• 8 Posts
  • 98 Comments
Joined 8M ago
cake
Cake day: Mar 19, 2024

help-circle
rss

Unless law enforcement is out to get ya

Seems like a huge oversight in privacy communities, which are frequented by people with state actor level threat models.


That’s true. I use user profiles on GrapheneOS and have to have each profile count as its own device in Mullvad, when obviously I’m not going to be using them simultaneously.


How are you trying to using WG? I had issues with wg quick up or whatever it is, not bothered to check, but adding wireguard connections as NetworkManager interfaces works flawlessly for me.


Well I know that, that’s kind of the point of any encryption at rest that isn’t also E2EE. I am the server admin in this case so I trust my own pinky promise that I’m encrypting emails at rest.


Yeah you should turn it off, Mullvad’s DNS servers already give you DNS privacy. I forget which DNS servers Firefox’s DoH uses, but it will use some other DNS servers for Firefox with DoH enabled, which presumably you don’t want if you went out of your way to set your DNS servers to Mullvad’s.



Self-hosting a mail server with zero-access encryption for all emails, similar to Protonmail
I was interested in hosting my own mail server that provides a similar level of privacy for users as Protonmail, ie the server admin cannot read any emails, even those which are not E2EE with PGP. Is there a self-hostable solution to this? I'm aware the server admin can't read emails that were sent encrypted using the user's PGP key, but most emails I get are automated emails from companies/services/etc without the option to upload a public key to send the user encrypted email. If you're with a service like Protonmail, the server admin still cannot read even these emails.
fedilink

How are controllers with Proton?
I don't own any controllers. I started playing Dark Souls 3 which I now understand has a controller strongly recommended. I may as well just look into getting a controller of some kind as I have a few games that have somewhat janky kbm controls and are better enjoyed with a controller. I just wanted to ask for general advice about what controller to get in terms of compatibility. Also if someone has made a controller that's more in the spirit of foss that also works fine with Steam and Proton games that would be nice? I know Steam is pretty good with Playstation controllers and I used to use a PS controller (don't remember what generation) with some native Linux Steam games, not sure how the whole PS vs Xbox controller thing is affected by running games through Proton if at all? If it matters let me know, and I'll see if I can procure a controller for myself.
fedilink

If there’s anything sensitive I’m communicating with someone digitally, I make sure that the person in question has basic tech security skills and knowledge about privacy, including telling them to stop using Windows. Including taking the time to teach them basic stuff (like full disk encryption, VPN and Tor usage, explaining E2EE, etc) myself. If you have a high threat model but are talking to non-techy people, you should be taking the time out of your day to do this.

If you’re thinking “wow I can’t be bothered to do all that”, your messaging is probably not sensitive enough for this to be a significant concern. Not that “if you have nothing to hide you have nothing to fear”, but just “the amount of time you put into security and privacy should be proportionate to your threat model and the cost of compromise”.



That’s fair. I just use it because it’s what everyone’s on. When I used Briar only one other person I spoke to used it, and I just use Matrix for some more techy communities I’m in. For my friends and non-tech-savvy comrades, they’re all on Signal, and I imagine trying to move people to something more decentralised/more in the spirit of foss/etc would lead to my social circles becoming very split in terms of how I talk to them. But I get your point.


For private messaging? Signal was always better. The way I use Telegram, and the way Telegram should be used, is like another public social media. I use it for following channels that give news about things I’m interested in.


Your friends who use spying social media platforms can share them there, if it’s a public blog. And if none of your target audience (friends and family) use Facebook, WhatsApp, Twitter, etc then there’s no need for them to be shared on those platforms?

Also, ime from when I had to use Facebook because of a group I was in, the group was very resistant to any privacy advice. I think the vast majority of people on these platforms are on those platforms specifically because they don’t care.


Yes, and there’s also the fact that some VPNs such as Mullvad let you be anonymous so even if Mullvad were keeping logs, if you pay privately they have no way of knowing whose logs they are (unless the content itself of your internet history reveals your identity). Meanwhile your ISP definitely knows who you are, and absolutely will collaborate with the police if asked to.



