Live data from Hacker News

Brave, the false sensation of privacy

ebin.city

101–110 of 501 posts

Re: Brave, the false sensation of privacy

#101
> The only browser that does not use Google’s web engine (blink) is Firefox

Well, Safari is a thing on MacOS and is the only browser engine on iOS. StatCounter[0], the data source behind caniuse, says it has nearly 19% marketshare as well.

Re: Brave, the false sensation of privacy

#102
post #13

I don't like the crypto nonsense of Brave, and while I like Firefox in theory, its performance leaves a lot to be desired and they don't seem to know who their user base is. Microsoft Edge got a decent native vertical tab solution before Firefox did! Edge! I wish some nonprofit would make a Chromium browser with sane defaults and take my donations. That's all I need.

Edge has the best security of any browser on Windows ducks

Edge is the best browser for downloading Firefox.

Re: Brave, the false sensation of privacy

#103
post #94

Earlier quoted context omitted.

I only know enough about networking to be dangerous but I am convinced Comcast is doing shady shit with my modem when I change the DNS settings to use non-Comcast servers. Every once in a while I’ll attempt to use Wireshark to try to make sense of what’s happening but I’m pretty clueless and don’t really know what I’m looking at/for. If anyone knows any good resources to learn about the ISP nuts and bolts that make i…

Comcast isn't doing anything to your DNS. They're the largest ISP in the country, there'd be a huge uproar if they were doing something like that. There are plenty of experts who are subscribers who'd be able to figure out exactly what's going on.

"Come on, what are you worried about? I'm sure it's fine, somebody must have inspected it."

Re: Brave, the false sensation of privacy

#104
post #82

Earlier quoted context omitted.

I don't always find it odd, but when I do I find it odd that we worry so much about applications when the entire cell telephony networking layer is completely and unpatchably hacked.

Because you can work around that pretty easily with authenticating encryption. Even if the networking layer weren’t hacked, you should assume it was.

I have a feeling that you mean "easily" in the same sense the infamous Dropbox demo comment did.

EDIT: I wasn't thinking, OP is completely right. Sorry for the snark.

Re: Brave, the false sensation of privacy

#105
post #73

Earlier quoted context omitted.

It’s not like VPNs don’t have the exact same problem, though…

There's still an element of trust involved, but it's better than the status quo of "we'll monitor your internet, take it of leave it" from the ISPs.

If you turn on your VPN, they can do exactly that.

You’re just trading one for the other and that new one might not even have to follow the same laws.

Re: Brave, the false sensation of privacy

#106
post #96
post #35

Earlier quoted context omitted.

You may be right, and you may not be. It has to be good that there are more than exactly one engine, it means there is a discussion, some level of "forced openness". That wouldn't be possible if web developers could simply rely on undocumented quirks of a sole browser. It's possible that FF will die. But I think that would be extremely sad. For one, Manifest V3 would be forced upon the entire web => no more uOrigin.

> It has to be good that there are more than exactly one engine... Well, that is kinda the point. No, it doesn't. It might be worse than having one great de-facto standard engine. Having 2+ splits web developers in what they choose to support. In this instance, we literally have a young company (Brave Software, Inc) that chose to go head-to-head with Google. Their CEO is deeply entwined with the history of first Nets…

> Nobody is saying Mozilla has to die, whatever that means.

To die means having so few users that development is abandoned and the teams disbanded. It could happen; I wish it doesn't; you seem to wish it does... because it would make the life of web developers a little simpler?

But I don't think that's true; I think it's the opposite: web development would be a little more difficult if/when everything is controlled by just one company who decides unilaterally what can be done and what can't.

Re: Brave, the false sensation of privacy

#108
post #82

Earlier quoted context omitted.

Because you can work around that pretty easily with authenticating encryption. Even if the networking layer weren’t hacked, you should assume it was.

I have a feeling that you mean "easily" in the same sense the infamous Dropbox demo comment did. EDIT: I wasn't thinking, OP is completely right. Sorry for the snark.

You can just use whatsapp or whatever. The phone network with SIP/SS7 etc. is hopeless, but you don't have to use it, and most people I know prefer other forms of communication anyway.

Re: Brave, the false sensation of privacy

#109
post #18

I always find it odd that we worry so much about how much our browsers are tracking us, but almost nothing about what our ISPs are doing. Every time I've looked into it, it seems much worse. As far as I can tell, ISPs are legally allowed to sell your browsing history to third parties: https://arstechnica.com/tech-policy/2017/03/for-sale-your-pr...

ISPs can see a lot, but it does have limits. As long as we're using SSL (and I suppose, assuming it hasn't been cracked), the ISP really only knows what domains I'm visiting. So they might know that I'm going to WebMD, but they don't necessarily know that I'm reading up on treatment options for nose fungus. They also don't necessarily know exactly which member of my household is going to that website, nor can they link it up with any browsing I do from the coffee shop.

Browser-based tracking, on the other hand, can see just about everything, because it's looking at the state of the data after it's been decrypted. And it can, with a reasonable degree of confidence, individually identify people, even when more than one person shares an internet connection, and even when one person uses more than one device or connects to the Internet from more than one location. The higher fidelity of that signal does imply that it's a greater privacy threat.

Re: Brave, the false sensation of privacy

#110
post #93

The only reason I use Brave is that I can type “you” + tab to directly enter YouTube search from the URL input field, and this works for gMaps and Amazon. For the life of me I cannot figure out how to configure this in Firefox.

You can get similar functionality in any browser by setting DuckDuckGo as your default search engine (so you can search from the URL input field and using bangs. So "!yt search term" in the input field (without quotes) would search YouTube. DDG is sufficient for 99% of searches for me, and when it fails I just use the !g bang for Google search. You can check all the bangs available here: https://duckduckgo.com/bang

Edit: !m or !gmap for Google Maps, !a for Amazon

Post reply on HN