Turns out that Web Environment Integrity proposal everybody is getting angry about (imo very legitimately) was effectively already shipped by Apple in Safari last year: https://httptoolkit.com/blog/apple-private-access-tokens-attestation/
That means if Chromium ships it too, we could quickly move to 90%+ of browser traffic being attested. Not good!
#Mozilla has published its position on the "Web Environment Integrity API" proposal put forward by the #Google #Chrome team.
First paragraph: "Mozilla opposes this proposal because it contradicts our principles and vision for the Web."
https://github.com/mozilla/standards-positions/issues/852#issuecomment-1648820747
'Ada & Zangemann - A tale of software, skateboards, and raspberry ice cream' book reading
☑️ FrOSCon 2023
🗓️ 6 August
⏰ 10 h
📍HS7
💻 https://programm.froscon.org/2023/events/2986.html
"#Google's newest proposed web standard is... #DRM?" -- Google is proposing yet another user-hostile feature and aims to make it an web standard called "Web Environment Integrity API". This lets websites confirm the browser has limitations on what it can do, going against #UserFreedom. The #IETF internet standard RFC 8890 declares "The Internet Is For End Users". Google's API circumvents that.
Thanks to Ron Amadeo for his a concise, cutting analysis:
https://arstechnica.com/gadgets/2023/07/googles-web-integrity-api-sounds-like-drm-for-the-web/
#Google’s nightmare “Web Integrity API” wants a #DRM gatekeeper for the web | #ArsTechnica
Oh, great! Seems we have a 180° turn, and we are now doing the #NetNeutrality 2.0 discussion. Honestly, I always wonder how they think they could possibly implement something like this?
Do they think no one in the tech world will notice and not resist something like this? Do they think this would just result in a 100% conversion rate and every single person would uinstall #Firefox and #Chrome would be the #Netscape of 2023?
Now I understand why they removed the dislike button from #Youtube before they pitched this idea. This is such a #Zuckerberg idea. And the worst part is, he'll probably slap his sticker on this and we'll have this argument again in 6 month's where he'll want to limit the internet to people having VR headsets and being in the #metaverse.
https://arstechnica.com/gadgets/2023/07/googles-web-integrity-api-sounds-like-drm-for-the-web/
Looks like the latest release of #FDroid, v1.17.0, does not get flagged by #Google, at least in the #Android 14 emulator. I heard some reports that v1.16.4 also isn't flagged. I don't really know why its flagging F-Droid then. v1.16.4 has an unchanged #targetSdkVersion, but v1.17.0 has it bumped to 28. I have found no way to get info on why they are flagging the app, just this silly "unsafe" warning screen. Is F-Droid being flagged by Google Play Protect on your devices? Please let me know.
reminder that #ETSI is overtly and institutionally #backdooring #standards https://media.ccc.de/v/26c3-3721-de-etsi-vorratsdatenspeicherung_2009
What to do about the lack of #DataSkills?
In the iTalks series organised by our iLab, 🔟 experts on #DataLiteracy discussed it with almost 7⃣0⃣0⃣ participants from public sector, academia, and civil society! 👩💻
Missed it? Check the slides & recordings 👉 https://europa.eu/!x98WfB
On the other hand, #MLS includes "Group Integrity", which means that all members in a group see the same state. This means all members see the same list of members, same message transcript, same message order, etc. #Signal Protocol does not guarantee Group Integrity. I think this is an important property, but I wonder how much this was actually abused in the real world with other protocols? 3/
New: NitroPhone MDM For Enterprise #cybersecurity #android https://www.nitrokey.com/news/2023/nitrophone-mdm-enterprise
One big concern I have about #MLS over something like #Signal Protocol is that it makes it so the cost of sending a message to a group of 10 is about the same as sending to a group of 1000 or more. This is the opposite of how physical social interaction works, it is much more effort to speak in front of large groups. This gives advantage to spam, disinfo, trolling, etc. as compared to protocols where the cost linearly increases as the number of users in the group increases. 2/
#MLS Messaging Layer Security has just been officially standardized by the #IETF, this is a great new development, especially in combination with standard protocols like #Matrix and #XMPP. https://blog.phnx.im/rfc-9420-mls/ 1/
Public Money, Public Code! Code paid by the people should be available to the people!
🔹 Sign the Open Letter: https://publiccode.eu/en/openletter/
🔸 Listen to @johas explaining this demand in this podcast: https://egovernment-podcast.com/egov139-fsfe-pmpc/
Turkmenistan continues to block Tor and anti-censorship tools at a large scale. Tor bridges prove to be one of the few free alternatives to access the open internet. If you have the resources to help, please consider running bridges. How? Take a look: https://forum.torproject.org/t/tor-relays-help-turkmens-to-bypass-internet-censorship-run-an-obfs4-bridge/7002/7
While F-Droid appears to be "just" an alternative #OpenSource #AppStore for #Android, it is actually the apex of a lifestyle movement that's choosing to use Android only with #FreeSoftware and without #Google or advertising-related #surveillance. Realising that makes many of its features - and shortcomings - easier to understand. I was the main interviewer in the discussion this week on #FLOSS Weekly with core @fdroidorg developer @eighthave and it was a good show.
https://twit.tv/shows/floss-weekly/episodes/741?autostart=false
@eighthave Wow very nice warning on privacy from "google" ... haha what the faaak 😂
For all those saying "#Mastodon has failed" or something like that, consider that #Threads usage has already fallen by half, and that is with all the #Facebook money behind it. https://www.similarweb.com/blog/insights/social-media-news/threads-week/
I really love the moments when it has been very hot for a few days, and then the wind picks up as thunderstorms start to roll in. I still get a child-like anticipation of the incoming thunder and lightning, and can start to feel the cool relief that is coming as the thunderstorm cools the city down.