Jonkman Microblog
  • Login
Show Navigation
  • Public

    • Public
    • Network
    • Groups
    • Popular
    • People

Notices by Micah Lee πŸ”‘ (micahflee@mastodon.social), page 7

  1. Micah Lee πŸ”‘ (micahflee@mastodon.social)'s status on Wednesday, 14-Nov-2018 16:48:58 EST Micah Lee 🔑 Micah Lee πŸ”‘

    Fuck Facebook, btw

    In conversation Wednesday, 14-Nov-2018 16:48:58 EST from mastodon.social permalink
  2. Micah Lee πŸ”‘ (micahflee@mastodon.social)'s status on Monday, 12-Nov-2018 12:05:19 EST Micah Lee 🔑 Micah Lee πŸ”‘

    Hacking Team Hacker Phineas Fisher Has Gotten Away With It

    Leaked court documents show that Italian authorities have no idea who hacked the government spyware maker Hacking Team, and a judge ruled the investigation should be shut down.
    https://motherboard.vice.com/en_us/article/3k9zzk/hacking-team-hacker-phineas-fisher-has-gotten-away-with-it

    In conversation Monday, 12-Nov-2018 12:05:19 EST from mastodon.social permalink

    Attachments

    1. Hacking Team Hacker Phineas Fisher Has Gotten Away With It
      from Motherboard
      Leaked court documents show that Italian authorities have no idea who hacked the government spyware maker Hacking Team.
  3. Federated Republic of Sean (freakazoid@retro.social)'s status on Tuesday, 30-Oct-2018 23:52:00 EDT Federated Republic of Sean Federated Republic of Sean
    • Micah Lee πŸ”‘
    • Tuxicoman πŸ†“ πŸ₯
    • Joop Kiefte (LaPingvino)

    @lapingvino @micahflee @tuxicoman Signal uses Curve25519, which was developed by Dan Bernstein, who does not work for the US government.

    The notion that home-grown crypto is going to be safer than widely analyzed crypto from well-known cryptographers is utter nonsense.

    In conversation Tuesday, 30-Oct-2018 23:52:00 EDT from retro.social permalink Repeated by micahflee
  4. Micah Lee πŸ”‘ (micahflee@mastodon.social)'s status on Tuesday, 30-Oct-2018 21:08:51 EDT Micah Lee 🔑 Micah Lee πŸ”‘
    • Tuxicoman πŸ†“ πŸ₯
    • Federated Republic of Sean
    • Joop Kiefte (LaPingvino)

    @tuxicoman @lapingvino @freakazoid

    There's nothing closed source in the official build.

    Personally I'd like Signal in F-Droid. But I think Moxie's argument is that secure software delivery is hard, releasing to two app stores introduces complexity, and F-Droid doesn't give analytics or crash reports. In the end, I think he just doesn't care much because only a tiny (but loud) fraction of the user base doesn't have the Play Store

    In conversation Tuesday, 30-Oct-2018 21:08:51 EDT from mastodon.social permalink
  5. Micah Lee πŸ”‘ (micahflee@mastodon.social)'s status on Tuesday, 30-Oct-2018 20:11:49 EDT Micah Lee 🔑 Micah Lee πŸ”‘
    • Tuxicoman πŸ†“ πŸ₯
    • Federated Republic of Sean
    • Joop Kiefte (LaPingvino)

    @tuxicoman @freakazoid @lapingvino

    That's not true though.

    You can build Signal from source if you want, or download the apk from https://signal.org/android/apk/ instead of the Play Store, and it runs fine on phones that don't have Google Play Services, or even any proprietary software.

    In conversation Tuesday, 30-Oct-2018 20:11:49 EDT from mastodon.social permalink
  6. Micah Lee πŸ”‘ (micahflee@mastodon.social)'s status on Tuesday, 30-Oct-2018 17:07:45 EDT Micah Lee 🔑 Micah Lee πŸ”‘

    "That’s why we atΒ TwilioΒ banned not just hate speech, but any organization whose primary purpose is spreading hate. It’s in our control to decide who uses our product, and from whom we take money. We choose not to profit from this hatred, or those who spread it."
    https://medium.com/@jeffiel/words-matter-and-theyre-destabilizing-the-american-tribe-afaba172e4d1

    In conversation Tuesday, 30-Oct-2018 17:07:45 EDT from mastodon.social permalink

    Attachments

    1. File without filename could not get a thumbnail source.
      Words matter, and they’re destabilizing the American tribe
      from Medium
      Yesterday, a domestic terrorist killed 11 while they were steeped in prayerβ€Šβ€”β€Šbecause they are Jewish. The killer yelled β€œKill all the…
  7. Micah Lee πŸ”‘ (micahflee@mastodon.social)'s status on Tuesday, 30-Oct-2018 14:38:47 EDT Micah Lee 🔑 Micah Lee πŸ”‘
    • XXIII XLII

    @2342 it can read the ID of the recipient. But it can't read the ID of the sender. Once the recipient receives it, they decrypt it and then only they can see the ID of the sender.

