• 3 Posts
  • 40 Comments
Joined 1 year ago
cake
Cake day: June 23rd, 2023

help-circle


  • gomp@lemmy.mltoPrivacy@lemmy.mlIn search for a good VPN
    link
    fedilink
    arrow-up
    6
    ·
    edit-2
    11 days ago

    I have no idea what a DreamMachine is (and wikipedia does not help) so here’s the long answer :)

    If you want a VPN tunnel to your own home, for secure access to your LAN, I’d recommend you look into NetBird and/or TailScale, which at their core are wireguard plus NAT punch-through (you can also run wireguard or openvpn directly, but it may be a pain since you most probably have a dynamic IP and possibly a CGNAT).

    If you want to hide your traffic while connecting through networks you don’t trust (such as the work one or some cafe’s wifi), you can either use NetBird/Tailscale as above and connect though your home (well, assuming you trust your ISP of course) or some third party VPN which connects to their servers (I’d say look into Proton first).

    Keep in mind that VPNs actually do very little for your online privacy (ie. it’s not like google or facebook can’t track or fingerprint you). They do is prevent man-in-the-middle traffic analysis from your ISP (or the admin of whatever LAN you are using), but then the VPN provider can do the exact same things, so… make sure to double-check the privacy guarantees of your VPN provider and compare them with those of your ISP.



  • Lineage OS is not designed to relock the bootloader.

    I don’t understand why so many people worry about that… doesn’t it only ensure that data is wiped if some agent secretly installs a rootkit or sorts on your phone before giving back the device to you?

    To me, bootloader locking is mostly a way for phone manufacturers to make it harder to run anything but the ROM they have chosen (and it’s a PITA and the most laborious part of installing a ROM).




  • Those are outside Signal’s scope and depend entirely on your OS and your (or your sysadmin’s) security practices (eg. I’m almost sure in linux you need extra privileges for those things on top of just read access to the user’s home directory).

    The point is, why didn’t the Signal devs code it the proper way and obtain the credentials every time (interactively from the user or automatically via the OS password manager) instead of just storing them in plain text?





  • gomp@lemmy.mltoPrivacy@lemmy.ml*Permanently Deleted*
    link
    fedilink
    arrow-up
    15
    arrow-down
    2
    ·
    4 months ago

    That sounds a lot like “doesn’t matter what words actually mean. I am right nonetheless”.

    …but I’m sure you’ll have some personal definition of “semantics” that will allow you to say you are still right, just like you could say “beggars can’t be choosers” in a context where no one is a beggar and there are in fact lots of viable choices.



  • IDK about each specific requirement (especially the “inactivity” one, but … dude, just log in every 6 months), but I’d say a lot of “privacy” email providers should meet your needs.

    Try looking into Proton mail (warning: you’ll have to setup a local relay if you need IMAP/SMTP) or maybe search the web for something like “privacy email provider free” and look into the results.




  • You seem to be describing the US system (or some other common law one… but I believe district attorney is a US-specific term?)…

    IDK about other EU countries (I guess they are all the same in this regard?), but in my Italy the public prosecutor has zero discretionary power when it comes to indictment and must, per the Italian Constitution, proceed based on the investigation outcomes. So there is no “help me catch the bigger fish and I’ll only charge you with some minor crime” like in the movies.

    So… yes, what you describe can happen to anyone, but it can’t happen just anywhere :)