101010.pl is one of the many independent Mastodon servers you can use to participate in the fediverse.
101010.pl czyli najstarszy polski serwer Mastodon. Posiadamy wpisy do 2048 znaków.

Server stats:

487
active users

#encryption

12 posts11 participants0 posts today

Some unrelated facts. (1/2)

(1) The UK and US are in dispute regarding attacks on #encryption (and the US is on the right side of the argument)
(2) The main protagonist within the US government expressing outrage is JD Vance, according to reports
(3) The UK wants to compromise with the US
(4) JD Vance is holidaying in the UK, and spending some time in the Cotswolds
(5) Chipping Norton is 30 miles from Cheltenham, where GCHQ is based

This could all be coincidence of course

For those who have InfoSec, privacy, security, and/or related technology expertise…

Would you use Bitchat?

(Feel free to elaborate in the comments and/or boost if you’d like to see the opinion of others.)

Replied in thread

@stman @Sempf @LaF0rge yes.

Because physical SIMs, like any "cryptographic chipcard" (i.e. @nitrokey ) did all that fancy public/private crypto on silicon and unless that was compromizeable (which AFAICT always necessistated physical access to the #SIM, espechally in pre-#OMAPI devices) the SIM wasn't 'cloneable' and the weakest link always had been the #MNO /.#MVNO issueing (may it be through #SocialHacking employees into #SimSwapping or LEAs showng up with a warrant and demanding "#LawfulInterception"):

Add to that the regression in flexibility:

Unlike a #SimCard which was designed as a vendor-independent, #MultiVendor, #MultiProvider, device agnostic unit to facilitate the the #authentification and #encryption in #GSM (and successor standards), #eSIMs act to restrict #DeviceFreedom and #ConsumerChoice, which with shit like #KYC per #IMEI (i.e. #Turkey demands it after 90 days of roaming per year) und #lMEI-based #Allowlisting (see #Australia's shitty #VoLTE + #2G & #3G shutdown!) are just acts to clamp down on #privacy and #security.

  • And with #EID being unique per #eSIM (like the #IMEI on top!) there's nothing stopping #cyberfacist regimes like "P.R." #China, #Russia, #Iran, ... from banning "#eSIMcards" (#eSIM in SIM card form factor) or entire device prefixes (i.e. all phones that are supported by @GrapheneOS ), as M(V)NOs see the EID used to deploy/activate a profile (obviously they don't want people to activate eSIMs more than once, unless explicitly allowed otherwise.

"[…] [Technologies] must always be evaluated for their ability to oppress. […]

  • Dan Olson

And now you know why I consider a #smartphone with eSIM instead of two SIM slots not as a real #DualSIM device because it restricts my ability to freely move devices.

  • And whilst German Courts reaffirmed §77 TKG (Telco Law)'s mandate to letting people choose their devices freely, (by declarong #fees for reissue of eSIMs illegal) that is only enforceable towards M(V)NOs who are in #Germany, so 'good luck' trying to enforce that against some overseas roaming provider.

Thus #Impersonation attacks in GSM-based networks are easier than ever before which in the age of more skilled than ever #Cybercriminals and #Cyberterrorists (i.e. #NSA & #Roskomnadnozr) puts espechally the average #TechIlliterate User at risk.

  • I mean, anyone else remember the #Kiddies that fucked around with #CIA director #Brennan? Those were just using their "weapons-grade #boredom", not being effective, for-profit cyber criminals!

And then think about those who don't have privilegued access to protection by their government, but rather "privilegued access" to prosecution by the state because their very existance is criminalized...

The only advantage eSIMs broight in contrast is 'logistical' convenience because it's mostly a #QRcode and that's just a way to avoid typos on a cryptic #LocalProfileAgent link.

I feel I am even unable to follow current law projects against #encryption or #AgeVerification arguments. I am just tired, angry and annoyed with this crap. The most annoying thing is their lying about "protecting children"... all while everyone makes intentional effort to exploit the same children for own profit. And even if this part would be true... Why they have to choose one group to be safe and everyone else would have to deal with increasing #internet toxicity?
It's like they said "we made this area poisonus and radioactive and now we have to think about poor children affected by this. So let's verify everyone's identity to make sure they are mature enough to deal with radioactivity!"
And then "Oh, by the way, it could be convenient to mark dissidents' zones as harmful too..."

And even now they actively create more and more harmful things, embracing it and poison everything with it... also killing planet in the process.

I don't want to reveal my identity and don't want to deal with their radioactivity at all!