Earlier quoted context omitted.
I see a lot of spam on Reddit. That does nothing to speak of “auto moderator”, fragmented rules/guidelines and ilk and the sheer effort involved by volunteers. Even then: the spam gets through. But I agree that PII is not solving this.
>I see a lot of spam on Reddit. Where? I've seens a couple of ghost subreddits with spam, but then you see the same with ghost fb groups, weird twitter profiles, youtube, etc On even moderately sized subs I've seen any that wasn't removed quickly by the mods. People can say mods are too expensive for fb and twitter, but there is the dishonesty, instead of paying mods they pass on that cost to us with our pii while pr…
Twitter starts to require login to view tweets
241–250 of 643 posts
Re: Twitter starts to require login to view tweets
#242Earlier quoted context omitted.
One option might be to allow people to view tweets if they have accounts from reputable federated identity providers, then you have an identity of an individual person without having to do the validation yourself. You can then rate-limit based on that individual ID. Another option might be to rate-limit by things which don't require accounts, which won't strictly rate-limit individuals, but it's unlikely that's the t…
Currently federated identity providers do not provide a separate identity to each site you are authenticated on. At that point any collaborating sites can pull together all the information you give to any one of them. Hell, in most cases your "identity" is your email address, so every site you authenticate with can spam you directly. "Trust tokens" was built to deal with these issues just for this use case: https://d…
Re: Twitter starts to require login to view tweets
#243Earlier quoted context omitted.
Remind me again, why did we leave IRC?
Because IRC hasn't meaningfully improved in about 30 years. There have been attempts to make it friendlier with things like IRCCloud, but then the beards just scoff at the idea of a $5/month bouncer-as-a-service and go right back to wondering why the protocol is dying.
I'd way rather have something that doesn't improve for 30 years than something that actively gets worse at a rapid clip.
Re: Twitter starts to require login to view tweets
#244Earlier quoted context omitted.
I mean what do you want them to actually do instead? Like seriously I’ve implemented at a company I worked for and it’s the least invasive thing to actually rate limit people. Alternatives included: - pay a small fee but that requires a credit card - send us government documents which is worse - mine crypto for a while but it doesn’t stop people who are actually motivated - send a selfie and then do some face matchin…
Personally I'm a fan of the fee idea. You can quickly outstrip the yearly revenue per user with even a small fee, and the fee payment could e.g. happen via PayPal which doesn't require credit cards, to give one example. The issue with fees though is that you might need a billable address for tax purposes which renders this entire exercise pointless.
Re: Twitter starts to require login to view tweets
#245My life is perfectly fine without tweets, likes and stickers. One less thing to waste time on.
Re: Twitter starts to require login to view tweets
#246Earlier quoted context omitted.
Of course, in order to help out the unfortunate website operators, people should willingly give up pii that the same companies have shown they don’t give a damn about protecting. /s
"For your protection." The most abused and dishonest phrase of the 21st century.
The T&C equivalent of "your call is very important to us"?
Re: Twitter starts to require login to view tweets
#247Earlier quoted context omitted.
Remind me again, why did we leave IRC?
IRC is just a protocol; it’s not immune to these issues (see the last Freenode debacle).
Re: Twitter starts to require login to view tweets
#248Earlier quoted context omitted.
Currently federated identity providers do not provide a separate identity to each site you are authenticated on. At that point any collaborating sites can pull together all the information you give to any one of them. Hell, in most cases your "identity" is your email address, so every site you authenticate with can spam you directly. "Trust tokens" was built to deal with these issues just for this use case: https://d…
The Shibboleth Idp also support per SP opaque nameID but nobody like SAML based protocol and as far as I know outside the academical identity federations, no one deploys Shibboleth ...
Re: Twitter starts to require login to view tweets
#249Earlier quoted context omitted.
It's worse: Twitter staff sold private user PII to the Saudi government (the one that assassinates journalists): https://www.buzzfeednews.com/article/alexkantrowitz/how-saud...
Remind me again, why did we leave IRC?
Re: Twitter starts to require login to view tweets
#250On top of it, it's not just a matter of creating an account because they get blocked within two minutes until you also give them your phone number, despite the registration pretends it's not required (because once you signed up, it's easier to trick people into giving up yet more information than asking for it upfront).
Here is a research how much phone number verification decreases account fraud a.k.a. spam bots http://static.googleusercontent.com/media/research.google.co...
Back then you could bypass captchas and other checks by changing Tor endpoint (some endpoints required captchas, some didn’t). Made a script that did just that.
It also worked for Facebook and I still receive facebook spam for those accounts daily.
I have no problem with asking for a phone number during registration, it complicates automated account registration and makes it quite expensive. But I dislike the idea of hiding content behind login page, internet should not be a walled garden.