privacyguides

This magazine is from a federated server and may be incomplete. Browse more on the original instance.

nutbutter, in BVG out here recommending the best 2FA Apps!

In India, they force us to install proprietary apps, which are probably spying on us.

Star,

They don’t, though? Who’s forcing you to install a proprietary 2FA app in India. Unless you’re saying in general.

nutbutter,

My bank, for example, does not let us use any 2FA app we want. They have their own separate app, made for handling 2FA for that specific bank only.

And in general too, yes. Like Arogya Setu. The app we had to install to prove our vaccination status.

Overzeetop, in How Meta’s New Face Camera Heralds a New Age of Surveillance

I’m going to start out with the obvious- that most of these arguments are copypasta from a decade and a half ago when smartphones got cameras. Distracting. What about the gym? Easy for bad actors to abuse (OMGWTFBBQ!)

The glare from headlights comment was weird. Do the lenses not include an AR coating, or perhaps the author doesn’t normally wear glasses? I decided to check on that last one and was surprised that there was no by line, just a generic nyt link - not even to the article. Of course Brian X Chen appears to be a real NYT journalist, but in no other online pictures does he wear glasses, so I presume he doesn’t wear corrective lenses or he wears contacts. Not too surprising then that the glasses - and a big, black, fat-rimmed resin model at that - would be distracting, even outside of the decisions to record or not.

Which brings up the last bit - to record you have to initiate it. I presume this is for battery life, as powering the sensor, processing, and transmission to a storage device all take non-trivial amounts of power for a device that small. For the panicky fear of constant surveillance the article has I expected it was an always-on live-stream to the Meta servers that was occurring. Color me unimpressed.

MonkderZweite, in How Meta’s New Face Camera Heralds a New Age of Surveillance

Where’s the legally required recording light?

JokeDeity, in How Meta’s New Face Camera Heralds a New Age of Surveillance

When the idiotic masses and paid influencers hop on board like they always do it will spur a bunch of companies to make similar and maybe one of them will be worth buying.

VelveteenUnderground, in How Meta’s New Face Camera Heralds a New Age of Surveillance

These things should be illegal

tesseract, in How Meta’s New Face Camera Heralds a New Age of Surveillance

A lot of stupid techno wannabes will think that this is cool and ruin it for everyone else. We need that laughing man tech from Ghost in a Shell.

noodlejetski, in BVG out here recommending the best 2FA Apps!

that’s a refreshing change from the regular Google Authenticator and Authy mentions.

totallynotarobot,

What’s wrong with Authy?

vaselined,

Apparently it is hard to export out of authy

Midnight1938,

Microsoft authenticator has joined the chat

lud, (edited )

Here is their justification:

In order to maintain security for our users, the Authy application does not allow importing or exporting 2FA account tokens.

Users who want to import or export their tokens can follow this process:

  1. Login to the desired online account with your existing 2FA token.
  1. Disable 2FA in the app’s site.
  2. Re-enable 2FA again in the app’s site.
  3. Scan the QR code, optionally write the Authentication Key, this time on the desired 2FA App.

…authy.com/…/1260805179070-Export-or-Import-Token…

Evotech,

Nothing

darcmage, in Alternatives for simplemobiletool gallery and calendar?
pabloscloud,
@pabloscloud@lemmy.world avatar

deleted_by_author

  • Loading...
  • darcmage,

    Looks like it was changed to github.com/FossifyOrg

    mahony, in This Week in Privacy (#1)

    Would be nice if it was possible to subscribe to en email to receive this blog automatically. Also, would be nice to post youtube links via piped or some other front-end app, since its about privacy :)

    noodlejetski,

    RSS

    mahony, (edited )

    yeah never used that to be honest, I guess I have a reason to check it out. Still, to reach people a newsletter straight into an inbox is better. What RSS is recommended?

    gears,

    I use newsboat, if you’re used to the terminal.

    FippleStone,

    If you’re comfortable hosting your own services, I can recommend FreshRSS for an aggregator and FocusReader for an android client.

    Redoomed,
    Zagorath, in UK proposes selfie-based, AI age verification system for porn sites
    @Zagorath@aussie.zone avatar

    There is a 0% chance that AI can accurately determine if someone is 18 or not, even with hypothetical futuristic AI technology. Some 20-year-olds look very young. Some 16-year-olds look shockingly old. And nobody changes very significantly between the day of their 18th birthday and the day they were 17 years, 364 days.

    Resistentialism,

    Hell, even 13-15 year olds are looking much older. I genuinely saw one in normal clothes, took a guess based on her being around maybe 20. Saw her a day later in school uniform. And only under 16’s wear them.

    Really did make me realise I am shit at age guessing.

    jlow,

    To quote the Simpsons: “0% is a percentage as well!” And that will be more than enough for politicians who know nothing about the topic and are blinded by the hot tech-buzzword of the minute (especially if it turns out they or some of their friends can make a shitload of money with it. I love capitalism and democracy.)

    Zagorath,
    @Zagorath@aussie.zone avatar

    As an outside observer, UK politicians (even Conservatives) seem to tend to be a bit better at this sort of thing than American or Australian (“the laws of mathematics are very commendable, but the only law that applies in Australia is the law of Australia”) politicians. There’s a much stronger tendency for their back benchers to vote against the party line than we have, too, which is great for deliberative democracy.

    registrert,
    @registrert@lemmy.sambands.net avatar

    deleted_by_author

  • Loading...
  • echodot,

    simply connect it to a facial recognition database (I understand the UK are quite fond of such)

    Yeah but that doesn’t mean they work.

