GNU social JP
  • FAQ
  • Login
GNU social JPは日本のGNU socialサーバーです。
Usage/ToS/admin/test/Pleroma FE
  • Public

    • Public
    • Network
    • Groups
    • Featured
    • Popular
    • People

Conversation

Notices

  1. Embed this notice
    Meredith Whittaker (mer__edith@mastodon.world)'s status on Wednesday, 18-Oct-2023 22:33:04 JST Meredith Whittaker Meredith Whittaker

    Where I speak some advantages Signal has over the bigger richer rest of tech:

    “We don’t have to be full of shit. We’re not a surveillance company. I’m not trying to pretend Facebook is good. I don’t have to toe a party line that is divorced from reality”

    https://restofworld.org/2023/signal-president-meredith-whittaker-messaing-privacy/

    In conversation Wednesday, 18-Oct-2023 22:33:04 JST from mastodon.world permalink
    • Embed this notice
      novatorine 🏴🏳️‍⚧️ (anarchopunk_girl@kolektiva.social)'s status on Wednesday, 18-Oct-2023 22:33:01 JST novatorine 🏴🏳️‍⚧️ novatorine 🏴🏳️‍⚧️
      in reply to
      • Signal
      • Fla
      • Kevin Karhan :verified:

      @fla @kkarhan @Mer__edith @signalapp signal end to end encrypts the actual content of your messages, yes, but it doesn't encrypt the metadata of your messages — including who sends each message, who receives it, what date and time the message was sent on, whether it was received, and stuff like that, which can be used to do all kinds of analysis in fact metadata is all that the surveillance agencies in the US even use when just passively surveilling people cuz you can actually figure out a fuck ton from just metadata). Not to mention the fact that it requires you to have a phone number for your account and that isn't encrypted either so each account is linked to your legal identity unless you have a burner phone. Signal has been promising they will set up usernames instead of phone numbers for accounts for something like 5 years now and maybe they'll release it soon but it's still a problem in the meantime.

      In conversation Wednesday, 18-Oct-2023 22:33:01 JST permalink
    • Embed this notice
      Fla (fla@mastodon.social)'s status on Wednesday, 18-Oct-2023 22:33:02 JST Fla Fla
      in reply to
      • Signal
      • Kevin Karhan :verified:

      @kkarhan @Mer__edith @signalapp Signal is still collecting too much data? Could you please list them?
      And what do you mean by "collect" exactly, plain or encrypted?

      In conversation Wednesday, 18-Oct-2023 22:33:02 JST permalink
    • Embed this notice
      Kevin Karhan :verified: (kkarhan@mstdn.social)'s status on Wednesday, 18-Oct-2023 22:33:03 JST Kevin Karhan :verified: Kevin Karhan :verified:
      in reply to
      • Signal

      @Mer__edith Personally, @signalapp still collects way too much data and IMHO still has the same issues as all #centralized #SingleVendor & #SinlgeProvider solutions.

      And considering #CloudAct and the ability as well as willingness of #Signal to enforce #Embargos, I'd just not trust it at all!

      In fact, I'd call the #NSA and #FBI as "criminally incompetent" if they didn't place people within Signal...

      In conversation Wednesday, 18-Oct-2023 22:33:03 JST permalink
    • Embed this notice
      Kevin Karhan :verified: (kkarhan@mstdn.social)'s status on Wednesday, 18-Oct-2023 22:47:00 JST Kevin Karhan :verified: Kevin Karhan :verified:
      in reply to
      • Signal
      • Fla
      • novatorine 🏴🏳️‍⚧️

      @anarchopunk_girl @fla @Mer__edith @signalapp

      Also #Signal collects #PhoneNumbers which are hard if not illegal to obtain anonymously depending on one's juristiction and those ain't even #TechnicallyNecessary unlike #Apps that do #E2EE with #OpenPGP on #SMS where it makes sense to offer people the convenience of a #Keyserver offered by the maintainers.

