• 3 Posts
  • 10 Comments
Joined 2Y ago
cake
Cake day: Jun 02, 2023

help-circle
rss

i don’t think that there’s no check at all. There’s either a server side check or a digital signature to verify, or both. You can trick the train ticket check (here they don’t even scan the qr code, they see the screen on the phone and continue) or the lazy airbnb landlord, but that can be done also today


it’s more like searching messages for some keywords, then use the result to justify a full car search


and they accept that as a valid id? I mean in a store ok, but a public official? It’s incredibly easy to make a fake screenshot

the digital version of id cards are glorified qr codes: they scan it and their device downloads from the government servers the official version. Or, for offline usage: the qr code contains all the data, signed with their key, they check if the signature is valid


I realized why governments are so fast in approving digital ID cards on smartphones
In my (European) country now we can have a digital copy of the driving license on the phone. It specifically says that it's valid to be presented to law enforcement officers during a check. I saw amazed in the beginning. They went from limited beta testing to full scale nationwide launch in just two months. Unbelievable. And I even thought "wow this is so convenient I won't need to take the wallet with me anymore". I installed the government app and signed up with my government id and I got my digital driving license. Then yesterday I got stopped by a random roadblock check and police asked me my id card. I was eager to immediately try the new app and show them the digital version, but then because music was playing via Bluetooth and I didn't want to pause it, i just gave the real one. They took it and went back to their patrol for a full five minutes while they were doing background checks on me. That means if I used the digital version, they would had unlimited access to all my digital life. Photos, emails, chats, from decades ago. What are you are going to do, you expect that they just scan the qr code on the window, but they take the phone from your hand. Are you going to complain raising doubts? Or even say "wait I pin the app with a lock so you can't see the content?" "I have nothing to hide" but surely when searching for some keywords something is going to pop-up. Maybe you did some ironic statement and now they want to know more about that. And this is a godsend for the secret services. They no longer need to buy zero day exploits for infecting their targets, they can just cosplay as a patrol and have the victim hand the unlocked phone, for easy malware installation Immediately uninstalled the government app, went back to traditional documents.
fedilink

I Lost tons of data thanks to windows fast boot flushing back the old fat after rebooting to windows. Never anymore. Linux can write to NTFS , it’s much more reliable. Plus the default block size for exfat (when formatted from Windows) is huge


It Is a Google thing. It’s a script that Google gives to third party to promote logging in with their account, and it can access Google cookies, so it can get populated with your name and email (which is absurd as some other malicious js on the same page could parse the HTML to extract the personal data of the user without consent)

If you’re logged in, there’s a setting buried in the Google account (really buried, very difficult to find) which hides this nag.


In the browser, i didn't login in the google account, and I didn't accept the cookies on that site. Using privacybadger that supposedly should block the 3rd party spyware like that
fedilink

i tried and it didn’t work - but maybe it’s because it was the “vm.tiktok…” shortened link that tracks the user that shared it (when i open that link i can see a banner with a photo of my friend and “join tiktok with [friend name]”

next time i should try to open the link, get the real url, then use that


LOL “cringe” as subdomain in my instances 😂



Did tiktok change something?
I have friends that send me tiktok links via whatsapp and then they ask questions about it like "what do you think, scam or not". I used to open them with cookies rejected in ddg browser but now it pretends to freeze after 4 seconds of play, then it says that i must open it in the app and replaces the "play" button with a fake button that leads to google play. I assume that there's no way to watch it anymore without an account and without the app, right?
fedilink

They must comply, you can tell “buongiorno ho notato che sono presente in tutte le foto dell’evento, ma non ho mai firmato la liberatoria della privacy, è possibile oscurare il mio volto? Grazie”

So, unless your parents signed the form, they must comply, they will delete the pictures and upload new ones with your face censored. But yes, people will notice that the photos will be removed and your face censored, so you might be targeted as “that asshole that forced the school to delete the gallery”


If you live in Italy then you or your parents signed a release form that gave them the permission at the beginning of the year.

Otherwise they’re legally obligated to remove them

Source: I am Italian and I’m annoyed to sign that form every year