Live data from Hacker News

8M users' AI conversations sold for profit by "privacy" extensions

koi.ai

101–110 of 261 posts

Re: 8M users' AI conversations sold for profit by "privacy" extensions

#101

Earlier quoted context omitted.

This was a nearly poetic way to put it. Thank you for ascribing words to a problem that equally frustrates me. I spend a lot of time trying to think of concrete ways to improve the situation, and would love to hear people's ideas. Instinctively I tend to agree it largely comes down to treating your users like human beings.

The situation won’t be improved for as long as an incentive structure exists that drives the degradation of the user experience. Get as off-grid as you possibly can. Try to make your everyday use of technology as deterministic as possible. The free market punishes anyone who “respects their users”. Your best bet is some type of tech co-op funded partially by a billionaire who decided to be nice one day.

We're not totally unempowered here, as folks who know how to tech. We can build open source alternatives that are as easy to use and install as the -ware we are trying to combat.

Part of the problem has been that there's a mountain to climb vis a vis that extra ten miles to take something that 'works for me' and turn it into 'gramps can install this and it doesn't trigger his alopecia'.

Rather, that was the problem. If you're looking for a use case for LLMs, look no further. We do actually have the capacity to build user-friendly stuff at a fraction of the time cost that we used to.

We can make the world a better place if we actually give a shit. Make things out in the open, for free, that benefit people who aren't in tech. Chip away at the monopolies by offering a competitive service because it's the right thing to do and history will vindicate you instead of trying to squeeze a buck out of each and every thing.

I'm not saying "don't do a thing for money". You need to do that. We all need to do that. But instead of your next binge watch or fiftieth foray into Zandronum on brutal difficulty, maybe badger your llm to do all the UX/UI tweaks you could never be assed to do for that app you made that one time, so real people can use it. I'm dead certain that there are folks reading this now who have VPN or privacy solutions they've cooked up that don't steal all your data and aren't going to cost you an arm and a leg. At the very least, someone reading this has a network plugin that can sniff for exfiltrated data to known compromised networks (including data brokers) - it's probably just finicky to install, highly technical, and delicate outside of your machine. Tell claude to package that shit so larry luddite can install it and reap the benefits without learning what a bash is or how to emacs.

Re: 8M users' AI conversations sold for profit by "privacy" extensions

#102

[flagged]

I would figure state actors don’t need to go through the trouble of a browser extension. But, yeah.

Why wouldn't they? It isn't that you need to, just that obviously you would. You engage with the extension owners by sending an email from a director of a data company instead of as a captain of some military operation. The hit rate is going to be much higher with one of the strategies.

Re: 8M users' AI conversations sold for profit by "privacy" extensions

#103

I stick to extensions that Mozilla has manually vetted as part of the Firefox recommended extensions program. > Firefox is committed to helping protect you against third-party software that may inadvertently compromise your data – or worse – breach your privacy with malicious intent. Before an extension receives Recommended status, it undergoes rigorous technical review by staff security experts. https://support.mozi…

[deleted]

Re: 8M users' AI conversations sold for profit by "privacy" extensions

#104
post #96

Earlier quoted context omitted.

I'm not a spy so I don't know, but surely in most scenarios it's a lot easier to just ask someone for some data than it is hack/steal it. 25 years of social media has shown that people really don't care about what they do with their data.

Wasn't there a comment on this phenomenon along the lines "we were so afraid of 1984 but what we really got was Brave New World"?

The apathy of the oppressed is a core theme of 1984.

Re: 8M users' AI conversations sold for profit by "privacy" extensions

#105
post #25

The company behind this appears to be "real" and incorporated in Delaware. > Urban Cyber Security INC https://opencorporates.com/companies/us_de/5136044 https://www.urbancybersec.com/about-us/ I found two addresses: > 1007 North Orange Street 4th floor Wilmington, DE 19801 US > 510 5th Ave 3rd floor New York, NY 10036 United States and even a phone number: +1 917-690-8380 https://www.manhattan-nyc.com/businesses/urba…

https://www.manhattanvirtualoffice.com/ The NY address is a virtual office. https://themillspace.com/wilmington/ The DE address is a virtual office plus coworking facility.

Wow the virtual office concept is so beyond shady. I wonder if there are any legitimate uses of it?

Re: 8M users' AI conversations sold for profit by "privacy" extensions

#106
post #62

Earlier quoted context omitted.

Don't be rude. "Real person" here might live in any country of the world. And also, why extension for vpn? I live in country where almost everybody uses vpn just to watch YouTube and read twitter, and none of my friends uses some strange extensions. There are open source software for that - from real vpn like wireguard, to proxy software like nekoray/v2raytun. Browser extension is the last thing I would install to be…

[flagged]

[deleted]

Re: 8M users' AI conversations sold for profit by "privacy" extensions

#107

[flagged]

I would figure state actors don’t need to go through the trouble of a browser extension. But, yeah.

Huh? Of course they would: It's way less work than defeating TLS/SSL encryption or hacking into a bunch of different servers.

Bonus points if the government agency can leave most of the work to an ostensibly separate private company, while maintaining a "mutual understanding" of government favors for access.

Re: 8M users' AI conversations sold for profit by "privacy" extensions

#109

I stick to extensions that Mozilla has manually vetted as part of the Firefox recommended extensions program. > Firefox is committed to helping protect you against third-party software that may inadvertently compromise your data – or worse – breach your privacy with malicious intent. Before an extension receives Recommended status, it undergoes rigorous technical review by staff security experts. https://support.mozi…

> I stick to extensions that Mozilla has manually vetted as part of the Firefox recommended extensions program.

If you're feeling extra-paranoid, the XPI file can be unpacked (ZIP) and to check over the code for anything suspicious or unreasonably-complex, particularly if the browser-extension is supposed to be something simple like "move the up/down vote arrows further apart on HN". :P

While that doesn't solve the overall ecosystem issue, every little bit helps. You'll know it's time to run away if extensions become closed-source blobs.

Re: 8M users' AI conversations sold for profit by "privacy" extensions

#110
post #47

I don't understand why so many people are using / trusting VPNs "Let us handle all your internet traffic.. you can trust us.. we're free!" No thank you.

A lot of people from poor countries where they can't access a lot of websites/services and also can't pay for a VPN use these "free" VPNs

but other than that I would never trust anything other than Mullvad/IVPN/ProtonVPN

Post reply on HN