• 9 Posts
  • 3.43K Comments
Joined 6 个月前
cake
Cake day: 2024年12月22日

help-circle









  • I’m not sure if this guy is just dumb or it’s a honeypot.

    1. As mentioned elsewhere, they don’t use device ID

    2. Android is the only platform that supports alternative push methods

    3. Apple knows everyone who downloads this app, which is subject to subpoena

    4. The gov has been collecting push notification data from both Apple and Google for a long time. It would be as simple as knowing when notifications went out and then comparing timestamps to figure out who is using the app.

    5. The app is closed-source

    It would take significantly more mental energy on the part of the user but it would be far safer (which is extremely important in this specific case, as the dev agrees) to distribute through F-Droid and then use some other UnifiedPush implementation, as many Android apps already do. Anyone using this app is making themselves a huge target for the current authoritarian state.











  • they can already block VPN traffic unless it goes through their VPN

    Yeah that’s how most VPNs work.

    their whole business model is based on them being a man in the middle that decrypts ssl and analyses the requests plainly

    Okay? Analyze all you want. They can’t stop bots on any of the other sites they regulate either.

    about a third of the worldwide websites are using cloudflare so they have a pretry good birds eye view on behaviour of any machine that will be visiting a lot of websites

    Great. Bots intentionally change up their behavior and identifying information as to be undetected.