Never would I have thought Lemmy would advocate installing Linux.
They’re so entrenched in OS/2, it came as a complete surprise to me as well.
What happened to all the “Your games will run fine in OS/2”, “it feels just like windows”?
I actually saw a pretty good YouTube recently about what happened to OS/2. In short IBM treated the OS as an afterthought, and didn’t really invest in marketing. The OS/2 team did a spectacular job with what they were given, but the corporate umbrella didn’t really care, so the market all went the win95 route instead.
I tried OS/2 v3 in the 90’s and it was actually pretty decent.
EDIT: I think this was the one.
I had it as a secondary system and it certainly was quite good.
Its compatibility with dos and windows was also quite good. And technically, it was way beyond what Microsoft had. It should have dominated the market.
Why?
It meme
Isn’t signal owned by a single company with backend infrastructure all Managed by them and only them?
The current CEO is nice, for sure, but she won’t be there forever. Look at what Mozilla just did, this eventually WILL happen to signal too
What alternatives are there form something like signal?
You can self-host Signal, although you’d need your friends to sign up with your server.
What we really need is a federated messaging platform. I don’t think it’s been done yet, but encrypted email efforts are kinda in that direction.
Federated messaging we’ve had for ages: XMPP
A modern messenger based on existing technologies, including encrypted email which you happen mention: Delta ChatMatrix is trying to fill that gap
We have email as an example of federated messaging
Where it’s mainly owned by Google and Microsoft
For more varied and detailed recommendations, these might be useful:
https://www.privacyguides.org/en/desktop/
https://www.privacyguides.org/en/desktop-browsers/
Ew, Chromium
And why not DuckDuckGo?
Signal is American
Opt for a Matrix or XMPP provider in Europe (magicbroccoli.de is a genuinely great XMPP provider)
While Signal’s home base is the US, they are a non profit org that doesn’t operate in the same way as for-profit corporations. Also, Signal collects basically zero data so there’s no incentive to sell out, and who would want to buy them anyway when they have no data and the server and client are open source.
Matrix is great, but I wouldn’t compare it to Signal. I use both for very different purposes.
Agree with the sentiment against signal. However, Matrix is terrible for anyone who doesn’t want to bother with reading up on several hours of information just to use a text messenger. I will start recommending Matrix the moment someone actually manages to produce a feature complete client with usable UI/UX.
yeah been trying out matrix. Setup a server and tried various clients. They are all shit.
+1 This is why I moved my family over to Signal, despite it being an American company.
Another benefit is that it’s gaining some serious traction with a lot of people now moving to Signal. Makes it easier for family members to move as well.
XMPP is more comparable to Signal, yes.
Signal does need (yes, need) a phone number, and most people only have one so that is identifiable info.
This puts it at mostly the same level as some competitors, including WhatsApp which is often advised against.
XMPP is more comparable to Signal, yes.
XMPP allows unencrypted messages and leaks metadata - Signal does neither.
Signal does need (yes, need) a phone number, and most people only have one so that is identifiable info.
Signal is basically a privacy enhanced text/SMS/phone replacement. I can give my phone to someone in person and they can immediately start “texting” me on Signal - this is a feature (as well as a con to some people).
This puts it at mostly the same level as some competitors, including WhatsApp which is often advised against.
People advise against Whatsapp because while it uses Signal to encrypt message contents, they take no effort to minimize the collection of metadata - Signal’s been compelled by court to present all data it has on its users various times and the only info they have is the day/time you signed up for their services and the last day (not time) one of your clients pinged their servers - Source: https://signal.org/bigbrother/
I have yet to find any other free service that collects this little information and works just as well as a normal non-encrypted messenger. Even Signals sticker packs are end-to-end encrypted - Source: https://signal.org/blog/make-privacy-stick/
What metadata does XMPP leak? AFAIK only when a message was sent, roughly (in large increments) how large the message was, the server of the sender knows from who to which server, the server of the recipient knows from which server to who.