I think, when you explain things to people (i.e. in instances where it’s not an absence of knowledge that’s the problem), the vast majority of people know we’re correct, but are held back by convenience. They’re embedded into the Google ecosystem or whatever, and it is a pain in the ass to migrate. There are many popular services for which there isn’t a 1:1 private alternative. I can openly and confidently say that I sacrifice some convenience for privacy, and to me it is worth it. But other people, while they agree that they don’t like being spied on, are used to being spied on and therefore have a “if it ain’t broke don’t fix it” attitude. They’re already using spyware and it’s not had an immediately obvious acute consequence for them, so there’s not really any turning point at which they would go “this is enough” and change.

I think so long as they’re aware, if they do value privacy, over time they should slowly replace the things they use. Also, some of my friends get Signal just to speak to me since I’m not really on anything else (unless they want to email me lol), so that kind of effect may push them in the right direction.

If your brother doesn’t care though, he just doesn’t care. Privacy is actually very straightforward: it’s creepy for someone to be spying on me and watching my every move, therefore I take precautions to make that difficult for people wanting to spy on me. You don’t need to convince people that being spied on is creepy. They know that, and are stopped by inertia, which they can only overcome on their own. I don’t think it’s worth nagging them about it when they already know what is to be known.


In all my years of not using WhatsApp this has never happened to me lol. At best I’ve gotten some people to message me individually on Signal but not entire groups


For context, my threat model doesn’t need to account for real people breaking in and accessing my computer, the damage would be very contained.

I mean if you don’t have open ssh ports on your computer or whatever I don’t think you need a strong password, given that you’re not concerned about physical access. I would say that at the very least have a reasonably secure root password (/user password if you’re a sudoer/anyone else who can get root permissions with your user account) because if you end up with some malware on your computer that can, say, enter passwords, you don’t want it to be ridiculously easy to bruteforce.


I just use Mullvad VPN’s default DNS servers (with ad blocking, tracker blocking, and malware blocking)



The purpose of hiding the transaction would be to make it so that Mullvad couldn’t tie the transaction (or your identity) to your account even if they wanted to. I know they say they don’t log that data and I believe them, but they physically could if they wanted to, as opposed to paying in a private way, which Mullvad encourages anyway.

Of course, this then depends on what you’ll do with your VPN. If you’re using it to log into anything, unless that account is completely anonymised, the Mullvad servers could tie you to your account if they wanted to track you. Same goes for if you connect from your home network as opposed to eg public wifi. But there definitely exist threat models and use cases where what you’re doing on that VPN wouldn’t otherwise be tie-able to your real identity and therefore wanting to guarantee your VPN provider can’t know who you are may be something you’re interested in.

And some people just like anonymity for the sake of it 🤷‍♀️


I don’t use them. Web banking works completely fine for me. Back when I did use them, though, I always used them on privacy ROMs/GOS specifically. Went through 4 different banks and all their apps worked fine for me on GrapheneOS. No Google Play services either.


Yes if you get a court order for data you don’t hold, you don’t have to provide data you don’t have access to. I wasn’t expecting that Mullvad would have any useful data to give, I just wanted to read their response/commentary is all




They’d get nothing helpful from Signal either and yet governments still do it. Governments often don’t know what they’re doing and are used to just being able to ask companies for user data


Has Mullvad ever been given a court order to reveal personal info about a user?
I've been reading through [Signal's government requests](https://signal.org/bigbrother/) and couldn't find a similar section on Mullvad's website. I'd be curious to read about them if there are any. It would seem unlikely to me that Mullvad has never received any kind of court order for information about a user.
fedilink

Ultimately there are always going to be people who don’t have smartphones or computers, so society (including things which are currently almost mandatory to participate in society, like being able to bank) should be accessible to these people. If it’s accessible for them, it’s also accessible to people with smartphones or computers who have just removed the spyware from them.

I don’t do mobile banking; I just bank from my desktop browser. Not sure if this is an option for you or not, but I would have thought that online banking in the web browser should be even more common than having a mobile app for it.

Not sure what you mean by “home brokers” blocking you but if you mean their wifi blocks you, I’ve experienced that too on GrapheneOS but have found that VPNs allow me to use pretty much any public wifi.

Does your government app have a web alternative? If not that seems incredibly discriminatory against people who don’t have smartphones. If it has a web alternative but doesn’t work with any particular privacy settings, do you have a local library with computers you can use?


