• 3 Posts
  • 74 Comments
Joined 1Y ago
cake
Cake day: Jun 06, 2024

help-circle
rss

I host my password manager (VW) on my server. The password of my server is on said password manager. Am I screwed?


How can a service be a Nazi even? Can emails be racist nowadays?


It’s not federated, the developer is specifically against federation. He didn’t even support self-hosting properly and officially, until the community made pullrequests in this regard themselves. Revolt is mainly made to be hosted by the developer himself. Probably just another Discord. Open-sourcing the code doesn’t do anything.


Please give me a federated, self-hosted Discord alternative! I’m tired of these bullshit platforms.




Nothing new here. I’d recommend checking out PrivacyGuides instead for a more comprehensive and informative list…



This is normal usage stats. Every app has that. You can opt out and you get asked when launching the app the first time. This isn’t that bad.


Has something changed? This isn’t news. Also why is this privacy related? No data is being exposed.


Didn’t know that. That us quiet a big fine. I doubt they can expense this every quarter


Check out Addy.io. This would make your email alias creation much easier and manageable from your phone. They even have an api and direct integration into various password managers.



Why is there a blacklist? I feel like it a list of reasons for surveillance should be a whitelist containing criminal activity.


GDPR fines can reach up to $20 million dollars. That’s not a business expense. That’s quiet a dent in their quarterly balance sheet. And the EU has issued hefty fines in the past. This is not the USA we’re talking about.


It’s going to be really difficult to anonymize personal posts. FB and Instagram posts often include personal information. Feeding it to AI isn’t going to help as someone might find a way to reproduce it with queries and they get in trouble.


Bad source. This is not even the European ToS (it’s VERY different) and the information listed on it isn’t referenced. It’s like asking ChatGPT for an answer.

It’s European law that your personal content gets deleted or completely deanonymized. The latter is in most cases obviously not possible with Facebook or Instagram posts.


Are you from the EU? We have an entirely different UI than the US. We get additional options. When you request to delete your account and all the data it gets deleted. I’m confident of that. The EU has given very expensive fines for much less than that.


And what? The EU has a trackrecord of pretty hefty fines. They won’t risk it for this many users.


Https only encrypts the packet content.

What can happen:

TL;DR: Evesdropping, spoofing, device vulnerabilities (e.g. using exposed ports).

  • Attackers can listen and log to which servers you’re talking to. This can be combined with the attack explained in the following.
  • The can do spoofing attacks by replying to your DNS request with their own IP. For example: you open domain.com and the attacker will not forward domain.com to the trusted DNS server but will instead send you their own IP and website that looks exactly like the website you intent to visit. Since they control this spoofed website they can also intercept all the credentials you enter. If you don’t enter credentials or upload or download stuff, nothing can happen. However you’ll be safe from spoofing attacks in most cases as popular websites use HSTS which hardcodes the IP addresses corresponding to domains result into your browser, bypassing DNS.
  • An attacker could exploit device vulnerabilities that are unrelated to https web traffic. So make sure your OS and software are up to date and you don’t have applications running with exposed ports!

A VPN will prevent the first two attacks.



Where did you get that information from? Their ToS say nothing like that. Stop spreading fake news.

When you delete your account as a European they are legally required to delete everything associated with you or that you created.

Please don’t spread fake news without providing a source.



Nazis might do surveillance. But surveillance doesn’t make you a nazi. You’re confusing correlation with causation.


This is completely unrelated to the topic at hand. You should look up the definition of nazism.


You can’t just use any unrelated topic to post this. Are you a Russian troll? If not, you’re in the wrong thread.




A bigger weak point is having weak encryption like Session has. Also, you cannot obtain metadata from Signal. They’ve gone to great length to prevent that. Signal servers don’t even know who is talking to whom.



I got an article about polar bears as 7th result for the search “Monkey”. Great…


You can turn the AI off. And it’s not bad at all. I find it quiet useful sometimes. Plus, it’s private.


America does it anyways. Have you not heard from Snowden? Or Wikileaks?



They would say “that’s different” without elaborating why exactly.


You need to mark sarcasm with /s.

If this is not a joke: the US has the worst privacy protection laws on this planet. Laws in China are almost better. And ironically the worst laws for freedom aswell. There is a reason why we have the GDPR laws in the EU that prohibits any user data transfer to US servers.


But surely somebody is proposing this. And it’s not an entity. It’s a person.


The KDE would need to intercept every single message from start to finish because of forward secrecy. Mass surveillance of such sort would have been noticed by now, even if only 0.01% of people check their safety number with QR code or manual confirmation.

MITM attacks on specific high-level targets would be still possible of course. But if you consider yourself a high-level target outside of mass surveillance you can just check your safety number before initiating a conversation. Because of forward secrecy, you only need to check that once!

But all of that aside, Telegram has none of these things. Telegram is straight-up unencrypted with their default chats and group chats. Telegram is absolute dogshit.


Well you don’t even seem to know that the Swizz is not part of the EU. And by being arrested in Spain confirms my point.


Did you know they use the Signal protocol? So literally the same encryption scheme?

Besides, the military isn’t smarter than 30 universities independently confirming the security.