      Personally, #Signal has a stench closer to #ANØM / #OperationIronside / #TojanShield than #EncroChat IMHO...
      https://en.wikipedia.org/wiki/ANOM

      In conversation Wednesday, 18-Oct-2023 22:47:00 JST permalink

      Attachments

      1. Domain not in remote thumbnail source whitelist: upload.wikimedia.org
        ANOM
        The ANOM (also stylized as AN0M or ΛNØM) sting operation (known as Operation Trojan Shield (stylized TRØJAN SHIELD) or Operation Ironside) is a collaboration by law enforcement agencies from several countries, running between 2018 and 2021, that intercepted millions of messages sent through the supposedly secure smartphone-based messaging app ANOM. The ANOM service was widely used by criminals, but instead of providing secure communication, it was actually a trojan horse covertly distributed by the United States Federal Bureau of Investigation (FBI) and the Australian Federal Police (AFP), enabling them to monitor all communications. Through collaboration with other law enforcement agencies worldwide, the operation resulted in the arrest of over 800 suspects allegedly involved in criminal activity, in 16 countries. Among the arrested people were alleged members of Australian-based Italian mafia, Albanian organised crime, outlaw motorcycle clubs, drug syndicates and other organised crime groups. Background The shutdown of the Canadian secure messaging company...
    • Embed this notice
      novatorine 🏴🏳️‍⚧️ (anarchopunk_girl@kolektiva.social)'s status on Wednesday, 18-Oct-2023 22:49:25 JST novatorine 🏴🏳️‍⚧️ novatorine 🏴🏳️‍⚧️
      in reply to
      • Signal
      • Fla
      • Kevin Karhan :verified:

      @kkarhan @fla @Mer__edith @signalapp the thing is that signal is way easier to use then whatever crusty outdated ugly looking xmpp app you found lol. Session is good tho.

      In conversation Wednesday, 18-Oct-2023 22:49:25 JST permalink
    • Embed this notice
      Kevin Karhan :verified: (kkarhan@mstdn.social)'s status on Wednesday, 18-Oct-2023 22:49:27 JST Kevin Karhan :verified: Kevin Karhan :verified:
      in reply to
      • Signal
      • Fla
      • novatorine 🏴🏳️‍⚧️

      @anarchopunk_girl @fla @Mer__edith @signalapp

      #Signal also doesn't provide value to me beyond what #XMPP + #OMEMO & #eMail + #PGP/MIME can offer for decades now.

      Instead it creates shitty dependencies to #Google - #APIs that have no legitimate reason to exist and their unwillingness to allow #SelfHosting makes it worse than a default #Zulip installation in terms of #InfoSec, #OPsec, #ComSec & #ITsec.
      https://zulip.com/why-zulip/

      In conversation Wednesday, 18-Oct-2023 22:49:27 JST permalink

      Attachments

      1. Domain not in remote thumbnail source whitelist: static.zulipchat.com
        Why Zulip? Efficient communication with organized team chat.
        Make better decisions, faster with chat that’s organized right. Follow the discussions that matter to you, easily and efficiently, in real time or asynchronously.
    • Embed this notice
      novatorine 🏴🏳️‍⚧️ (anarchopunk_girl@kolektiva.social)'s status on Wednesday, 18-Oct-2023 22:54:30 JST novatorine 🏴🏳️‍⚧️ novatorine 🏴🏳️‍⚧️
      in reply to
      • Signal
      • Fla
      • Kevin Karhan :verified:
      • jabberati

      @jabberati @kkarhan @fla @Mer__edith @signalapp I like Session bc it explicitly focuses on not leaking metadata, including using a decentralized onion router network to hide who you're talking to

      In conversation Wednesday, 18-Oct-2023 22:54:30 JST permalink
    • Embed this notice
      jabberati (jabberati@social.anoxinon.de)'s status on Wednesday, 18-Oct-2023 22:54:31 JST jabberati jabberati
      in reply to
      • Signal
      • Fla
      • Kevin Karhan :verified:
      • novatorine 🏴🏳️‍⚧️

      @anarchopunk_girl @kkarhan @fla @Mer__edith @signalapp I have contacts in the age range (8-86) using Conversations without trouble. I just helped them with the installation of F-Droid and the creation of an XMPP address. It paid off, since now I don't promote any walled gardens like Signal anymore.

