Privacy

50637 readers
443 users here now

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

Related communities

much thanks to @gary_host_laptop for the logo design :)

founded 6 years ago
MODERATORS
26
27
 
 

The OpenSauce privacy statement is a work of art.

28
78
submitted 6 days ago* (last edited 6 days ago) by monovergent@lemmy.ml to c/privacy@lemmy.ml
 
 

Bit of an uphill fight with captchas everywhere. Do people here conduct all online activity over VPN whenever possible? Only for the sensitive stuff? Or perhaps the inverse because the bank already knows you? Maybe when travelling or getting around region blocking? Something else?

The one provided by my work aside, I realized that I don't have any consistent rules around using VPN. Except sometimes, you know, when downloading ISO's for my favorite distos.

29
30
 
 

Researchers at Karlsruhe Institute of Technology demonstrated BFId, a Wi-Fi identity-inference attack that uses Beamforming Feedback Information (BFI) to identify people based on how their bodies alter radio signals. The study involved 197 participants and reported 99.5% identification accuracy across different perspectives and walking styles. Wi-Fi sensing isn't just a research concept anymore. Verizon already offers Wi-Fi Motion Sensing through its Home Router/Hub, using Wi-Fi signals to detect motion in a home without requiring cameras or dedicated motion sensors. That doesn't mean Verizon's consumer feature is identifying people like BFId does. The technologies and purposes are different. But it shows how Wi-Fi is increasingly being used as a sensing layer, not just for connectivity.

31
 
 
  1. Are there any phone plans where you add to a 'purse' instead of make monthly payments?
  2. If yes, are any privacy focused?

Phreeli comes close with prepaid month-by-month plans and great privacy practices, but Ideally I'd like a plan where you buy 'X' minutes and 'Y' GB of data and just refill as needed. This would be for use in continental US and during international travel.

32
33
 
 

(this is my first post im new) ive noticed something no one seems to have a problem with. do you have this problem to? am i just doing something wrong?

i use a privacy friendly browser plus a privacy friendly os and use fingerprint spoofer/blocker. i watch videos on invidious. i noticed that the "popular" tab shows videos related to videos i watched before. even if i clear my cookies, or change my idenity in (offiscial) tor browser i still get recommended related videos meaning no matter what i do google knows what i watch. whats worse, if i go on invidious on a totally different device with a normal broswer normal os, i get the same videos. meaning websites know what videos i watch across multiple sessions but also multiple devices. im sick of this. it feels like i've tried everything, sacrificed so much connivence but no results.

(this isn't a question spefecifically about youtube google or invindious just how to get webisites to stop knowing everything i do across multiple identities and every device i use)

Things I tried

*Proton vpn+librewolf(max security according to settings)+nosircpt+Ublock(with the filters it comes with)+ officisal recommended invidious instances+Quad9 via settings

*Tails+Tor browser(max security settings apprentaly)+default bridge+no javascirpt+fingerprint spoofing estendsion+bluetooth disabled by tails+all the previous mentioned (exculding vpn i heard its risky)+invidious again (Tails doesn't work well for me the police are not after me and it takes so long to start and presisent stoarage is annoying)

*Qubes+Whonix vm+Tor browser(max again)+no javascript (I love and hate qubes from my first impression it meets my security needs and you can run any os in a vm on it but i wish it just worked. theres a steep learning curve and my hardware isn't the best for it)

No results on any of these just slower internet and some websites are broken. Its just like using a normal browser that tracks you but slow as a privacy one. im getting tired of this. i use all this super deep level paranoid overkill stufff and nothing happens. like im burning my house to get rid of a spider but the spider is still there

possible causes

-google wireless access point (does qubes/whonix/tor NOT protect against this at all??) (also my family HATES any changes or mild inconveniences)

-i logged in to google without a vpn **ONCE **does this automatically doom you forever **even ** if you change os and browser and device?

