Notices by Bob Mottram ? ☕ ✅ (bob@soc.freedombone.net), page 2
-
Bob Mottram ? ☕ ✅ (bob@soc.freedombone.net)'s status on Saturday, 08-Dec-2018 11:48:04 CET Bob Mottram ? ☕ ✅ @aral For one-on-one chat with Signal this won't be an issue, especially if you have manually verified the public key with QR codes. But for any multi-user encrypted chat where you don't control the server this is potentially a problem.
There's more detail here: https://www.benthamsgaze.org/2018/12/06/new-threat-models-in-the-face-of-british-intelligence-and-the-five-eyes-new-end-to-end-encryption-interception-strategy
Fortunately I think there might be technical solutions to this, but it's only been a vaguely considered threat so far.
As in Iran, what the spooks are interested in is not mano-a-mano but group chat with many participants (possibly thousands) who can then organize and protest. -
Bob Mottram ? ☕ ✅ (bob@soc.freedombone.net)'s status on Friday, 07-Dec-2018 23:25:16 CET Bob Mottram ? ☕ ✅ @blakehaswell One factor to consider is that if the Australian law is considered to be "successful" then similar laws will be passed elsewhere.
Some possible tactics:
- Ensure that any backdoors which the government adds are discovered and publicized
- Work towards reproducible builds
- Encourage everyone not to trust proprietary chat apps. Assume that such apps are already backdoored
- Devise and deploy systems for monitoring the relevant open source projects. For example, a system which monitors open source chat apps and lists changes to cryptography related sections. Make code review of sensitive files trivial
- The government won't follow its own laws, and will use apps which are not backdoored. Use FOIA or anything similar to check what apps are used/purchased by officials and point out the hypocrisy
- Run cryptography workshops for your people. Make cryptography cool. Make it fashionable. Make songs and art about it. The government will prefer that people are uneducated on the topic -
Bob Mottram ? ☕ ✅ (bob@soc.freedombone.net)'s status on Sunday, 02-Dec-2018 21:05:10 CET Bob Mottram ? ☕ ✅ @measlytwerp @ekaitz_zarraga @aral @paul
I think this is illustrative of Mozilla's general approach.
https://github.com/rust-lang/rustup.rs/pull/645
And indeed it might not be currently active and might just log locally. If so then why call it telemetry instead of a log file, which is the standard terminology for local monitoring?
Also it might be harmless now, but maybe a few versions later... -
Bob Mottram ? ☕ ✅ (bob@soc.freedombone.net)'s status on Wednesday, 07-Nov-2018 08:18:46 CET Bob Mottram ? ☕ ✅ This article is disingenuous on a number of levels. https://itsfoss.com/why-firefox
The idea that they are somehow against Google and monopolists while being paid by them, and having them as the default search. The idea that statistical data about precisely how you use the browser is somehow not personal. -
Bob Mottram ? ☕ ✅ (bob@soc.freedombone.net)'s status on Wednesday, 07-Nov-2018 00:32:57 CET Bob Mottram ? ☕ ✅ @ricardojmendez For a microsecond I considered doing a submission to this, but then I check the reviewers and they all appear to be cryptocurrency people or libertarians. :thinkingghost: -
Bob Mottram ? ☕ ✅ (bob@soc.freedombone.net)'s status on Monday, 05-Nov-2018 23:16:41 CET Bob Mottram ? ☕ ✅ @puffinux @jeffcliff As if TBL hadn't already lost enough credibility.
This isn't going to help anyone who needs help. Dissidents will still be persecuted. Companies will still conduct surveillance on their users in unethical and non-consenting ways. They will also continue to ignore data protection rules and construct search engines designed to enable government censorship and spying.
Also companies like Cloudflare are a joke and they have zero credibility with anyone who knows how the internet works.
After decades of trying to improve rights in the digital space we know what kinds of things work. Licenses, if properly vetted by copyright lawyers, are known to work. Encryption, if appropriately implemented and audited, works. Systems designed to be "offline first" and go under the radar of most other things are known to provide some level of protections to people who need it.