      In conversation Wednesday, 18-Oct-2023 22:54:31 JST permalink
    • Embed this notice
      novatorine 🏴🏳️‍⚧️ (anarchopunk_girl@kolektiva.social)'s status on Thursday, 19-Oct-2023 01:16:48 JST novatorine 🏴🏳️‍⚧️ novatorine 🏴🏳️‍⚧️
      in reply to
      • Signal
      • Fla
      • Kevin Karhan :verified:
      • Proton Mail

      @kkarhan @fla @Mer__edith @signalapp @protonmail

      When did ProtonMail capitulate?

      In conversation Thursday, 19-Oct-2023 01:16:48 JST permalink
    • Embed this notice
      Fla (fla@mastodon.social)'s status on Thursday, 19-Oct-2023 01:16:50 JST Fla Fla
      in reply to
      • Signal
      • Kevin Karhan :verified:
      • novatorine 🏴🏳️‍⚧️

      @anarchopunk_girl @kkarhan @Mer__edith @signalapp

      This is perfectly wrong, especially the "who sends each message". The only metadata you can get from a phone number is, does it have a Signal account, when was this account created, and when was the last time this account logged in. That's it. Nothing else.

      Signal is state of the art. 10 times more secure than anything else, including XMPP + OMEMO mentioned below. The only problem it has is, it's centralized.

      In conversation Thursday, 19-Oct-2023 01:16:50 JST permalink
    • Embed this notice
      Kevin Karhan :verified: (kkarhan@mstdn.social)'s status on Thursday, 19-Oct-2023 01:16:50 JST Kevin Karhan :verified: Kevin Karhan :verified:
      in reply to
      • Signal
      • Fla
      • novatorine 🏴🏳️‍⚧️
      • Proton Mail

      @fla @anarchopunk_girl @Mer__edith @signalapp

      1. I doubt the security claims as #Signal refuses to allow people to make #ReproduceibleBuilds and provide the #Backend as #FLOSS.

      That #Centralization makes it #vulnerable and just like @protonmail before, Signal will bow before pressure by authorities regardless if #CloudAct or whatever.

      DO NOT TRUST ANYONE - NEITHER ME NOT THEM!!!

      https://www.youtube.com/watch?v=QCx_G_R0UmQ

      https://twitter.com/thegrugq/status/1085614812581715968

      In conversation Thursday, 19-Oct-2023 01:16:50 JST permalink

      Attachments


    • Embed this notice
      98e028dw (98e028dw@infosec.exchange)'s status on Thursday, 19-Oct-2023 03:38:38 JST 98e028dw 98e028dw
      in reply to
      • The Tor Project
      • Signal
      • Fla
      • Kevin Karhan :verified:
      • novatorine 🏴🏳️‍⚧️

      @kkarhan @anarchopunk_girl @fla @Mer__edith @signalapp @torproject

      Do not trust #signal ? For some people #SimpleX may be an option.
      https://simplex.chat

      In conversation Thursday, 19-Oct-2023 03:38:38 JST permalink

      Attachments

      1. Domain not in remote thumbnail source whitelist: simplex.chat
        SimpleX Chat: private and secure messenger without any user IDs (not even random)
        SimpleX Chat - a private and encrypted messenger without any user IDs (not even random ones)! Make a private connection via link / QR code to send messages and make calls.
    • Embed this notice
      Kevin Karhan :verified: (kkarhan@mstdn.social)'s status on Thursday, 19-Oct-2023 03:38:39 JST Kevin Karhan :verified: Kevin Karhan :verified:
      in reply to
      • The Tor Project
      • Signal
      • Fla
      • novatorine 🏴🏳️‍⚧️

      @anarchopunk_girl @fla @Mer__edith

      After all, @signalapp does in fact comply with #Cyberfacist demands of the U.S. government and restricts #Signal's functionality based of "striclty unnecessary" data like #PhoneNumbers!

      Whereas @torproject is specifically designed to be incapable of doing so, even if all their maintainers were simultaneously held at gunpoint.

