HN user

arctux

1,453 karma

Graduate student.

Posts37
Comments44
View on HN
www.nytimes.com 5y ago

They Stormed the Capitol. Their Apps Tracked Them

arctux
15pts4
www.economist.com 5y ago

Public order in Singapore has been shaken by a hand-drawn smiley face

arctux
2pts0
stallman.org 6y ago

Richard Stallman resigns from CSAIL at MIT

arctux
342pts323
www.nytimes.com 6y ago

YouTube Said to Be Fined Up to $200M for Children’s Privacy Violations

arctux
199pts144
puri.sm 6y ago

Purism Librem 5 August Update

arctux
38pts6
girinstud.io 7y ago

Smart Colorization in GIMP

arctux
3pts0
puri.sm 7y ago

Librem 5 Hardware Update

arctux
4pts1
www.youtube.com 7y ago

PBS Newshour: Why tech industry monopolies could be a curse for society [video]

arctux
2pts0
puri.sm 7y ago

Librem 5 dev kits are shipping

arctux
253pts94
www.nytimes.com 7y ago

Tech Companies Dragged Feet on Russian Interference Data, Reports Say

arctux
6pts0
qz.com 7y ago

Google, Facebook, and Amazon benefit from an outdated definition of “monopoly”

arctux
255pts170
www.nytimes.com 7y ago

Be Afraid of Economic 'Bigness'

arctux
122pts87
arstechnica.com 7y ago

How did Iran find CIA spies? They Googled it

arctux
5pts0
www.forbes.com 7y ago

Feds Order Google to Hand Over a Load of Innocent Americans' Locations

arctux
49pts8
medium.com 7y ago

Liberapay status update: no, we’re not dead

arctux
2pts0
www.dragonsreach.it 7y ago

The Gnome Infrastructure Is Moving to Openshift

arctux
3pts0
www.nytimes.com 7y ago

U.S. And Canada Reach Deal to Salvage Nafta

arctux
1pts0
voice.mozilla.org 7y ago

Mozilla's Common Voice: building an open, multilingual speech corpus

arctux
3pts0
www.neilgunton.com 7y ago

On transitioning from Google Maps API to OpenStreetMap and Leaflet.js

arctux
2pts0
www.economist.com 7y ago

Are Facebook and YouTube quasi-governmental actors?

arctux
87pts137
www.openstreetmap.org 7y ago

Using deep learning to extract features from aerial imagery using Robosat

arctux
1pts0
www.theverge.com 8y ago

Senator Ron Wyden on Breaking Up Facebook, Net Neutrality, and Internet Law

arctux
1pts0
liberapay.com 8y ago

Liberapay: a non-profit and open-source recurrent donations platform

arctux
5pts2
blog.wikimedia.org 8y ago

Embeddable OpenStreetMap-based interactive maps for Wikipedia

arctux
3pts0
blog.mapbox.com 8y ago

RoboSat: open-source, end-to-end feature extraction from satellite imagery

arctux
4pts0
voice.mozilla.org 8y ago

French, German, and Welsh Added to Mozilla's Common Voice Project

arctux
1pts0
www.nytimes.com 8y ago

Protecting Privacy Is a Civil Rights Issue

arctux
1pts0
matrix.org 8y ago

Matrix and Riot Confirmed as the Basis for France’s Secure Instant Messenger App

arctux
738pts198
www.nytimes.com 8y ago

Facebook Takes the Punches While Rest of Silicon Valley Ducks

arctux
3pts0
www.economist.com 8y ago

Russian meddling is only one challenge facing Facebook

arctux
2pts0

Related earlier post:

I want to respond to the misleading media coverage of messages I posted about Marvin Minsky's association with Jeffrey Epstein. The coverage totally mischaracterised my statements.

Headlines say that I defended Epstein. Nothing could be further from the truth. I've called him a "serial rapist", and said he deserved to be imprisoned. But many people now believe I defended him — and other inaccurate claims — and feel a real hurt because of what they believe I said.

I'm sorry for that hurt. I wish I could have prevented the misunderstanding.

Source: https://stallman.org/archives/2019-jul-oct.html#14_September...

All these links are year or two old.

Two of them are more than a year old, but the practices described in each are ongoing. The third, which describes Google's tracking of users after they've specifically opted not to be tracked is from nine months ago.

A big push towards openness and privacy has happened over the last year.

