Privacy

3991 readers
5 users here now

A community for Lemmy users interested in privacy

Rules:

  1. Be civil
  2. No spam posting
  3. Keep posts on-topic
  4. No trolling

founded 1 year ago
MODERATORS
1
 
 
2
 
 

🇬🇧🚨#ChatControl is back on the agenda: As soon as next Wednesday representatives of EU governments will resume work based on a secret document. https://www.consilium.europa.eu/en/documents-publications/public-register/public-register-search/?DocumentNumber=12319%2F24

This is what you can do now to help: https://www.patrick-breyer.de/en/take-action-to-stop-chat-control-now/

3
21
submitted 1 week ago* (last edited 1 week ago) by [email protected] to c/[email protected]
 
 

Git records the local timezone when a commit is made [1]. Knowledge of the timezone in which a commit was made could be used as a bit of identifying information to de-anonymize the committer.

Setting one's timezone to UTC can help mitigate this issue [2][3] (though, ofc, one must still be wary of time-of-day commit patterns being used to deduce a timezone).

References

  1. Git documentation. git-commit. "Date Formats: Git internal format". Accessed: 2024-08-31T07:52Z. https://git-scm.com/docs/git-commit#Documentation/git-commit.txt-Gitinternalformat.

    It is <unix-timestamp> <time-zone-offset>, where <unix-timestamp> is the number of seconds since the UNIX epoch. <time-zone-offset> is a positive or negative offset from UTC. For example CET (which is 1 hour ahead of UTC) is +0100.

  2. jthill. "How can I ignore committing timezone information in my commit?". Stack Overflow. Published: 2014-05-26T16:57:37Z. (Accessed: 2024-08-31T08:27Z). https://stackoverflow.com/questions/23874208/how-can-i-ignore-committing-timezone-information-in-my-commit#comment36750060_23874208.

    to set the timezone for a specific command, say e.g. TZ=UTC git commit

  3. Oliver. "How can I ignore committing timezone information in my commit?". Stack Overflow. Published: 2022-05-22T08:56:38Z (Accessed: 2024-08-31T08:30Z). https://stackoverflow.com/a/72336094/7934600

    each commit Git stores a author date and a commit date. So you have to omit the timezone for both dates.

    I solved this for my self with the help of the following Git alias:

    [alias]
    co = "!f() { \
        export GIT_AUTHOR_DATE=\"$(date -u +%Y-%m-%dT%H:%M:%S%z)\"; \
        export GIT_COMMITTER_DATE=\"$(date -u +%Y-%m-%dT%H:%M:%S%z)\"; \
        git commit $@; \
        git log -n 1 --pretty=\"Autor: %an <%ae> (%ai)\"; \
        git log -n 1 --pretty=\"Committer: %cn <%ce> (%ci)\"; \
    }; f"
    


Cross-posts:

4
 
 

cross-posted from: https://fedia.io/m/Thunderbird/t/1140808

Plan Less, Do More: Introducing Appointment By Thunderbird - The Thunderbird Blog

Thunderbird has a new project under its wing: Appointment. Learn all about our approach to appointment scheduling, and try it yourself.

5
6
 
 

cross-posted from: https://slrpnk.net/post/12736887

Just stumbled upon this project, seems rather new as my DNS blocked its domain by default for being too new hehe.. Anyone had a chance to try it yet? Its got some hefty promises, like having equally strong privacy features as Librewolf. I'll be giving it ago at least, almost sounds a bit too good to be true...

7
 
 

I'm starting to like this news outlet.

8
 
 

Hi all, I'm looking into ways to protect my privacy while using WhatsApp, particularly in a professional setting where separating personal and work-related communications is crucial. I'm thinking of buying a dual SIM phone and am considering strategies to sandbox my personal contacts, pictures, and media from those associated with my work profile on WhatsApp.

Has anyone successfully done this using two SIM cards on the same device? I'm staunchly anti-Facebook and its obtrusive privacy-related practices, so ideally I want to prevent cross-contamination of personal and work-related data, including contacts, photos, and media shared through the app. Will this be a good strategy? Are there any known risks or precautions I should take to minimize the risk of my data being shared or accessed by third parties? - Thanks all, I'd appreciate any comments.

9
 
 

Just found out about Zen Browser, has someone used it already? Its Github repository looks to be under very active development and growing fast in popularity.

Zen Browser's website claims to have features that Floorp and LibreWolf do not. I'm not that tech savy so I would know how to evaluate the browser fairly, does anyone here knows something about it?

10
 
 

noyb files two complaints against EU Parliament over massive data breach

In early May 2024, the European Parliament informed its staff of a massive data breach in the institution’s recruiting platform (called “PEOPLE”). The breach affected the personal data of more than 8,000 staff.

@privacy

https://noyb.eu/en/noyb-complaints-against-eu-parliament-over-data-breach

11
12
 
 
13
14
 
 

Recently looking into the multiple android alternative offerings like CalyxOS, e/OS/, etc and came across these few issues which point towards privacy/security concerns.

  • microG Push notifications still go through Google's servers just like with Play Services

  • microG uses proprietary Google Binaries for some of its components such as DroidGuard

  • Choosing a network location like Mozilla to use with microG provides little to no privacy benefit over Google because you are still submitting the same data and trusting them to not profile you.

Are they true and how can I circumvent them?

15
16
17
 
 

Using cheap samsung android phone, ive noticed for the last few years and so have my friends, that whatever we discuss during out signall phonecall, appears very blatantly obvious on my youtube recommended feeds.

I thought Signal was supposed to be private and automatically sandboxed?

If it is, then google clearly bend their own rules and peer into the app.

Does this happen to you? what is the explanation?

PS The Official Signal Reddit sub removed my post thread when I asked this question there.

18
 
 

Im not keen on trying to deGoogle only by purchasing a Google pixel... -_-

Please provide other options with nothing to do with google or microsoft., Such as Fairphone, etc.

As you know(or may not), new CPU's from intel have remote access hardwired, regardless of the OS you are using. I suspect Google outsmarted the GrapheneOS userbase and went one step ahead.

19
20
21
 
 

Like when I read 3 Billion National Public Data Records with SSNs, Addresses Dumped Online, am I supposed to access that data dump or something to see if I got pwned? Are there equivalents to haveibeenpwned.com for this type of stuff? Any guides on what to do when these happen? I feel like I'm doomscrolling or watching the news, and feeling depressed about the world as a result because I should be doing something but I can't or it seems like I can't.

Even though I know better than to put such personal info online, but that doesn't eliminate the odds of them getting into breaches like these, and having started to be careful about digital privacy has opened my eyes to the sad state of privacy.

22
23
24
 
 

Join the Webinar How to Protect Your Data on the Internet.

webinar

25
 
 

I tried looking for lists but didn't find any.

The Work Number is US-specific and where your employers input your salary data for future employers to see. You can opt out here: https://employees.theworknumber.com/employee-data-freeze/.

view more: next ›