privacy

This magazine is from a federated server and may be incomplete. Browse more on the original instance.

d00ery, in Chromecast vs built-in apps on Samsung TV?

Slightly off topic, but one major benefit for me with Chromecast and keeping the TV offline is software bloat.

Our old Samsung TV running tizan had so many shitty updates that slowed the UI down to what felt like over a second delay when using the remote.

pound_heap, in Next smartphone I buy, which one do you recommend?

Lots of good advice here, but many might be too extreme. I find such all-or-nothing approach intimidating for people who just started to think about improving their privacy situation.

Let’s see… you are angry about bloatware. It can come from two sources - mobile service carrier and phone manufacturer. How to get rid of it?

  1. Buy only “unlocked” phones. Then the carrier will not be able to push anything to your phone. You will also be free to change the carrier as you wish.
  2. Buy phones from manufacturers that don’t install too much bloatware. Google Pixel has only Google apps, Motorola also is almost vanilla Google. Fairphone is more exotic, but an interesting option. iPhone is OK too if you want Apple ecosystem, but customization is not a thing there.

Now, we are in a privacy focused community and I saw your later comments about Google being an opposite of privacy. I would argue that vanilla Pixel is much better than bloated and locked Samsung already. I see you get recommendations to replace the OS that your new phone might run, and these are valid, but come with significant downsides. There are other ways to improve your privacy stance by changing the way how you use your phone without changing what phone or what OS you run on it.

stewie3128, (edited )

Warning about bringing an unlocked phone to Verizon (even if it’s a current flagship Apple/Samsung/Google device): 50/50 they’ll lock you out of WiFi calling/HD voice, etc. Because they’re dicks.

beta_tester, in Nothing pulls its iMessage app from the Play Store following privacy disaster

You can’t kill reputation faster than that

fl42v,

Did they have any? I kinda skipped most of the news abt them since Hugh Jeffreys’ vid featuring their phones.

MartinXYZ, in Next smartphone I buy, which one do you recommend?

Perhaps Fairphone?

Octagon9561,

Those are plagued with security issues.

N4CHEM,

I’m interested in reading about those. Dou you have a link or a list of some of those issues?

adam_b,

You can read about why GrapheneOS support pixels only, from that you can guess that other phones lack some or most of these features

grapheneos.org/faq#future-devices

Also it depends on the OS, for example DivestOS maintains a web page of all the poor security measures in /e/OS

Also see CalyxOS vs GrapheneOS

In the end, choosing which project to use can be difficult just because of politics between the communities of these projects, saying a certain project is unsecure can get people using that project defensive, so keep that in mind

cupcakezealot, in Why Bluesky over sth like Activitypub?
@cupcakezealot@lemmy.blahaj.zone avatar

i like bluesky mostly because it’s the most like early twitter.

lists are also amazing.

iirc, i believe they said the reason they went with atproto instead of activitypub was because activitypub didn’t do full account backup so you can take everything from one server to another.

adam_b,

i like bluesky mostly because it’s the most like early twitter.

In which way ?

hanisod,
@hanisod@lemmy.world avatar

Wasn’t that added to ActivityPub a while ago?

Octagon9561, in Next smartphone I buy, which one do you recommend?

For best privacy AND security, Pixel 8 or 8 Pro with GrapheneOS. Nothing else compares. The Pixel 8 series are also the first that support hardware memory tagging, basically making them immune against 70% of all exploits.

adam_b, (edited )

For best privacy AND security, Pixel 8 or 8 Pro

I agree, but OP said

I’m not going to affiliate with any conglomerate

So, my other pick is Fairphone, actually after this discussion with this lovely Lemmy user, it’s probably my next phone

Kir, in Feeling like Privacy is a lost war.

Privacy is a collective “war”, it’s not something that can be fought on individual level. You can adopt some precaution on a personal level, and try to do better, but it’s something that must be brought to a collective level.

Same as climate change policy and worker right.

beefpeach,

It’s a collective war that I also feel is lost. Especially, when there is little to no policies in effect to stop these data brokers. Unless you live in California.