I find it strange that Signal somehow doesn’t know when a message was sent, and from who to who; how would they ever make this possible?Also, you say you have yet to find any other free service that collects as little data… How about most e-mail providers? Not Google and Microsoft of course, but most e-mail providers only need a name which can be made up as well. You hm also host your own email server, then you are in control. All of this is true for XMPP and Matrix, as well.
What metadata does XMPP leak?
- Sender’s Full Jabber ID (JID): This is typically in the format
user@domain.com/resource
. Theuser@domain.com
part identifies the user and their home server, and the/resource
identifies the specific client device they are using (e.g.,alice@example.com/mobile
oralice@example.com/laptop
). - Recipient’s Full Jabber ID (JID): Similar to the sender’s, this specifies who the message is intended for, including their user, home server, and often the specific resource.
- Sender’s Server: The domain of the sender’s JID reveals which XMPP server the sender is connected to.
- Recipient’s Server: The domain of the recipient’s JID reveals which XMPP server the message is being routed to.
- Timestamp of Message Transmission: Servers record when a message was sent, which can be used to infer activity patterns.
- Approximate Message Size: While the exact content is encrypted, the size of the encrypted stanza can still be observed. This can sometimes give clues about the type of content (e.g., a small text message - versus a larger file transfer).
- Message Type (e.g., chat, group chat, presence, IQ): XMPP uses different stanza types for various purposes. Even with E2EE, the type of stanza (e.g., a “message” stanza vs. a “presence” stanza) is visible.
- Participation in Group Chats: If a user is part of a Multi-User Chat (MUC), the MUC service and the user’s participation in it are known to the MUC server and potentially other participants’ servers.
- Presence Information: XMPP inherently broadcasts presence (online/offline status, “away” messages, etc.) to contacts. This reveals when a user is active.
- Contact List (Roster) Information: While not “leaked” during every message, the XMPP server hosts and manages the user’s contact list, meaning the server knows who a user is communicating with.
- Device Information (Resource): As mentioned, the
/resource
part of the JID can reveal the type of client or device being used.
I find it strange that Signal somehow doesn’t know when a message was sent
Signal uses Sealed Sender (wired.com). Imagine if letters you sent didn’t require a “from” field - or it was inside the envelope and impossible for anyone to see it. The post office would only know who its going to and only the recipient can decrypt it (open the letter) to see who sent it. Now, you could say, well they have your IP and can correlate it to the account, but the easy way around this is to either use a VPN or Signal proxy (support.signal.org) if you’re that paranoid.
how would they ever make this possible?
Read more about it here: Technology preview: Sealed sender for Signal (signal.org)
How about most e-mail providers? Not Google and Microsoft of course, but most e-mail providers only need a name which can be made up as well
Most email providers suffer similar metadata leaks as XMPP because:
-
- Email was created in the 70’s and we’ve learned a lot since then about privacy and security.
-
- XMPP works off a similar concept where you inherently pass data along to another server.
You could host your own email, XMPP, or Matrix server - that’s definitely a win for privacy. But as soon as you interact with someone outside your ecosystem (server), metadata leakage is an issue again. It’s why making end-to-end encrypted email is a hard problem to solve. It’s not that it can’t be secure, its that it has to work with those that aren’t because that’s the expectation.
… host your own email server, then you are in control
Until you interact with others who aren’t using encryption or have it misconfigured.
- Sender’s Full Jabber ID (JID): This is typically in the format
Chatgpt used to be a non profit. Now it’s almost half Microsoft owned. Sneaky! T&cs can change too (e.g. Firefox selling out google funds them a bit now apparently? ). Don’t give up just find European fully alternatives.
Also simplex is a good alternative, it’s decentralized:)
This? https://https/://simplex.chat/
FWIW Matrix and XMPP are also decentralised, much like e-mail is, which is why I recommended it. I’m immediately skeptic about SimpleX’s premise of having no user IDs; they’ll likely need some unique field for each user, this might as well be a UUID or something like that… So what’s the benefit?
Since it’s related, here’s a good comparison:
https://eylenburg.github.io/im_comparison.htm
I think the other person here explained the thing about user ids. Matrix and xmpp are good too, they’re just different.
