1076
-10

Link is in French: a dataleak on 200 million accounts on X.

1077
39

This link is in French but as a summary: technical report shows that M365 Word and PPT contents leak to US servers (augloop.office.com) as soon as you open a document on a local installation of Powerpoint or Word, unbeknownst to users.

This is potentially huge!

1078
325
submitted 7 months ago by otl@hachyderm.io to c/privacy@lemmy.ml

Finally deleted my LinkedIn account!

After putting my account into "hibernation" for the past few weeks, I finally closed it. But I'm still looking for work. Thankfully I can still find positions (SRE and software dev) by just going directly to the company's site and finding a Jobs page.

Good luck to everyone else out there looking for work!

#privacy @privacy

1079
38
submitted 7 months ago* (last edited 7 months ago) by Pantherina@feddit.de to c/privacy@lemmy.ml

If the link preview above displays an ad, ignore it.

Article

1080
107
submitted 8 months ago* (last edited 7 months ago) by Norgur@fedia.io to c/privacy@lemmy.ml

Hey there,

I've been using Firefox for ages now, and I was completely satisfied with it... until very recently, that is. For space-saving reasons, I started to convert my media library to H265, since all devices in my network support it now. Or so I thought. One very noticeable omission is my desktop PC with Firefox. Now, if I watch something from my local media server, the server has to waste resources to convert to H264, which is a noticeable performance hit to all other things running on the server. The GPU in my Desktop PC (or the CPU for that matter) could have displayed H265 without even changing clock speed from idle. So I tried to use the native Plex App for Windows for that, but that one does not support RTX Super Resolution which was really nice when watching old DVD stuff.

From what I can see, to get both, I need a Chromium browser. Since I would rather not have two browsers open all the time: Is there any browser based on the latest Chromium Builds that is not a massive insult to one's privacy?

solution:

Firefo does support H265. It didn't for a very long time so most posts online talk about how it has no support and that it ain't planned. Yet, it has gotten support in the meantime.

change

media.wmf.hevc.enabled

To 1 in about:config, restart browser, done.

Thanks, mate

1081
63

I'm looking into getting an extra backup solution for my laptop, and a backup solution for my NAS/media server. Currently, my laptop backs up to my local NAS, and Proton Drive, while my server has no additional backup.

Is using something like Backblaze B2 actually private and secure, especially if I use the personal encryption key I can set? Or is there another online service that may be better and more private?

1082
137

I've been warming up to switching to GrapheneOS for months. Last month I bought a Pixel 8 (which is the buggiest effing phone I've ever owned, good job Google). I've just been waiting to have the bandwidth.

But with Google sunsetting Google Podcasts, I've decided to make time next week. Podcasts are a MAJOR part of my daily functioning.

1083
45
Archive(.)is problems (sh.itjust.works)
submitted 8 months ago* (last edited 8 months ago) by Cheradenine@sh.itjust.works to c/privacy@lemmy.ml

I use Orbot, and every browser I have tried, Firefox and forks, Chromium, Webviews, these links give me a captcha that cannot be completed.

Does anyone else have this issue?

Please link to source in posts and UnTrackMe/UrlCheck/Leon will re-direct. I appreciate that posters give archive links but I cannot read them.

(Edit, word)

1084
390
submitted 8 months ago by ozoned@lemmy.world to c/privacy@lemmy.ml

VideoLAN @videolan App Stores were a mistake. Currently, we cannot update VLC on Windows Store, and we cannot update VLC on Android Play Store, without reducing security or dropping a lot of users... For now, iOS App Store still allows us to ship for iOS9, but until when?

1085
107
submitted 8 months ago* (last edited 8 months ago) by EpicGamer@lemmy.world to c/privacy@lemmy.ml

I tested out revolt and element. Out of the two element seems to be the most well rounded. What do you people use to replace discord to protect your privacy?

1086
264
submitted 8 months ago by ylai@lemmy.ml to c/privacy@lemmy.ml
1087
45
submitted 8 months ago by Onyx376@lemmy.ml to c/privacy@lemmy.ml

This has happened a few times, but it was always related to the use of VPNs because the app is not available in the country of the server, but now, even if I disable the VPN, change the spoofing model of the smartphone, open from a direct link from the Play store (in which the app page opens, however, with almost no information, such as version, permissions, size and so on, and the download doesn't start. Is in the attached image), uninstall and reinstall, it doesn't appear.