Kir,

I live in Europe, and I feel the battle is still on (but very very difficult)

troglodytis,

Not to worry, climate change will bring back privacy

drwho,

Even then, not so much. I’ve been tugging on those particular wires, and the overall response seems to be, send a reply once, then ghost you until you’ve forgotten that you asked them. They do nothing during that time, and will probably continue to do nothing well after we forget.

pdxfed,

I “live” in California to every company that I do business there that also operates in CA…

roteradler,

We have policies on Europe but even they do not help. The ad business is completely out of control, on some sites there are over 200 as companies gathering your data and selling them through the real time bidding system. it’s impossible to know who bought the data. just have a look what’s been uncovered lately.

mastodon.social/

FriendBesto, in Are libreddit frontends for reddit already non functional?

Some of them still work. But as you edited in, they are likely rate limited.

kixik,

very few, and one has to try so many times… I gave up. I guess RSS feeds whenever possible. though that consumes disk if local, so I’m really reluctant…

dessalines, in How to backup 2FA

Keepass + Syncthing

KeepassDX is a good android client, and it supports TOTP.

MigratingtoLemmy, in Is brave the only browser with fingerprint randomization?

I can’t even get that page to load without a lot of JS allowed. I guess I’m not going to get my score anytime soon.

Jamie,
@Jamie@jamie.moe avatar

Weird, it usually works fine without JS.

MigratingtoLemmy,

It just keeps reloading and after 5 tries it gives up. I could probably go through each domain manually but I’d like it if they could let me keep the 3rd party domains disabled.

Templa, (edited ) in Deciding between Fairphone 5 and Pixel 8

Just wanted to share my experience as someone that just updated to a p8p with GrapheneOS.

This is the first time I install a custom ROM in a smartphone and it hasn’t been easy but I’m pretty impressed so far. I installed their sandbox Google Play/Services to keep using banking apps and other apps that need it. Everytime I install an app it asks if it should have internet access permission so I can use Gboard without the need to use NetGuard.

I can limit storage scopes for every app. If I want WhatsApp to only be able to access my Downloads folder, I can. If I want to trick it saying that it has access to my contacts, I also can.

The biggest issue for me now is probably install/use things in a way that just don’t throw all the OS purpose out of the window and without asking questions considering how awful people can be when they think a question is dumb.

I was a bit disappointed with the lack of microSD but I realized I probably wouldn’t use it. I also had to install a custom launcher to customize icons and such.

One thing that worries me is how to setup a way to find my phone in case I lose it.

Scary_le_Poo,
@Scary_le_Poo@beehaw.org avatar

AirDroid. It’s not free, but it’s pretty good(or at least it was, years ago)

mozzribo,

Try Prey and/or Cerberus.

Pantherina,

Try shelter from fdroid

TropicalDingdong, in Blur tools for Signal

Hmm. Thats a neat feature. I love signal.

half_built_pyramids,

Article from 2020

TropicalDingdong,

damn, we really shouldnt discuss things that have happened in the past.

half_built_pyramids,

Shit guys, you heard of Bing?

TropicalDingdong,

Ah yes, let me just type into a search engine a search for all of the things that I don’t know that I don’t know about…

david,

It’s almost like we’re on a forum so that we can share information and discuss topics, perhaps even learn things that we haven’t learned yet lmao

No need to be rude about it. This place exists to comment about things and see opinions

peyotecosmico, (edited ) in Gitlab now requires phone number/credit card verification

Time to start using GitDirectory named V.01 shared over FTP.