After literally a decade of constructing what is very likely the largest database of personal information in the world. Since the late 2000s, when Google purchased DoubleClick, it has worked to collect information without the informed consent of its users. What fraction of your users know that Google purchases their credit card transaction histories?

What is the "big push"? The only things I can think of were the opt-in auto-deletion of a subset of data announced over the last week or two. All the user has to do is pay attention to the tech press, then remember to activate the feature when it launches at an unspecified future date!

What is this "openness"? Working on a censored search engine for China without informing their own head of security?

...people will still opt into the surveillance society willingly: because the utility it brings them outweighs other considerations.

Sure, they absolutely do. There can be significant utility gains from large collections of information. But much of the utility could be gained from information collected in a anonymity-protecting matter. In order to have traffic information, for example, Google doesn't need to continuously track your location history.

Ask people if they want to be tracked at all times, and they'll say "no". Ask people if they want to be able to locate their phone when they lose it, and their answer might be different.

And neither of these require surveillance. The phone could be located either by returning its location on command, or by uploading encrypted location data which only the user has the key to. Whatsapp, for example, shows that end-to-end encryption can be seamlessly integrated.

Ask them if they'd want be able to cal 911 and ask to come and help them even if they aren't sure where they are, and you'll get a different distribution of answers again. > In the latter case, lack of "surveillance" is seen as a "tragic shortfall" [0], and adding it is a "feature"[1].

Once again, this does not require ubiquitous surveillance, and it is misleading, at best, to imply that it does. Do you really not see the difference between location data provided to assist emergency response from a 911 caller and continuous location monitoring so that Google can serve more profitable ads?

And I can't vouch for all of Google, but regarding location data, Google has been pretty transparent regarding which data is collected and stored; papers like NYT covered it extensively - see [1].

How did you read that article and come away with the conclusion that Google has been "pretty transparent". The story was written after more than a year of other news outlets reporting on law enforcement using Google's location data to fish for suspects. Google has been providing this data for at least two years before the Times reported on it [0].

And moreover, Google has been consistently on track to store less private data.

Such as credit card transaction data collected without most people's knowledge [1] or location data after you've explicitly told it not to [2]?

Technology companies need to understand that both words "informed consent" are important. We currently have very little in the way of choices when it comes to data collection. It is simply not possible to opt-out anymore without tremendous effort and personal cost. I like this quote from Maciej Ceglowski:

"A characteristic of this new world of ambient surveillance is that we cannot opt out of it, any more than we might opt out of automobile culture by refusing to drive. However sincere our commitment to walking, the world around us would still be a world built for cars. We would still have to contend with roads, traffic jams, air pollution, and run the risk of being hit by a bus. Similarly, while it is possible in principle to throw one’s laptop into the sea and renounce all technology, it is no longer be possible to opt out of a surveillance society."

[0] https://www.wral.com/Raleigh-police-search-google-location-h...

[1] https://www.cnbc.com/2017/05/24/google-can-now-track-your-of...

[2] https://www.apnews.com/828aefab64d4411bac257a07c1af0ecb

I'm syncing around 90 GB between my server, laptop, and LineageOS Pixel phone. I use it to sync my documents, music, passwords, and archived pictures. I also use it to sync photos taken by my phone camera as they are taken.

Setup:

* Camera: 1.8 GB, 243 files

* Documents: 10.8 GB, 4604 files

* Music: 61.5 GB, 25077 files

* Passwords: 660 KB, 726 files

* Pictures: 16.5 GB, 6450 files

The passwords are managed by 'pass' [0], which is viewable on my phone using Password Store [1]. Cold-launching Syncthing takes ~10 seconds on my phone, but it does it automatically on boot and thereafter runs in the background. Battery impact seems to be negligible.

[0] https://www.passwordstore.org/

[1] https://f-droid.org/en/packages/com.zeapo.pwdstore/ and https://play.google.com/store/apps/details?id=com.zeapo.pwds...

I've only seen articles that say Google was going to "explore" adding differential privacy to Gboard analytics [0]. Do you know if the feature ever shipped, and is it the only way sends data to Google?

I'm mistrustful of Google's privacy stance, since they have a history of changing their privacy policy, then misleading users about it. Remember when they implemented personally-identifiable web tracking and sold it to users as "new features for your Google account"? Merging Doubleclick's tracking data with my Google account doesn't seem like a feature to me.

