Live data from Hacker News

Disapproval of FCC regulations a significant blow against privacy protection

nytimes.com

31–40 of 242 posts

Re: Disapproval of FCC regulations a significant blow against privacy protection

#31
post #3

Is there anything the average user can do to protect their data/privacy from their ISP?

VPN is a solution but requires trust in VPN provider. OpenVPN on a VPS can help. Also, consider DNS traffic can leak information, but I've not read of a fool proof way to fully protect DNS queries.

I use a VPN, but I have to turn it on for each device. Is there a good way to set up my router to automatically push all traffic through a VPN? I'd probably need to make exceptions for stuff like video traffic.

Re: Disapproval of FCC regulations a significant blow against privacy protection

#32
post #11

At least consumers still have https going for them I suppose? Or maybe ISPs are now more motivated to man-in-the-middle those connections to get to the data, under the guise of security or something?

They can still correlate traffic going to specific IPs, DNS requests, and SNI information (since it's not encrypted, because the remote server needs to know what certificate to use). There's plenty of data to choose from.

Re: Disapproval of FCC regulations a significant blow against privacy protection

#34

if i dare to say that the republicans fucked us over i'll be banned for "partisan bickering", so: we just need to develop technological workarounds to the politicians. vpns are an okay start.

It's actually interesting, now i feel like VPNs are going to get a huge spike in customers.

On that note though, if all ISPs are doing this, what VPN choice do you have?

Re: Disapproval of FCC regulations a significant blow against privacy protection

#35
post #11

At least consumers still have https going for them I suppose? Or maybe ISPs are now more motivated to man-in-the-middle those connections to get to the data, under the guise of security or something?

I don't believe SSL alone would protect you since ISPs would still have access to the DNS lookups, the fully qualified domain name of the server (which is sent in cleartext for SNI), and IP addresses for the person browsing, so there's still plenty of "meta-data" for them to sell.

Maybe if you use a third party DNS service, but then you need to trust them.

Re: Disapproval of FCC regulations a significant blow against privacy protection

#36
post #8

This is like FedEx or a privatized USPS being able to open your packages and read your mail without telling you. I pay you to carry my damn packets, keep your filthy hands off my data.

A better analogy would be FedEx selling your incoming and outgoing addresses and package weights to third parties, not necessarily the contents of your packages.

Why not the contents? What happens when most content is not over a secure connection such e.g. Over HTTP? Could they not inspect the content?

It sure seems like they could. For most people most of the internet is still insecure.

Re: Disapproval of FCC regulations a significant blow against privacy protection

#37
post #9
post #3

Is there anything the average user can do to protect their data/privacy from their ISP?

Encrypted VPN that doesn't keep records (I like NordVPN, but have had good experiences with others like IPV and PIA), uMatrix, uBlock Origin, and don't forget to turn on your user agent spoofing options.

I'm afraid that the problem is bigger than that, most people have a number of devices that connect to the internet, not all of which work with VPN.

Re: Disapproval of FCC regulations a significant blow against privacy protection

#38
post #17

The article's main argument is that the ISPs are selling something that doesn't belong to them, but to the consumer. I don't like the idea of my personal information being sold, but how could you state this as fact? Shouldn't it be up to the consumer to choose to do business with a company that sells your personal info vs a company that does not?

You say that as if everyone had the ability to changes ISPs freely. Consumer choice is irrelevant if there's nothing to choose from.

I have a single altenative ISP that offers over 15 mbs, there is no fiber in my area. I live in New York. not the city, and I do not live 'upstate'.

as the above pointed out to your comment, it is very difficult to chane ISP's I am not happy with mine and I do not have an alternative. my unhappiness came way before this bill.

Re: Disapproval of FCC regulations a significant blow against privacy protection

#39
post #9

Earlier quoted context omitted.

Encrypted VPN that doesn't keep records (I like NordVPN, but have had good experiences with others like IPV and PIA), uMatrix, uBlock Origin, and don't forget to turn on your user agent spoofing options.

I'm afraid that the problem is bigger than that, most people have a number of devices that connect to the internet, not all of which work with VPN.

That's where a decent router that can support your VPN comes in. Look, I grant you this is not perfect, and there is no perfect enduser solution, but if you want to stop the bleeding, that's how.

Re: Disapproval of FCC regulations a significant blow against privacy protection

#40
So the only thing I don't understand as far as the fuss about this is concerned -- everything I've read indicates that this is undoing a protection put in place late last year. So essentially we've gone back in time six months ago or so. If ISPs weren't selling our info then when they could have, why does it logically follow that we're now in some uncharted territory of ISPs selling personal info? Or is this simply blowing the situation out of proportion because Republicans did it?
Post reply on HN