      Cuz that's basic #OpSec to the point that every small #FinTech / #PaymentProcessor in Germany has to get that #contingency in place!

      In conversation Thursday, 19-Oct-2023 03:38:39 JST permalink
      novatorine 🏴🏳️‍⚧️ repeated this.
    • Embed this notice
      Kevin Karhan :verified: (kkarhan@mstdn.social)'s status on Thursday, 19-Oct-2023 03:38:40 JST Kevin Karhan :verified: Kevin Karhan :verified:
      in reply to
      • Signal
      • Fla
      • novatorine 🏴🏳️‍⚧️
      • Proton Mail

      @anarchopunk_girl @fla @protonmail

      Do you think I like that situation?
      NO!

      I wished I was wrong but I guarantee you the moment @Mer__edith or anyone from @signalapp is being threatened by LEAs with jailtime if they don't rat out a user [which don't even pay them a dime, let's be honest!] they'll all cave in...

      After all, why should they not do so?
      https://twitter.com/thegrugq/status/1085614812581715968

      In conversation Thursday, 19-Oct-2023 03:38:40 JST permalink

      Attachments


    • Embed this notice
      Kevin Karhan :verified: (kkarhan@mstdn.social)'s status on Thursday, 19-Oct-2023 03:38:41 JST Kevin Karhan :verified: Kevin Karhan :verified:
      in reply to
      • Signal
      • Fla
      • novatorine 🏴🏳️‍⚧️
      • Proton Mail

      @anarchopunk_girl @fla @protonmail
      @Mer__edith @signalapp
      More often than enough.

      And in some cases without a warrant...

      Case in point: #Signal has the same stench as #ProtonMail and #ANØM and in the end I'll be correct - just as I've always been with EVERY 👏 #SingleVendor 👏 AND 👏 #SingleProvider 👏 "SOLUTION"!

      https://www.youtube.com/watch?v=IeXaYR4ed9c

      In conversation Thursday, 19-Oct-2023 03:38:41 JST permalink
    • Embed this notice
      Aral Balkan (aral@mastodon.ar.al)'s status on Tuesday, 24-Oct-2023 20:15:57 JST Aral Balkan Aral Balkan
      in reply to

      @Mer__edith 💕

      In conversation Tuesday, 24-Oct-2023 20:15:57 JST permalink
    • Embed this notice
      tastyraspberry (tastyraspberry@mastodon.online)'s status on Tuesday, 31-Oct-2023 01:21:10 JST tastyraspberry tastyraspberry
      in reply to
      • Eelco Mulder :mastodon:

      @voorstad @Mer__edith See this video: https://www.youtube.com/watch?v=a26zI7xCjy0

      In conversation Tuesday, 31-Oct-2023 01:21:10 JST permalink

      Attachments

      1. Encryption in the age of surveillance - Lightning Talk Meredith Whittaker
        from European Digital Rights
        On 26 September 2023, EDRi discussed the role of encryption in the age of surveillance, what it means for people and democracy and how current European legis...
    • Embed this notice
      Eelco Mulder :mastodon: (voorstad@mastodon.nl)'s status on Tuesday, 31-Oct-2023 01:21:11 JST Eelco Mulder :mastodon: Eelco Mulder :mastodon:
      in reply to

      Good and honest interview! But no words about the consequences for #EU citizens in relation to #chatcontrol (https://edri.org/our-work/why-chat-control-is-so-dangerous/).

      Any thoughts on that, perhaps?

      #css #privacy #surveillance #signal

      @Mer__edith

      In conversation Tuesday, 31-Oct-2023 01:21:11 JST permalink

      Attachments

      1. Domain not in remote thumbnail source whitelist: edri.org
        “Anytime and anywhere”: Vaccination, immunity certificates, and the permanent pandemic - European Digital Rights (EDRi)
        from EDRi
        The deployment of vaccines, and in particular any “immunity passport” or certificate linked to the vaccination, must respect human rights. EDRi's member Privacy International (PI) reveals some of the broader human rights, ethical and societal implications of vaccination "passports".
    • Embed this notice
      Matti Järvinen (nemeciii@mastodon.social)'s status on Tuesday, 31-Oct-2023 01:21:38 JST Matti Järvinen Matti Järvinen
      in reply to
      • European Commission
      • Eelco Mulder :mastodon:
      • Truls
      • dexternemrod

      @dexternemrod @truls46 @voorstad @EU_Commission you can host the UI as a web page.

