I’m happy to see this being noticed more and more. Google wants to destroy the open web, so it’s a lot at stake.

Google basically says “Trust us”. What a joke.

  • donut4ever@lemmy.world
    link
    fedilink
    English
    arrow-up
    383
    arrow-down
    1
    ·
    1 year ago

    So, they can also block operating systems if they deemed them untrustworthy? So, if you are running Linux and some corporation deemed it “untrustworthy”, you are SOL? What if you have a rooted phone? What if you are running graphene OS or calyx OS to protect your privacy? So, technically, if a site can’t track you, they can just deem you as “untrustworthy”? This is fucked. We need to stop it at all costs.

    • 1984@lemmy.todayOP
      link
      fedilink
      English
      arrow-up
      178
      ·
      1 year ago

      Yes exactly. This is what worries me the most since I also run only Linux, and I can’t imagine even being interested in computers anymore if Linux is not allowed on the web. That would be horrific.

      It’s 100% critically dangerous and must be stopped.

      • donut4ever@lemmy.world
        link
        fedilink
        English
        arrow-up
        123
        ·
        1 year ago

        Yeah, this is crazy and need to be stopped. Google certainly need to be broken up, they are getting too powerful

        • Alto@kbin.social
          link
          fedilink
          arrow-up
          82
          ·
          1 year ago

          They’ve needed to be broken up for over a decade now, but that’d require the government to actually enforce antitrust/monopoly laws

          • bobs_monkey@lemm.ee
            link
            fedilink
            English
            arrow-up
            29
            ·
            1 year ago

            The FTC is apparently going after Amazon, so I’d be curious to see how that goes

            • Alto@kbin.social
              link
              fedilink
              arrow-up
              27
              arrow-down
              1
              ·
              1 year ago

              Yup. It’s the first FTC in a long time that’s even tried to do their job. Really hoping they have success.

            • Ensign_Crab@lemmy.world
              link
              fedilink
              English
              arrow-up
              4
              ·
              1 year ago

              If it goes anything like Microsoft’s antitrust trial, they’ll drag it out until they get a complicit administration to settle with.

          • I'm Hiding 🇦🇺@aussie.zone
            link
            fedilink
            English
            arrow-up
            9
            arrow-down
            1
            ·
            1 year ago

            It’s crazy to think that a little over two decades ago, Microsoft was almost broken up for selling an operating system and a web browser. How monopolistic!

      • TheHighRoad@lemmy.world
        link
        fedilink
        English
        arrow-up
        35
        ·
        1 year ago

        What really disturbs me is how the recent tech shenanigans have been a long time coming; seems the internet we have come to know for the last 15 years only existed thanks to the ridiculous interest rates post 2008.

        • Bipta@kbin.social
          link
          fedilink
          arrow-up
          13
          ·
          1 year ago

          I’d be interested to hear more of your theory on this:

          the internet we have come to know for the last 15 years only existed thanks to the ridiculous interest rates post 2008.

          • nefarious@kbin.social
            link
            fedilink
            arrow-up
            49
            ·
            1 year ago

            I think this article from the Verge explains it pretty well.

            tl;dr:

            • The Fed kept interest rates low from 2008 to 2021. Low interest rates made it easier to borrow money and meant that debt-backed investments like bonds had a low return, so investors favored stocks for a better yield on their investment.
            • This meant tech companies could borrow a ton of money at low interest rates and raise a ton of money from investors through stock sales, allowing them to build services that weren’t profitable in order to grow as rapidly as possible. This basically defined the internet as we know it today - big companies offering free/cheap services with minimal restrictions. Companies could afford to charge low fees and look the other way on things like ad blockers.
            • However, now that interest rates are going up, borrowing is much more expensive and investors are less motivated to buy stock, so all that easy money has dried up. Companies are having to raise revenue by increasing prices, adding more ads, blocking ad blockers, etc.
          • Speff@melly.0x-ia.moe
            link
            fedilink
            English
            arrow-up
            19
            ·
            1 year ago

            Online services cost a lot of money. People don’t realize how much because VCs and corpos w/ deep pockets have been subsidizing most major services for a long time. Now that the free money period is more-or-less over, these services need to start paying the bills with their users - commence enshittification

            • wavebeam@lemmy.world
              link
              fedilink
              English
              arrow-up
              27
              arrow-down
              1
              ·
              1 year ago

              Well it’s not that they “need to pay bills” they make plenty money to pay bills with the revenue they already earn. The issue is that capitalism demands not just profits, but continually increasing profits each quarter.

