• 0 Posts
  • 10 Comments
Joined 2 years ago
cake
Cake day: August 16th, 2024

help-circle
  • I don’t like this theory because they have already had access to this information with social media. Individuals willingly volunteer this information about themselves and their friends, and data brokers would collect and centralize it from multiple sources. This is why some platforms were trying out AI age verification in countries that hadn’t officially mandated ID verification yet. They were confident enough, with all the info they had already collected, to assume someone’s age. They would hope that the people who fail the check would be few enough to not cause an immediate uproar(“just verify with ID, what’s the big deal?”)

    This is most certainly more of an authoritarian power grab to prevent any anonymous criticism what so ever. Id verification will allow them to target any application that does not comply and preserves user privacy. Anyone who does not comply will be implied to be a criminal or enemy of the state. They want to make a system where corporate surveillance cannot be avoided.

    The corporations lobbying for this want to benefit from being a part of the fascist state, but don’t want to handle any legal obligation or public scrutiny from the obvious damages that will come from collecting this information. That’s why you have different companies lobbying for different “solutions”; whatever keeps them from facing repercussions but still makes them money for being a part of the surveillance state is what they will support.




  • Thats part of the problem though. Supposedly catfriend1 gave researchxxl their signing keys, and researchxxl used these on their new github account. No one was aware that catfriend1 was not maintaining the repo anymore until users saw unexpected/unannounced updates and looked into the matter. This sparked a short lived discussion on F-Droid forums about what should be done when maintainer transfers are handled poorly like this. F-Droid admins decided that it wasn’t that big of an issue, which is problematic… this supposedly happened between two people meeting each other online and discussing it with each other. But its possible that catfriend1 is being blackmailed or otherwise coerced into handing off this data. This type of credential attack could happen with a compromised machine, without the victim ever realizing it in time. The fact that F-Droid treats this so casually is upsetting. Signed developer certificates protect you from MITM attacks, it does not protect you from the sources themselves being compromised.


  • Years ago, official development of an android app of syncthing was abandoned by the official developers. Most android users migrated to an already existing fork by a github maintainer catfriend1.

    Catfriend1 unceremoniously disappeared, with their github repositories being taken over by a new user researchxxl. This was entirely unannounced and wasn’t really discovered until people with automatic updates enabled on *Obtanium noticed it.

    researchxxl is not a known community member, and is being very reclusive when interacting with the syncthing community. Their github account was made specifically for the repository transfer, and their method of handling existing credentials is suspicious; looking no different than a hostile take over.

    At this point in time, they are collaborating with Nexon, a user who worked with catfriend to publish syncthing fork builds to Google Play. They are more well known and trusted. If you can trust Nexon, and trust that end users in general are putting more scrutiny on the github source code after this whole situation, you can probably trust the recent releases for now.

    Sorry for any details I may have gotten wrong. AFAIK, no one has taken the time to document all the things that have gone down. I would have linked to such a document otherwise. A lot of the discussion on this is happening in separate discussion threads, one of them being researchxxl’s github issue page, which they are censoring/deleting discussions from with(till recently) no oversight.

    *Edit: this is also a poor summary. There is a lot of additional context that I don’t feel comfortable trying to encompass. Like why the official syncthing developers stopped their official android app, or catfriend1’s forum account coming back for a short time to try to explain their side of the story. Frankly, for how many people are using syncthing, I don’t think this story is getting enough attention.






  • Do you have any guides or resources to using OBS as a screen share tool? I tried in the past to use it as a platform agnostic solution, but ran into a lot of problems that would prevent my friends from using it. Virtual cam didn’t provide audio, and using input mixing to combine mic + isolated application audio(already a multi step process in OBS per app) involves a lot of tech knowledge that is beyond what the end-user demographic of discord is willing to put up with. I also tried using vdo ninja as a P2P shareable link for video group conferences, but couldn’t get the webRTC links to work with direct streams from OBS.

    I despise Discord and have been having success with moving close friends to more private IM apps, but so far, nothing has come close to the effortless ease of discord group calls with screen sharing. Most competing social screen share apps don’t even have audio support, and the ones that do either don’t have audio isolation, or their implementation of it is broken.