@jonah@neat.computer
@jonah@neat.computer avatar

jonah

@jonah@neat.computer

Founder https://mastodon.neat.computer/@privacyguides, podcast co-host https://social.lol/@techlore, infosec educator. โ€ข Instance admin @ https://mstdn.party, https://mstdn.plus, and https://neat.computer

Want to support my work on #MstdnParty or any other project? A tip at https://ko-fi.com/jonaharagon would be hugely appreciated ๐Ÿ˜Ž

Minneapolis, MN, USA | he/him :bisexual_flag:

This profile is from a federated server and may be incomplete. Browse more on the original instance.

jonah, to random
@jonah@neat.computer avatar

Does anyone remember https://last-chance-for-eidas.org/?

Because eIDAS 2.0 passed in the EU last month without much note from... anyone. EFF, Mozilla, etc. (https://eur-lex.europa.eu/eli/reg/2024/1183/oj)

It appears to have the exact same text that the @eff was originally concerned about.

I'm not a lawyer so uh, is this something we're concerned about? ๐Ÿค”

Providers of web-browsers shall not take any measures contrary to their obligations set out in Article 45, in particular the requirements to recognise qualified certificates for website authentication and to display the identity data provided in a user-friendly manner.

BrodieOnLinux, to random
@BrodieOnLinux@linuxrocks.online avatar

YouTube actually added a good feature for once, you can now set 3 thumbnails for a video and it will automatically A/B test them for you, you could already do this manually but this massively stream lines the process.

jonah,
@jonah@neat.computer avatar

@BrodieOnLinux still waiting for this feature on my channels

nateb, to random
@nateb@mastodon.thenewoil.org avatar

I just learned and confirmed that MySudo is censoring profanity in messages. I have reason to believe it's not them, but actually their carrier (Twilio).

What the actual fuck?

jonah,
@jonah@neat.computer avatar

@nateb have you confirmed on multiple carriers? because that sort of censorship also happens on the receiving end (T-Mobile comes to mind in particular)

jonah, to random
@jonah@neat.computer avatar

If @protonprivacy is serious about the recovery email/numbers being optional, they should remove this non-dismissable (dark pattern) warning in their settings tbh

It's even worse now that it shows an orange dot on the security center sidebar icon in the inbox as well, there's no escape! Let me accept the risk!

jonah,
@jonah@neat.computer avatar

@ThePrivacyWayfinder well it also shows up in the inbox, I guess unless you hide the sidebar (which I use for the calendar)

jonah,
@jonah@neat.computer avatar

@protonprivacy thatโ€™d be awesome ๐Ÿ˜„

jonah,
@jonah@neat.computer avatar

@blakeashleyjr I would not assume the recent case is the only reason people donโ€™t want to provide a recovery email.

I trust Proton with my security, and I donโ€™t want to additionally trust a third party email provider with my Proton account security as well, so having a recovery email would be pointless. I should be able to avoid the recovery options entirely without being nagged to add one in multiple locations throughout the Proton interface. I think Proton will improve this though. This has nothing to do with courts and governments ๐Ÿคทโ€โ™‚๏ธ

@protonprivacy

jonah,
@jonah@neat.computer avatar

@dieTasse and when an actual security alert shows up in my sidebar Iโ€™ll just be trained to ignore it?

Itโ€™s unacceptable when anti-privacy companies nag you to enable telemetry and whatever constantly, and itโ€™s equally unacceptable for pro-privacy companies like Proton to nag you constantly when you decide not to add plaintext metadata to your account. Proton isnโ€™t exempt from basic standards by virtue of being Proton. And itโ€™s a simple fix, because they can just add an ignore button to the notification.

protonprivacy, to random
@protonprivacy@mastodon.social avatar

deleted_by_author

  • Loading...
  • jonah,
    @jonah@neat.computer avatar

    @doomy how would @protonprivacy โ€œun-hashโ€ it if they needed to send you a recovery email? A hash is one way.

    All they can do is encrypt it (which Iโ€™m sure they do), but in that case theyโ€™ll have the keys to decrypt it like they did here.

    jonah,
    @jonah@neat.computer avatar

    @jik asking people whoโ€™ve forgotten their password to remember their recovery email seems like a very bad move.

    @AIBrain @doomy @protonprivacy

    delta, to random
    @delta@chaos.social avatar

    Delta Chat is an in-between project: often ignored as a messenger by e-mail companies/experts and then ignored by messenger companies/experts because of its use and interoperability with e-mail. As Heinz von Foerster once said: "If you are doing something genuinely new then don't ask the experts. If you do something that has already been done, then, by all means, ask the experts." FWIW many experts have verified Delta Chat's security mechanics https://delta.chat/en/help#security-audits :)

    jonah,
    @jonah@neat.computer avatar

    @delta so, speaking of interoperability: how come thereโ€™s still no WKD support in Delta Chat? Surely encryption interoperability with @protonprivacy (which is arguably one of, if not the biggest contributors to email encryption ever) would be a huge boon for this app.

