121 karma · joined January 5, 2022
Again, not sure on how the tokens are proven legit without ever sharing them, but there's probably some ~~zero-knowledge proof~~ stuff going on that covers that.
Edit: Not zero-knowledge proof. Seems to be Blind Signature?
The entirety of IA is the idea that culture and history are to be preserved for future generations. The job of these big companies like UMG is to make as much money as possible, and destroying history eliminates a core competitor, themselves. IA's existence is poking the bear (just look at how often the Web Archive's existence is used by others to show off back actors in companies). Compromise left a long time ago.
If the suit is found in favor of UGM and enforced at full effect (not impossible, but Hachette v. Internet Archive was not either), then IA will be on the hook for the full $621 Million. You can guess how that ends.
But even if they don't enforce at full effect (and given Web Archive has been successfully used to provide evidence against UMG and Sony multiple times now, they have a pretty strong incentive to get it burned down), a sizable portion of the 400,000 recordings are from disks that quite literally broke down after capture. Those disks are the last copies of those recordings. Ever. Should UMG and Sony succeed, it is a very safe assumption, given they already confirmed they don't have those recordings (and based on that, don't want them), that those recordings immediately become lost media.
Mmm, very possibly because there are at least a few ways to get a phone without using any ID. I picked up a used phone about a year ago, and use Tello. Tello had 0 info on me for years, only an old UPS box that I got the card delivered to. I eventually gave them my first name so Caller ID was correct, but short of that or putting in a correct address if you want 911 support, there's no reason to need any valid info with them. They don't do credit checks, just prepay.
> The solution is secure boot plus attestation That's the second option they presented "Closing the platform". The issue with all these options is that it consolidates power, and thanks to already partially consolidated power, any option selected will, by necessity, obligate everyone to partake, whether or not they are ok with it.
> The average normie user does not care about anonymity, nor privacy, on the Internet.
It's true that often "normies" don't care (or at least think they don't care, but that's a completely different point I don't feel like trying to make), and it's also true that often "normies" don't want the status quo changed. But often "normies" also ignore when people are kidnapped due to their heritage being revealed. Is it acceptable to actively create a hostile environment for people already disadvantaged? Do we gain something worth their safety? Who gains from this higher level of scrutiny?
If we look at the smaller web, most sites never get enough traffic to be under active threat, and passive threat is easy enough to quell using honeypot forms and questions. Maybe the "normie" internet is the problem. Passive people passively consuming. "Normies" love watching stolen content, and praise thieves for harassing anyone who points out that what their doing is wrong. "Normies" enjoy watching someone livestream themselves flying down a highway at 100 mph over the speed limit.
I think maybe we should acknowledge that what we're defending with things like hCaptcha is not actually worth defending. Maybe the "normal" internet does need to be deprecated over "small" internet? We did pretty good before with things like Wikipedia. The "small" internet from before had a lot of chaff, but good things have grown from it, and a lot of it still exists as a "small" internet. Maybe it's ok that we have a lot of "crap content", so long as the internet can keep changing?
But of course companies that implement these indoctrination practices really don't want that, and will do whatever it takes to keep that control in place.
2 reasons I can confidently disagree: 1. Unlike desktop platforms, most android devices cease receiving "official" updates long before the chipset stops receiving updates, thus maintaining them requires an alternative rom. While most people will just buy a new phone, the percent usually on the fence about something like switching from Windows to Linux are gonna be pushed harder into looking into alternatives. 2. Well over 1% of desktop users use Linux. Even if you debate the methods to get the current 4%, there's simply no debate on at least 1%.
The two combine to suggest that, on android, there's a very good change that more than 1% of android users are using some rom, and all roms help each other.
Don't screw up your otherwise valid argument by trying to "put tech nerds in their place" like that. These roms do matter, even if the judge 100% didn't "screw up". Everything else you said is both true and important, and probably matters more than what parent wanted, but it doesn't diminish the value of the roms, just suggests that parent was misguided.
I get the feeling people think because things are scarce already, scarcity is good. but... it really isn't. outside of a store-of-value, there is no real benefit to it, is there?
So the question is, why do they keep re-designing the head unit as a monolithic brick, and make it non-replaceable? I can't say for sure why, but my guess is that they've since added their own team for "Smart this" and "subscription that", and removing those sources of revenue is far more expensive than rebuilding the head unit each year.
CoPilot Recall is a massive target because if you break into a system, there would be a good chance that data is there since it was opt-out by default. open-source recall implementations are not only opt-in, but require additional overhead to install, so the likelihood that one would find this data on the drive is such a low target as to be not worth including in an automated scanner.