UK also has GDPR. They left the EU after GDPR was passed and now have “UK GDPR” which is practically the same as the EU


I’m ngl this is surprising to me, as GOS has always just worked out of the box the way I wanted it to for me.

But:

I’m facing the nearly insurmountable task of convincing my friends, family, and colleagues to download and use signal when they are all using encrypted iMessage.

Anyone who uses Android will experience this. I’ve never owned an iOS device in my life and I’ve always used SMS and Signal to talk to people. Have occasionally downloaded WhatsApp when a group of people insists on using it and I need to communicate with those people, but usually WhatsApp is uninstalled when I don’t need it. I think most Android users just use WhatsApp though.

Most of my banking apps just simply do not work.

Even with sandboxed Google Play? Again, surprising to me tbh. All the banking apps I’ve used in the past have worked fine on GOS without any Google Play services, though I don’t have any mobile banking apps installed atm. I second the other commenter who suggested switching banks if that’s possible for you.

There’s also a few features that I’m assuming are iPhone exclusive that it really sucks to have without. Double tapping the bottom of the screen to shift everything down so you can reach the top of the screen with your finger when using one hand. Holding down on the space bar to move the text cursor between characters. Maybe these exist on gos though?

I’m sure you’re not the only person who’s switched from iOS to an Android-based system and misses these features. A custom launcher might have the former feature, and there must be an Android keyboard that offers the latter. Maybe ask around on more mainstream Android forums, as they’ll probably have the most people switching from iOS to Android.

No clue about Yubikey, sorry. Never used it.

If you want to use an iPhone, you can. You don’t have to use GOS. I understand if you’ve invested heavily in the Apple ecosystem, it’s just inconvenient to stop using it all of a sudden. Ironically I sort of experienced something similar in reverse when I tried to daily drive Windows for a brief time because of gaming, and I found it so frustrating to not have access to a lot of the programs I used on Linux, and how things worked so differently (and in ways I thought were much worse) on Windows. Not quite the same since there’s definitely no such thing as a “Linux ecosystem” in the same sense as an “Apple ecosystem” (good! I don’t want to log into my online Linux account to boot my kernel…), but big changes to your tech workflow will be frustrating as you build up a new system that works the way you like from the ground up. I don’t think using GOS as a daily driver is a necessity for everyone. I would like to promote people using degoogled, FOSS, privacy-respecting OSes both mobile and desktop, but ultimately, you are an autonomous human being and can use iPhones if you prefer to do so and are fully aware of the privacy issues.


Can I ask if you specifically need Instagram on your phone? When I was a social media person for an organisation I did it with a Firefox container on desktop exclusively.


Presumably any degoogled OS would remove that kind of telemetry—it seems like quite an obvious oversight if they continue to send notification contents to Google’s servers? If the suggestion is that it’s through a backdoor, then that’s the responsibility of the open source community to spot the backdoor in the AOSP.


You can also just use a degoogled os which won’t be logging your notification content. But in any case you shouldn’t have notifications as notifications are exclusive with at-rest encryption (or I guess you could have at-rest encryption but just have the db constantly decrypted whenever your phone is on? Seems to defeat the point then)


Yeah that’s fair. And my pitch-shifting is not for a particularly well-resourced/dedicated threat model, literally just “would I recognise this as my voice if I heard it”—obviously insufficient if your adversary is going to put effort into identifying your voice.

I’m a bit surprised that no one has made a good preset for voice disguising. I might just keep layering effects for further obfuscation.


There are other FOSS real-time voice changers for Linux, but the others I found either seemed to have fewer features, be less polished, or be abandoned. I'm not really a voice expert or anything so I'm not sure what aspects of voice a, like, forensic voice analyst or something would look at. I've just changed the pitch and I sound different enough that I wouldn't recognise the voice, which is good enough for me. Open to suggestions as to what effects would give the most privacy in terms of making it harder to identify your voice (while still being intelligible) Also, for people's reference, if you want mic input to be changed for all apps, go to three dots > Preferences > General > Audio > Process All Input Streams and enable.
fedilink

This is a concern but also presumably you’re putting your face, real name, real age, etc on there. They’re not very private in the first place.