              • Aceticon@lemmy.world
                link
                fedilink
                English
                arrow-up
                4
                ·
                edit-2
                1 year ago

                To put thing in perspective and trying to not use too obscure financial terms:

                • Company’s stock prices are related to their Earnings (i.e. their profits) via what’s called a Price/Earnings Ratio: basically the idea is that each stock entitles you to a shared of their profits (via dividends: a share of a company’s profits which is paid to those who have shares in that company), so if their profits are higher their stock prices should be higher too because each stock entitles you to get more money in dividends.

                There’s some extra maths here because different companies split iownership in a different number of stocks but the basic principle is that the total value of all stocks in the company at the current stock price are related to its yearly profits.

                Now, run-of-the-mill companies (say, traditional automakers, energy companies and so on) have P/E ratios around maybe 20 or 30 (it varies from company to company and depends on the general stockmarket mood, going up when people are more hopeful - i.e. bully - and down when they’re less hopeful - i.e. bearish).

                By comparison Tech companies (and that includes automakers who managed to pass themselves as Tech companies, such as Tesla) have P/E ratios of around 80, 120 and going all the way at times to infinity for companies not making profits (Twitter for a long time was losing money and had a P/E of infinity).

                By the way, this is how Tesla manages to have a higher total market worth (the price of each stock times the total number of stock) higher than companies which sell 10x+ more cars: it’s treated as Tech, hence gets this magical boost to stock price.

                So, what’s the stated reason for this: well, those holding those stocks at such prices claim it’s because the growth prospects of such companies are huge.

                In reality (IMHO) a lot of it is just speculation, and now that holding stocks at inflated stock prices whilst you wait for a bigger sucker to buy them from you for even more money is something that might actually loose you money (unlike before with zero interst rates, now that interest rates are back up you often could be making more money from it if you bought treasuries instead) the speculative “hold, wait and see if they grow massivelly” posture on stocks (which was even done with lent money on which 0% interest was paid) isn’t anywhere as appealing so it’s unravelling.

                So all of the sudden Tech companies are having to justify stock prices the same way as traditional companies do: by having profits that justify them, hence lowering their P/E ratios from la-la-land values to something more realistic.

          • TheHighRoad@lemmy.world
            link
            fedilink
            English
            arrow-up
            3
            ·
            edit-2
            1 year ago

            I’m just a layman, but it has been nagging my brain how all these big tech companies seem to be turning shitty all at once. I’ve seen others propose similar explanations, but the basic idea is that the historically low rates got them addicted to “free” capital. Now the faucet has been slammed shut and they have to make up for the shortfall.

            Also, it’s not just big tech at fault. The massive worldwide inflation we’ve experienced happened for the same reason - shortsighted greed.

            • Nobody@lemmy.world
              link
              fedilink
              English
              arrow-up
              2
              ·
              edit-2
              1 year ago

              It’s definitely the high interest rates. All of tech has been built on venture capitalist money with “grow at all costs” as the primary strategy. With sustained higher interest rates, VC money is much harder to get. The focus has gone from “grow at all costs” to “become profitable at all costs.” It’s jarring, and it’s happening everywhere at the same time.

    • Guy_Fieris_Hair@lemmy.world
      link
      fedilink
      English
      arrow-up
      27
      arrow-down
      6
      ·
      1 year ago

      “All Google associated platforms hereby block all ios devices.”

      I am not a fan of apple. But this would piss a lot of people off but is well within their ability and rights to do. And unfortunately they have enough of a monopoly with the internet (Google, youtube, and all the other sites served through their dns) that they can essentially break the internet for people they block. They would get 90% of those ios users to switch to Android.

      The flow of information through the internet is one of the greatest advancements of man kind and we have to trust a massive cooperation not to destroy it.

