Privacy

31720 readers
273 users here now

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

Related communities

Chat rooms

much thanks to @gary_host_laptop for the logo design :)

founded 5 years ago
MODERATORS
2101
 
 

Summary

  • Customs and Border Protection (CBP) is increasing its target for scanning passengers with facial recognition as they leave the U.S. from 40% to 75%.

  • The new goal will be implemented at the end of this month.

  • CBP is changing its metric for measuring progress from the percentage of flights that have at least one biometrically processed traveler, to the percentage of passengers who are biometrically processed.

  • CBP says that the change in metric is more accurate and provides a more complete picture of how robust biometric exit processing is on a national level.

  • The Congress-mandated goal of CBP is to have 97% or greater biometric exit compliance.

  • Airlines are increasingly using facial recognition systems to confirm travelers when boarding aircraft.

  • Passengers who do not want to participate in facial recognition can opt out, but they may be asked to present travel documents or other proof of identification, and in some case, fingerprints.

  • CBP says that it will only store facial images for no more than two weeks and that it will share entry and exit data for law enforcement.

The article also mentions a case where a privacy attorney was told by airline staff that she had to participate in facial recognition, even though she had a right to opt out. This suggests that there may be some confusion among airline staff about the rules surrounding facial recognition.

Interesting Passages

A June 2017 CBP document explains its “Biometric Exit Process” for passengers: “All travelers are required to submit to CBP inspection upon exit. Facial images will be matched and then stored for no more than two weeks in secure data systems managed by the U.S. Department of Homeland Security in order to further evaluate the technology, ensure its accuracy, and for auditing purposes. In lieu of facial images, travelers may be asked to present travel documents or other proof of identification, and in some cases provide fingerprints.” That document adds that it could share traveler exit and entry data with other government agencies “if the situation warrants, for law enforcement purposes.”

It seems likely CBP will meet its goal for biometrically-processing 75 percent of passengers. In 2021 I obtained a cache of documents related to the airline JetBlue’s piloting of facial recognition systems. Already back then, JetBlue said it had seen more than 90 percent of customers participate in biometric boarding when it was available.

2102
 
 

The article is AdGuard centric but it sheds light on the whole process where Google suddenly decided to ban ad blockers.

2103
2104
 
 

I've moved almost completely to Proton Mail. I expect I'll end up keeping a Google or Outlook account, not for use as a primary account, but as a recovery account or to access other services.

I currently see a lot less value in the google account than outlook, but that's because my family does need access to full blown office. Libre office does 98% of what I need, but on occasion I do need office. An install of 2010 would probably meet that requirement as well. Firefox is set to delete cookies on exit, and I do not ever stay signed into these services.

Does anyone else keep free service email accounts around, and if so, what do you use them for? What's the pit-fall I'm not seeing if I try to restrict them and treat them with the Principle of Least Privileged model?

2105
 
 

I have been slowly degoogling my life by reducing my use of Google apps and switching to FOSS alternatives. I recently created a Proton account and tried to keep it completely isolated from my default Google account so as to not let it know what my Proton mail identity is. I have finished my transition in my desktop to the best of my ability and am planning to start the same with my mobile. The only thing I have done in my Android phone related to Proton is having downloaded ProtonVPN and signed into my account within the app. However I fear by downloading ProtonMail and signing into it, my Android phone would identify the email account, which could make this entire transition useless. Is there a way to avoid this situation or has the damage already been done. What does Google know about my Proton account, if at all?

2106
 
 

I use xprivacylua to prevent whatsapp from having access to most of the possible software and hardware information to mitigate the fingerprint and now I'm also using the imagepipe to send any image through it.

However, the doubt came.

And the photos taken directly into the option within the application?

Can you still capture metadata?

Note: I use degoogle smartphone. And I do not speak English so excuse any fault.

2107
173
submitted 1 year ago* (last edited 1 year ago) by [email protected] to c/[email protected]
 
 

Hello there!

Edit: I'm sure this post belongs in [email protected] because this post's concern is with shilling facial recognition, promising benefits for it and overall describing it like the only sane option - "you wouldn't want to stay in line for an hour, now, would you?".

Just bought a Ryanair ticket that was, like, 17 euros. I saw that price and said "Wow! That's like going to a movie but the movie is Slovakia!". Bought the ticket, then received a looooot of spam, among which there was a letter saying that, since I bought from a third-party, I need to verify my identity first. On top there were 2 nice looking buttons that said "Verify Now" and above them there were two ways of verifying my identity enclosed in a nice frame. The first one would only take me 2 minutes and cost only 0.59 cents, and would utilize facial recognition technology,

Uses facial recognition technology. Verify in approx. 2 minutes. Requires a copy of the passenger's identification documentation and a device with a camera.

the other one didn't look so appetizing, because it might have taken up to 7 days (I'd be leaving in 4), it would have no cost (for free) and would use no facial recognition technology, hence the 7 day wait

Verifies the passenger's signature. Verify within 7 days. Requires a copy of the passenger's identification documentation and a device with a camera.