Suddenly, the aurora store of my work profile appeared the apps and the user profile specifically for banking apps, no.

I checked the settings of each one and they are exactly the same.

I really don't know what the problem is.

Nothing seems to work.

Can anyone help me?

1088
93
submitted 8 months ago* (last edited 7 months ago) by joeldebruijn@lemmy.ml to c/privacy@lemmy.ml

My questions are:

  • Does the DuckDuckGo Firefox extension "Privacy Essentials" add a local css file to every visited site?
  • Can others reproduce this?
  • Is this harmfull or not?

Background:

I have a simple static one page site with just one html and css file. It's completely tracker free. Debugging it a bit with developer mode (F12) on I discovered a second css file. This file isnt on my webserver but added local. To pinpoint what caused this I removed every add-on / extension in my browser one by one, reloading and checking my website every time. Took me a while because didnt expect this one causing it.

To reproduce:

  • Install the extension from the link.
  • Open a random site
  • Check in developer mode the tab Style editor.
  • Scroll and look for a file named %3Ais(%5Bid*%3D'google_ads_iframe'%5D%.css or something like that.
  • Remove the extension and refresh.
  • Check if the file disappears.

Content of the css file: :is([id*='google_ads_iframe'], [id*='taboola-'], .taboolaHeight, .taboola-placeholder, #credential_picker_container, #credentials-picker-container, #credential_picker_iframe, [id*='google-one-tap-iframe'], #google-one-tap-popup-container, .google-one-tap-modal-div, #amp_floatingAdDiv, #ez-content-blocker-container) { display:none!important; min-height:0!important; height:0!important; }

Edit 25-03-2024: Changed title to not give the wrong impression. See comments below.

1089
95
submitted 8 months ago by clark@midwest.social to c/privacy@lemmy.ml

*In terms of privacy, customisation, camera quality, and battery time.

For the longest time I have only used either iPhone or Samsung. I plan on switching to Android for the next phone I get, but I find that Samsung phones are often too big for me and put too much energy on camera quality (I don’t take many photos). I have started to look into brands such as Nokia and Motorola, and I would like to know what you guys think of them. Additionally, do you suggest any other phone brands aside from them? My biggest priorities are privacy and long battery time. Bonus if the phone can run LineageOS (I have excluded Graphene as they are only compatible with Pixel phones).

Thank you for any answers. Cheers!

1090
163
submitted 8 months ago by DasherPack@lemmy.world to c/privacy@lemmy.ml
1091
31
submitted 8 months ago by Sunny@slrpnk.net to c/privacy@lemmy.ml

Heya, as the title suggests. I have tried the KDE Initary (on mobile), but the user experience didn't quite flop-my-mop. It is however the better one in terms of privacy as far as I have found. Are there any other ones that you folks know of and would recommend? Looking for an app that specifically can hold boarding passes.

Thanks in advance :=)

1092
69
submitted 8 months ago by hellfire103@lemmy.ca to c/privacy@lemmy.ml
1093
32
submitted 8 months ago* (last edited 8 months ago) by haui_lemmy@lemmy.giftedmc.com to c/privacy@lemmy.ml

I‘ve been using unique passwords and totp for some time but I get uneasy whenever I use my phone as a mfa. The reason is the worry about losing it and potentially getting locked out of my accounts.

Searching for best practices didnt help so far. Thats why I turn to you.

So far I have my password vault and my phone with an authenticator app. I may have stored two backup codes somewhere but I wouldnt find them, ever. Especially not in panic mode.

Since mfa should actually not be on the same device or at least require different things (password and biometrics) I dont think using the totp of my vault is a great idea, right? Or only if I configured the mfa to ask for a pin while the passwords ask for biometrics or something.

If I did this I‘d still lose everything if the vault got lost but thats what backups are for. This solution does not include the mfa (or backup key) to my vault though.

Ideally, I would put it in an actual vault but so the single point of failure probabilities keep increasing.

