Random Joe, or should I say… GNU/Joe

  • 1 Post
  • 25 Comments
Joined 3 years ago
cake
Cake day: November 28th, 2021

help-circle





  • Between 2013 and 2016, Open Whisper Systems received grants from the Shuttleworth Foundation,[49] the Knight Foundation,[50] and the Open Technology Fund.[51]”

    “Marlinspike launched Open Whisper Systems’ website in January 2013.[2][1]”

    (from the page you linked)

    How is that not the OTF (100% funded by Radio Free Asia) since its inception? how is it not its initial conception phase?



  • yet it’s fair to say that:

    • Signal was incepted by US gov funds
    • During most of it’s initial conception phase it was US gov funded
    • therefore some of the characteristics its users still suffer today (like reliance on strong selectors, pinky-promise of non-retaining metadata, centralized architecture based on the same “cloud” as the one of the CIA and other decisions hostile to free/libre software users and ethics) originate from that era.


  • also now that i think of it:

    1. there is now a discovery mechanism of some sort… but otherwise it’s a feature and not a bug that you can only identify people whom you had an initial exchange with. much preferable than something that Signal that without asking (and without opting out?) will by default access all your contacts and match them through the use of a strong selector (phone number) also:
    2. i think with the minimal knowledge the server has of its users (and the no-identity concept) this really limits risk. Also it means that for the most tight of security models, one can use their own server (which is not feasible with most other chat protocols)

    so all in all: go simplex! :)






  • PInephone! A bit of work, requiring to not being shy opening the hood of a linux system. but totally worth it, the reward is freedom and its continuous cycle of collective learning…

    (although the Pinephone is not really a “smartphone” in the sense most people use that word: a restricted computer that allows to run wallgarden applications… a pinephone doesnt natively run “smartphone apps” and is more like a full-blown, general purpose computer running GNU/linux that also contains a modem enabling calls, sms and data…)




  • I beg to disagree: the global interception capacities of the NSA in 2012 (as showed in the very few 2013 documents from Ed. Snowden that were made public) clearly were enough to routinely de-anonymize tor. By owning a certain percentage of the global internet traffic, you de facto own tor (can very precisely correlate what comes in and what goes out, and do that retrospectively when needed).

    and that was 10+ years aog

    Association with spooks is a red flag, for the multiple, endless ways they have been doing their shitfuckery, endangering the general public, the exceptional US citizens, and information/communication security at large… by weakening standards, by corrupting corporations to introduce (or leave open) some bugs, by infiltrating development teams, by pressuring operators to grant full access, by breaking and entering, etc…

    Anyone who doesnt see that as a problem has to be considered as part of it. Simple, basic rule.




  • The thing I find hard to convey is that FLOSS software is superior to proprietary software for many reasons, most of which are non-technical: FLOSS software is superior to proprietary software if it isn’t spying on you, if it’s governance is collective, if it’s not build to make you pay for things that should be free, if it lets you decide where your data goes, etc…

    we’re often missing the point when we attempt at side-by-side comparison of FLOSS and proprietary software… It’s usually one-dimentional, and playing on our opponent’s field: these companies racketing their users based on rent-based exploitative business models will always have more resources than independant developpers to improve “UX/UI”… so I think this must not be the only prism through which reading these things.