[0] https://venturebeat.com/2017/04/06/following-apple-google-te...

[1] https://www.propublica.org/article/google-has-quietly-droppe...

No. Fines exist to dissuade illegal behavior. The loopholes that Google (and Apple, and many other multinationals) should be abolished, and any tax evasion should be prosecuted. Antitrust fines do not exist to punish tax avoidance. They exist to penalize companies who use their size to prevent competition and distort markets.

I have many issues with Google's business practices, but punishing them is not worth throwing out the rule of law.

We also shouldn't pretend that the EU justification for fines is purely about citizen protection, they see this as a "tax" as well (though that is of course not their primary motivation). Otherwise, they would work harder on non-punitive approaches towards combating the ills of Google and the like. One would hope education and encouragement of alternatives and other positive-leaning approaches might be prioritized over a gavel.

The fine exists to remove the profit gained from the illegal behavior, otherwise performing the illegal actions would have a positive expected value. The company is also required to provide a list of remedies to ensure that the behavior is not repeated.

As for "non-punitive" approaches, the encouragement of alternatives would have to be non-financial since state aid is barred under EU rules [0]. I suppose they could recommend alternatives, but if it were really that simple to avoid a consolidation of power in the tech industry we wouldn't have such monopoly/duopoly issues.

[0] https://en.wikipedia.org/wiki/State_aid_(European_Union)

I think that this is a fairly common when it comes to technology. The terms and conditions seem reasonable ("we collect some data to provide more relevant ads"), but when you look a bit more closely they build a personal file that contains who you communicate (email/text/call) with and how often, where you go, what you buy, which websites you visit, which videos you watch, etc to the extent that they are able. My mother is very smart, well-educated (she has a PhD), and relatively tech savvy (she works in scientific computing), but she was still floored when I told her about some of the tracking Facebook and Google perform. Google recording her location (which she technically agreed to, but did not realize) was enough that she asked me to help her migrate away from Gmail. She probably would have managed without my assistance, but the barrier would have been much higher.

I'm emphatically not defending them here, but it may make sense from their perspective. They live and die by ad targeting and maintaining their monopoly power over social networks, both which requires large amounts of personal data. Knowing what apps teenagers have installed and how often those apps are used is instrumental in detecting an up and coming social media rival.

Further, their only major competitor in the ads space is Google, which has access to this information via Android and its control over the Play Store.

Plus, what are the teenagers going to do about it? Facebook also owns Instagram. I guess they could use Snapchat...

Yes, but it's not the default. From the article:

One could, however, add a second passphrase that is never sent to the server, and encrypt the data using that. Chrome provides this as a non-default option.

The average user doesn't have the expertise to know that they have to configure an additional "master password" to keep Google from mining their data for ads.

This is a good example of why Firefox is so important. Mozilla's incentives, unlike those of companies making significant revenue from tracking-based advertising, align with the user. Google, for example, could have implemented Chrome's sync feature in a privacy preserving manner, but instead chose to use it as a method to collect their users' complete browsing histories.

Optical Tweezers 8 years ago

My undergraduate advisor had a small hole in his retina due to a high-power laser. The injury would have been far worse if it weren't a visible laser, since his blink reflex greatly reduced the damage.

Optical Tweezers 8 years ago

Curious, it appears that you guys use a highly focused beam on small particles, like 1 W focused into a diffraction limited spot, right?

That's correct.

How come the bio-molecules that you're manipulating with this light don't just "burn up"? Is it because they're mostly transparent at that wavelength? Or you're only exciting a marker molecule that is stuck to them?

We trap and manipulate a micron-sized polystyrene sphere that the proteins are attached to, not the proteins themselves. The microspheres don't burn up because they don't strongly absorb (i.e., they're mostly transparent) at the laser's frequency. Paper, on the other hand, absorbs strongly and ignites.

Optical traps rely on the momentum of light and the fact that a microsphere displaced from the diffraction-limited spot refracts light in direction of the displacement. Since momentum is conserved, the light directed away from the center of the trap creates a force that pushes the sphere toward the trap. If the light were mostly absorbed or scattered, this force would be along the axis of the beam.

Optical Tweezers 8 years ago

Powerful lasers can be scary, especially if they're in the infrared. The first warning you receive that it's reflecting into your eye is blood seeping into the vitreous humor from your retina's capillaries.

