {#1252 …}
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
}
related_posts App\Twig\Components\RelatedPostsComponent 14.0 MiB 6.60 ms
Input props
[
  "magazine" => "linux@lemmy.ml"
  "tag" => null
]
Attributes
[]
Component
App\Twig\Components\RelatedPostsComponent {#11661
  +limit: 4
  +tag: null
  +magazine: "linux@lemmy.ml"
  +type: "magazine"
  +post: null
  +title: "related_posts"
  +refreshedRandom: false
  -repository: App\Repository\PostRepository {#11660 …}
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
  -twig: Twig\Environment {#1252 …}
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
  -mentionManager: App\Service\MentionManager {#388 …}
}
related_entries App\Twig\Components\RelatedEntriesComponent 14.0 MiB 5.38 ms
Input props
[
  "magazine" => "linux@lemmy.ml"
  "tag" => null
]
Attributes
[]
Component
App\Twig\Components\RelatedEntriesComponent {#11730
  +limit: 4
  +tag: null
  +magazine: "linux@lemmy.ml"
  +type: "magazine"
  +entry: null
  +title: "related_entries"
  +refreshedRandom: false
  -repository: App\Repository\EntryRepository {#269 …}
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
  -twig: Twig\Environment {#1252 …}
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
  -mentionManager: App\Service\MentionManager {#388 …}
}
support_us_block App\Twig\Components\SupportUsBlock 14.0 MiB 0.86 ms
Input props
[]
Attributes
[]
Component
App\Twig\Components\SupportUsBlock {#11799
  +subject: ? App\Entity\Contracts\VotableInterface
  +url: ? string
  -twig: Twig\Environment {#1252 …}
  -cache: Symfony\Component\Cache\Adapter\TraceableTagAwareAdapter {#600 …}
  -requestStack: Symfony\Component\HttpFoundation\RequestStack {#1328 …}
  -partnerBlockRepository: App\Repository\PartnerBlockRepository {#11800 …}
}
featured_magazines App\Twig\Components\FeaturedMagazinesComponent 14.0 MiB 2.45 ms
Input props
[
  "magazine" => App\Entity\Magazine {#264
    +icon: Proxies\__CG__\App\Entity\Image {#245 …}
    +name: "linux@lemmy.ml"
    +title: "linux"
    +description: """
      From Wikipedia, the free encyclopedia\n
      \n
      Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
      \n
      Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
      \n
      ### Rules\n
      \n
      - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
      - No misinformation\n
      - No NSFW content\n
      - No hate speech, bigotry, etc\n
      \n
      ### Related Communities\n
      \n
      - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
      - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
      - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
      - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
      \n
      Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
      """
    +rules: null
    +subscriptionsCount: 1
    +entryCount: 1406
    +entryCommentCount: 28632
    +postCount: 6
    +postCommentCount: 214
    +isAdult: false
    +customCss: null
    +lastActive: DateTime @1729583542 {#274
      date: 2024-10-22 09:52:22.0 +02:00
    }
    +markedForDeletionAt: null
    +tags: null
    +moderators: Doctrine\ORM\PersistentCollection {#236 …}
    +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
    +entries: Doctrine\ORM\PersistentCollection {#179 …}
    +posts: Doctrine\ORM\PersistentCollection {#137 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
    +bans: Doctrine\ORM\PersistentCollection {#116 …}
    +reports: Doctrine\ORM\PersistentCollection {#102 …}
    +badges: Doctrine\ORM\PersistentCollection {#80 …}
    +logs: Doctrine\ORM\PersistentCollection {#70 …}
    +awards: Doctrine\ORM\PersistentCollection {#1360 …}
