• 0 Posts
  • 32 Comments
Joined 8 months ago
cake
Cake day: October 19th, 2024

help-circle

  • Dr_Vindaloo@lemmy.mltoPrivacy@lemmy.mlIs F-droid insecure?
    link
    fedilink
    English
    arrow-up
    2
    ·
    10 days ago

    The biggest problem with F-Droid is that they sign the apps themselves, so if they ever get compromised, an attacker would be able to send malicious updates to any app installed via F-Droid. So now you need yo trust 2 parties (app developer and F-Droid) instead of 1. This is fixed by reproducible builds, which F-Droid does support but which most developers don’t bother with (F-Droid needs to start pushing for this more aggressively imo).








  • Dr_Vindaloo@lemmy.mltoPrivacy@lemmy.mlSmartphone Hardening. Privacy advice?
    link
    fedilink
    English
    arrow-up
    13
    arrow-down
    1
    ·
    edit-2
    1 month ago

    There’s no shortcut you can use to achieve things simply, especially if you want actual anonymity (an extremely high bar). Installing GrapheneOS is the bare minimum (Calyx doesn’t even come close). Then you need to avoid services that ask for personally identifiable info, use VPN for everything (and use public wifi for initial setup), avoid a KYC SIM or SIM in general (also use airplane mode / wifi whenever you can).

    But really I’m guessing you don’t actually need proper anonymity (privacy in general is more reasonable).






  • Can’t speak for other cryptos (generally stay away), but Monero at least has a track record of being actually private/anonymous (unlike btc) and generally doesn’t fluctuate in price nearly as much as others (something the devs try to design into it). Several trusted privacy-focused services (VPNs, VoIP, etc.) accept it as a payment method. If I want to donate to Lemmy, I’d rather do so in a way that keeps my bank from knowing the details and keeping a record of that for who knows how long.