Simplex is more of a messenger, while xmpp/matrix are more of discord alternatives.
Also simplex works with nodes. I can host a simplex server and it will be added to the network. In matrix/xmpp if I host a server it will be a new instance, like in lemmy (if I get it right). Simplex’s approach is like tor’s approach, each server added contributes to the whole network (they arent a separate instance).
If you check their page they have some bery good features, to me it seems like its signal, done (somewhat) right. Signal doesnt even have a proper way to migrate accounts across devices… not to mention the phone number requirement which might scare people who aren’t gonna waste time hearing my explanation as to why it’s not an issue or the fact that until recently signal would notify everyone in your contacts who had a signal account that you made an account, bruh
There’s also this comment here that throws some shade to matrix, havent looked much into that tho.
Wait, wasn’t Vivaldi bought by a Chinese conglomerate?
librewolf is still dependent on firefox for development, just like vivaldi is on chrome. there is no european web browser.
For FF and Chromium to, their source is open so if there ever was a need to make it fully European, it would be doable. Or did I miss something? (novice question, here)
I got a security alert when clicking the link, I did not push further sorry ;)
Because it’s not using https. While https is certainly preferable, as long as you’re just reading info of a website (not making an account, entering data) http is pretty much fine.
Modern Browsers just don’t like it (which is also understandable, because most users probably don’t care about the nuances of when it is or isn’t a problem).
I see, thx.
The problem is that Librewolf, ungoogled chromium etc are soft forks, meaning they are completely dependent on the original projects. If for example Trump made a law banning releasing software as open source because that’s communism, Librewolf would likely cease to exist
is there anything based on khtml ??? Idk how it works but these forks are shady
yeah, webkit (as in, the engine for safari, and the base of blink which powers chromium) is based on khtml. khtml is oooooooold.
Although I found mojeek which feels like a browser???
mojeek is a search engine.
Fuck the Ai slop.
It’s a technology being used by capitalist around the world to take jobs away from people and to push fascist agendas!
https://newsocialist.org.uk/transmissions/ai-the-new-aesthetics-of-fascism/
As an american I am switching to European apps I am disgusted with being an american citizen and if I could I would move.
Isn’t ecosia paying
GoogleBing for its results?Edit: changed Google to Bing.
Yes, but ecosia is currently building a European search index together with qwant. In my view, the two are therefore worth supporting
If you want to use large language models or other generative predictive models (I refuse to call it AI) then I suggest considering self hosting those models for ultimate control of the information you provide.
If that’s not possible, https://duck.ai/ is pretty damn good privacy wise. (Not Based in EU)
It would’ve been perfect if it recommended matrix instead of american-owned signal.
Already done most of those, whatsapp is the hardest to replace for me from this category.
Whatsapp/Facebook is probably one of the biggest offenders. They’re one of the ones that got us into this mess.
So your suggestion to “buy European” is to download a bunch of free shit…
I tried Mistral and it’s awesome, I am upgrading to the paid version
Last spring Mistral (free tier) was better for my usage (mainly JS programming) than ChatGPT (free tier). No idea which is better now (esp. after openai launched chatgpt 4, but Mistral improved too) but at least Mistral isn’t bad at all.
I don’t think I have to elaborate on Linux > Windows. If that’s really needed ask for it please. Summary: It’s simply better, the times where it was only for nerds are long gone.
Search engine doesn’t matter too much. I usually use DuckDuckGo and it works fine (does what a search engine should do without displaying ads, unlike Google).
Signal over WhatsApp also is pretty obvious, but it’s the hardest one to change because so many people simply don’t want to switch once one thing is running and you want to communicate with those people.
LibreWolf basically is Firefox (which is far better than Chrome in terms of privacy, ad blocking, customisability, …)
No US non profits please. Case examples of selling out: chatgpt, Firefox. Even if we consider the country it’s based and it’s European look at the PEOPLE, their history of selling prev companies and to who? And their ethics who they do business with and if they stick to their word