privacyguides

This magazine is from a federated server and may be incomplete. Browse more on the original instance.

Showroom7561, in Cars are a 'privacy nightmare on wheels'. Here’s how they get away with collecting and sharing your data

It’s actually going beyond cars, now.

“Connected” e-scooters and e-bikes that use apps to control their functions also have the ability to collect data (including location) for use in ways that could be abused/sold/stolen.

Chais, in School surveillance tech does more harm than good, ACLU report finds
@Chais@sh.itjust.works avatar
SaltySalamander, in Your Cheap Android TV Streaming Box May Have a Dangerous Backdoor
@SaltySalamander@kbin.social avatar

Almost certainly has a dangerous backdoor, you mean.

nul, in Each Facebook User is Monitored by Thousands of Companies

And there’s 3 billion Facebook users which means there must be trillions of companies spying on them! Crazy when you don’t think about it.

jadelord, (edited )

That math does not check out. There are only 8.1 billion humans alive. How can there be trillions of companies?

Vendetta9076,
@Vendetta9076@sh.itjust.works avatar

Its a joke

THE_ANON,

It is the same thousands of company spying on evereyone and not every individual having their own 1000 company that spying on them.

noorbeast, in Each Facebook User is Monitored by Thousands of Companies

You are the product!

vexikron, in Marketing Company Claims That It Actually Is Listening to Your Phone and Smart Speakers to Target Ads

Why wouldnt they be serious?

If your phone has the capability to have a parental control / monitoring mode on it enabled, which can see everything you are doing on the phone, hear what youre saying and see what the cameras see and know your GPS location… and hide all of this to the user…

Why wouldnt ad companies also pay for such a live feed, or at least parts of it, if the software and hardware capabilities already exist?

People have been reporting getting advertisements based on conversations they were having 10 minutes ago with a person next to their phone for years.

Lemmchen,

What are you talking about? Which phone has parental control abilities like that?

vexikron,

Well, all phones with Google’s Android do, and probably all iPhones too, though I am not an iPhone user so I cannot speak from personal experience on iPhones.

My brother, last year, decided to engage parental control on my android phone and used it to stalk me on foot and in his car.

He was the head of the TMobile family plan we were on. I talked to TMobile employees at different locations many times about this. They tried to helo me, but because I was not the head of the plan, the tech support people that the instore agents had to call to try to fix my situation wouldnt do anything.

At one point a T Mobile employee told me to call the police… on T Mobile.

But uh yeah everything on stock android is connected to a google account, and TMobile and Google apparently just presume that any one not the head of a family plan are children, and will allow parental control to be enabled /without informing the ‘child’/.

hswolf, in BVG out here recommending the best 2FA Apps!
@hswolf@lemmy.world avatar

If you get Bitwarden pro (really cheap), you can save an OTP link together with the site credentials, it’s really good for keeping everything in one place

SaltyIceteaMaker,
@SaltyIceteaMaker@iusearchlinux.fyi avatar

Proton pass can also do this

PracticalParrot,

I do this. I want to point out it is absolutely TERRIBLE for security. It’s turning 2 factor back into 1 factor authentication.

goodhunter,

Consider your threat model. You could use a yubikey for Bitwarden log in.

kniescherz,

I would argue its more like a 1.5 factor. Not secure when your bitwarden gets compromised. But more security for stolen, leaked, phised passwords.

I currently have 60 OTPs in Bitwarden, I probably would not have activated 2FA on so many sites without BW.

IdleSheep, (edited )
@IdleSheep@lemmy.blahaj.zone avatar

This isn’t really a good idea because then you’re putting all your eggs in one basket. The whole point of 2FA is that the second factor is in a separate location so if your first factor (password) gets compromised the second one (OTP code) still protects your account. If both factors are in one place you’re back to a single point of failure instead of 2, losing a key benefit of 2FA.

If you’re gonna do this, at the very least have 2FA with a security key on your bitwarden vault.

kniescherz,

You lose security, sure. But you are gaining so much more ease of use. Bitwarden autofills your credentials and puts your token into your clipboard. Also it syncs your tokens to all devices. Effectifly this makes a site as easy to login as a site without 2fa.

The alternative is on desktop always get your smartphone, open some app type a token or on the phone to switch to multiple apps to get your credentials. Not fun imho.

I currently activated 2fa on over 60 sites, I doubt I would use it as much without BW.

For me, the key benefit of 2Fa is getting more security against leaked, stolen, phished passwords, and that still holds up.

IdleSheep, (edited )
@IdleSheep@lemmy.blahaj.zone avatar

The alternative is on desktop always get your smartphone, open some app type a token or on the phone to switch to multiple apps to get your credentials. Not fun imho.

There are desktop apps for OTP, you don’t need a phone. And since you only need to setup an OTP secret once, doing it for your phone and pc isn’t that big of a deal.

I have my OTP secrets in 3 places, 2 yubikeys and my phone’s authenticator app, with the former meant for my PC.

For me, the key benefit of 2Fa is getting more security against leaked, stolen, phished passwords, and that still holds up.

If your vault doesn’t have 2FA too this doesn’t hold up though. Means you’re trusting a single service that can get hacked with all your secrets. Sure, your other accounts are more protected against leaks and stuff, but if your password vault isn’t, you didn’t really change much, just pointed the hackers to one single place.

Yes I know hacking a password vault isn’t some walk in the park and rarely happens, but the point is any leaks from it would be 10 times more catastrophic for you if all your OTP secrets are also stored in it. I’ll spare myself from that nightmare with the small inconvenience that is a separate, offline OTP app.

kniescherz,

Good points!