      • grue@lemmy.world
        link
        fedilink
        English
        arrow-up
        18
        ·
        1 year ago

        I am not a fan of apple. But this would piss a lot of people off but is well within their ability and rights to do.

        That’s a goddamn lie. They absolutely DO NOT have the “right” to engage in behavior that blatantly anti-competitive!

        • joel_feila@lemmy.world
          link
          fedilink
          English
          arrow-up
          1
          ·
          1 year ago

          Ok they the power and apparently the legal power*

          Ad of right now ues and until ftc grow a spine

      • Alto@kbin.social
        link
        fedilink
        arrow-up
        12
        ·
        1 year ago

        The fact that they have that much of a monopoly is exactly why it isn’t legal, but those laws are basically never enforced

      • Apathy Tree@lemmy.dbzer0.com
        link
        fedilink
        English
        arrow-up
        19
        arrow-down
        12
        ·
        1 year ago

        You underestimate the willingness of iOS users to tolerate a sub-par experience in exchange for their fancy walled garden ecosystem.

        Just the os alone is restrictive as hell, and they don’t care.

        Could they do it? Maybe. But it would be profoundly stupid of them to try.

        • wavebeam@lemmy.world
          link
          fedilink
          English
          arrow-up
          29
          ·
          1 year ago

          Your high-horse opinion of Apple users aside, you are right that OP is greatly overestimating people’s commitment to google’s services over their iPhones.

          • Apathy Tree@lemmy.dbzer0.com
            link
            fedilink
            English
            arrow-up
            3
            arrow-down
            4
            ·
            1 year ago

            I am an apple user, but I was on android up until last year. It’s more an observation based on conversations I’ve had before and after switching than anything.

          • UmbrellAssassin@lemmy.world
            link
            fedilink
            English
            arrow-up
            3
            arrow-down
            7
            ·
            1 year ago

            I mean he’s kinda right. I’ve seen starving, rabid dogs go at road kill with less intensity than an apple user at a “new” apple invention.

          • Apathy Tree@lemmy.dbzer0.com
            link
            fedilink
            English
            arrow-up
            2
            ·
            1 year ago

            Apple already has attestation in safari, so why would any major companies exclude them when they offer it also?

            Google would be really stupid to try to exclude apple os, because apple has safari. They would lose their iOS users, iOS users wouldn’t become android users.

    • SpunkyBarnes@geddit.social
      link
      fedilink
      English
      arrow-up
      15
      ·
      1 year ago

      Funny how services that used to work transparently, no longer do.

      VPN? Works with some sites, not others. Same with email. Can just see the big G wading into that and the waters being royally roiled.

    • Archimede@fediverse.boo
      link
      fedilink
      English
      arrow-up
      2
      ·
      1 year ago

      I guess if such things were to concretise, alternative ways would rise. Slowly and far less efficient than the Google engine, but I guess there is always a solution. Maybe a network of relay, like VPN but for accesing Google domains ? I know it would be far from perfect…

      • grue@lemmy.world
        link
        fedilink
        English
        arrow-up
        11
        ·
        edit-2
        1 year ago

        Legislate against and use anti-trust law to destroy companies that act like this. Boycotts, while not a bad idea, aren’t even close to sufficient.

  • 6xpipe_@lemmy.world
    link
    fedilink
    English
    arrow-up
    291
    ·
    1 year ago

    WEI can potentially be used to impose restrictions on unlawful activities on the internet, such as downloading YouTube videos and other content, ad blocking, web scraping, etc.

    Not one of those things is illegal.

    Some are against a site’s TOS and some are outright fine.

      • 6xpipe_@lemmy.world
        link
        fedilink
        English
        arrow-up
        1
        ·
        1 year ago

        Scraping itself is not illegal. It’s not until an AI generates a copyrighted IP that it becomes an issue.

        It’s like if I were trying to start an art business. You come to me and ask me to draw a princess. I’ve never seen a princess before, so I go online and look up images of princesses to get an idea what to draw. I go back to the studio and draw you a picture of Snow White.

        Me looking up princess images is fine. It’s only when I sell a Disney® IP without their permission that it becomes illegal. And, even then, it’s a civil matter, not criminal.