-hardware is framework laptop

for clairtiy

I am not -a criminal -a journalist -a gooner -willing to go off grid in the woods I am -creeped out -tired -about to give up

My privacy goals

-be able to actually cut ties with my shadow profile and have websites not know everything ive done in my life -control what data brokers and compaines knsw -not have any website at all know every device i use -be able to use any network safely

I feel like giving up on privacy because nothing seems to work. the only results I get is slower more broken internet

34
35
 
 

I am planing to buy a new car. Which of these are better relatively speaking in terms of privacy, Mercedes-Benz, BMW, or Audi? I can't buy old used cars. I have to buy a new car. I like new safety features but I don't want privacy invasive features, or subscription services.

36
37
38
39
 
 

Has this occurred to y'all? My browser as of lately suddenly checks. Even if I just search on "remove trackers" and a lot of normal links, I get the note "we nEed to VEriFY yOURE not a ROBOT"... it feels like Cloudflare et al are trying to force man in the middle attacks on you. And this also occurs on other browsers with other kinds of ""verifiers"".

The web's becoming cancerous. I hate this.

40
 
 

Jaws dropped when I saw this.

https://ns.com/exam

This website requires both:

  • a Google or Apple account
  • a social media account

Just to take a free test. (On the site, scroll way down, click Apply)

The vast majority of people in my country may have a Google account (because of Android), but many don’t have a social media account. I'm one of them - I do not even have Google at all because I’ve been deGoogling for years.

I have an email address and GitHub for code writing, but no social media. SNS just isn't for me - I'm definitely not wasting my time on doomscrolling.

Seeing a site that requires Google is heartbreaking, and I'm sure other minorities who care about their privacy will simply give up on participating.

41
 
 

Interesting article with some info I didn't know about Flock. It feels like surveillance is increasing so quickly these days 🫠

42
 
 

prospect.org Private Intelligence Firms Are Selling Dossiers on AI and Data Center Critics - The American Prospect Daniel Boguslaw 7 - 9 minutes

Private intelligence firms are selling dossiers about critics of artificial intelligence and the data centers powering them, including trying to peddle them to federal regulators, according to documents obtained by the Prospect. The offerings show that even as voter hostility toward data centers has emerged as an election-altering, bipartisan issue, corporate spy shops are hawking reports that frame widespread dissent in the language of counterterrorism to both private- and public-sector clients.

The drivers of negative sentiment toward data centers and AI include environmental concerns, fears of job loss, and increased utility prices near the sprawling compounds housing server farms and processing facilities. More broadly, people across the ideological spectrum don’t appreciate Big Tech interests dictating their local economic development. Hundreds of grassroots organizations have emerged across the country, seeking to curb data center construction and limit the negative effects of AI.

More from Daniel Boguslaw

But the threat products and reports obtained by the Prospect are less concerned with altering the root cause of this dissent, and more focused on the threat posed by an enraged American populace to corporations’ bottom line.

In a product offering from the corporate intelligence company RANE Network sent to the Federal Energy Regulatory Commission, the corporate firm offered the federal agency—which regulates the interstate transmission and sale of electricity, gas, and oil—a tailored report on the threat posed by anti-tech sentiment.

“RANE can provide an assessment covering rising anti-technology sector sentiment among both the public and governments around the world, identifying specific implications for your organization,” the offering reads. Topics that RANE promises to cover include:

What has brought about an increase in anti-technology sector sentiment?
What role do misinformation and conspiracy theories play in shaping hostility toward the tech sector?
What risks does anti-technology sector sentiment pose to critical supply chains?
What are the potential implications of geopolitical tensions on the operations of technology companies?
How might increasing regulatory scrutiny impact the operations of major tech firms?
What actions can technology companies take to mitigate risks from anti-technology sentiment?

That email was sent in March 2025. This May, RANE offered a webinar on the coming anti-tech backlash. In the hour-long presentation reviewed by the Prospect, RANE cyber and intelligence analysts described the threat posed to technology companies by rising animosity toward Silicon Valley. RANE Network did not respond to multiple requests for comment.

