Keyoxide: aspe:keyoxide.org:KI5WYVI3WGWSIGMOKOOOGF4JAE (think PGP key but modern and easier to use)

  • 0 Posts
  • 38 Comments
Joined 1 year ago
cake
Cake day: June 18th, 2023

help-circle
  • TPM isn’t all that reliable. You will have people upgrading their pc, or windows update updating their bios, or any number of other reasons reset their tpm keys, and currently nothing will happen. In effect people would see Signal completely break and loose all their data, often seemingly for no reason.

    Talking to windows or through it to the TPM also seems sketchy.

    In the current state of Windows, the sensible choice is to leave hardware-based encryption to the OS in the form of disk encryption, unfortunate as it is. The great number of people who loose data or have to recover their backup disk encryption key from their Microsoft account tells how easily that system is disturbed (And that Microsoft has the decryption keys for your encrypted date).





  • That would be a fail of the fingerprinting protection. A properly set up TOR browser for example should not allow that detection by any means. If you know how to detect it, please report it as a critical vulnerability.

    I could think of maybe some edge case behavior in webrenderer or js cavas etc., which would mainly expose info on the specific browser and underlying hardware, but that is all of course blocked of or fixed in hardened browsers.

    Further, if you have a reliable method, you could sell it off to for example Netflix, who are trying to block higher resolutions for Linux browsers but are currently foiled by changing the useragent (if you have widevine set up).








  • Redjard@lemmy.dbzer0.comtoMemes@lemmy.ml6÷2(1+2)
    link
    fedilink
    arrow-up
    1
    ·
    7 months ago

    If one doesn’t realize you’re op, the entire thing can be interpreted very differently.
    Then “Not sure if sarcastic and woosh, or adding to the joke ಠ_ಠ” could be interpreted as something like “I’m not sure if you are adding to the joke and I’m not understanding it”.



  • Hallstein was a member of several nominally Nazi professional organizations, but he was not a member of the Nazi Party or of the SA. He is reputed to have rejected Nazi ideology and to have kept his distance from the Nazis. There was opposition from Nazi officials to his proposed appointment, in 1941, as professor of law at the University of Frankfurt, but the academics pushed through his candidacy, and he soon advanced to become dean of the faculty.

    Hallstein began his academic career in the 1920s Weimar Republic and became Germany’s youngest law professor in 1930, at the age of 29. During World War II he served as a First Lieutenant in the German Army in France. Captured by American troops in 1944, he spent the rest of the war in a prisoner-of-war camp in the United States, where he organised a “camp university” for his fellow soldiers.

    I don’t see how he is a Nazi





  • The EU is doing all they can here. They require EU citizens need a way to have their data deleted, within 1 month or after a response with specific reasons within 3 months.

    This ofc makes companies act like this for accounts located inside the EU. Then further, every EU citizen outside the EU has a right to this too, so if a company chooses to geolock the deletion feature, all those outside citizens act as a minefield and strain on the system until they stop geolocking the feature.

    This then means everyone (EU citizens or not) can manually contact support, both straining their system and making them look into making this process as difficult as possible. This will inevitably lead to them blocking actual EU citizens outside the EU, who can then sue them until they stop locking the feature and make it available to everyone. The company can’t just ask for some legal document proving citizenship either, since that itself would be a gdpr violation. So the end state has to be a system that everyone can use - EU citizen or not.

    The EU can’t demand anything about non-citizens, so as I see it this is the best they can do, by demanding certain rights only to their citizens. The downside is it may take years and a few court battles, but the final state should be the law applying for all users.