5 ms·
I'm worried about the freedom of dissenting opinion in civil society from surveillance, not the privacy of my messages. Privacy is something I would easily give
by xnull2guest 10y ago
I'm worried about the freedom of dissenting opinion in civil society from surveillance, not the privacy of my messages. Privacy is something I would easily give up for such freedom.
Signal seems to me to one tool in a large profile to maintain freedom of information dissemination and information gathering activity.
It seems to me that speaking to a large number of people anonymously is not possible with any of the existing tools, Signal included, and it seems that this set of tools is the next set that is needed.
Candidates for this include implementations of "Dining Cryptographer Nets," though there exist scalability and DoSability concerns.
- benevol 10y ago> I'm worried about the freedom of dissenting opinion in civil society from surveillance A good reason to support Wikileaks.
- pdabbadabba 10y agoIt was, back when WikiLeaks seemed to be politically independent. Now it's hard to tell whether I'd be supporting worthy efforts to promote free dissent, or whether I'd be supporting one man's (or a small group of people's) interest in influencing U.S. politics in ways I find objectionable. I'm also not sure I see the connection between 'dissent' and the dissemination of stolen private emails. I think I'll give to the ACLU instead.
- danjoc 10y ago>It seems to me that speaking to a large number of people anonymously is not possible with any of the existing tools NNTP, mixmaster remailers, and mail-to-news gateways. Old school. Those were the days.
- Forbo 10y ago> I'm worried about the freedom of dissenting opinion in civil society from surveillance, not the privacy of my messages. Privacy is something I would easily give up for such freedom. I see these two subjects as being inseparable. Before I feel comfortable asserting a dissenting opinion in a public forum, I would much rather discuss the subject among my peers where I don't feel I will be immediately eviscerated for a poorly constructed thought. If I don't feel that I have any privacy, I'm more likely to be subject to chilling effects.
- FullMtlAlcoholc 10y ago> Before I feel comfortable asserting a dissenting opinion in a public forum, I would much rather discuss the subject among my peers where I don't feel I will be immediately eviscerated for a poorly constructed thought. While I certainly emphasize with the anxiety of publicly expressing an unpopular opinion, I believe it is, especially in times like these, your moral duty to endure in spite of the repercussions and speak your mind. Even though I went to Stanford and had direct access to Milgrom's famous prison experiment, the lesson from it didnt hit home until many years later I read this article: https://aeon.co/ideas/the-desire-to-fit-in-is-the-root-of-almost-all-wrongdoing https://aeon.co/ideas/the-desire-to-fit-in-is-the-root-of-al... Now, the phrase "All it takes for evil to triumph is for good men to remain silent" resonates with me.
- groby_b 10y agoThis phrase does not mean "All good men should continually natter on". It is also your moral duty to present a cogent argument, lest we drown in a sea of mostly inane babbling and constant infighting, completely burying the points that need to be made. Speaking out matters. So does when, where, and how you speak out. And that is something best discussed privately. I'd have much more to say on how privacy and anonymity are inextricably linked, but I'll let the EFF say it: https://www.eff.org/deeplinks/2012/01/right-anonymity-matter-privacy https://www.eff.org/deeplinks/2012/01/right-anonymity-matter...
- FullMtlAlcoholc 10y agoIt's not a moral duty, it's a Robb Report level luxury. One does not need to be particularly articulate or present a rational argument, especially when dealing with matters of morality. Sadly, rhetoric and appeals to emotion, empathy, and common sense are more effective if your goal is to sway others. > This phrase does not mean "All good men should continually natter on". It is also your moral duty to present a cogent argument What I was trying to say is there will be times where you are not as prepared as you like. It's not about presenting an airtight, cogent argument, it's about having the courage to say something like, "Officer, stop beating the shit out of this guy in a wheelchair. He's clearly isn't resisting and you're being a dick."
- djKianoosh 10y agoCan a book (print or electronic) not be published anonymously or under a pseudonym?
