refalo

joined 2 years ago
[–] refalo@programming.dev 2 points 1 year ago

I've always said CoCs are often just a false flag used to handwave dictatorship behavior away while hiding behind colorful interpretations of subjective terminology.

[–] refalo@programming.dev 3 points 1 year ago* (last edited 1 year ago) (1 children)

Why is TLS fingerprinting not mentioned? This is what CloudFlare uses and it's highly effective (unfortunately). It doesn't even require any use of HTML, CSS or JavaScript, and so can even identify non-browser things.

[–] refalo@programming.dev 2 points 1 year ago

real linux-libre distros do not offer microcode packages because they are non-free

[–] refalo@programming.dev 3 points 1 year ago (3 children)

Agreed. Ubuntu keeps this behind a paywall (or maybe just a sell-your-data wall), but I see no reason the same patches can't be built and provided for free.

[–] refalo@programming.dev 6 points 1 year ago* (last edited 1 year ago)

And never open your front door for any reason. If the cops or anyone else really needed you that bad, they'd be busting the door down anyway and you're already fucked six ways to Sunday.

Also cameras. Lots of them. Different brands. Offline recording. INSIDE AND OUT. Ask me how I know.

[–] refalo@programming.dev 4 points 1 year ago (3 children)

I would argue they're not safe to use because they block security updates like CPU microcode in the name of absolute freedom.

[–] refalo@programming.dev 13 points 1 year ago (1 children)

I'll take stories like this over the usual stuff any day.

[–] refalo@programming.dev 3 points 1 year ago (1 children)

As if these issues weren't raised before they ever voted on the bill in the first place.

[–] refalo@programming.dev 23 points 1 year ago* (last edited 1 year ago)

F-Droid not being trusted. They build and sign a developer's code on their behalf, so there is a chance for injection there.

There are reproducible builds, but I would argue it's not taken seriously enough. Like right now nobody is publicly verifying Signal's supposed reproducible Android builds and they've historically had problems keeping it working.

Also how most (or all?) Play Store apps (including FOSS) contain proprietary code.

[–] refalo@programming.dev 6 points 1 year ago (1 children)

I assumed the topic was more about online privacy.

view more: ‹ prev next ›