- 9 Posts
- 24 Comments
XLE@piefed.socialto Privacy@lemmy.dbzer0.com•How checklists lie with facts, and are bad for figuring out privacy of apps etc.English6·3 days agoI’m surprised this article doesn’t mention privacytests.org by name, but it reaches a conclusion that may as well:
If you see a dumb checklist trying to convince you to use a specific app or product, assume some marketing asshole is trying to manipulate you. Don’t trust it.
Thankfully there’s a good recommendation in the very next paragraph for all things (messaging apps, browsers, etc):
If you’re confronted with a checklist in the wild and want an alternative to share instead, Privacy Guides doesn’t attempt to create comparison tables for all of their recommendations within a given category of tool.
Also: shots fired at XMPP throughout, as the poor protocol limps along trying desperately to catch up to the encryption baseline that was set over a decade ago by the first versions of Signal.
Ultimately, both protocols are good. They’re certainly way better choices than OpenPGP, OMEMO, Olm, MTProto, etc.
Why OMEMO is “bad” is indirectly answered earlier:
The most important questions that actually matter to security:
- Is end-to-end encryption turned on by default?
- Can you (accidentally, maliciously) turn it off?
If the answers aren’t “yes” and “no”, respectively, your app belongs in the garbage. Do not pass Go.
Similar discussions have skewered the federated Delta Chat for having an even worse version of this issue.
XLE@piefed.socialto Privacy@lemmy.dbzer0.com•ChatGPT and other AI tools could be putting users at risk by getting company web addresses wrongEnglish1·6 days agoI hesitantly wonder if something like Perplexity might actually be the future of search engines. It seems relatively capable of correctly interpreting search queries full of half-remembered thoughts and potentially inaccurate text into salient results. I disregard the guestimations it makes about the links it provides (of course) but the couple of times I tried it out this way, it seemed to work better than Google.
I also wonder how much energy it requires compared to whatever trash Google returns.
XLE@piefed.socialto Privacy@lemmy.dbzer0.com•ChatGPT and other AI tools could be putting users at risk by getting company web addresses wrongEnglish4·6 days agoConsidering Google has put effort into intentionally worsening its own product, it makes sense that their chapel alternative would be something people just use.
XLE@piefed.socialto Privacy@lemmy.dbzer0.com•Cloudflare offers to make AI pay to crawl websitesEnglish8·10 days agoSo Cloudflare’s business model is openly the same as a corrupt security guard, somebody who promises to protect your stuff unless they get paid well enough?
XLE@piefed.socialto Privacy@lemmy.dbzer0.com•Danish citizens to ‘own their own faces’ to prevent deepfakesEnglish1·11 days agoAnd the AI Company Man told me I needed to scan my face into an orb to do this! At least they used the word “governance” a bit and offered me a pittance for the brave new opportunity.
XLE@piefed.socialto Privacy@lemmy.dbzer0.com•New VPN Service Can't Log Users by Design - TorrentFreakEnglish25·12 days agoThere seems to be something a little… off here. VP looks like it’s a tech demo for a patent held by another company.
The new VPN service is operated by the American company VP.NET LLC, which in turn is owned by TCP IP Inc
And TCP IP (a terrible name for people who want to look it up) is exclusively proud of owning a patent it thinks is worth a lot of money. From its site:
We own the intellectual property that enables hardware-guaranteed network privacy—addressing a critical market gap worth $562 billion by 2032.
To me, it sounds like the CEO is trying to sell the company itself as a product to a larger investor. And that other privacy considerations, like jurisdiction, never factored into this.
Then I got to this part of the article, which seems to confirm those suspicions.
The idea to use SGX as a privacy shield comes from Andrew Lee, the chief privacy architect at VP.net. As the founder of Private Internet Access, which he sold to Kape a few years ago, Lee has a long history in the VPN space. However, he believes this new concept is a breakthrough.
So this company is run by somebody who sold out before.
XLE@piefed.socialto privacy@lemmy.ca•ICE Is Using a New Facial Recognition App to Identify People, Leaked Emails ShowEnglish3·15 days agoAll I can tell you is what I read on the linked page because I haven’t analyzed the bill itself.
