Privacy

50695 readers
605 users here now

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

Related communities

much thanks to @gary_host_laptop for the logo design :)

founded 6 years ago
MODERATORS
176
 
 

https://nadanada.me/

They are pretty recent, so no reputation yet. You can pay woth monero, and they got a .onion site. Prices are really good, except for the eSIM with sms & calls. IP from UK, and apparently theyre from Berlin.

Any thoughts?

177
178
 
 

It doesn't seem to exist. I'd like a solution to upload and sync my photos and my KeePass database, but I'm really hesitant to upload personal photos unencrypted to services exposed to the internet. Unfortunately self-hosting a Nextcloud instance on my LAN isn't possible at this moment, but maybe a VPS with a strict firewall and a mesh VPN like Tailscale or Netbird? But honestly I'd rather just pay someone for the trouble.

What do you suggest? Clients need to be FOSS and available on Linux and Android, and on Android they need to be available on F-Droid (thus no proprietary blobs or libraries from Google).

179
 
 

Most of the things you interact with online are tracking your location, your device type, and your digital footprint to predict exactly how desperate you are to buy something. If the algorithm thinks you have money, or simply lack options, it alters the price in real-time.

To prove how widespread "surveillance pricing" has become, I decided to see if I could outsmart it. This involved exploiting corporate registry loopholes to create a fake corporate entity, hiring an improv actor off Craigslist to establish a completely separate digital identity, and strapping a burner phone to a drone to make purchases from the airspace above the wealthiest gated community in Minnesota.

180
 
 

A Moroccan intelligence insider has revealed details about his government’s use of hacking software, including Israeli-manufactured Pegasus spyware, to track journalists, human right defenders and foreign officials.

The whistleblower's revelations were reported in an investigation published on Thursday by Forbidden Stories, Amnesty and 13 media organisations.

Investigative reporting in 2021 accused Morocco of having used the Israeli-manufactured hacking tool for spying on its critics as well as allies - claims that Rabat denied at the time.

The former Moroccan intelligence officer said he had been witness to much of Morocco's relationship with Pegasus, from its introduction to Moroccan officials to its utilisation.

181
182
 
 

Shark has not acknowledged the vulnerability let alone patched the exploit. If you have a Shark robot vacuum disconnect it from the internet until a patch is available.

183
 
 

Hello folks,

I would like to share my disappointment and concerns about Bluesky and the AT Protocol, and hear your thoughts on this. I welcome your thoughtful and insightful input.

I have been an early Bluesky user since around 2023. Like everyone else, I felt a small sense of "hope" in the idea of an open social network and an open protocol after more than a decade of decline in social media, as we all tried to run away from algorithms, advertising, misinformation, and all the other forms of digital waste created by fascist big tech companies.

That was "the ideal", at least.

Open social networks and open protocols gave us a sense of "hope" for greater freedom, decentralization, and regaining control, at least to some extent.

However, after spending time across the AT Protocol network and Bluesky, and using several platforms built on it, I realized an ironic reality.

This openness is not truly freer or more controllable. In the end, it only seems to be a different form of control.

I do not deny that the AT Protocol communities are still growing strongly, are vibrant, and have great potential. Things seem "promising".

But personally, as an ordinary user rather than a technology expert or programmer. I have too many concerns about safety, privacy, and control. To me, it does not feel much different from being trapped inside the ecosystems of big tech social networks.

  1. Regarding openness

A PDS identity, cool, can be easily used across many platforms.

But everything is open, and everything is indexed.

Even who you block, who blocks you, when you usually use an app, your daily time, what your previous usernames were, etc... and more are all recorded.

This is genuinely dangerous and concerning for users. Malicious people can stalk and harm others. Conflicts in work and daily life can arise across networks of colleagues and friends because everyone can know who blocked whom. Or, it could increase hostility in many different ways between communities, institutions, and countries. Or, simply out of curiosity, anyone can check open information about your account and your activities through third-party indexing tools and apps created to index data on the AT Protocol.

  1. Regarding PDS management

Having a single PDS shared across the entire ecosystem sounds quite simple and easy to understand.

