Show more

@U039b interesting, nice approach. Have you looked at how to do that with ? It uses a new public key that is generated using rfc-editor.org/rfc/rfc9180.htm

Also, will that work with apps that use etc so they refuse to run on rooted devices? It seems for those apps, we still need a way to use something like , e.g. inserting a custom CA cert. But the ECH key is not related to any CA cert.

If you have detailed questions about ECH, please ask here or on matrix.to/#/#ech-dev:matrix.or

@eighthave It is one of the many reasons why in PiRogue Tool Suite we decided to use another technique enabling TLS traffic decryption. Instead of using MITM proxy, we retrieve encryption keys directly from the device's memory: pts-project.org/guides/g8/#tls

One thing about () that I'm a little worried about is that it will make inspection of traffic harder to the point where it might restrict lots of important kinds of inspection. When the software we use is not , then we cannot see what it is doing by reading the source code. We need to inspect the network traffic. So it is very important that it is possible to inspect traffic that uses ECH as well, despite that middleware companies will abuse this

() plus private DNS will enable a nice privacy improvement in combination with a VPN: set the DNS nameserver to something other than the VPN provider's nameserver. For ECH-enabled sites, the VPN provider sees your IP and connections to the CDN. The CDN and the DNS nameserver sees the VPN's IP.

* VPN sees who (account, personal IP, etc.) and what (CDN)
* CDN sees where (domain name)
* DNS sees where (domain name)

Before ECH, the VPN could see who, what, and where

@a32 ? You can also use YouTube Music via , which reduces the tracking a lot since there are no logins needed.

🕵️ 🇨🇳 In #China, social media platforms #Weibo, #WeChat, #Douyin, #Zhihu, #Xiaohongshu, and #Kuaishou now require users to reveal their real names to the public. People are quitting as a result.

restofworld.org/2023/weibo-leg

#privacy #surveillance #SurveillanceCapitalism

is not a messenger, it really had become the next generation of . It has all the pieces in place: masses of users, massive groups where anyone can join, , etc. The only real difference is that they have to put some of the logic in the client app, because servers see message , but not content.

As a company, Facebook only knows how to do so it is no wonder that they turn everything into spying machines to us.

@Werhaus What is relatively new is that masses of people followed the same stupid route all while -ing and -ing away about it. The police had to physically block the route to stop the sheeple stream

A glimpse into our future when packs of guided by gone wrong to stupid things en masse: "Google Maps misleads Californians into the desert during dust storm"

sfgate.com/travel/article/goog

Danke , alle soll wissen dass die Nazis Autos Vorrang in die Stadt gegeben haben:

Doch der technologische Fortschritt und die nationalsozialistische Ideologie gaben den Autos Vorrang. Die Straßenverkehrsordnung von 1938 machte das „Kraftfahrzeug“ zum „Volksfahrzeug“, „der Langsame“ habe auf „den Schnelleren“ Rücksicht zu nehmen: „Im Straßenverkehr gehen die Bedürfnisse des motorisierten Schnellverkehrs den Bedürfnissen der Fußgänger vor.“
falter.at/zeitung/20231121/den

@jcaleitao thanks, great to know it is still supported! Thanks for running it.

Happy 36th anniversary of the Max Headroom Signal Hijacking, for those who celebrate.

@jcaleitao has been trying to use your gateway, but it does not seem to be working. ipfs.joaoleitao.org/ipfs/bafyb returns "502 Bad Gateway" but that CID works on other gateways. Are you still maintaining your gateway? Are there restrictions on what it will host? f-droid.org is all free open source software apps, so should be uncontroversial.

@calyxos @LineageOS I can get these Motorola devices in Austria for 120€-150€, that is really affordable for a trusted phone!

So there is a lack of accessibility to folks in the #GlobalSouth in particular. These Motorolas cost around half of what the budget versions of Pixel phones cost and are sold in many countries in continents where Pixels are not, including in #SouthAmerica #Asia and #MENA

Thank you to #StartSmall and jack dorsey for believing in us, and for the funding that made this possible ! And a BIG thank you to our friends at @LineageOS for their work on platform support for the Motorola phones

Show thread

Huge announcement ! @calyxos is now available for the Motorola G32, G42 and G52 ! Why is this a big deal ? Because it helps us further our mission of making #PrivacyByDesign available to the maximum amount of people around the world as we can..

Google Pixel phones are the default and easiest phones to support while maintaining the #Android security model with a locked boot loader and full verified boot. But they are only sold in around a dozen countries around the world...

@xoagray@meow.social @eff @avon_deer There are more and more options, some are even easy to switch to:

* hosted by an org you trust beats all the other video calls
* etc for cloud services
* for music and media
* etc with and
* for messaging

EFF's latest report shows that many of the internet's ills have one thing in common: they're based on the business model of widespread corporate surveillance online. eff.org/deeplinks/2023/11/addr

Show more
image/svg+xml Librem Chat image/svg+xml