Following the two ways there was a third way, which was in no way highlighted as the first two, and it said that if I wanted, I could go there myself and hand them my passport, but they explicitly dissuade me from doing so because "it would imply a payment of a check-in fee"

Passengers who do not avail of Express Verification or Standard Verification to verify their bookings can verify at the Ryanair ticket desk up to 60 minutes before departure.

However, we do not recommend this option as an airport check-in fee will apply (please see our Table of Fees).

The facial recognition way sounded like an angel's voice among the devil's screams, when compared to the other two. It was presented almost like "an offer JUST for you", like "Look. I normally don't do this, but since you're such a nice guy...". I obviously discarded the facial-recognition way as soon as I read "facial recognition", but also because they so strongly suggested against me paying 55 euros (I called and asked) to them. Now, if the 55 euros are going to Ryanair, it sounds so unreasonable for them to almost refuse taking my money [However, we do not recommend this option as an airport check-in fee will apply (please see our Table of Fees).]. Who doesn't want an extra 55 from each old person that buys their ticket? I would, however, understand if that 55 were to go entirely to the airport, not Ryanair, but I don't think that's how it works (correct me if I'm wrong). It seemed like they wanted to own my face more than my 55 euros, so it must be that they would earn much more from my face than from my wallet. I don't want to allow that. I assume that, when applying to the facial recognition option, I would need to accept a specific ToS allowing them to store and sell my pretty little face around. I can't allow that. I also understand that this is a low-cost flight and they need to reach a certain earning with alternative methods (i.e. selling my face to third-party and whatnot), but since they allow to pay for the ticket AND the 55 for the check-in then that sum must cover the whole thing and it must be the non-low-cost full price. Why then would I sell you my face allowing you to use me to make much more money than you should? For the commodity of doing the verification from my couch in 2 minutes? That's not enough for me to sell myself, and neither should it be for anyone else (who has some, if not pride, then self-respect).

The whole picture looks a bit manipulative to me and I'd rather waste the money I spent on the two-way ticket and airbnb, stay home and never have anything to do with Ryanair.

2108
2109
2110
 
 

publicado de forma cruzada desde: https://lemmy.ca/post/4644932

Hi all, I'm looking for some Discord alternatives. All I really need is the ability to do voice calls and screen shares. It can be either via DM or channels, I only need to it be able to speak with a few friends that'd be open to moving over. I've tried Matrix/Element but there doesn't seem to be a screen share function. There's Teamspeak but I don't think that's FOSS nor does it support screen shares as well. Any other options? Basically just voice calls and screen shares is all I need, I couldn't care about channels or servers or whatever other functionalities Discord has put into their app. Thanks!

2111
2112
 
 

We're happy to announce that, for the first time ever, BusKill cables can be purchased in-person in Leipzig, Germany.

[BusKill] Our Dead Man Switch Magnetic USB Breakaway cables are NowAvailable in-person in Leipzig, Germany atProxyStore

The BusKill project has partnered with ProxyStore to make BusKill laptop kill cords finally available from a brick-and-mortar location. You can now go to the following location and purchase a BusKill cable with cash or cryptocurrency.

Bernhard-Göring-Straße 162
04277 Leipzig
Germany

About BusKill

BusKill is a laptop kill-cord. It's a USB cable with a magnetic breakaway that you attach to your body and connect to your computer.

What is BusKill? (Explainer Video)
Watch the BusKill Explainer Video for more info youtube.com/v/qPwyoD_cQR4

If the connection between you to your computer is severed, then your device will lock, shutdown, or shred its encryption keys -- thus keeping your encrypted data safe from thieves that steal your device

About ProxyStore

ProxyStore has, among other things, a proxy ordering service where you can:

  1. order items from the Internet anonymously,
  2. pay anonymously, and
  3. get the goods forwarded to you (by mail) or pick them up (in-store)

ProxyStore accepts cash in-store or anonymously via-mail (20 fiat currencies accepted), cryptocurrencies (Monero and Bitcoin), bank transfers, Paypal and more. In addition to their ordering services, ProxyStore offers key community services at its physical location in Leipzig, including high-security paper shredding (P-7/F-3), MIC-free printing, and a cabinet with TAILS for anonymous Internet surfing.

Resellers welcome!

If you operate a shop selling open-source security hardware and you'd like to sell BusKill cables, please contact us about our wholesale pricing :)

Buy BusKill in-person in Germany

Order at shop.proxysto.re or stop by in-store to purchase a BusKill cable.

Bitcoin, monero, and fiat (cash) are all accepted payment methods at ProxyStore.

Stay safe,
The BusKill Team
https://www.buskill.in/
http://www.buskillvampfih2iucxhit3qp36i2zzql3u6pmkeafvlxs3tlmot5yad.onion

2113
 
 

So, I've started my own Lemmy instance. The main issue is that right now, I am the only user, which makes it pretty easy for anyone to see what kinds of communities I visited, or am subscribed to. Is there any way to automate creation of some amount of accounts, and subscribing to random communities?

