Show more

@switchingsocial@mastodon.at @manyver_se so it only works over tor and Bluetooth?

We also have plans to update the about config and fingerprinting section on this page, for this we will be collaborating with thorin-oakenpants from ghacks.js project.

Show thread

Dear PTIO community: after quite some work in the last few days, we are proud to show you our new browser recommendations! We now list recommendations for desktop Android and iOS!

See for yourself:privacytools.io/browsers/#brow

Greetings, the PTIO team

@infosechandbook@mastodon.at @sheogorath this is always what annoys me when people just argue"just run your own server its easy". No, it is not, there is a reason why being a systems administrator is a job.

Big chance that our new browser recommendations will be up tonight, can't wait to show what we have been working on!

@kyle these days, how bad an exploit is doesn't matter, only how fancy the name is, like meltdown and spectre.

@kravietz *made the account invisible and have it flagged "user deleted"* FTFY ;)

@gro kodachi is kinda shady, the also don't seem to ha e a proper security model, they just add security tool upon Security tool and hope it turn out well. I would most certainly avoid, especially their suspicious VPN.

Wow…

So electron improved their security features with the recent version 5, but by doing this broke tons of applications because they either need User Namespaces or an SUID executeable (to launch proper isolated subprocesses).

#Signal Desktop noticed this problem and as well and "fixed" it in the worst way possible:

github.com/signalapp/Signal-De

On the other hand #Riot Desktop did a proper fix, which enables an SUID bit on this binary: github.com/vector-im/riot-web/

#infosec #security #linux

After @blacklight447 asked about my opinion on #OnlyKey, I looked at their docs once more.

I remembered that they didn't convince me last time, I saw them, but I took the time now to write down a short analysis of what I figured out from their docs about the security status of this "Hardware password manager".

github.com/privacytoolsIO/priv

I really hope they proof me wrong, otherwise, it's a dumpster fire.

#infosec #security #hardware

What is browser fingerprinting? How is it used? What is Tor Browser doing against it? Find out in this guest post by Pierre Laperdrix

"Any script running in your browser can silently build a fingerprint of your device without you even knowing about it."
blog.torproject.org/browser-fi

@kyle fingerprints should be used as identification, not authentication.

@danarel @kev how is using a tool that used by someone else with a different opinion spreading racism. Racist also use cars, should we also stop using cars now?

@danarel @kev for you, for me its just an easy to use tool that's privacy friendly.

@kev I advise newpipe on mobile and freetube on desktop. If you want something web based, I advise looking at invidio.us

Show more
Mastodon 🔐 privacytools.io

Fast, secure and up-to-date instance. PrivacyTools provides knowledge and tools to protect your privacy against global mass surveillance.

Website: privacytools.io
Matrix Chat: chat.privacytools.io
Support us on OpenCollective, many contributions are tax deductible!