Any pros here that solve these binds regularly? Whats the best practice? Is there a 3-2-1-backup equivalent?

Edit: btw here is what I found. The encrypted text on paper idea is pretty good but seems very complex. https://security.stackexchange.com/questions/76464/best-practices-for-usefully-storing-two-factor-authentication-backup-codes

1094
570
submitted 8 months ago* (last edited 8 months ago) by makeasnek@lemmy.ml to c/privacy@lemmy.ml
1095
17
submitted 8 months ago by muggedTassi@feddit.de to c/privacy@lemmy.ml

I've looked through most posts here and on reddit and it seems pretty bleak, but maybe someone here knows an app that's somehow miraculously unaffected by the rate limiting? I know I could just not use instagram at all, but I mostly use it to keep up with local and international activism and most of these organizations don't have their own website and it would suck to have to either reinstall the official app or use the desktop version just for that.

1096
-3
I-SOON HACKING LEAKS (harfanglab.io)
submitted 8 months ago* (last edited 8 months ago) by foremanguy92_@lemmy.ml to c/privacy@lemmy.ml

A few weeks ago, leaks from a Chinese company specialized in hacking were revealed publicly. We learned about the ways of hacking and much more, very interesting article to read! 👍

I-Soon was founded in Shanghai in 2010. Its CEO, Wu Haibo (吴海波), is a “first-generation red hacker or Honker and early member of Green Army which was the very first Chinese hacktivist group founded in 1997” according to a Natto Thoughts blog post on the company from October 2023

1097
65
Firebase leaks datas (www.securityweek.com)
submitted 8 months ago* (last edited 8 months ago) by foremanguy92_@lemmy.ml to c/privacy@lemmy.ml

Hundreds of websites misconfigured Google Firebase, leaking more than 125 million user records, including plaintext passwords, security researchers warn.

Once again do not use google based apps, degoogled yourself, and don't trust big companies, have a (de)goo(gle)d day!

1098
21
submitted 8 months ago* (last edited 8 months ago) by foremanguy92_@lemmy.ml to c/privacy@lemmy.ml

Hello everyone, I have a question : Does Android phone have hardware based trackers? Not with the telecom part (for sure it has some), but especially in the CPU... And are Chinese phones worst than USA branded? So is the fact of having a degoogled os resolved the problem? Thx 😃

1099
1139
submitted 8 months ago* (last edited 8 months ago) by MisterFrog@lemmy.world to c/privacy@lemmy.ml

I installed NetGuard about a month ago and blocked all internet to apps, unless they're on a whitelist. No notifications from this particular system app (that can't be disabled) until recently when it started making internet connection requests to google servers. Does anyone know when this became a thing?

Edit 2: I bought my Pixel 6 phone outright, directly from Google's Australian store. I have no creditors.

Were the courts not enough control for creditors? Since when are they allowed to lock you out of your purchased property without a court order?

I don't even live in the US, so what the actual fuck?

Edit 1: You can check it's installed (~~stock~~ Pixel 6 android 14) Settings > Apps > All Apps > three dot menu, Show system > search "DeviceLockController".

I highly recommend getting NetGuard, you can enable pro features via their website if you have the APK for as low as 0.10€, but donate more, because it's amazing. You can also purchase via Google Play store.

1100
28

Hello everyone! I have a small issue. I wanted to remove all media accounts associated with my phone number. One account to remove was Telegram, I deleted the app long ago, but never my account.

So, I downloaded Telegram again, tried to log in, and it keeps texting the login code to my number on Telegram, it won't do SMS. And I have no other telegrams sessions anywhere else where I can log in. I'm stuck, can't log in to delete it.

I went on their support website to file a complaint, and they never got back to me. Is there another way for me to delete my actual account if they won't let me log back on?

I guess I have 2 questions at this point, either how can I deal with Telegram, and or is there way to clean my phone number of all accounts at once? Any ideas are appreciated.

TL;DR Can't log in to Telegram, want to delete account, how can I achieve this?

view more: ‹ prev next ›

Privacy

32045 readers
978 users here now

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

Related communities

Chat rooms

much thanks to @gary_host_laptop for the logo design :)

founded 5 years ago
MODERATORS