    In conversation Tuesday, 30-Oct-2018 14:38:47 EDT from mastodon.social permalink
  8. Micah Lee πŸ”‘ (micahflee@mastodon.social)'s status on Tuesday, 30-Oct-2018 13:44:02 EDT Micah Lee 🔑 Micah Lee πŸ”‘

    New Signal privacy feature removes sender ID from metadata
    https://arstechnica.com/information-technology/2018/10/new-signal-privacy-feature-removes-sender-id-from-metadata/

    In conversation Tuesday, 30-Oct-2018 13:44:02 EDT from mastodon.social permalink

    Attachments

    1. New Signal privacy feature removes sender ID from metadata
      from Ars Technica
      Just-announced beta seals sender details inside encrypted envelope.
  9. Micah Lee πŸ”‘ (micahflee@mastodon.social)'s status on Tuesday, 30-Oct-2018 11:42:08 EDT Micah Lee 🔑 Micah Lee πŸ”‘
    • Tuxicoman πŸ†“ πŸ₯
    • Federated Republic of Sean
    • Joop Kiefte (LaPingvino)

    @lapingvino @freakazoid @tuxicoman Telegram doesn't use end-to-end encryption by default

    In conversation Tuesday, 30-Oct-2018 11:42:08 EDT from mastodon.social permalink
  10. Micah Lee πŸ”‘ (micahflee@mastodon.social)'s status on Monday, 29-Oct-2018 21:11:05 EDT Micah Lee 🔑 Micah Lee πŸ”‘
    • Aadil Ayub

    @aadilayub
    This new feature, "sealed sender", basically encrypts the "from" part of the metadata to the recipient, so the server can instead only see the "to" part.

    This makes it so the metadata the server can see is just who is receiving messages, without being able to know who is sending them.

    It means users will no longer have to trust that Signal is complying with it's privacy policy. Instead, Signal is making it impossible for them to access it.

    In conversation Monday, 29-Oct-2018 21:11:05 EDT from mastodon.social permalink
  11. Micah Lee πŸ”‘ (micahflee@mastodon.social)'s status on Monday, 29-Oct-2018 21:08:25 EDT Micah Lee 🔑 Micah Lee πŸ”‘
    • Aadil Ayub

    @aadilayub well it most likely doesn't.

    When you send a message, the connection between your phone and the server is encrypted with TLS, so people spying on the network can't see metadata. Once it hits the server, it can see who the message is from and to. It uses this to route your message to the right user. Signal promises to not log the metadata to disk, and there's strong legal evidence that they're telling the truth.

    But still, you have to trust them.

    1/x

    In conversation Monday, 29-Oct-2018 21:08:25 EDT from mastodon.social permalink
  12. Micah Lee πŸ”‘ (micahflee@mastodon.social)'s status on Monday, 29-Oct-2018 18:49:06 EDT Micah Lee 🔑 Micah Lee πŸ”‘
    • Tuxicoman πŸ†“ πŸ₯
    • Bob Mottram πŸ”§ β˜• βœ…
    • Joop Kiefte (LaPingvino)

    @bob @tuxicoman @lapingvino

    I don't think it's completely solved because of user IPs and timing correlation attacks, but it's the first step to solving it in a scalable way

    In conversation Monday, 29-Oct-2018 18:49:06 EDT from mastodon.social permalink
  13. Micah Lee πŸ”‘ (micahflee@mastodon.social)'s status on Monday, 29-Oct-2018 18:43:18 EDT Micah Lee 🔑 Micah Lee πŸ”‘
    • Tuxicoman πŸ†“ πŸ₯
    • Joop Kiefte (LaPingvino)

    @lapingvino @tuxicoman

    But once it's released and everyone updates their apps, every Signal user will be using that feature.

