Live data from Hacker News

Zoom still don't understand GDPR

threatspike.com

181–190 of 267 posts

Re: Zoom still don't understand GDPR

#181

Why people still uses zoom? Something like Google Meet or Microsoft Teams are better.

Because in a Google meet with just one other person my computer fans spin up like crazy and the video quality is crap.

With Zoom I can be in a call with many people and I don't notice my CPU fans, and the video quality is better.

Re: Zoom still don't understand GDPR

#182

Earlier quoted context omitted.

Do you really think controlling your local desktop is an API feature that web browsers should provide to web apps?

Chrome Remote Desktop does it (requires a browser extension though I think).

And the browser extension runs a native .exe file behind the scenes...

Re: Zoom still don't understand GDPR

#184

Earlier quoted context omitted.

Could you elaborate on that? Of course no computer is completely secure against all forms of attack, but I’ve found statements like these to not contribute very much towards solving any practical security problems.

The moment that a string of text appears on your screen, it is passed through between many different functions (and even pieces of hardware, with textures being stored on the GPU VRAM) and has unencrypted copies laying all around in memory as the application is running. Any part of the space in which these copies exist being compromised will mean that your encryption is useless in the end.

You have to draw the line somewhere. Otherwise we'd be saying that HTTPS/TLS is not secure since the webpage is rendered to your monitor unencrypted.

I agree with the parent quote:

> I’ve found statements like these to not contribute very much towards solving any practical security problems.

Re: Zoom still don't understand GDPR

#186
post #99

Earlier quoted context omitted.

What was the draw of Keybase? I wasn't interested when it was a "post all your website usernames here, but with crypto somehow" site, and by the time I looked in on it later, it was an unreadable startup homepage and had some kind of cryptocurrency scam attached to it. If it had a good messaging featureset that should be cloned, former Keybase users should speak up!

For me Keybase was a place to collect my public internet profiles in one place, with cryptographic auth that it's actually me. All the chat, team, storage and crypto crap was just superfluous for me.

As someone who occasionally needed to share secrets (auth keys etc) with colleagues, or encrypt the odd file, it was really useful, it made all those things a lot easier.

Unfortunatly all that extra stuff they piled on top seems to have distracted from just making the basics great.

Re: Zoom still don't understand GDPR

#187

It's unfortunate that they bought and destroyed Keybase [1] in a bid to improve their security and even still there seems to be no improvement. Guess even the best folks can't make an impact if company culture prevents it. [1] https://github.com/keybase/client/graphs/commit-activity

> https://github.com/keybase/client/graphs/commit-activity

Thats an awesome graph. Pretty hard to hide or fake activity on an opensource project.

Also it shows how quickly engineering was pulled off projects... Usually it would be a matter of "finish the PR/feature/bug you're on", which might be days or weeks. Yet here everyone is pulled off over ~3 days.

Re: Zoom still don't understand GDPR

#188
post #112

Earlier quoted context omitted.

I'm pretty sure GDPR applies to any companies with dealings in the EU, or at least to that company's dealings which occur within the EU. Disclaimer: IAANAL

You could say that about China as well. China's laws say that you need to censor your search results of certain things. Google and Facebook don't censor. They get banned by the GFW. Plain and simple. The EU can do the same thing and set up their own firewall if they wish to enforce GDPR on foreign websites. The fact that their citizens would revolt over the idea of internet censorship, is irrelevant. The point I'm tr…

You, uhh, you realise that we're stuck with restrictions on what we can do in significantly more important sectors than serving tracking cookies because of the US - like the financial industry - right? There's not a world power in existence which doesn't extend its power in order to attempt to either protect its citizens or protect its tax income.

Re: Zoom still don't understand GDPR

#189

Earlier quoted context omitted.

What do you then do about the horrible performance of zoom in chrome? For me, the sound becomes unintelligible as soon as someone shares his screen.

Try a different browser. On Mac, Safari is much more resource efficient than Chrome for example. On Windows I'm not sure, but it can't hurt t give FF a try.

Last I checked FF was not even supported :)

Re: Zoom still don't understand GDPR

#190
post #89
post #77

Earlier quoted context omitted.

What?

They're not wrong. A large amount of the basically exist off gross privacy violations. Fingerprinting, gross PII sharing and overstorage, port scanning users' computers and LAN from their browser behind the FW/NAT for "security purposes",

Maybe we're thinking of cyber security as different things, I'm mostly thinking about application security and enterprise security? What are you talking about?
Post reply on HN