“There’s backlash on a lot of fronts and there are a lot of actors converging on this. So we’ve seen protests from creatives who are worried about AI taking over their copyrighted works,” one analyst told the audience. “There’s also environmental protests. Labor unions are protesting. We’ve seen protests from employees who may have been laid off or are worried about potential layoffs.”

The analysts also warned about protesters concerned about civil liberties and human rights violations arising from AI, and “protests about the impacts on mental health and just general anti-tech or neo-Luddite sentiment that is really driving this activity.”

In 2020, RANE acquired the geopolitical intelligence firm Stratfor. Nine years prior, in 2011, Stratfor was breached by Anonymous, a hacker collective that published millions of internal emails on WikiLeaks. The internal communications detailed the company’s work monitoring the critics of major conglomerates, including Dow Chemical and Coca-Cola.

The specter of hacktivism continues to haunt RANE analysts. “Anti-establishment” and “anti-capitalist groups” alongside Anonymous were referenced during the presentation before a warning that “anti-tech and environmental protest … groups also have a history of some of them going beyond just protest movements to also include, you know, violent extremism,” an analyst said.

In addition to describing the general patterns of concerning groups, presenters also discussed surveilling “online chatter.” The analysts discussed how movements emerge from online spaces, and warned that things can spiral out of control quickly, which is all the more reason to surveil those spaces.

The push to surveil and monitor techno-skeptics comes at the same time that federal agencies have begun circulating their own surveillance memorandums of a new domestic extremist category: “anti-tech extremism.” As Wired reported in May, this new threat category is being used by the FBI and DHS to target constitutionally protected speech and assembly, regardless of whether or not participants have committed, or intend to commit, a crime. In leaked State Department documents obtained by journalist Ken Klippenstein, Secretary of State Marco Rubio informed employees that the agency was monitoring a new alliance of “militant anti-tech and eco-terrorist movements.”

Kroll, the world’s largest investigation and corporate intelligence firm, has also begun selling “risk intelligence” on “public controversy, labor tensions, executive visibility, activism, geopolitical pressure” and “reputational events” to data center operators, according to a June article posted on the firm’s website. Those interested in Kroll’s investigative and monitoring services are encouraged to reach out to its enterprise security risk management team.

Meanwhile, the online surveillance company Liferaft—a subsidiary of the world’s second-largest security firm, Securitas—published a report on July 31 summarizing months of online surveillance of alleged “Threats to AI Infrastructure and Executives.” In the report, Liferaft scanned and analyzed thousands of social media and online forum posts referencing “anger at AI executives,” “opposition to new data centers,” and “grievance over the resources these facilities consume.”

Liferaft’s monitoring tracks the ebb and flow of hostility toward AI companies and executives over the course of several months, but also explicitly warns of a shift in so-called organizational intent, “from personal frustration to coordinated rhetoric … [that] is something threat intelligence professionals pay close attention to, because it tracks with how movements organize.”

The same month Liferaft published its report, hundreds gathered in San Francisco’s downtown to protest AI companies and the existential risks they pose. Anthropic, Google DeepMind, and OpenAI offices were all visited by protesters, including the AI theorist and spiritual leader of the AI-skeptic movement Eliezer Yudkowsky, whose book title “If Anyone Builds It, Everyone Dies” has become a rallying cry for critics of sentient AI. The constitutionally protected protest fits neatly in all three firms’ criteria as a surveillance target.

43
54
submitted 1 week ago* (last edited 1 week ago) by Crumpled6273@lemmy.ca to c/privacy@lemmy.ml
 
 

cross-posted from: https://lemmy.ca/post/69605722

A self-written blog after conducting a study about Google Chrome privacy invasive practices.