- pdkl95 10y agoAn incomplete sketch of a browser plugin/feature that would allow posts to be signed from an anonymous source. (hiding your IP isn't addressed; use something like Tor) * Blocks of text that start and end with magic numbers are signed in-band in the style of "gpg --clearsign". * The pubkey pair is automagically created on first use. For legacy support with existing infrastructure (such as HN): * When you submit a form with a <textarea>, the plugin provides a UI to sign the contents before submitting the form. * When browsing a page that contains magic number wrapped text, the text is automagically verified and the key pinned. * The structure of the signed text should allow the plugin to hide the magic numbers, signature, etc, so the text looks normal. However, newer software would have other options: * Define a mapping between the in-band data and a tag structure that holds the same data. This needs to be strictly defined, so it is possible to remove the tag structure and verify the original signed text. This gives full presentation control back to the website, while allowing individual posts on the page to be verified. The big problem - as usual - is key distribution. In the latter case where it is easy to hide metadata with CSS, the public key can simply be included with the post. Unfortunately, in the legacy case I don't think there's a good way to include two pages of public key in each "--clearsign"d post.
- notwhoyouthink 10y agoI have considered, and even worked on, a Chrome extension for this exact purpose. Some hurdles I discovered: * Websites do weird things with textareas. If it's a plain-ol HTML form, it's pretty easy to intercept and do what you want. It seems most websites intercept button clicks then pass your text around to twenty different JS functions and libraries before doing something useful with it. You wind up writing code to handle edge-cases more than anything else. * To address your final comment, embedding the pubkey inside the text would defeat the entire purpose. A malicious actor (see recent Reddit controversy) can just create their own pubkey, sign the modified comment with it, and noone would be the wiser. Some things I discovered, and found worked well: * Keybase has a fantastic library for generating PGP keypairs in-browser. It really added that extra bit of "magic" to the extension. * Chrome extensions can get CORS exemptions on a per-website basis, and uploading to a standard SKS keyserver is just a POST request that can be done by Javascript. * Expanding on the last bullet point, verifying other user's comments was tricky. During development, I just downloaded all keys on the keyserver that were uploaded by my extension on a scheduled interval and stored them in localstorage. Unfortunately, I don't think this would scale. If anyone is interested in picking up where I left off, I could upload the source to Github.
- Perixoog 10y agoIf you speak to a large group of people anonymously it's not private. If it's not private, what you say, how you say it and when you say it can be analyzed to identify you. It's a people problem not a technical one.
- FullMtlAlcoholc 10y agoWould it not be trivial to algorithmically obfuscate this identifying information? As I write this, Im thinking of Ender's siblings finding their voice under the pseudonyms Desmothenes and Locke
- pdx 10y ago> It seems to me that speaking to a large number of people anonymously is not possible with > any of the existing tools, Signal included While it's still at the testnet stage, I have very high hopes for Maidsafe's SAFEnet. This will allow a completely anonymous internet, providing both users and publishers complete anonymity. Upon release of the actual network, it will live in the wild, just like bitcoin, with no company in control of it. Maidsafe's business model is to be one of many developers that will consult to companies who want to migrate their data storage onto the network. The network itself will be controlled by nobody. It's peer to peer, but there are intermediate nodes which isolate content storage from those who view it, so neither IP addresses of storage nodes nor IP addresses of content consumers can be determined. Since there is no centralization, there's nobody for state actors to attack, legally or by force. All traffic is encrypted and even the ports are randomized, to avoid state firewalls from determining what the traffic is and blocking it. I think it's our best hope to distribute large amounts of data to the world and avoid the censorship that many countries already have and that even those of us in the west see looming upon us. You can learn more about it at https://safenetwork.org/ https://safenetwork.org/ and https://safenetwork.org/documentation/ https://safenetwork.org/documentation/ and https://safenetforum.org/ https://safenetforum.org/
- revscat 10y agoData distribution is next to meaningless if there is not the accompanying power to affect political change.
- pdx 10y agoIn a democracy, dissemination of information to the voters can theoretically affect political change. In countries that are not democracies, I'm uncertain what to do with your complaint. Would you dismiss giving oppressed people access to literature, news, entertainment, or technical and scientific information, on the premise that the information is unlikely to allow them to affect political change? I don't believe that premise is true, but even if it were, their lives are still made better, which means it's far from meaningless.
- 69mlgsniperdad 10y agoTheres Telegram and 'channels.' However many insist it's a honeypot.