174
submitted 10 months ago by citytree@lemmy.ml to c/privacy@lemmy.ml

Examples of passive defenses against surveillance:

But why not actively combat surveillance instead of passively defending against it? Examples of active combat:

We must poison the data of those who are violating our privacy. Let us waste their time, increase their data storage costs, and waste their processing power. Let them drown in an ocean of data. Let them search for tiny needles in huge haystacks, with no way to distinguish between needles and hay.

Some ideas:

  • Sending fake data to Google Analytics (How does Google Analytics prevent fake data attacks against an entity's traffic?)
  • Create fake contacts lists to mislead those who are building social network graphs.
  • Encrypt lots of worthless data, store them in the cloud or send them by email. If the encrypted data is intercepted by any nosy entity, they will have to waste storage space while waiting to be able to break the encryption.

What are some other possible methods?

Let us turn the tables on those who have been violating our privacy. Why do we have to be on the defense? Let us waste their resources in the same way that they are wasting ours!

[-] citytree@lemmy.ml 7 points 10 months ago

Source for your claim? Otherwise it’s fud

I am not making any definite claims. I am just wondering whether or not the reasoning in the question makes sense. If it does not, please tell me why the reasoning is wrong. Thank you.

-10
submitted 10 months ago* (last edited 10 months ago) by citytree@lemmy.ml to c/firefox@lemmy.ml

I am using Firefox ESR on Linux. Does it make any sense to disable hardware acceleration for security reasons?

Whereas Firefox is open source, many hardware drivers, and most computer hardware are not. Enabling hardware acceleration in Firefox means using these non-open-source components, which could be a security risk. My impression is that bugs in drivers and hardware are able to cause far more damage than ones in userland software. Does this reasoning make sense?

[-] citytree@lemmy.ml 16 points 11 months ago* (last edited 11 months ago)

When ZipoApps adds advertisements and telemetry to a future version of the Simple Mobile Tools apps, will my Google-Play-installed apps be automatically updated to the newer version with ads and telemetry? I don't want ZipoApps to get any of my data.

[-] citytree@lemmy.ml 8 points 1 year ago* (last edited 1 year ago)

What's to stop the installer on Linux from configuring the service such that the service always runs on boot? e.g. systemctl enable malware.service.

[-] citytree@lemmy.ml 10 points 1 year ago

If you did not enable end-to-end encryption for your WhatsApp backups on Google Drive, the US government could possibly compel Google to hand over your encrypted (but not end-to-end encrypted) backup, and compel Meta to hand over the decryption keys for the backup.

Details about how WhatsApp backup works: The Workings of WhatsApp’s Backups (and Why You Should Enable End-to-End Encrypted Backups).

25
submitted 1 year ago by citytree@lemmy.ml to c/3dprinting@lemmy.ml

Are consumer level 3D printers able to print plastic objects of similar quality to ones produced using injection molding? Or is 3D printing useful mostly for the prototyping stage before a design is finalized and a steel mold is produced for injection molding?

41
submitted 1 year ago* (last edited 1 year ago) by citytree@lemmy.ml to c/privacy@lemmy.ml

I am using Mozilla Firefox as my web browser. I have configured it to clear cookies, active logins, form & search history, and offline website data when I close Firefox. Should I also configure it to clear the cache? What are the privacy implications if I don't clear the cache?

EDIT: additional information:

  • My goal is to reduce fingerprinting and tracking by websites.
  • I use Mozilla Firefox on my personal laptop that almost never leaves my residence. The laptop has full disk encryption. I am the only user of the laptop.
  • I don’t erase my web browser history. I want to keep browser history for my future reference.
18
submitted 1 year ago by citytree@lemmy.ml to c/opensource@lemmy.ml

I have a "Digipass GO 6" hardware token generator that is issued by my bank. Is there a way to import the token generator into an open source authenticator app such as Aegis Authenticator?

I suspect that Digipass uses a proprietary TOTP algorithm, but I am hoping that there is an open source software solution.

[-] citytree@lemmy.ml 6 points 1 year ago* (last edited 1 year ago)

People like giving recommendations like Super Tux Kart that haven’t aged well and don’t play well.

What's the issue with SuperTuxKart? I thought that it was great fun when I played it.

[-] citytree@lemmy.ml 6 points 1 year ago

Time to use Framatalk instead of the main instance. Framatalk is an instance of Jitsi Meet.

