which is deplorable. But
There is always a but
HN user
which is deplorable. But
There is always a but
“They [Google contractor] said to target homeless people because they’re the least likely to say anything to the media,” the ex-staffer said. “The homeless people didn’t know what was going on at all.”
When you turn on Incognito mode in Maps, your Maps activity on that device [...] won’t be saved to your Google Account and won’t be used to personalize your Maps experience.
This doesn't state that it won't be used to profile you on Google. Dose it?
Is Incognito Mode real privacy browsing? Doesn't it just don't save history abs cookies after all tabs are closed ?
So if police or someone can get your phone they can just point the phone to your face and get access to all info ?
After this and this [1] I must say I'm in favor of DoH.
I know for sure every major application/game on every device/platform will also hijack DNS queries with their own DoH client and redirect them to their own DNS resolver.
I know for sure that by the time OS implementations are here every application will already have their DoH client built-in up and running for so long nobody will no care anymore.
I know IPSs are just being lazy. I know they will bypass DoH in a couple of months by filtering IPs or deep package inspection or something else.
But is good to see them pissed of once in a while.
SIM Swap [1] is not covered by this. SIM Swap is a social engineering attack powered by PII leaking from everywhere and for long time. Today, SIM Swap attackers don't even need to use phishing or buy PII from ilegal sources. After so many leaks, peoples full name, mother name, addresses, credit cards, SSNs are all over the internet. Just Google it.
ISPs will quickly move from domain names tracking to IPs tracking. How many times pornhub changes their IP? Never?
Smartphone ads at least give the perception of being personal.
Ads maybe but phones are personal as much as your contacts list and metadata leaks.
I'd like to think that alternatives to advertising finance are on the horizon,
It will never happened because alternatives wont scale.
Microsoft just came late to the behavioral profiling party
In some cases, your ability to access or control your personal data will be limited, as required or permitted by applicable law. How you can access or control your personal data will also depend on which products you use.
Not all personal data processed by Microsoft can be accessed or controlled via the tools above. If you want to access or control personal data processed by Microsoft that is not available via the tools above or directly through the Microsoft products you use, you can always contact Microsoft at the address in the How to contact us section or by using our web form.
Same source.
Be aware of Australian's Assistance and Access Bill 2018.
How does Google rank pages with and without nosnippet?
Is this treaty public? Where is it?
Debian's OpenSSL fiasco. For the record, I use, like and support Debian, OSS and free software but we must not spread myths
There are really smart and empowered people just waiting for really dumb but empowered people to make the move that opens the path to constant mass surveillance.
For the same reason "user consent" is inaccurate when used as an argument by big tech: big tech can't fully inform people because they have a conflict of interest. Moat of the time, it's not unethical or something, it's just a true, unavoidable, conflict of interest.
This fix brings a problem that now you're paying to be tracked and profiled. It may not be a problem for everyone but...
Although I don't think Firefox is the Privacy by Default role model, I would like to see people talking more about Privacy by Default.
Developers usualy argue that opt-out is necessary because otherwise people would not opt-in. But IMO this is just disrespecting peoples choice.
Features can be useful, developers can be trustworthy and by not opting-in people may be not using some feature that they would be missing. But still people have their reasons that should be respected even if it's: I will not opt-in because I don't feel comfortable enough or don't understand enough how it works or the consequences of opting-in
Because advertisers would lose tracking people which would make very hard to measure ad effectiveness. Also, ad tech co would lose tracking which would make it harder to profile peoples behavior on line.
The day a journalist loses free speech is the day a reader loses it too. So the value is the same for both.
Great work.
Without uBO, Forbes loads 151 cookies.
What makes it not legit? It's not clear at all.
That's not what they said. For the record, they said:
Identification of well known legitimate bots;
Hand written rules for simple bots that, however simple, get used day in, day out;
Our Bot Activity Detector model that spots the behavior of bots based on past traffic and blocks them; and
Our Trusted Client model that spots whether an HTTP User-Agent is what it says it is.
This is Claudfare saying that now that they arbitrated X and everybody said "OK" they are moving from infrastructure into infra and arbitration.
My question is, what if you are starting an alternative search engine or something legit?
Edit: my point is, the rules than make a legit or not bot, crawler, scrapper etc. are not clear at all.
So do I understand it correctly? The solution to SSH remote login is to not have it?
With systemd-homed access to the home directory is simply impossible unless the luks keyphrase (aka "user password") is specified (i.e. tje user logged in) since the data store is after all fully encrypted unless the user logs in. Thats a good thing btw: the user's data should be protected from the system unless the user is actually logged in. Now, ssh public key auth doesnt deal with passwords hence just using ssh pk auth means we couldnt unlock the luks volume simply because we have no keyphrase to unlock things with. So the PAM module that unlocks homed volumes actually enquires the client for the password explicitly if this happens. Unfortunately this is not sufficient for this to work with openssh since its pam hook-up doesnt support asking questions via pam after authentication.
That said people suggested we maybe should provide a stub account you can log into with a fixed password that instead of a shell just spawns a program that queries you for username and password and then allows you to unlock the specified home directory.
I get that GNU is not Unix but why do this guy hates Unix so much?
Great work. Thank you. If I may, don't show bad scored results in the first page. Bad advertising is still advertising, and we all assume they are all bad anyway. I understand the surprise people have a first but the next step is finding good apps. Alsi sort by grade and search by name is a must.
Again, thank you for your time and work.
Edit: telegram had hacking news this year, search for "Telegram voicemail account hijacking"
Why worry? Facebook's Privacy Police says they value our privacy. And Neuralink's home page doesn't even have a Privacy Police. And Neuralink's paper [1] doesn't even mention the word privacy once.
My point is, we will never have privacy from tech because tech's most valuable field is ourselves. So we all respect others people privacy but we need to harvest every data point we can because otherwise what will we do, kernels and drivers?
And don't forget FBI is the one pushing against encryption
Google is a US corporation. It doesn't matters