It’s a joke, don’t use FTP, it’s not secure.

intrepid,

Is there any reference for this? I can’t find anything relevant. Just curious.

peyotecosmico,

Of FTP not being secure? Check the links in the comments below

FTP it’s not encrypted

intrepid,

No. I mean gitdirectory over FTP.

peyotecosmico,

There’s no GitDirectory, it’s the way we used to share files back then, a shared directory over FTP

intrepid,

I’m aware of FTP. It’s still around in certain circles. But for a moment I thought that there was some sort of integration between ftp and git. I guess not.

lazynooblet,
@lazynooblet@lazysoci.al avatar

Why isn’t FTP secure

MrRazamataz,
@MrRazamataz@lemmy.razbot.xyz avatar

because it hasn’t got an S in it

Klaymore,
@Klaymore@sh.itjust.works avatar

It’s unencrypted, your ISP / Starbucks wifi can read all the files you send. Use SFTP instead.

Atemu,
@Atemu@lemmy.ml avatar

Not just read but modify even.

ErwinLottemann,

or FTPS

registrert,
@registrert@lemmy.sambands.net avatar

deleted_by_author

  • Loading...
  • ErwinLottemann,

    SFTP is a ‘part’ of SSH, FTPS is FTP but encrypted.

    registrert,
    @registrert@lemmy.sambands.net avatar

    deleted_by_author

  • Loading...
  • JackbyDev,

    Yeah, I think you need to go out of your way to try to use ftps. When people say ftp they generally mean SFTP.

    tabularasa,

    Yes, SFTP > FTP-S.

    xcjs,
    @xcjs@programming.dev avatar

    Especially when it comes to gateway configuration.

    Extrasvhx9he, in Blur tools for Signal

    Always heard blurring was ineffective and that solid colored boxes should be used instead

    ErwinLottemann,

    i think that is only valid for text, the method to restore blurred text is to draw and blur a lot of combinations and compare them to the blurred image. that’s probably not a thing with faces i guess…

    akilou, (edited )

    I trust that Signal wouldn’t implement something if it was even questionably proven insecure

    Grunt4019,

    The blur seems pretty good to me, doesn’t seem like you could do any reverse processing to identify the face post blur.

    guyrocket,
    @guyrocket@kbin.social avatar

    That does sound more effective. You really have to trust that the blur algorithm cannot be reverse engineered if you use that. Removing the data seems more certain than transforming it somehow.

    Szymon,

    I recall a story of a pedophile being caught because they posted pictures using a radial warp on the face. It wasn’t too hard for enforcement to code a filter that undoes the radial warp, and instantly saw the original photo to identify and lock away the creep.

    alwaysconfused,

    For those who are interested, here is a 20 minute mini-documentary about this individual that goes by the name of Mr. Swirl.

    mp3,
    @mp3@lemmy.ca avatar

    A warp doesn’t technically lose the information, it merely displaces it. A good blur algorithm on the other hand will lead to loss of information.

    AeroLemming, (edited )

    To my knowledge, it’s kind of hard to quantify exactly how much information is lost with a normal blurring algorithm (gaussian, box, etc), but it’s usually less than you think. There are certain edge cases where no information is lost at all and the original image can be perfectly reconstructed if it’s simple enough. Even if it’s a normal photo of something complex, a deconvolution algorithm can work seemingly impossible magic on a blurry image without the need for an AI that will hallucinate details.

    On the other hand, pixelating part of an image provably removes a large amount of information from that section of the image and no algorithm will be able to de-pixelate something without hallucinating details. Using a big box is the absolute best because it just deletes all information from that part of the image.

    ETA: the problem is a lot worse in videos because you can use multiple frames with different offsets to reconstruct a higher quality image even if it’s pixelated.

    Szymon, (edited )

    This would demonstrate it well with physical concepts

    youtu.be/UpJ-kGII074?si=EoQQeplKXYj5kMT0

    SineNomineAnonymous,

    They had to ask adobe if i recall correctly. Which does mean it isnt as easy as it sounds to reverse engineer (since adobe developed it, they obviously knew how to do it)

    akilou, in How to backup 2FA

    I use Authy and am logged in on multiple devices so if I lose my phone I can still access the 2FA on my laptop. Then log back into the new phone using the laptop.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • privacy@lemmy.ml
  • localhost
  • All magazines
  • Loading…
    Loading the web debug toolbar…
    Attempt #