Impact on ALL Canadians:
Companies must keep records of your personal data under secret government orders, with blanket immunity for privacy violations for handing over more than they should.
XLE@piefed.socialOPto Privacy@lemmy.dbzer0.com•ICE Is Using a New Facial Recognition App to Identify People, Leaked Emails ShowEnglish12·15 days agoIt’s your right until they ban it
XLE@piefed.socialto privacy@lemmy.ca•Psylo iOS browser takes aim at digital fingerprintingEnglish1·15 days agoIs there no such thing on Android already?
Usually, Apple devices are limited on features, but I’ve never seen an Android app pull this off.
XLE@piefed.socialto privacy@lemmy.ca•ICE Is Using a New Facial Recognition App to Identify People, Leaked Emails ShowEnglish15·15 days agoWatch out for Bill C2. It requires companies to collect data on you (Canadian citizens) and shields them from “accidentally” oversharing it.
XLE@piefed.socialOPto Privacy@lemmy.dbzer0.com•ICE Is Using a New Facial Recognition App to Identify People, Leaked Emails ShowEnglish26·15 days agoIt’s difficult to identify cops when they hide their name, badge number, and face. And when they get extra, pro bono legal support when challenged.
And those are just the developments from this year that I can recall.
Edit: this was supposed to be a reply to @[email protected] but either my app broke or I’m half blind
XLE@piefed.socialOPto Privacy@lemmy.dbzer0.com•Man 'refused entry into US' as border control catch him with bald JD Vance memeEnglish11·15 days agoWhat are you assuming about my identity, and declaring about your own identity, that makes you uniquely able to speak about affairs in China, while telling others to shut up about it?
XLE@piefed.socialto Privacy@lemmy.dbzer0.com•WhatsApp rolls out AI-generated summaries for private messagesEnglish17·15 days agoOoh what’s that, is it like homomorphic encryption where they can process your data without seeing the input or output?
Meta says users can “direct AI to process their requests,” like for AI chat summaries, using Private Processing. If they do, the system won’t “retain access to user messages once the session is complete” so that a potential attacker can’t access them after the fact, according to the company.
Never mind. It’s utter bullshit. It’s a pinkie promise that they’ll take your data and totally not keep it.
Mark already told us people who trust him are “dumb fucks”
XLE@piefed.socialOPto Privacy@lemmy.dbzer0.com•Man 'refused entry into US' as border control catch him with bald JD Vance memeEnglish11·16 days agoWhat are you assuming about my identity, and declaring about your own identity, that makes you uniquely able to speak about affairs in China, while telling others to shut up about it?
(context: From what I see, you joined this thread to praise China’s healthcare.)
XLE@piefed.socialOPto Privacy@lemmy.dbzer0.com•Man 'refused entry into US' as border control catch him with bald JD Vance memeEnglish3·16 days agoIf only there were politicians that upheld the Constitution
XLE@piefed.socialOPto Privacy@lemmy.dbzer0.com•Man 'refused entry into US' as border control catch him with bald JD Vance memeEnglish11·16 days agoWhy are you bringing up race when somebody is talking about national policy
Are you looking for client-side encrypted storage? If you are willing and able to perform the encryption step on your own, a lot of options are available to you.
If you’re just looking for something that’s better than Google or MS, it’ll probably be even easier to find.
XLE@piefed.socialOPto Privacy@lemmy.dbzer0.com•Man 'refused entry into US' as border control catch him with bald JD Vance memeEnglish2·16 days agoIf you don’t believe in lesser evil like you just said, and you think China is fascist like you just implied, why say “at least
the trains run on timethey have healthcare”?It sounds like the kind of virtue signaling you disapprove of.
XLE@piefed.socialOPto Privacy@lemmy.dbzer0.com•Man 'refused entry into US' as border control catch him with bald JD Vance memeEnglish2·16 days agoI’m glad you thoroughly understand the concept of “the lesser evil”
A while ago, Alexa devices would actually process the stuff you said on your device. They disabled that for some reason. They need their cloud servers to waste more energy, I guess.