    +categories: Doctrine\ORM\PersistentCollection {#1792 …}
    -id: 73
    +apId: "linux@lemmy.ml"
    +apProfileId: "https://lemmy.ml/c/linux"
    +apPublicUrl: "https://lemmy.ml/c/linux"
    +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
    +apInboxUrl: "https://lemmy.ml/inbox"
    +apDomain: "lemmy.ml"
    +apPreferredUsername: "linux"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: null
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729583596 {#268
      date: 2024-10-22 09:53:16.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1698929468 {#270
      date: 2023-11-02 13:51:08.0 +01:00
    }
  }
]
Attributes
[]
Component
App\Twig\Components\FeaturedMagazinesComponent {#11888
  +magazine: App\Entity\Magazine {#264
    +icon: Proxies\__CG__\App\Entity\Image {#245 …}
    +name: "linux@lemmy.ml"
    +title: "linux"
    +description: """
      From Wikipedia, the free encyclopedia\n
      \n
      Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).\n
      \n
      Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word “Linux” in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.\n
      \n
      ### Rules\n
      \n
      - Posts must be relevant to operating systems running the Linux kernel. GNU/Linux or otherwise.\n
      - No misinformation\n
      - No NSFW content\n
      - No hate speech, bigotry, etc\n
      \n
      ### Related Communities\n
      \n
      - [!opensource@lemmy.ml](https://lemmy.ml/c/opensource)\n
      - [!libre_culture@lemmy.ml](https://lemmy.ml/c/libre_culture)\n
      - [!technology@lemmy.ml](https://lemmy.ml/c/technology)\n
      - [!libre_hardware@lemmy.ml](https://lemmy.ml/c/libre_hardware)\n
      \n
      Community icon by [Alpár-Etele Méder](https://www.iconfinder.com/pocike), licensed under [CC BY 3.0](https://creativecommons.org/licenses/by/3.0/)
      """
    +rules: null
    +subscriptionsCount: 1
    +entryCount: 1406
    +entryCommentCount: 28632
    +postCount: 6
    +postCommentCount: 214
    +isAdult: false
    +customCss: null
    +lastActive: DateTime @1729583542 {#274
      date: 2024-10-22 09:52:22.0 +02:00
    }
    +markedForDeletionAt: null
    +tags: null
    +moderators: Doctrine\ORM\PersistentCollection {#236 …}
    +ownershipRequests: Doctrine\ORM\PersistentCollection {#232 …}
    +moderatorRequests: Doctrine\ORM\PersistentCollection {#221 …}
    +entries: Doctrine\ORM\PersistentCollection {#179 …}
    +posts: Doctrine\ORM\PersistentCollection {#137 …}
    +subscriptions: Doctrine\ORM\PersistentCollection {#199 …}
    +bans: Doctrine\ORM\PersistentCollection {#116 …}
    +reports: Doctrine\ORM\PersistentCollection {#102 …}
    +badges: Doctrine\ORM\PersistentCollection {#80 …}
    +logs: Doctrine\ORM\PersistentCollection {#70 …}
    +awards: Doctrine\ORM\PersistentCollection {#1360 …}
    +categories: Doctrine\ORM\PersistentCollection {#1792 …}
    -id: 73
    +apId: "linux@lemmy.ml"
    +apProfileId: "https://lemmy.ml/c/linux"
    +apPublicUrl: "https://lemmy.ml/c/linux"
    +apFollowersUrl: "https://lemmy.ml/c/linux/followers"
    +apInboxUrl: "https://lemmy.ml/inbox"
    +apDomain: "lemmy.ml"
    +apPreferredUsername: "linux"
    +apDiscoverable: true
    +apManuallyApprovesFollowers: null
    +privateKey: null
    +publicKey: null
    +apFetchedAt: DateTime @1729583596 {#268
      date: 2024-10-22 09:53:16.0 +02:00
    }
    +apDeletedAt: null
    +apTimeoutAt: null
    +visibility: "visible             "
    +createdAt: DateTimeImmutable @1698929468 {#270
      date: 2023-11-02 13:51:08.0 +01:00
    }
  }
  -twig: Twig\Environment {#1252 …}
  -repository: App\Repository\MagazineRepository {#332 …}
}