2114
 
 

The new fairphone 5 came out, it looks cool but the price is really, really high..

If it's a phone that can really last 10 years it could be good, but is that true? Is it worth it? I could get the one with /e/os from Murena because i want a degoogled phone with a bootloader locked, but is it usable on a daily basis?

2115
 
 

I'm a music producer, so I'm stuck with Macos because of Logic Pro, which is used by my coworkers. There's no chance they change it for a FOSS option. I know Asahi linux is out there but my M1 computer only has like 250Gb (which isnt a problem for me because I store all my logic projects an external hard drive , but I guess if Asahi an option for me. I also tried running Fedora virtualized on UTM, which runs not bad. Do you guys think that its safe to use UTM Fedora as my daily driver, and for important things like university work and my dissertstion? Or is it worth trying dual boot Asahi even if I only have 250Gb storage?

2116
 
 

Looking for some help with my Oneplus Nord CE3 Lite. I have had this phone for a couple months and looking to harden this phone make it a safe privacy friendly phone and avoid the constant monitoring and spying and being tracked and monitored. I want to limit the surveillance and monitoring best i can with this phone. Not interested in CUSTOM ROM and there isnt any available for my phone right now. So what is my options without that and how do i make this a safe phone?

Thanks

2117
 
 

Hello, I'm using WhonixOS in Virtual Box on a device running Windows 11, but always when I try to double click icons it's not detected. Only when I double click extremtly fast it gets detected, I already changed the settings in WhonixOS but that has no effect.

2118
2119
 
 

Hi guys!

So far I've been using Mi-Bands for a long time, and have been less happy each time with their increasingly frustrating pairing experience. All of course due to Xiaomi's encription key mechanism. My current Mi Band 6 is dying a bit too early due to failing battery, and I'm now looking for another band. Which ones would you recommend?

I also tested the Pinetime, of which I have one. Notifications do work, but alas, at this moment it doesn't have multiple sync-able alarms, nor reminders. At this moment only one alarm works, and only setting it via a clunky UI in the watch. So, until this works, is there any good alternative out there? My main needs are time, seeing message notifications at a glance, and setting multiple alarms and reminders for different things in a day. So far Mi Band does these well, but the pairing and the need to use their damn Zepp app the first pairing time is a bit frustrating.

Thanks!

2120
2121
 
 

Looking for an answer more detailed than just switch to pixel and use graphene or calyx.

What are the recommended changes to use in the Settings App to make Apple more secure and private? Should I just use the Safari browser due to all the browsers being the same as they all use WebKit

I'm looking for suggested changes to staying minimal but increasing privacy and security on iPhone

2122
2123
 
 

Hi guys. So I'm wondering, is it safe(privacy wise) to integrate my google account into my GNOME desktop, only giving mail and calendar permissions to it? It's nice to have my calendar events into my top bar. (Please give technical answers)

2124
 
 

This question is especially for those who have used or are using online dating to meet new people, form relationships, hook up, etc. How do y’all balance the (online) dating scene with your own level of concern regarding privacy/security?

For example, some of these concerns may be that many dating apps are owned by a few companies, dating apps sometimes require linking to sensitive information (real phone number, google accounts, pictures, …), or that they can have vary intrusive trackers, etc

What are the steps you have made to address these concerns, if you have them? Or what are the compromises you have made? How successful are these attempts?

Let me start sharing first (in broad-stroke) about my personal experience. I’m mostly concerned with how my data are handled, transferred between, and used by different services. My concerns usually make using these apps much harder, sometimes even impossible, for example I’m hesitant to share my real phone number to sign up, and I’d prefer to limit my gmail use when possible. But that has also limited my opportunity to meet people online. Though honestly, such interactions have not been meaningful.

I’ve stopped for a while now but thinking of getting back. Just want some perspective on whether it’s worth it, and how I should orient myself with the tradeoffs.

2125
 
 

I have this bad feeling daily that for whatever reason I loose access to my gmail. Don't think of anything shady but simply I just loose it. There is a very small chance to it but still. You can read the stories that people uploaded their family photos to google drive and the algorithm marks their kids photos CP and they loose their account. Or maybe your email is used to spam or anything similar. There is no way to talk to google support, it is an endless loop of help pages. I just can't live with this. I know billions of people do, but I cannot. My email address is registered to hundreds of websites including government and banking sites. You could literally destroy me financially or other ways by just gaining login to my gmail. Google could cause me HUGE problems by locking me out. I decided to start transitioning to an email with my own domain. I have the doimain, I have the email client setup. So what do you do with your existing stuff? Most websites dont even let you change the email. I have to take appointment in government offices to change my email. It seems like a giant task.

Have anyone took this leap?

view more: ‹ prev next ›