    In conversation Monday, 29-Oct-2018 18:43:18 EDT from mastodon.social permalink
  14. Micah Lee πŸ”‘ (micahflee@mastodon.social)'s status on Monday, 29-Oct-2018 18:38:05 EDT Micah Lee 🔑 Micah Lee πŸ”‘
    • Tuxicoman πŸ†“ πŸ₯
    • Joop Kiefte (LaPingvino)

    @lapingvino @tuxicoman

    So you think it's better that they don't work on encrypting metadata?

    I'm just confused by your arguments. Can you use specific examples of when when Signal has communicated something unclearly?

    In conversation Monday, 29-Oct-2018 18:38:05 EDT from mastodon.social permalink
  15. Micah Lee πŸ”‘ (micahflee@mastodon.social)'s status on Monday, 29-Oct-2018 18:37:00 EDT Micah Lee 🔑 Micah Lee πŸ”‘
    • Tuxicoman πŸ†“ πŸ₯
    • Joop Kiefte (LaPingvino)

    @lapingvino @tuxicoman what do you mean "client-side calling code"? Are you referring to all this webrtc code for voice calls? https://github.com/signalapp/Signal-Android/tree/master/src/org/thoughtcrime/securesms/webrtc

    Signal is very well designed and easy to use, and secure for what it tries to do: end-to-end encrypted replacement for unencrypted SMS and voice calls.

    It's not the right tool for every situation, but like, it's pretty awesome.

    In conversation Monday, 29-Oct-2018 18:37:00 EDT from mastodon.social permalink
  16. Micah Lee πŸ”‘ (micahflee@mastodon.social)'s status on Monday, 29-Oct-2018 18:26:56 EDT Micah Lee 🔑 Micah Lee πŸ”‘
    • Tuxicoman πŸ†“ πŸ₯
    • Joop Kiefte (LaPingvino)

    @lapingvino @tuxicoman

    What part of Signal isn't open source? Here is the server code https://github.com/signalapp/Signal-Server

    Signal doesn't have a business model. It's not a business, it's a non-profit funded by a billionaire. It doesn't have ads, sell (or collect) data, etc.

    One thing I appreciate about the Signal project is they don't make claims about security that aren't true.

    Projects like bitmessage are great, but really need to prioritize UX if they want to be accessible outside of a tiny niche.

    In conversation Monday, 29-Oct-2018 18:26:56 EDT from mastodon.social permalink
  17. Micah Lee πŸ”‘ (micahflee@mastodon.social)'s status on Monday, 29-Oct-2018 17:47:06 EDT Micah Lee 🔑 Micah Lee πŸ”‘
    • Tuxicoman πŸ†“ πŸ₯
    • Joop Kiefte (LaPingvino)

    @tuxicoman @lapingvino

    yeah, what are you referring to?

    In conversation Monday, 29-Oct-2018 17:47:06 EDT from mastodon.social permalink
  18. Micah Lee πŸ”‘ (micahflee@mastodon.social)'s status on Monday, 29-Oct-2018 14:35:28 EDT Micah Lee 🔑 Micah Lee πŸ”‘

    Mastodons have big mouths

    In conversation Monday, 29-Oct-2018 14:35:28 EDT from mastodon.social permalink
  19. Micah Lee πŸ”‘ (micahflee@mastodon.social)'s status on Monday, 29-Oct-2018 14:33:06 EDT Micah Lee 🔑 Micah Lee πŸ”‘

    Signal is testing out a new feature that encrypts message metadata. Once it's widely deployed, their server will facilitate delivering messages but without having access to who is sending them

    https://signal.org/blog/sealed-sender/

    In conversation Monday, 29-Oct-2018 14:33:06 EDT from mastodon.social permalink
  20. Micah Lee πŸ”‘ (micahflee@mastodon.social)'s status on Friday, 26-Oct-2018 12:40:22 EDT Micah Lee 🔑 Micah Lee πŸ”‘

    Supermicro hack stickers at BSides PDX lol

    In conversation Friday, 26-Oct-2018 12:40:22 EDT from mastodon.social permalink
  • After
  • Before
  • Help
  • About
  • FAQ
  • TOS
  • Privacy
  • Source
  • Version
  • Contact

Jonkman Microblog is a social network, courtesy of SOBAC Microcomputer Services. It runs on GNU social, version 1.2.0-beta5, available under the GNU Affero General Public License.

Creative Commons Attribution 3.0 All Jonkman Microblog content and data are available under the Creative Commons Attribution 3.0 license.

Switch to desktop site layout.