I got the vault protected via yubikey of course ;)

derpgon,

If you get Vaultwarden, absolutely free, you don’t have to pay and have full control over your data. It’s a win-win!

CrypticCoffee, (edited ) in Governments spying on Apple and Google users through phone notifications, U.S. senator says

I guess that would explain the difficulties some apps face without push notifications and releasing APKs. These big companies want you to rely on their systems. Signal was pushing their app through play store. I don’t know if an equivalent exists, but it really needs to. We need this, combined with f-droid, so we don’t have to use spyware like the Play Store.

sv1sjp,
@sv1sjp@lemmy.world avatar

Use Molly, its a hardened version of signal app without push notification. It uses locally notifications.

FfaerieOxide,
@FfaerieOxide@kbin.social avatar

Use Molly

And wind up dehydrated in jail again?

moreeni,

What is that supposed to mean? Is it a reference to something?

brain_pan,

drug joke, I think

amio,

What's a little dehydration and imprisonment when you can have that afterglow, though

ButWhatDoesItAllMean,

I’ll bring the blow pops, who’s got the Vicks?

FfaerieOxide,
@FfaerieOxide@kbin.social avatar

I’ll bring the blow pops

Not only am I not your pops, you really shouldn't mix those.

Gooey0210,

Whoah, roll in grass, dude

FfaerieOxide,
@FfaerieOxide@kbin.social avatar

We're rollin' grass now, too?

Gooey0210,

Tall grass is very cool if you’re feeling hot and dehydrated

FfaerieOxide,
@FfaerieOxide@kbin.social avatar

I understand eating it is good for an upset stomach, if a friend of mine who licks his own ass is too be believed.

Doesn't do us much good inside a jail cell, tho.

QuazarOmega,

You can have push notifications, right now there’s a unified push fork on the same Molly F-droid repository

miss_brainfart,
@miss_brainfart@lemmy.ml avatar

Signal does in fact distribute an APK that isn’t dependant on Play Services/FCM on their website. Uses a websocket, so not the most elegant way I guess, but oh well.

It’s rather hidden, which I think is disappointing. But it exists. Updates itself, too.

Deceptichum, (edited ) in Australian privacy watchdog refuses to investigate employer that allegedly accessed worker’s personal emails
@Deceptichum@kbin.social avatar

Fucking pathetic.

I suppose when I enter company property they also have the right to do an anal cavity search on me because I am on company property after all.

furrowsofar,

Keep in mind that he was using a company device. Just do not do that. Similarly never use personal device for work. Similarly do not leave email on the server. This has always been the thing at least in the US.

reflex, (edited ) in As YouTube Declares War on Ad Blockers, Google Sponsors Ad Blocking Conference
@reflex@kbin.social avatar

Well, this is just like the CIA or whatever attending Defcon. Google undoubtedly has some ulterior motive, whether it's to poach the best and brightest or to dilute the messaging, etc.

ultratiem,
@ultratiem@lemmy.ca avatar

Research. Trying to kick up information on adblockers and how they function so they can kill the feature once and for all.

A 6 year old can see the contrived plan.

If devs are smart they would poison their data and use the event to troll Google. Wasting their cash.

Supermariofan67, in Is there any point in using NoScript if you already have uBlock Origin?

Strictly speaking, no, since ublock origin can also disable JavaScript on pages if you toggle the option. So aside from the question of whether doing so is necessary, noscript’s script blocking functionality is entirely replaceable with ubo, which also has more advanced support for filterlists, etc that you’re probably aware of already

darthTurtle89,

I still use noscript because I can use it to enable scripts individually. ubo only allows you to enable or disable scripts. I don’t know if it’s necessary, but I read that noscript makes fingerprinting harder since fingerprinting relies on scripts.

moreeni,

uBlock blocks fingerprinting scripts completely. You can also enable scripts individually with it and thus remove the need for NS, which does the same but less

witchdoctor, in How to stay safe on Strava

Don’t use it in the first place, no need to share your cycling information.

Showroom7561,

Rather unfortunately, many clubs and events use these apps to coordinate routes. One ride event I did used RidewithGPS, and I never use it normally.

Alternatively, if you can export the GPX file, you can import it to your privacy-first app, like OSMand.

Gazumi, in UK police urged to double use of facial recognition software

The UK police are on their backsides after decades of cuts to workforce. Society is not protected by cameras. People wear masks or hoodies when they mug old ladies. We need bobbies on the street.

Gazumi, in Privacy friendly clock app ?

I use this: www.f-droid.org/packages/com.best.deskclock/

The funniest answer I saw to the question of the most privacy respecting clock was “a sundial”, but thats just my childish sense of humour.

Lemongrab,
@Lemongrab@lemmy.one avatar

+1 for this app. Functions like stock clock with the needed permissions.

Blackout, in It seems Gen Z is just fine with parents knowing where they are all the time
@Blackout@kbin.social avatar

It seems really pathetic to me when parents can't offer their teens privacy. I have a child and I want him to trust me. Invading privacy feels like it would have the opposite effect and create a very one-sided relationship. You can ask my mom how much she knows about me now and its considerably less than my boxing mates.

Beefytootz,

Parents also aren’t able to offer their kids safety. Seems those two go hand in hand with each other

  • All
  • Subscribed
  • Moderated
  • Favorites
  • privacyguides@lemmy.one
  • localhost
  • All magazines
  • Loading…
    Loading the web debug toolbar…
    Attempt #