• 0 Posts
  • 7 Comments
Joined 1 year ago
cake
Cake day: June 30th, 2023

help-circle

  • So that setup effectively gives you an all-ports available connection (except 22) from your mobile device and anything that connects through it, like a laptop? The exit node would be the VPS.

    Could I skip the home router and EoIP+VPN directly between mobile and VPS, for instance?

    I am in a situation (restrictive firewall on ethernet/wifi, prefer personal mobile connection but it’s cgnat or something equally crap) this could be very useful for me.


  • humanreader@infosec.pubtoLemmy@lemmy.mlWill this also affect lemmy.ml?
    link
    fedilink
    English
    arrow-up
    51
    arrow-down
    2
    ·
    1 year ago

    FYI, two letter TLDs are country/region/jurisdiction specific. There’s an ISO standard for that.

    • .tv Tuvalu
    • .me Montenegro
    • .fm (Federation of) Micronesia

    Some countries append additional modifiers to classify their uses:

    • .uk United Kingdom
    • .co.uk Company

    Three or more are generic (traditional or new)

    • .com, .net, .org, …

    In some cases, Uncle Sam said “first!” and it stuck.

    • .edu Education (MURICA)
    • .mil Military (MURRICA)
    • .gov Government (MURRRICA)

    Just like what happens with Mali, what some silicon valley hipsters decide as a ‘fun’ acronym is just that, a fun thought. If the corresponding government decides to take away a specific domain, they probably can.





  • Speaking of which, stuff that frequently comes up in privacy related forums:

    Differentiate between your professional accounts (it has your real name attached) and your non-professional ones (you use it to discuss pooping methods for example). Don’t mix them up. I know many will say “so what if people in the fediverse know where I live and how I poop, I got nothing to hide” a lot, but that’s how people got doxxed or swatted.

    Even if you don’t feel the need to, it’s good to sit down and identify the potential threats given certain problems. Do you recycle passwords for email and social media accounts? What about banking? If a malicious coworker or an immature family member got access to your social media profile and posted reputation-damaging content, how bad can things get? Identify the outcomes you can mitigate or must prevent, and plan accordingly.

    There is no “100%” when it comes to privacy. It’s a process, not an “all-or-nothing” switch. Beginners often ask if “program X and Y will protect me 100%”, and the answer usually boils down to “there isn’t a single magic pill”.

    Privacy ≠ Security ≠ Anonymity. A VPN subscription can secure your connection (content secret in transit), but does not make you anonymous (sender known to middle node). You could leave an anonymous message (sender unknown) on a public forum, but the message itself isn’t private (content not secret). And so on.

    Encryption is a useful tool, but don’t fall for the “military grade encryption” speech. They often mean “we just slapped whatever shit it came up with”, nothing extraordinary.

    There are many more but I will stop for now. No, I am not in Guantanamo.