Optical Tweezers 8 years ago

Chu's prize was for laser cooling, which uses a magneto-optical trap. Magneto-optical traps confine atoms by exploiting the Zeeman effect, a spatially-varying magnetic field, and a laser with a precisely-controlled wavelength tuned to be slightly red of an electronic transition. Optical traps, on the other hand, rely on the refraction of a much larger, but still microscopic, object.

Some of Chu's work uses an optical trap, but that work did not earn his prize.

Optical Tweezers 8 years ago

Yes, but high-power lasers need to be treated with respect. Reflections are capable of instantly and irreversibly blinding. There's an overused joke in labs that work with them: "do not look into laser with remaining eye".

If you're going to attempt to build one, please get a pair of laser glasses that are rated for the wavelength you are using.

Optical Tweezers 8 years ago

Our strongest trap is powered by 1.5 W 1064 nm laser beam. (For comparison, laser pointers are usually under 0.005 W.) Unlike most other light sources, laser power measures the output power rather than electrical input power.

The beam will instantly ignite paper, and will cause damage to the most common type of laboratory laser beam blocks, which are made out of stainless steel.

We don't take the air out the system. Air is basically completely transparent in the visible and infrared. We sometimes flood a portion of the instrument with helium, since its index of refraction is ten-fold closer to 1 than air's. This causes the beam to fluctuate less due to air movement.

Optical Tweezers 8 years ago

Kind of? It's the only way that I know of for a laser to move a particle towards the laser's source. But it has some severe limitations: the force is extremely weak, on the order of 0.1 pN/(nm W); the particles have to refract, rather than absorb or scatter, the light; particles larger than 10 microns in diameter tend to be melted or vaporized since they can't dissipate the energy quickly enough.

I want to emphasize how incredibly weak these traps are. In order to apply a maximum force of 200 pN orthogonally to the path of the laser to a 1 micron polystyrene sphere requires approximately 1 W of laser power. Further, it takes about five times more laser power to apply the same amount of force axially (i.e., along the path of the beam) compared to transversely (i.e., in the plane orthogonal to the beam).

Optical Tweezers 8 years ago

I'm a grad student in a lab that specializes in using optical tweezers for single-molecule biophysics research. I'm out sick today with nothing better to do, so feel free to ask me anything.

Optical Tweezers 8 years ago

Usually optical traps use 1064 nm NdYAG lasers, which is in the infrared. Most objectives aren't designed for infrared light, so the objectives used for optical trapping are usually customized.

You should try DNS66 [0], which does not require root. It acts as a VPN on Android and returns 0.0.0.0 when any app tries to resolve the IP address of an ad-serving domain. Other network traffic passes through unmodified, so it's very battery friendly.

The app is also available from Fdroid [1]. It isn't available from the Play Store, since Google has banned ad blockers.

[0] https://github.com/julian-klode/dns66

[1] https://f-droid.org/en/packages/org.jak_linux.dns66/

I've been using Wireguard on both my laptop and my Android phone for about two months. I've been using the wg-quick systemd units, and everything has worked amazingly well. The only downside I've notice is slightly increased battery consumption on my phone, but that's to be expected (it uses approximately 5% of the battery per day).

I use dnsmasq to resolve DNS queries on the server side. Dnsmasq's configuration file includes entries to block connections to ad networks, based on Steven Black's host file [0]. It's a great to achieve ad blocking on Android, since Google has banned ad blockers from the Play Store.

Jason Donenfeld, Wireguard's author, has a Patreon page: https://www.patreon.com/zx2c4

[0] https://github.com/StevenBlack/hosts

It seems to be somewhat particular about relation IDs. I have it working for Palo Alto, with relation ID 1544955. If you want to try this for your city, I recommend zooming in the city on openstreetmap.org, clicking the "Query features" button on the right side of the map (it's the cursor with a question mark icon), and clicking within the boundaries of you city. On the left side, a list of features will appear. Scroll down to enclosing features, and click on the appropriate entry. A relation name and number will be displayed at the top, with the OSM data below.

I hope this stays within the Overpass API server's usage limits. Processing Palo Alto caused the page to download ~85 MB from overpass-api.de, which asks users to stay below 10k queries and 5 GB per day. The OSM wiki lists other servers, some of which allow heavier usage.[0]

[0] https://wiki.openstreetmap.org/wiki/Overpass_API