    Zagorath,
    @Zagorath@aussie.zone avatar

    To be fair, that at least is hypothetically possible. Working out someone’s age exactly purely based on their face is not even possible, so you can argue against it very easily from a purely technical standpoint.

    Facial recognition with a database is quite good today, and will only get better. To argue against that you need to start getting into the privacy and ethical arguments.

    platypus_plumba,

    Exactly, this is something that even humans would have a hard time doing. Even though AI can do many things better than humans, humans are better at vision at the moment.

    Zagorath,
    @Zagorath@aussie.zone avatar

    humans are better at vision at the moment

    Eh, humans are better at certain kinds of vision—particularly on tasks that deal with non-white people where the AI was trained mostly on white people.

    But things where the vision is looking at very fine detail, AI is very good at. Like determining if a patient has a disease based on a retinal scan or other medical imagery.

    And I think it’s fair to say that, at least superficially, the problem in this thread seems like it might be more similar to those medical cases where an AI could do a really good job. The problem is that actually, no. There’s no known marker that could determine age with the level of accuracy that would be required for this task.

    TheInsane42, (edited ) in BVG out here recommending the best 2FA Apps!
    @TheInsane42@lemmy.world avatar

    According to Wikipedia it’s based on google authenticator. Is it known how much google code is still in there?

    LWD, (edited )

    deleted_by_author

  • Loading...
  • badgrandpa,
    @badgrandpa@lemmy.world avatar

    only what I don’t like in FreeOTP is lack of passcode or biometrics

    lemann,

    I use FreeOTP+ and it requires biometrics to open

    sbv, in Does Google still hold contact data after deleting from Google Contacts?

    We have no visibility into Google’s internal processes. The developers that work on the product would probably know, but the rest of us can only guess.

    petrescatraian,

    @sbv Thank you!

    rammjet, in Does Google still hold contact data after deleting from Google Contacts?

    Contacts has a Trash can. Deleted contacts are deleted after 30 days. You can empty the Trash yourself. Log into the web interface and find Trash on the left.

    joeldebruijn,

    Thats just a user frontend showing your personal view of things . Nobody outside Google knows for sure if they really remove it from their end. All we know is they COULD keep a copy for themselves.

    lemann, in Does Google still hold contact data after deleting from Google Contacts?

    Not directly an answer to your question, but this is a really nice gesture. I’d appreciate it a ton personally

    petrescatraian, (edited )

    @lemann Thank you! Yea, many of my contact's emails are probably on Yahoo instead, so it's not that much of a biggie. I know nobody using Tuta or Proton or whatever. And probably they no longer care since most people use their emails only for logging in to websites that don't support SSO with social networks/Google and just outright create a new email if they forget their password to that. But hey, less data for Google is still less data for Google.

    otter,

    Agreed, I didn’t think to do this but I might go through my list when I get time

    While companies may secretly hold on to the data, it would also prevent future apps from abusing the data if I accidentally allow contact permissions

    floridaman, (edited ) in BVG out here recommending the best 2FA Apps!

    I self host Bitwarden (Vaultwarden) so I just use the built-in TOTP authenticator in the Bitwarden app. It’s nice to have it all in one place + having auto copy and paste when I log in. And because I self host, it’s all backed up securely and with (as far as I know) no real backdoors.

    ETA: just realized what community this is in. people that replied to me I’m sorry lmao, I’m not a nut about this kinda stuff and I’m by no means recommending this just like using it this way for convenience factor and to keep the likes of google out of my password.

    Undertaker, (edited )

    Yeah it compromises the idea of a second factor. Bitwarden is the worst choice. It’s only one thing: comfortable

    floridaman,

    Fair, although I’ve said in a comment on this account somewhere else, I self host more for convenience sake than anything. I just like having my own password manager, sure it’s not as secure to use it for MFA but it’s better than giving my passwords to Google, LastPass, etc. and then using eg Google Authenticator. Self hosting is more a corporate distrust thing than a privacy thing for me

    Winter8593,

    No, please do not do this. Two factor authentication should be just that: two separate factors of authenticating yourself. Having them combined in one is the same as one factor.

    floridaman,

    Said in the reply to the other comment here, but I don’t really self host for security/privacy sake. And in addition to that comment I’d also like to say that I do use a YubiKey when possible for MFA. I’m not a security nut enough to care about TOTP (which kinda sucks anyway) all too much but for important things I do use physical MFA.

    jard, (edited )
    @jard@sopuli.xyz avatar

    deleted_by_author

  • Loading...
  • Dislodge3233,

    I have a really long password on Bitwarden like 30+. I use OnlyKey to store this password on a hardware device.

    You mentioned phones. My problem with using another 2FA app is that it’s still on my phone.

    ideonella,

    I do the same thing. And Bitwarden’s 2FA is off my phone. In a complicated world, it’s reasonable to keep 1 password + 2FA as secure as possible. I simply can’t handle the hassle of pulling out my phone for every 2FA login, but still value the protection 2FA + randomly generated passwords provide.

  • All
  • Subscribed
  • Moderated
  • Favorites
  • privacyguides@lemmy.one
  • localhost
  • All magazines
  • Loading…
    Loading the web debug toolbar…
    Attempt #