      So how to block it?

      They probably haven't even thought of banking and government data handling.

      In conversation Tuesday, 31-Oct-2023 01:21:38 JST permalink

      Attachments

      1. Domain not in remote thumbnail source whitelist: cdn2.dan.com
        page.so - Domain Name For Sale | Dan.com
        from @undeveloped
        I found a great domain name for sale on Dan.com. Check it out!
    • Embed this notice
      Matti Järvinen (nemeciii@mastodon.social)'s status on Tuesday, 31-Oct-2023 01:21:39 JST Matti Järvinen Matti Järvinen
      in reply to
      • European Commission
      • Eelco Mulder :mastodon:
      • Truls
      • dexternemrod

      @dexternemrod @truls46 @voorstad @EU_Commission but then there's open source projects like Matrix.

      How could they fight against federated e2ee communications?

      In conversation Tuesday, 31-Oct-2023 01:21:39 JST permalink
    • Embed this notice
      dexternemrod (dexternemrod@troet.cafe)'s status on Tuesday, 31-Oct-2023 01:21:39 JST dexternemrod dexternemrod
      in reply to
      • European Commission
      • Matti Järvinen
      • Eelco Mulder :mastodon:
      • Truls

      @nemeciii

      @truls46 @voorstad @EU_Commission

      Maybe force the Appstores to take the apps down for the region or on the end ... make it a crime to use it.

      I wonder if they thought about business communications like remote teams or different branches using e2ee-services?

      In conversation Tuesday, 31-Oct-2023 01:21:39 JST permalink
    • Embed this notice
      Truls (truls46@mastodon.social)'s status on Tuesday, 31-Oct-2023 01:21:40 JST Truls Truls
      in reply to
      • European Commission
      • Eelco Mulder :mastodon:

      @voorstad

      I wonder what "leave the EU" technically means? Will the app be removed from the AppStore/PlayStore if the phone number is identified to be a European one? Will existing installations refuse to work?

      But in the end I hope this won't happen and the @EU_Commission does not follow China's and Russia's example on how to spy on their citizens.

      #privacy #chatcontrol

      In conversation Tuesday, 31-Oct-2023 01:21:40 JST permalink
    • Embed this notice
      dexternemrod (dexternemrod@troet.cafe)'s status on Tuesday, 31-Oct-2023 01:21:40 JST dexternemrod dexternemrod
      in reply to
      • European Commission
      • Eelco Mulder :mastodon:
      • Truls

      @truls46

      @voorstad @EU_Commission

      As far as I know it is possible for publishers to limit the regions in the appstore ... but sideloading and forks like #mollyim should not be impacted. Not sure if signal will use barriers in the app/server itself.

      In conversation Tuesday, 31-Oct-2023 01:21:40 JST permalink
    • Embed this notice
      Eelco Mulder :mastodon: (voorstad@mastodon.nl)'s status on Tuesday, 31-Oct-2023 01:21:42 JST Eelco Mulder :mastodon: Eelco Mulder :mastodon:
      in reply to
      • Signal
      • tastyraspberry
      • Arnoud Wokke
      • Bert Hubert NL 🇺🇦🇪🇺

      Wow....!

      So #signal will eventually leave the EU if the EU Parliament approves #chatcontrol (mass surveillance of private communications).

      https://www.youtube.com/watch?v=a26zI7xCjy0

      @tastyraspberry @Mer__edith @signalapp
      @arnoudwokke @bert_hubert @patrick_breyer_mep

      In conversation Tuesday, 31-Oct-2023 01:21:42 JST permalink

Feeds

  • Activity Streams
  • RSS 2.0
  • Atom
  • Help
  • About
  • FAQ
  • TOS
  • Privacy
  • Source
  • Version
  • Contact

GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.