this post was submitted on 26 Apr 2025
128 points (92.7% liked)

Linux

53624 readers
980 users here now

From Wikipedia, the free encyclopedia

Linux is a family of open source Unix-like operating systems based on the Linux kernel, an operating system kernel first released on September 17, 1991 by Linus Torvalds. Linux is typically packaged in a Linux distribution (or distro for short).

Distributions include the Linux kernel and supporting system software and libraries, many of which are provided by the GNU Project. Many Linux distributions use the word "Linux" in their name, but the Free Software Foundation uses the name GNU/Linux to emphasize the importance of GNU software, causing some controversy.

Rules

Related Communities

Community icon by Alpár-Etele Méder, licensed under CC BY 3.0

founded 5 years ago
MODERATORS
 

Today i took my first steps into the world of Linux by creating a bookable Mint Cinamon USB stick to fuck around on without wiping or portioning my laptop drive.

I realised windows has the biggest vulnerability for the average user.

While booting off of the usb I could access all the data on my laptop without having to input a password.

After some research it appears drives need to be encrypted to prevent this, so how is this not the default case in Windows?

I'm sure there are people aware but for the laymen this is such a massive vulnerability.

you are viewing a single comment's thread
view the rest of the comments
[–] [email protected] 5 points 1 day ago (4 children)

Physical access wouldn't seem so hard. Say you worked at the company company and wanted to get the files your boss has on your evaluation or something. Wait till they're on lunch, plug in a usb and pull them up.

I imagine patient records wouldn't be encrypted either

[–] [email protected] 6 points 1 day ago

I imagine patient records wouldn’t be encrypted either

If computerised, they freaking well should be.

In general they'd be in a database with it's own accesss control to interfaces and the databases data store should be encrypted. In my country there are standards for all healthcare IT systems that would include encryption and secure message exchange between systems. If they breached those they'd be in trouble.

If your doctor has a paper file in a filing cabinet on premises, written in English, then yes. The security is only the physical locks, just like your hme pc.

[–] [email protected] 31 points 1 day ago (1 children)

Any respectable company with Windows would be using BitLocker - full disk encryption. It’s super easy to setup if your computer has TPM, fully transparent for the user in most cases.

[–] [email protected] 3 points 1 day ago

My work macbook won't even let me mount an external storage device, but it doesn't seem to care about my nextcloud client running in the background. Sorry for my blasphemous behaviour my cyber security comrades 🫡🥺

[–] [email protected] 2 points 1 day ago

such a "hack" would only work in a poorly written tv show

an unencrypted drive is like being able to look into a bank though a window, not ideal but things of value could/should/would still be in a safe or somewhere else completely

[–] [email protected] 4 points 1 day ago

That's why you can't just boot from an usb