Vague pledges have never worked. Companies and governments routinely break their promises and think nothing of it. -
Bob Mottram ? ☕ ✅ (bob@soc.freedombone.net)'s status on Wednesday, 31-Oct-2018 10:24:50 CET Bob Mottram ? ☕ ✅ The system always wants you to give up. To be complacent and not question anything. To believe in Capitalist Realism. That there was only ever the system and will only ever be the system. That it's rulers are "natural" and that all rankings are meritorious. That laws are indisputable and that "the market" is the solution to all problems. -
Bob Mottram ? ☕ ✅ (bob@soc.freedombone.net)'s status on Thursday, 11-Oct-2018 14:49:26 CEST Bob Mottram ? ☕ ✅ A lot of it is skirting around the problem of capitalism without daring to speak its name. -
Bob Mottram ? ☕ ✅ (bob@soc.freedombone.net)'s status on Tuesday, 09-Oct-2018 09:41:03 CEST Bob Mottram ? ☕ ✅ @merce I think Lauren has had his head in the sand about Google, and only the demise of G+ has given him enough reason to pull it out.
A post like this is significant in the sense that it shows that even Google's core supporters are deserting and that the company in losing mindshare. -
Bob Mottram ? ☕ ✅ (bob@soc.freedombone.net)'s status on Friday, 05-Oct-2018 09:47:52 CEST Bob Mottram ? ☕ ✅ @aral If they have to go out of their way to say "your privacy is assured" on a sign then that probably means it isn't. -
Bob Mottram ? ☕ ✅ (bob@soc.freedombone.net)'s status on Thursday, 04-Oct-2018 00:21:49 CEST Bob Mottram ? ☕ ✅ @caesarologia @aral There is Turtl. https://turtlapp.com -
Bob Mottram ? ☕ ✅ (bob@soc.freedombone.net)'s status on Sunday, 30-Sep-2018 17:06:20 CEST Bob Mottram ? ☕ ✅ Solid Venture https://blog.freedombone.net/solid-venture -
Bob Mottram ? ☕ ✅ (bob@soc.freedombone.net)'s status on Tuesday, 11-Sep-2018 14:59:01 CEST Bob Mottram ? ☕ ✅
climatechange.jpg -
Bob Mottram ? ☕ ✅ (bob@soc.freedombone.net)'s status on Sunday, 09-Sep-2018 21:28:43 CEST Bob Mottram ? ☕ ✅ On the decentralized web https://blog.freedombone.net/on-the-decentralized-web -
Bob Mottram ? ☕ ✅ (bob@soc.freedombone.net)'s status on Thursday, 06-Sep-2018 10:09:13 CEST Bob Mottram ? ☕ ✅ To understand why Mozilla wants to do DNS over Cloudflare you need to understand the business model of Mozilla Coropration. -
Bob Mottram ? ☕ ✅ (bob@soc.freedombone.net)'s status on Friday, 31-Aug-2018 08:17:07 CEST Bob Mottram ? ☕ ✅ @njoseph @dbuntinx @aral As always, it depends on the threat model or your judging criteria. Firefox is open source, but if you read the source you'll find that it's sending a lot of detailed telemetry data back to a central collection point. You can of course disable that, but 99% of Firefox users will be unaware and are being farmed for data in a way that's arguably worse than what Goodle or Facebook does. -
Bob Mottram ? ☕ ✅ (bob@soc.freedombone.net)'s status on Thursday, 16-Aug-2018 19:28:54 CEST Bob Mottram ? ☕ ✅
capitalismhasfailed.jpg -
Bob Mottram ? ☕ ✅ (bob@soc.freedombone.net)'s status on Wednesday, 15-Aug-2018 00:20:18 CEST Bob Mottram ? ☕ ✅ The best that can be said about bitcoin is that it was a bold experiment but that by its own original definition it failed to achieve its objective of disintermediating banks. -
Bob Mottram ? ☕ ✅ (bob@soc.freedombone.net)'s status on Monday, 13-Aug-2018 13:17:36 CEST Bob Mottram ? ☕ ✅ @aral @Gargron I considered this problem in https://wiki.freedombone.net/view/welcome-visitors/view/a-peoples-history-of-the-fediverse/view/counter-strategies-to-the-fediverse -
Bob Mottram ? ☕ ✅ (bob@soc.freedombone.net)'s status on Monday, 06-Aug-2018 08:26:59 CEST Bob Mottram ? ☕ ✅ Wow. That Mozilla Cloudflare DNS thing makes me feel nauseous. The PR is that this will be making DNS more secure, but really they're enabling Cloudflare to surveil anyone using ff. In their blog they don't even consider that Cloudflare could be part of the threat model.