    • Obi@sopuli.xyz
      link
      fedilink
      English
      arrow-up
      84
      ·
      1 year ago

      Just switched yesterday, was way easier than I thought it would be. I’m converted on all my devices, all my stuff has been synced from Chrome in a few clicks. Just do it people.

      • lemmyvore@feddit.nl
        link
        fedilink
        English
        arrow-up
        43
        ·
        1 year ago

        If you haven’t already, check out Firefox Sync.

        You can sync your stuff across Firefox instances (PC, mobile, different PC profiles etc.) You can choose to sync logins, open tabs, bookmarks, add-ons etc.

        Each place you use Firefox can choose to sync different stuff, so for example you can sync logins everywhere but only sync open tabs on the PC.

        In case you replace the phone or your PC HDD crashes etc. all you have to do is login back to Firefox Sync and you get all that stuff back.

      • 1984@lemmy.todayOP
        link
        fedilink
        English
        arrow-up
        35
        ·
        1 year ago

        I love Firefox so much. Specially the built in sync. I can browse something on my phone and open it on my computer later and continue where I left off.

    • throwing_handles@lemmy.world
      link
      fedilink
      English
      arrow-up
      30
      ·
      edit-2
      1 year ago

      If this comment makes you think desktop/laptop, I just switched to the firefox app on my android and have seen no downsides!

      (Copied my comment from the last post about this)

      • 𝑔𝑎𝑙𝑎𝑥𝑖@lemm.ee
        link
        fedilink
        English
        arrow-up
        11
        ·
        1 year ago

        I’ve been using Firefox mobile for a few years now too, and the one thing I’ll point out is that the addon store is a lot more limited than on PC – unless you’re using Firefox nightly or beta, which lets you use any. But for the average user that only needs ublock or noscript, etc. it’s a perfect choice:)

        • fat_stig@lemmy.world
          link
          fedilink
          English
          arrow-up
          3
          ·
          1 year ago

          Tampermonkey expands the functionality you can use to take control, I use the twitter control panel to transform the mobile experience of X. No need for the app with all the forced Elmo bollocks.

        • PainInTheAES@lemmy.world
          link
          fedilink
          English
          arrow-up
          1
          ·
          1 year ago

          It’s kind of silly. I use nightly with custom add-ons and most of the add-ons work without issue. The UI might not be the best for the phone but they’re functional. I’m not sure why the mobile add-ons are so restricted, even enabling them in nightly is bizarre. You need to go in and tap on the FF icon in the version info page or something like that…

    • ChocoLemming@lemmy.world
      link
      fedilink
      English
      arrow-up
      7
      ·
      1 year ago

      I recently switched and all’s good so far. Correct me if I’m wrong, wei would also be able to block certain browsers, including Firefox, right? I wish just switching browsers would be enough to avoid Wei though :/

      • chickenwing@lemmy.world
        link
        fedilink
        English
        arrow-up
        3
        ·
        1 year ago

        If google gets their way websites will be able to block OS’s and browsers. But if enough people switch to Firefox they won’t be able to push this change as easily. Google Chrome has about an 80% marketshare in the browser market and most of the alternatives are forks of Chromium which google controls. If this doesn’t change Google will be able to do anything they want.

    • tabular@lemmy.world
      link
      fedilink
      English
      arrow-up
      6
      arrow-down
      31
      ·
      edit-2
      1 year ago

      Firefox in the meanwhile but long term we need to move away from the unfathomably bloated web protocol standard/browsers.

      • TheYear2525@lemmy.world
        link
        fedilink
        English
        arrow-up
        27
        arrow-down
        1
        ·
        edit-2
        1 year ago

        Web protocol? Which one?

        I wouldn’t consider http or dns bloated, for instance. And tcp/ip isn’t web-specific enough for me to think that’s what you mean by “the web protocol”.

        Are you just trying to say you don’t like websites in a way that sounds techy?

          • TheYear2525@lemmy.world
            link
            fedilink
            English
            arrow-up
            24
            ·
            edit-2
            1 year ago

            That’s a rant about the complexity of modern browser engines, not the protocols. The web worked just fine before CSS and JS. The protocols aren’t the problem. Lynx is still being maintained if you want the web without the bloat of features like js and inline images.