That’s just resistFingerprinting. Not sure if you can disable it in Mull Browser but it’s an about:config option for all Firefox-based browsers on desktop.


The suggestions people are making are good but I want to point out that GrapheneOS has good defaults so you don’t need to do much except use your phone. If you don’t have a particularly high threat model you shouldn’t need to make any other considerations (beyond just what software you use on your phone, like if you use something like discord or whatever)


Yeah you’re right that’s not a useful answer. This question in particular was also prompted by being linked a public resource, so even if I got someone else to download it for me and send it to me as a .ods file (it was a Google Sheets link specifically), that would just be offloading who visits the google site to someone else. Ie using your friend as a proxy. Which may be fine if you just don’t want to visit the site yourself and that’s your only objection, but I am pretty easily traceable to the type of friend who would send me a google docs link, and it definitely doesn’t offer the same anonymity as a proxy like Piped which is used by a lot of people (as opposed to a proxy like my friend, a proxy which is only used by one person…)


Are there any google docs proxies, like how Piped is a YouTube proxy?
I sometimes get linked google docs links and would like to view them without visiting a google site directly.
fedilink

Thats fine if you value the warranty over your privacy (not trying to be sarcastic, everyone has a different threat model and I mean it when I say that’s fine for some people), but personally I would prefer the computer were not traceable to me, including at the cost of having to buy replacements when they otherwise come with warranty. I have turned down various things that electronics come with that require leaving your details. I understand why people leave their details to get the extra stuff but i am willing to spend more to be anonymous.


Afraid they almost definitely are actively monitoring all my above-ground activities lol, I’m in a country getting quite a bit of international flak for cracking down on political dissidents. Won’t say any more than that, tbh that doesn’t narrow down my location much with the current state of things anyway. But yeah I agree, I want to minimise the amount of data accessible about me.


I also want to pay more in cash to reward businesses for still allowing you to pay in cash as I’m noticing more are going cashless. I’m occasionally reliant on cash so I don’t want to end up stranded on those occasions where I can only pay cash, so definitely want to ensure the option remains open. The privacy is a benefit too of course.

I think at the moment I mostly buy “important” stuff in cash and everyday stuff with card. Important like a new computer or something, because I’d plan to have that computer for a while and don’t want it easily traced to me. Everyday stuff like food because, while I completely understand not wanting the state/banks/etc to know anything about you, I personally don’t care too much if the state knows what I eat. Would be nice to eventually become one of those people with no footprint at all though.


If it’s low-value change you won’t feel any worse giving it away. And if it’s so valuable to you then it must be valuable enough that you can buy something you want with it.



I found that Proton always had connectivity issues tbh. Frequently had to disable my vpn just to use the internet which defeated the purpose. Never had this issue with Mullvad; I’ve found it very reliable. Also Mullvad is absolutely more privacy oriented. They don’t require any kind of personal data. Proton will be tied to your Proton account so possibly your email, proton drive, etc.


What do you folks do for IRL privacy in terms of CCTV, facial recognition, etc?
Digital privacy seems quite straightforward, because your digital devices are environments you more or less can have complete control over if you want to. But when you're out and about, it's a much more uncontrolled environment. There are cameras everywhere. I wear face masks everywhere for a combo of protecting myself from illness and privacy. But the limitation is social acceptability. If anything good came out of covid it's the normalisation of face masks, but you are far from unidentifiable if your only face covering is a covid mask. We're lucky that sunglasses and hoodies on their own are fairly normal, but all of the above in combination would draw attention to you. And it's definitely not socially acceptable to walk around in a balaclava. The other thing is forensic data. If you don't wear gloves, you'll leave fingerprints everywhere, and hair too. I suppose wearing gloves is not particularly seen as weird or suspicious, but it just seems like there are a lot of considerations and challenges with preventing the state from knowing your every move when you leave the house. What considerations do you make for IRL privacy, if any? (Not particularly interested in "I don't care about IRL privacy so I don't do anything"—that's fine and your choice, but ofc this question is aimed towards those who do care)
fedilink

Is there any reasonable/not a huge pain in the ass way of paying for your phone contract without it
I've gotten prepaid sims for things but obviously that's not really a feasible method for your main life phone.
fedilink