• Sophocles@infosec.pub
    link
    fedilink
    arrow-up
    4
    arrow-down
    2
    ·
    6 days ago

    Your comment is an example. Without certain measures in place, your comment is now potentially in the hands of:
    Your instance
    Your app/browser
    Your local network
    Your ISP
    Your OS
    Your Government
    These are just examples, but you have to trust that each of these privacy policies or your equivalent of them is telling the truth, or have measures in place to mitigate said data collection

    • iii@mander.xyz
      link
      fedilink
      English
      arrow-up
      6
      ·
      6 days ago

      The original comment stated that everything I do online is (1) both tied to my real identity and (2) that these intermediaries can interpret and share/sell the content.

      Can you give an example that’s not an intentionally public comment, on a public platform?

    • Turret3857@infosec.pub
      link
      fedilink
      English
      arrow-up
      1
      ·
      6 days ago

      Its possible the Gov’t knows who actually owns this account just due to the massive snooping done by alphabet soup agencies. I find it unlikely my ISP is breaking my quantum encrypted VPN just for ads, and I find it unlikely my linux router and linux computer are spying on me.

      • sunzu2@thebrainbin.org
        link
        fedilink
        arrow-up
        2
        ·
        5 days ago

        find it unlikely my linux router and linux computer are spying on me.

        Yeah, that would require some serious commitment from the spooks. So really depends if your shit posting is national security concern lol

        TBH, I am pretty sure half of fedi will be sent into Gitmo in the future

      • Showroom7561@lemmy.ca
        link
        fedilink
        arrow-up
        1
        arrow-down
        1
        ·
        5 days ago

        I find it unlikely my ISP is breaking my quantum encrypted VPN just for ads

        They don’t need to break encryption. You have an account to post here, and I’m assuming you are using the same device to access other services you have which also use accounts, right? Now, suppose your IP address doesn’t rotate very often, it would be very easy for a company like Google to relate at least a few accounts to start building a profile.

        Then, since posting here is pretty easy to scrape, even more data can be collected… like the fact that you use a linux router and OS. The profile keeps getting bigger with every new interaction, and at some point, it won’t even matter if your IP changes, because there may be enough static data somewhere that could be linked to a different account (i.e. your phone, phone’s OS, screen size, etc. can be used to isolate you from other users).