public authorities "can secretly compel tech companies and individual technologists, including network administrators, sysadmins, and open source developers – to re-engineer software and hardware under their control, so that it can be used to spy on their users. Engineers can be penalized for refusing to comply with fines and prison"... sounds like a nightmare but it is reality in the #UK and #Australia https://www.eff.org/deeplinks/2018/12/new-fight-online-privacy-and-security-australia-falls-what-happens-next #eff #spy #privacy #security
This is how it (should) work: In the case of Apple’s #iMessage, #Apple would be compelled to silently add new devices to the list apps think you own: when someone sends you a message, it will no longer just go to, say, your #iPhone, your #iPad, and your #MacBook – it will go to those devices, and a new addition, a spying device owned by the government...
... With messaging systems like #WhatsApp, the approach will be slightly different: your user interface will claim you’re in a one-on-one conversation, but behind the scenes, the company will be required to silently switch you into a group chat. Two of the people in the group chat will be you and your friend. The other will be invisible, and will be operated by the government.
@bjoern Maybe. I don't really argue against that. But that doesn't change much about the fact that John Doe is by no means able to operate an infrastructure such as #mastodon or an #XMPP server in a reliable, safe, stable way. And Jane Doe isn't able to verify whether the somewhat large #FLOSS package (just looking at how large a stock #NextCloud installation is) already might contain backdoors added by developers who have been "compromised". In this case, the only way out for ...
@bjoern ... arbitrary end users would be to not use digital means of communication at all. It would make this a privilege of the few again - just like it used to be before we saw Google, Facebook or WhatsApp rise.
@bjoern Plus, if talking about a legal dimension, we won't be able to solve this using even #federated tools. How should we? The "naive" default response: Social problems can't be solved with technology. The more complex response: If a public authority doesn't want to have certain things to happen, we will see other means to regulate this. Consider regulations of #netneutrality. Consider strong laws (such as #gdpr) that make custom individual hosting potentially dangerous/unsafe. Maybe ...
@bjoern ... some of the "technical" challenges for end-users could be solved by focussing on real peer-to-peer solutions (such as a social network or a messenger not relying upon centralized servers but rather on local apps / clients synchronizing with "each other"). But even such an approach could easily be blocked by legal means, at the lowest level by strictly regulating ISPs.
@strypey Yes, that's how I see things as well. It's a legal aspect. We need organizations such as the #EFF, the #FSF / #FSFE, #Mozilla and others to stand up and play the political playground. Technology won't save us here. Likewise, however, we need to make sure we focus on the most important things first (that's why, these days, I'm pretty often irritated to see people out here bashing #Mozilla or the #EFF to just be "whitewashing" for big IT giants --- divide and conquer again).
@wim_v12e Yes, maybe these are good ideas. I don't really know whether these issues could be handled entirely technologically. Maybe a mixture of stronger cryptography, anonymizing network services and P2P networks *could* help around some of these. But in the end, I'm afraid there always will be easy-to-access weak points in these systems. ISPs. End-user facing operating systems. App stores. Browser manufacturers. 😐
Server run by the main developers of the project It is not focused on any particular niche interest - everyone is welcome as long as you follow our code of conduct!