    I just downloaded DC and was surprised to find no automatic encryption with Proton, no way to even add a PGP key to a Proton contact manually, and no functioning notifications (iOS). Kind of a tough sell :(

    feld, to random
    @feld@bikeshed.party avatar

    @delta is it supported to self-host an email server for Delta Chat and have functional push notifications with the iOS app?

    jonah,
    @jonah@neat.computer avatar

    @feld I received a notification once today with this setup (when I should have... more than once), so it seems to be intermittent.
    @delta https://discuss.privacyguides.net/t/delta-chat-email-client/18239/4

    jonah,
    @jonah@neat.computer avatar

    @feld I think you are right. Good question whether this connectivity status would be green on any provider.
    @delta

    jonah, to random
    @jonah@neat.computer avatar

    Iโ€™m glad Appleโ€™s iPad Pro marketing video is getting the hate it deserves, I was sad watching that during the event. That arcade cabinet looked pretty neat.

    jonah,
    @jonah@neat.computer avatar
    jonah, (edited ) to random
    @jonah@neat.computer avatar

    Finally the 11" iPad Pro has a usable display, instead of limiting that to the gigantic version. Very tempting ๐Ÿ‘€

    tek, to random
    @tek@freeradical.zone avatar

    Nightmarish question of the morning: "Have you ever asked ChatGPT about yourself?"

    Now I have. I don't like this. I don't like this one bit.

    jonah,
    @jonah@neat.computer avatar

    @tek @nateb this is going to be the new hot SEO thing for sure, I just asked it โ€œwho is Jonah Aragonโ€ and it replied with a paragraph of things I wrote in my own bios, word for word. Everyone with SEO knowledge will be gaming this system.

    jonah, to random
    @jonah@neat.computer avatar

    I didnโ€™t think those eBay cyberstalkers could be one-upped, but now Iโ€™m pretty sure weโ€™re going to find out some Boeing execs decided to take matters into their own hands and assassinate those whistleblowers. I wonder how long itโ€™ll be before some evidence comes out ๐Ÿ™ƒ

    jonah, to random
    @jonah@neat.computer avatar

    As an early adopter and proponent of Passkeys, it pains me to say I completely agree with this blog post. The UX of Passkeys is completely terrible and itโ€™s become crystal clear that Apple and Google have no intention of improving it. I canโ€™t imagine recommending a regular person adopt passkeys, I donโ€™t think that will ever change, and even Iโ€™ve frequently found myself opting for a regular password + MFA on websites when given the option ๐Ÿ˜ข

    https://fy.blackhats.net.au/blog/2024-04-26-passkeys-a-shattered-dream/

    ernie, to random
    @ernie@writing.exchange avatar

    Ben Collins, one of our best disinfo reporters, going to The Onion to become its CEO is my favorite story of the year.

    jonah,
    @jonah@neat.computer avatar

    @ernie extremely funny how (notorious herb) Jim Spanfeller tries to take credit for the new owners keeping on the existing Onion staff in Chicago in his memo

    jonah, to random
    @jonah@neat.computer avatar
    jonah, to ghost
    @jonah@neat.computer avatar

    I'm excited about this news. My only question is regarding this dashboard they're expanding. They say you'll be able to follow other Ghost blogs in a unified dashboard in your own Ghost blog, which is awesome.

    What about people who don't have a Ghost blog themselves, but want to follow Ghost blogs in this same way?

    Will they be told to sign up for a free (centralized) ghost.org account? Will they be told to sign up for something else entirely, like Mastodon?

    https://activitypub.ghost.org/

    gs, to random
    @gs@fosstodon.org avatar

    I'm curious to hear from the really opinionated people about the pros and cons of using Cloudflare.

    jonah,
    @jonah@neat.computer avatar

    @gs pro: they are the only affordable option if you are experience a DDoS attack to my knowledge. https://discuss.privacyguides.net/t/what-do-you-guys-think-of-crimeflare-decloudflare/17480/8

    jonah, to random
    @jonah@neat.computer avatar

    Theyโ€ฆ made an attempt, I guess? Feels like thereโ€™s a better way to handle this situation lol

    jonah, to random
    @jonah@neat.computer avatar

    Excuse me, what? Drug companies can just decide how theyโ€™re regulated based on how they market their product? The US is so fucked up.

    This story about a company marketing a cavity prevention drug as a cosmetic because safety trials would be too expensive is insane to me ๐Ÿ˜ณ

    https://mastodon.social/@arstechnica/112303166081124234

  • All
  • Subscribed
  • Moderated
  • Favorites
  • โ€ข
  • megavids
  • thenastyranch
  • magazineikmin
  • InstantRegret
  • everett
  • osvaldo12
  • Youngstown
  • mdbf
  • slotface
  • rosin
  • kavyap
  • Durango
  • ngwrru68w68
  • GTA5RPClips
  • JUstTest
  • DreamBathrooms
  • khanakhh
  • Leos
  • cisconetworking
  • ethstaker
  • modclub
  • tester
  • cubers
  • tacticalgear
  • provamag3
  • normalnudes
  • anitta
  • lostlight
  • All magazines