Skip Navigation
InitialsDiceBearhttps://github.com/dicebear/dicebearhttps://creativecommons.org/publicdomain/zero/1.0/„Initials” (https://github.com/dicebear/dicebear) by „DiceBear”, licensed under „CC0 1.0” (https://creativecommons.org/publicdomain/zero/1.0/)DE
dev @vlemmy.net
Posts 0
Comments 11
Meta is a snitch for anti-abortion states
  • It’s been a while since I looked it up, and I don’t use WhatsApp, but I believe it’s E2E encrypted but the mechanism they use allows their servers to also hold the keys to decrypt.

    Presumably they hold a master key that all other keys are derived from.

  • Meta is a snitch for anti-abortion states
  • Oh yeah they definitely aren’t to be seen as the “good guy” and they absolutely could make it impossible to hand over.

    They are deciding to favour data/profits over people’s privacy.

    BUT the distinction should still be made that they could be made to do it, regardless whether they want to.

    Then there’s the whole other conversation around back doors (like the government asked Apple to do in their iPhones).

  • Meta is a snitch for anti-abortion states
  • You’re straw manning. I didn’t say they act in good faith, but it’s important to make a distinction between them handing over the information and being made to.

    For all I known they do hand it over willingly. I don’t know.

  • Meta is a snitch for anti-abortion states
  • There’s a difference between willingly handing over information and being required to by law, though, right?

    I’m no Meta fan, but presumably if they were served a warrant they can’t just say no?

    That’s one of the benefits of E2E encryption, where nobody but the users have the keys. The company can say no, because they simply don’t have access to see them.

  • YSK: Keeping your accounts/online identity safe in the age of the fediverse/federated networks
  • I don’t have enough desire to check, but I’d assume they are encrypted AND salted so it’s not as easy as the top comment makes out.

    If an instance was hacked, the hackers would get a hash and a salt. They’d still have to figure out what plaintext password + salt = hash.

    use unique passwords with every account, everywhere.

    This is the way.