Skip Navigation

InitialsDiceBearhttps://github.com/dicebear/dicebearhttps://creativecommons.org/publicdomain/zero/1.0/„Initials” (https://github.com/dicebear/dicebear) by „DiceBear”, licensed under „CC0 1.0” (https://creativecommons.org/publicdomain/zero/1.0/)LW
Posts
77
Comments
1,953
Joined
2 yr. ago

Firefox @lemmy.world

PSA: Mozilla Monitor still sends your data to surveillance company OneRep - more than a year after promising they wouldn't

  • A few observations from others about why Delta Chat is neat but not remotely close to a replacement for Signal (or probably much else):

    It hasn't achieved the bare minimum for serious encrypted messaging

    "No, Delta Chat doesn’t support Perfect Forward Secrecy (PFS). This means that if your Delta Chat private decryption key is leaked, and someone has collected your prior in-transit messages, they will be able to decrypt and read them using the leaked decryption key."

    https://delta.chat/en/help#pfs

    It's great they're being open about the implications. But given that there's better protocols out there (Signal protocol for example), it makes no sense to use inferior apps.

    Forward secrecy and metadata privacy are table stakes in any modern secure messaging design, and Delta Chat has neither.

    If Keybase hasn't managed to "fix" the same base encryption Delta Chat is using, there's no reason to assume this small project will have better luck.

    PGP isn’t architecturally well-equipped to provide forward secrecy. In the mean time, I think it’s borderline negligent to put this in the category of secure messaging; the world’s expectations for security baselines have moved on beyond the mid-2000s.

    (My reference point here is Keybase, which built a very user-friendly and misuse-resistant encrypted chat on top of PGP in the mid-2010s. They couldn’t get to forward secrecy either with PGP as their substrate.)

    Delta Chat treats encryption as optional and requires extra steps to avoid accidentally exposing more data

    No forward secrecy and will automatically switch to unencrypted messages if you receive an unencrypted message from a contact.

    The way to have guaranteed encryped is creating two user encrypted group chat.

  • Is my client broken, or is the text just not visible after you cross posted? Here's the text from OP:

    Meta: Coming after your data harder than ever

    At this point it not about passive collection, corporations are going to extreme ends to get our data.

    https://www.zeropartydata.es/p/localhost-tracking-explained-it-could

    I am interested in what people are doing to enforce their privacy while using the web.

    I have some things in place, looking to compare with the community.

    (btw, I am new here, this is my first post. So uh… Hi )

  • It cannot be understated how absolutely deranged the orb has been from the beginning. Sam Altman is creating the problem (AI botspam) and promising he has the solution (this ungodly trash) at the same time.

    Scam altman even sent a crew to Kenya to try coloniz... Uh, debankin... Oh, scanning eyeballs in exchange for a few piddly dollars. In response, Kenya booted his project out.

    So he turned his sights to a country he apparently can exploit: the USA.

  • Based on your descriptions of the integration between Windows 96 and Office, I did get the feeling you might run into even more issues if more software wasn't installed alongside Windows as well.

    I'm all Mac and Virtual Box doesn't run on M-series hardware.

    I had no idea!

    And hopefully my comment didn't come across as a dig against your article - it just promises to be a potentially fascinating follow-up. Especially when, even today, Windows Explorer feels like it added previews of files as little more than an afterthought (and occasionally as a PowerToy).

    BTW I enjoyed 100% of your article, I think it's a good sign when it leaves the reader wanting more!

  • This is a very good article, but this part peeved me on a petty level (as well as explaining why there's precious little in the way of screenshots):

    While I can't find any uploads that are set to run on their website in a virtual computing session, the files are available to download if you felt like spinning up a piece of computing history.

    The opportunity to do a little investigative journalism is right there, and the blog author didn't take it

  • Firefox @lemmy.ml

    Mozilla Backs off on Data Collection: Firefox Labs to Not Require Telemetry or Studies in Future Updates

    Ye Power Trippin' Bastards @lemmy.dbzer0.com

    r/privacy mods silently delete and lock article exposing a $9.4 million surveillance apparatus "gifted" to SFPD

    privacy @lemmy.ca

    Telegram messenger's ties to Russia's FSB revealed in new report

    Privacy @lemmy.world

    Telegram messenger's ties to Russia's FSB revealed in new report

    DeGoogle Yourself @lemmy.ml

    Digital camera recommendations for replacing a smartphone camera?

    Technology @lemmy.world

    Rumour: Google intends to discontinue the Android Open Source Project – OSnews

    degoogle @europe.pub

    "Pixels are no longer supported in AOSP. No more device trees, hardware repos"

    DeGoogle - Canada @lemmy.ca

    "Pixels are no longer supported in AOSP. No more device trees, hardware repos"

    deGoogle @discuss.tchncs.de

    "Pixels are no longer supported in AOSP. No more device trees, hardware repos"

    Firefox @lemmy.world

    See you on the flip side

    Firefox @lemmy.ml

    Firefox 139 hides homescreen option to disable ads

    Firefox @lemmy.world

    Firefox 139 hides homescreen option to disable ads

    Ye Power Trippin' Bastards @lemmy.dbzer0.com

    Slight Reddit mod overreaction to criticism of Reddit?

    deGoogle @discuss.tchncs.de

    A Researcher Figured Out How to Reveal Any Phone Number Linked to a Google Account

    Ye Power Trippin' Bastards @lemmy.dbzer0.com

    r/privacy doesn't let people say "Peter Thiel is involved with Brave"

    Not The Onion @lemmy.world

    Man in Norway wakes to find huge container ship in garden

    Not The Onion @lemmy.world

    Man speaks to killer from beyond the grave in Arizona courtroom through AI video

    Ye Power Trippin' Bastards @lemmy.dbzer0.com

    r/privacy mod breaks "no self-promotion rule" in self-pinned comment

    Ye Power Trippin' Bastards @lemmy.dbzer0.com

    DHS allows surveillance based on sexual orientation. Reddit's privacy moderators ban any mention of it