44
37
submitted 1 week ago* (last edited 1 week ago) by Wispy2891@lemmy.world to c/privacy@lemmy.ml
 
 

This service allows Shopify stores to get the visitor email without consent and start spamming them by adding them to the spam list without opt-in

The article is an interview to the CEO of such a privacy-raping service and it looks so proud of this monster

Apparently there are A LOT of stores stealing user data using this service, as he boasts wasting $800k on a vanity domain like if it was peanuts.

From another article it looks like the price of a stolen email is about $0.25 and the store must commit on paying at least $500/month.

Apparently contacting people using stolen credentials is leading to sales, I don't understand. If I received a spam to my personal email from a store that I just visited BUT I didn't filled with my info, I would get ultramad and would never ever do a purchase on that store

45
 
 

Hi everyone,

Between Google Play Integrity API lockdowns, Apple App Attest, and upcoming eID/age-verification mandates, alternative and privacy-focused operating systems (like GrapheneOS, LineageOS, and Linux on mobile) are being systematically locked out of banking, public portals, and everyday apps.

Rather than watching vendor lock-in get worse, I am organizing a European Citizens' Initiative (ECI) working title: "My Device, My OS" to push binding EU legislation for Device Neutrality and Open Attestation.

What we aim to achieve:

  • Mandate Open Attestation Standards: Require services operating in the EU to support open, vendor-neutral hardware attestation rather than relying exclusively on proprietary gatekeeper APIs (Google/Apple).
  • Ban Device/OS Discrimination: Prevent public services, digital ID wallets, and essential commercial apps from arbitrarily blocking users solely for running independent or de-Googled operating systems.
  • Protect Hardware Sovereignty: Enshrine the legal right of consumers to install and run the operating system of their choice without losing access to the digital single market.

Join the Matrix room to discuss, collaborate on the draft, and coordinate next steps:
👉 #my-device-my-os:pollorebozado.com

Feedback, technical insights, and EU organizers are all welcome!

46
 
 

French President Emmanuel Macron has been the global leader in promoting a ban on social media for kids, consistently welcoming countries that propose such measures with a “thanks for joining the movement” tweet. That includes Canada, which received its congratulatory tweet after a ban was included in Bill C-34. As I argued last month, however, I believe the Canadian ban is vulnerable to constitutional challenge on at least two fronts: freedom of expression, since blocking an entire cohort of Canadians from accessing information and expressing themselves on social media infringes Section 2(b) of the Charter, and privacy, since enforcing the ban will require millions of Canadians to verify their age to use social media services with the promised safeguards nowhere in place when the ban takes effect. Last week, France became the first major jurisdiction to have such a ban reviewed by its highest constitutional court, and it proceeded to strike down the law on substantially the same two constitutional concerns.

The French Parliament adopted a social media ban for kids under 15 on July 21st, with the law scheduled to take effect in September. But France’s system of constitutional review led the ban to be reviewed by the constitutional court, resulting in it being assessed and rejected before ever taking effect. Macron responded to the ruling by instructing Prime Minister Sébastien Lecornu to rework the legislation to address the court’s concerns, with the government now targeting spring 2027 for a revised law.

47
48
49
 
 

5 minute video of the interaction:

https://www.reddit.com/r/FlockSurveillance/comments/1vnyoyz/flock_representative_lying_at_a_county_commission/

Even right wingers like this dude don't want authoritarian surveillance bs.

50
 
 

Camover is a simple game with a simple objective: destroy, disable, and dismantle as many cameras as possible! You play against the surveillance state, an-ever growing enemy that watches all and never sleeps. You play for freedom, for a life without restriction, a city without spy-tech, and a future of possibility!!!

Camover began in 2013 when some anarchists in Berlin decided to take out CCTV cameras ahead of the European Police Congress. They posted their exploits online and encouraged others to play too. Since then, Camover has spread across oceans and continents, with spirited games popping up in Philly, New Jersey, Montreal, and the Bay. Now Camover comes to Portland for Summer 2026!

view more: ‹ prev next ›