[-] citytree@lemmy.ml 13 points 1 year ago* (last edited 1 year ago)

LocalSend is not exactly an alternative to AirDrop. In LocalSend, two devices must be connected to the same LAN to share files with each other. In AirDrop, no LAN connection is necessary. Files are transferred directly between devices, similar to Bluetooth file sharing between devices.

[-] citytree@lemmy.ml 20 points 1 year ago

Why would I use this ChatGPT thing when I can self-host Llama 2 or Falcon, which is free and open source?

1
submitted 1 year ago by citytree@lemmy.ml to c/android@lemmy.ml

My mother uses a prepaid phone plan where mobile data usage is charged by the megabyte. It is currently not cost-effective to switch to a monthly fixed-cost subscription plan.

  • When she is at home, she should:
    • Switch off mobile data.
    • Switch on WiFi (because her home WiFi has a fixed monthly cost).
  • When she is outside home, she should:
    • Switch on mobile data (so that others can contact her using messaging apps such as Signal and WhatsApp).
    • Switch off WiFi (to conserve battery).

The problem: she often forgets to do the above. Sometimes she leaves home without switching on mobile data. Sometimes she accidentally uses lots of mobile data when at home.

Is there an app that can automatically switch on/off mobile data and WiFi based on the phone’s location? Location should be detected based on all the following data: latitude/longitude coordinates (if location is enabled on phone), WiFi networks in range (if WiFi is enabled on phone), and cell tower signals (if airplane mode is not on).

We would strongly prefer to use a privacy-respecting open source app for this. Phone: Samsung Galaxy A series. OS: Android 13.

57
submitted 1 year ago* (last edited 1 year ago) by citytree@lemmy.ml to c/books@lemmy.ml

I have been reading about Hachette v. Internet Archive, but as a layperson with little knowledge about legal matters, I was not able to completely understand the current situation.

Do the court cases mean that the Internet Archive is about to be forced to shut down its e-book lending system? If so, would such a shut down affect US users only, or would it be worldwide?

1
submitted 1 year ago by citytree@lemmy.ml to c/fdroid@lemmy.ml

Are there any open source apps that can version control text files in Android? I don't necessarily need something with lots of features like Git. Even something similar to RCS would be sufficient for me.

[-] citytree@lemmy.ml 5 points 1 year ago

What are the advantages of using Borg instead of Duplicity?

30
submitted 1 year ago by citytree@lemmy.ml to c/privacy@lemmy.ml

If websites are able to track their users' typing behavior and mouse movements, then the websites may be able to use that data to fingerprint, track, and possibly identify their users. Is this a real privacy risk? If so, what are the methods to counter keyboard and mouse fingerprinting by websites? Note that I do not want to disable JavaScript.

[-] citytree@lemmy.ml 10 points 1 year ago

Behold the Rise of the Cybermen! Elon Musk is the John Lumic of our world. Humanity will be upgraded! https://piped.video/watch?v=TQs3gVobcfg

44
submitted 1 year ago by citytree@lemmy.ml to c/privacy@lemmy.ml

Does user privacy when using WhatsApp Web (https://web.whatsapp.com) differ substantially from using WhatsApp on Android? WhatsApp on Android has end-to-end encryption and (optional) encrypted backups. If I use WhatsApp Web, will Meta be able to see the contents of my WhatsApp messages?

[-] citytree@lemmy.ml 7 points 1 year ago* (last edited 1 year ago)

If and when Signal is packaged for F-Droid, how is the British government going to stop people in the UK from using Signal?

1
submitted 1 year ago by citytree@lemmy.ml to c/android@lemmy.ml

Is there some kind of website that has a database of whether or not an app would require Google Play Services to function? I remember using just such a website a few weeks ago, but I don't remember its name. It has a search box where one enters the app name and it will tell you whether or not that app relies on Google Play Services.

19
submitted 1 year ago by citytree@lemmy.ml to c/privacy@lemmy.ml

Is there any open source and privacy-respecting Android keyboard for Chinese input? I want to avoid proprietary keyboards such as Gboard and Samsung Keyboard. Unfortunately, the open source Android keyboards that I found only support alphabetic input:

For Chinese input I would like pinyin input for both traditional characters and simplified characters. Handwriting input would be nice to have but it is not essential.

[-] citytree@lemmy.ml 6 points 1 year ago

Looking forward to greater support for "driverless printing" in more Linux distributions, especially via IPP-over-USB. This would allow most consumer-level printers to be used directly from Linux without needing proprietary drivers and/or explicit Linux support from the printer vendor. This solves one of the common pain points when using desktop Linux at home.

view more: next ›

citytree

joined 1 year ago