I just disabled Google Play Services on my Android phone to increase privacy... then I started to get spammed with about 10 notifications every 10 seconds (not a joke) to tell me that those 10 apps would not work properly without Google Play Services enabled even if they did work properly... Google and/or LG allowed me to disable 7 of these apps, but the others could not be uninstalled or disabled using the GUI... I…
Bugs in our pockets: the risks of client-side scanning
121–130 of 138 posts
Re: Bugs in our pockets: the risks of client-side scanning
#122Eventually we’ll see cryptographic attestation of open source binaries on our phones. Until then, all popular phones will run closed source software, and it will be necessary to trust the vendor. Even then, the vendor may also be the chip maker. Apple would do well to look at sourcing an independent chip vendor for their on-device enclaves. That would give them a trust advantage over Android phones.
Re: Bugs in our pockets: the risks of client-side scanning
#123Re: Bugs in our pockets: the risks of client-side scanning
#124IMO that boils down to "who owns what you use". And "there is no free lunch". Applies both to services and devices.
I paid Apple for my iPhone and for storage. I see no reason they should go out of their way to spy on me.
Think iCloud, Facetime, iMessage, Push, FindMyPhone etc.
So Apple won't leave after you once have the phone – they remain with you. And spying isn't what Apple calls it. Smart services always have a tendency to be encroaching.
On one side Apple wants to read your lips to know your wishes in advance but on the other the authorities demand access to that knowledge.
Re: Bugs in our pockets: the risks of client-side scanning
#125Re: Bugs in our pockets: the risks of client-side scanning
#126I just disabled Google Play Services on my Android phone to increase privacy... then I started to get spammed with about 10 notifications every 10 seconds (not a joke) to tell me that those 10 apps would not work properly without Google Play Services enabled even if they did work properly... Google and/or LG allowed me to disable 7 of these apps, but the others could not be uninstalled or disabled using the GUI... I…
Which Android version? Some of us have no Google Play Services and no relevant notifications on older devices.
Re: Bugs in our pockets: the risks of client-side scanning
#127I just disabled Google Play Services on my Android phone to increase privacy... then I started to get spammed with about 10 notifications every 10 seconds (not a joke) to tell me that those 10 apps would not work properly without Google Play Services enabled even if they did work properly... Google and/or LG allowed me to disable 7 of these apps, but the others could not be uninstalled or disabled using the GUI... I…
Don't disable google play services, run something like microg (easiest way to do so is probably https://lineage.microg.org/ ). Apps are written to expect you to be spied upon and in order for them to not push you to "fix" that, you must lie to them. Moving entirely to f-droid is not an option for most people, as they use their phones to communicate and doing so involves a certain amount of dirtying yourself.
Re: Bugs in our pockets: the risks of client-side scanning
#128Re: Bugs in our pockets: the risks of client-side scanning
#129Earlier quoted context omitted.
A significant number of concerns aren't about the feature as proposed by Apple, but the slippery slope it creates.
True but slippery slopes are simply a thing. Like the Overton window. Every move takes a step further and moves something else from ridiculous into feasible. And personally, I know this won't affect me. I don't own such content. I don't use the cloud without encryption first (thanks Cryptomator). However I just hate the feeling of my own phone constantly looking over my shoulder on someone else's behalf. Is that so w…
Re: Bugs in our pockets: the risks of client-side scanning
#130Earlier quoted context omitted.
Considering that using a service which is known by all to not scan, and is therefore the place the media says is ‘child molester friendly’ could cause the same reputational damage? Might just throw my phone in a campfire.
> Considering that using a service which is known by all to not scan, and is therefore the place the media says is ‘child molester friendly’ could cause the same reputational damage? Even putting aside how much of a stretch that is, how is anybody else supposed to know which service you use? It's your personal files. That nobody else should have access to them is the point. It's not as if Apple or whomever should be…
What would you think about someone that you were talking to that showed you something on their phone (a restaurant listing you were both thinking of going to, or something on Maps), but then a Parler notification popped up? What if they were married and Grindr or Tinder or whatever notification popped up?
Would you judge them? Would you expect many other people to judge them, even if you don’t?
Don’t get me wrong, I don’t think Apple’s products would be problematic that way. But a big reason why is because they have and likely will continue to make decisions like the one we are discussing.
If they went full end to end super privacy, then got named by the feds repeatedly in whatever the next big csam/terrorist/whatever scandal, that could change, and that is even assuming Congress people don’t join in the action, which they’ve already shown an interest in doing.