However, actually understanding it and managing it is far from easy for most ordinary users who know little or nothing about programming or technical systems.

Does this mean that Bluesky and the entire AT Protocol community are ultimately designed only for programmers, developers, engineers, digital experts, and people with technical expertise?

Even knowledgeable users such as artists, teachers, scholars, etc., may not fully understand the technical aspects of using platforms within this protocol.

When we first started using it, we had no idea that ALL of our data was public. Or perhaps we only knew that followers, following, likes, and posts were public.

Then we realized that numerous third-party indexing tools record our behavior and activities — making nearly all of our data publicly accessible.

You could say that as long as we are present on social media or simply on the internet, everything is public.

True.

But at least I know in advance what I choose to make public and what I still have some control over. Here, when joining the AT Protocol, we are completely passive in understanding what is happening to our accounts and data.

We are not programmers, developers, engineers, digital experts, or people with technical expertise who can closely follow the development of the AT Protocol or research it every day.

Clearly, from the beginning, Bluesky and the entire AT Protocol ecosystem have consistently presented themselves as a protocol and a set of communities built for everyone. Yet in the end, both on the surface and beneath the surface, they seem to have been built only for programmers, developers, engineers, digital experts, or technology investors. Even politicians, social media personalities, KOLs, and influencers are migrating from old platforms to spread the same toxic behaviors once again.

If that is the case, then ordinary users once again become the product, the content, and the experiment for an entire community and protocol made up of many different companies, over and over again.

That is truly ironic: a digital spectacle society trapped in an endless loop.

184
185
 
 

There's a nonprofit that wants to do several meetings for lectures for about 3000 students. The presenter will show screen or share a document for the most part. At the end students would raise hand and have some discussion, so they will be just viewers for most of meeting

Of course, big corps like teams and google meeting won't Handel this much, not for free at least.

Could I suggest jitsi to them? Can it Handel this much? How much is it going to cost?

186
187
 
 

I'm looking for a UK VoIP number to use long term (I need calls and SMS) and couldn't find anything that exactly matched what I need. I found https://narayana.im/ and they look good on paper but I can't find much discussion about them online. Does anyone have any experiences to share?

188
189
190
 
 

cross-posted from: https://tardigram.com/m/windows11@lemmy.world/t/39011

GDID is the persistent Windows ID that helped FBI trace a Scattered Spider hacker despite VPNs. Here's how it works and how to limit it.

191
 
 

There was an issue with Zen about a year ago, it used to send Mozilla telemetry requests, and the developers had ignored any complaints on it. Anyone knows if the situation has changed since?

I found nothing on how private Helium is. People usually just say it is garbage because of the engine, but that's not what I care about.

192
 
 

I have a baby and I've been real wary of posting her pictures on social media. My fiance is Inna similar boat but more OK with big tech (or at least, doesn't have the tech background to look for alternatives).

My family lives far away. Right now, we just text pictures every week. But I'd like to have a place where we could share the pictures, and maybe everytime we share it'd send an email to those that want to see them updating - something they should be able to set (my mom would want notifications every time, my siblings might prefer a weekly digest).

Basically, Google Photos would work. Instagram or Facebook might be better. But I don't want big tech feeding my baby to AI.

I have a post covid laptop (Dell Inspiron) that I don't use much. Occasionally, I do use it, could I self host on that? I don't think I can justify a service being more than $30ish a month.

I'm thinking about creating an instance of Pixelfed (or whatever its actually called)

I obviously want it to be locked the fuck down. My sister in law is having a baby soon too, I think if they like our photo sharing method, they might want to use ours. Would I be able to give them control to choose who can view pictures of their baby? I've like how on Lemmy the owner of the instance has to individually approve people, but I wouldn't want to be doing that for my sister in laws family - just give her and hubby access to approve and deny.

Is paid web hosting the better and less techy way to go about this? I don't work in tech, and I don't have lots of time to troubleshoot, so the easier the better, if there's a trustworthy service for my needs too. I'm not too intimidated by a more difficult/techy setup, but I want low maintenance. If I do use a web hosting service, does anyone have recommendations for ethical hosts that won't just feed our data to AI? Obviously not using AWS.

