Always host software outside of US or *eyes jurisdictions. Think Truecrypt.
EDIT: this is a genuine question, I thought it had been unmaintained for ages and vulnerabilities had been found. My memory betrays me?
11–20 of 292 posts
Always host software outside of US or *eyes jurisdictions. Think Truecrypt.
EDIT: this is a genuine question, I thought it had been unmaintained for ages and vulnerabilities had been found. My memory betrays me?
Really good to see Nat Friedman working towards resolving this issue.
At some point all these exceptions to the dmca section 1201 do at some point indicate to me that we need to have the law updated to be more narrowly tailored rather than continuously apply exceptions to it which can later be taken away.
> GitHub’s CEO suggested that YouTube-DL won’t be reinstated in its original form. But, the software may be able to return without the rolling cipher circumvention code and the examples of how to download copyrighted material. Which is frustrating. Isn't the information needed to do this provided by youtube themselves? This isn't some private key that wasn't supposed to be public; it's literally given out every time…
https://freedom.press/news/riaa-github-youtube-dl-journalist...
> GitHub’s CEO suggested that YouTube-DL won’t be reinstated in its original form. But, the software may be able to return without the rolling cipher circumvention code and the examples of how to download copyrighted material. Which is frustrating. Isn't the information needed to do this provided by youtube themselves? This isn't some private key that wasn't supposed to be public; it's literally given out every time…
I also find it laughable to claim that a session token is a "rolling cipher". If the claim is to be taken at face value, it would ban any form of scraping, as most sites invariably use some sort of session token.
...which many entities would love to do. If it were illegal to extract data any way but through an official API, with a TOS and fees and everything, that would make a bunch of dying business models so much more viable.
> GitHub’s CEO suggested that YouTube-DL won’t be reinstated in its original form. But, the software may be able to return without the rolling cipher circumvention code and the examples of how to download copyrighted material. Which is frustrating. Isn't the information needed to do this provided by youtube themselves? This isn't some private key that wasn't supposed to be public; it's literally given out every time…
I also find it laughable to claim that a session token is a "rolling cipher". If the claim is to be taken at face value, it would ban any form of scraping, as most sites invariably use some sort of session token.
> GitHub’s CEO suggested that YouTube-DL won’t be reinstated in its original form. But, the software may be able to return without the rolling cipher circumvention code and the examples of how to download copyrighted material. Which is frustrating. Isn't the information needed to do this provided by youtube themselves? This isn't some private key that wasn't supposed to be public; it's literally given out every time…
You can download mp4 files directly from Youtube. I've found a way to download videos right from the domain googlevideo.com . No 3rd party tools, any requested clarity. I thought I'll make a post to explain this easy method, then realized Google would take down that method within a week, so I'm keeping quiet.
You really can't.
>> I've found a way to download videos right from the domain googlevideo.com
I assure you, you really didn't.
Always host software outside of US or *eyes jurisdictions. Think Truecrypt.
What happened to Truecrypt? Isn't that the one with the fundamental flaw that means everything it encrypted is trivial to unlock today? EDIT: this is a genuine question, I thought it had been unmaintained for ages and vulnerabilities had been found. My memory betrays me?
Has this been substantiated?
Really good to see Nat Friedman working towards resolving this issue.
Instead of taking it down in the first place, Friedman should have told the RIAA to shove it, deliberately opening Github up to liability with the intent to defend this in courts and create precedent should the RIAA file suit. Even losing - and losing a few million in legal fees and damages in the process - and losing is far from certain - would create precedent that would create a lot more certainty of what goes and does not go with the current law, and give activists and lobbyists concrete jurisprudence to point to when approaching law makers and Library of Congress for changes.
Now that would have been real support. A somewhat risky move indeed, but also a necessary move if Friedman really thinks youtube-dl is an important piece of technology (with important policy implications).
Instead, he essentially left the developers, which lack the deep pockets of Github/Microsoft, to fight on their own, going even so far to suggest to budge to the RIAA's claims that youtube-dl contains a "circumvention" technology without challenge and remove the offending bits.
But at least he publicly stated he is "annoyed" by the RIAA. Talk is cheap. This is like showing up and telling David that "well, tough shit, Goliath is annoying but a lot bigger than you and will win, so you better capitulate, and I can help with that!".
(Yes, Microsoft being a RIAA member complicates things; Microsoft should in my humble opinion leave the RIAA; being a member of RIAA isn't compatible with their "we're the good guys now" image they are trying to foster regardless of the youtube-dl fiasco)
Always host software outside of US or *eyes jurisdictions. Think Truecrypt.
What happened to Truecrypt? Isn't that the one with the fundamental flaw that means everything it encrypted is trivial to unlock today? EDIT: this is a genuine question, I thought it had been unmaintained for ages and vulnerabilities had been found. My memory betrays me?
Or do you have a competing tool? Let me guess. Someone will ask for an alternative and another will suggest..