Remember that surface-area does matter in things like this. If you believe you're a large enough target for some amount of focus (and you might be if your involved in mid-scale open-source projects, like XZ apparently), then it's good to be cautious. If you're not that kind of target, then just remember you only need to be more complex than the average person, and something like this absolutely qualifies as "more complex".
It does read paranoid, because the whole things should be ridiculous in a sane world. That's part of the problem. This shouldn't even be a concern, but it is.
> I'm gonna needs source...
Unfortunately the source is to read through Oklahoma Statute 40-142, since it's a fairly interwoven and long document that establishes what Alternate Fuel Technicians must do to be certified, what vehicles must be serviced by said technicians, and what the consequences are for violating those requirements. Of note, the statute calls out EVs as falling under the statue requirements, and what your allowed to modify is a (short) list of exceptions, rather than a list of restrictions. There's no single line to point to, as is true for a lot of law stuff.
> Also, nobody is bricking anyone's car. If you're that paranoid about remote access, it's possible to just remove the cell access.
First, please read the last 3 references of my previous comment. There is a clear and present pattern of increased removal of access via remote updates. Furthermore, removing that cell access hampers the car significantly, with no allowed alternative. The option is to let them listen, or watch your infotainment system be effectively paralyzed. I would be happy with an option to simply swap out the infotainment with something else, like I did with my 2002 Honda Civic, but it's their system or nothing. Plus, it takes one trip to the repair shop, which must be a first-party repair shop, since no one else is allowed access to the needed codes to reset the computers, for something to be updated without my consent, and a feature (or the whole car) to be bricked "for your safety". It need not even be that involved. Again, the above train example used geo-fencing to decide when to brick the train. no remote connection needed.
This isn't just a matter of can I hobble a car enough to not abuse me. It's about what part of the car do I really own. Am I allowed to modify it? Are enough of the systems cryptographically secured to, in-practice, prevent me from changing something like a break-pad? Will I need to completely replace the engine computer to swap out the music app?
Right now the answer is that the car isn't mine, and I'm not allowed to make changes. Not in practice, and not in principle.
I ultimately abandoned my endeavor because none of the vehicles provided 2 key things older cars continue to provide: Ownership, and Privacy. And key to this is that this isn't just electric cars, it's pretty much all modern cars. My Civic had a replaceable stereo headunit. How many modern cars have the infotainment system so embedded that functions of the cars depend on it? And we know car manufactures take advantage of that. Hell, even judges seem ok with them doing that [1]. Then you have the fact that repairing anything in the car is made not only intentinally obtuse, but illegal is some states. As it stands right now in oklahoma, you can do any work you want on your gas vehicle, but move to electric and you better have a $5,000 yearly certificate to touch that. Simply opening the hood can land you in jail. And we know the car manufacturers can tattle on you [2]. Then there's the fact that these cars are more than capable of moving themselves. And that system is tied to a remote service. Absolutly nothing stops a manufacturer from deciding that your car's "drive train control system" is no longer licensed, and simply shut it down. Permanently. If companies are willing and able to steal your media [3], the next step is easily to just brick your appliances. Hell, microwaves are already doing that [4]. Trains do that if you decide a third party repair station is reasonable [5]. Where does this end?
Point being, till I can truly own my vehicle again, I'm sticking with older cars. I would much rather own an electric vehicle, but so far none of them are even remotely close to being something I can actually own. Price has nothing to do with it. [1] https://www.malwarebytes.com/blog/news/2023/11/judge-rules-i... [2] https://www.theguardian.com/technology/2023/apr/07/tesla-int... [3] https://www.forbes.com/sites/paultassi/2023/12/02/playstatio... [4] https://hackaday.com/2022/03/18/welcome-to-the-future-where-... [5] https://hackaday.com/2023/12/06/the-deere-disease-spreads-to...
As an additional note, I will add that despite Obsidian being closed-source, I actually feel more comfortable with my data there than with Joplin, primarily because all my data is just common markdown. With Joplin, if I archive content, I have no guarantee the notes on the file format will exist in 10 years (they probably will, but it's still a real possibility). With Obsidian, it's plaintext. There's nothing to need to rediscover, no file format to decode, just good old plain-text. In 40 years I'll still be able to read those files (though the storage media is a very different story). Sure Obsidian can change plans mid-stream, and I don't trust they wont, but all I gotta do is go back to my markdown editor and vim. No sweat.