193
 
 

Hi,

The last google product that is use is gmail, and while searching for a solid alternative, many threads mentionned self hosting, which has been on my mind for a little while but here is what's stopping me so far: 1/ it sounds like a single point vulnerability 2/ I lack the skills.

As for #2, I've been down the privacy rabbithole for a couple years now, I know there are a lot of resources out there and I'm not afraid to learn, I just don't know where to start.

But I don't see the point in learning if in the end, I just build a server that could die in a domestic accident, resulting in me loosing a lot of important data.

Any help or advice is greatly appreciated,

194
 
 

Edit:

We can also guess they're playing fractional reserve games with Monero.

  • Deposit limit: 10.8 xmr/mo
  • Withdraw limit: 4.6 xmr/mo

The fact that they're letting you deposit double what you can withdraw means they don't have enough Monero on their books to make it up for everybody. Otherwise, the deposit and withdraw amounts would be equal.

195
 
 

Cross posted from https://hexbear.net/post/9006467

A Sycamore Township man said a mandatory software update on his Volkswagen Jetta appeared to trigger a cascade of malfunctions, leaving key safety features and the infotainment system not working properly. A dealership then told him it would cost $1,600 to diagnose and repair:

196
197
-30
submitted 1 month ago* (last edited 1 month ago) by PierceTheBubble@lemmy.ml to c/privacy@lemmy.ml
 
 

I've seen the number of induction coils increase drastically over the years in The Netherlands. They are quite easily recognizable, as there's typically a solar panel on a pole, that appears to provide power to the system.

Considering there's a wide variety of vehicles on the road, surely each variant must have (slightly) different characteristics when passing over the coil; especially when in a specific place at a specific time.

And given that they are situated at highway exits (see picture) or after entrances, and road users unable to exit and enter elsewhere, it would be trivial to track the bulk of a vehicle's trip.

This in context of ALPRs (in different forms) being in place at strategical locations (large junctions or at bridges or tunnels, and parking), and the address of vehicle's owner; you'd be able to connect the dots, and end up with a pretty complete picture.

198
51
submitted 1 month ago* (last edited 1 month ago) by WhosMansIsThis@lemmy.world to c/privacy@lemmy.ml
 
 

I got some domain names to register and every place Im looking at is asking me to upload a photo id because I live in a dystopian hellscape.... Anyway, I figured I'd ask around here and the selfhosted communities for some recommendations on privacy respecting registrars. I appreciate yall!

EDIT: Thanks friends, I ended up going with njalla. I really appreciate the suggestions. Stay safe out there.

199
 
 

tl;dr Corporate internet's aversion to online privacy tools add so much inconvenience that it is starting to make me think that going back to the old ways of actually accomplishing something in-person or over the phone is better. Have you experienced the same thing?

tl: Those of us who have taken steps to protect online privacy are well aware of the headaches that come with it. You have to prove your human all the time because only sketchy people use VPN. Emails you send get blocked when it is not from one of the major providers. Websites break because you choose a non-chromium based browser with blocker add-ons. We spend a lot of time proving to the machine that we are human. We begrudgingly go through all those steps just for the chance that it reduces the amount of information on us that will get collected.

But what if instead of grinding through all of that to prove we are human to a machine, we instead just communicate with another human?

Here's an example of what I mean. Today I was buying train tickets online, and because of one or more of these privacy safeguards I take the website was kind of broken and really slow. I kept at it, growing impatient to do something in 20 minutes for what used to be less than 5. One of the error codes suggested I call to book my train online, but I ignored it and kept going the online route because that used to be the most convenient method.

I think next time I might actually listen and try calling the number to book it in the beginning. I have done it in the past to change a booking, and it wasn't that bad. Or maybe I will swing by the train station and book it in person since I work near the area. Either way, I think being more privacy conscious online makes being online so inconvenient that interacting with people sounds like a way better option. And maybe that is not a bad thing.

What do you all think? Is there anything that you can think of where the terrible form the internet could be encouraging you to actually interact with people instead?

200
 
 

Cross posted from https://lemmy.ca/post/67738950

view more: ‹ prev next ›