            • tabular@lemmy.world
              link
              fedilink
              English
              arrow-up
              3
              arrow-down
              6
              ·
              1 year ago

              I believe the rant demonstrates there cannot be more competition for browsers and therefore justifies the idea that browsers will stagnate and come to an end. I think the solution will be to move away from one application doing many things to using separate software dedicated to narrow purposes.

              • Eheran@lemmy.world
                link
                fedilink
                English
                arrow-up
                1
                ·
                edit-2
                1 year ago

                Ah yes, I do the same in my kitchen. One machine that does one job and then sits around unused for the rest of the year.

                No, obviously that is not the way. I don’t want to deal with 20 separate programs to do the job Firefox does.

      • dan@lemm.ee
        link
        fedilink
        English
        arrow-up
        5
        ·
        1 year ago

        What’s the “web protocol”? Are you talking about HTTP?

        • TheYear2525@lemmy.world
          link
          fedilink
          English
          arrow-up
          8
          ·
          1 year ago

          Seems from their response to me asking the same thing, they mean browser engines, not anything to do with any of the protocols involved.

              • dan@lemm.ee
                link
                fedilink
                English
                arrow-up
                6
                ·
                1 year ago

                Ok well, the modern web technology ecosystem is incredibly featureful and flexible, it allows a huge array of options for building rich interactive applications, all delivered to your browser on-demand in a few seconds.

                Sure some of the technologies involved aren’t perfect (and I challenge you to find any system that feature-rich that doesn’t have a few dark corners), but there really no alternative option that comes close in terms of flexibility and maturity.

                • tabular@lemmy.world
                  link
                  fedilink
                  English
                  arrow-up
                  1
                  ·
                  1 year ago

                  Adding features endlessly, heedless of danger of the inate security issue from the complexity, makes for an uncompetative and ultimatly unsustainable ecosystem.

                  The alternative I believe in is to use seperare apps for each segmented feature (the dedicated video player plays the video, the browser merely fetches it).

        • kameecoding@lemmy.world
          link
          fedilink
          English
          arrow-up
          8
          ·
          edit-2
          1 year ago

          this reads like a script of a Pitch meeting.

          and is it going to be hard for people to accept this WEI?

          No, it’s gonna be super easy, barely an inconvenience .

          Oh, really?

          yea, you see, majority of people don’t give a fuck and have no idea what it is about.

          Oh wow, wow wow wow

    • Buddahriffic@lemmy.world
      link
      fedilink
      English
      arrow-up
      23
      arrow-down
      1
      ·
      1 year ago

      They used to have a motto like “Do no evil”, which was kinda sus to begin with (they were a search engine in a time when many didn’t even consider the evil possibilities of the internet). But if you start out with a motto like that, it’s even more sus if you suddenly drop it, which they did.

      • mog77a@lemmy.world
        link
        fedilink
        English
        arrow-up
        14
        arrow-down
        1
        ·
        1 year ago

        They didn’t “drop it”. It’s still there. Scroll all the way to the bottom.

        They simply removed it from higher profile places and don’t mention it until the very end. Sort of a jab at the old policy.

      • Aceticon@lemmy.world
        link
        fedilink
        English
        arrow-up
        5
        ·
        1 year ago

        Usually when a company loudly proclaims that “we have this quality” they’re compensating for not in fact having it.

        You get the same in people: “I’m so smart”, “I’m so beautiful”, “I’m so confident” and so on are usually said to others by people who don’t actually believe they have such (otherwise self-evident) qualities.

        In that logic “Do no Evil” was a red flag.

  • blazera@kbin.social
    link
    fedilink
    arrow-up
    99
    ·
    1 year ago

    The fraud-fighting project has fired up quite a controversy

    fraud-fighting? Even Google’s initial pitch was explicitly describing it as a way to sell more ads.

    • lemmyvore@feddit.nl
      link
      fedilink
      English
      arrow-up
      15
      ·
      1 year ago

      I wish they’d have grown a pair and outright said “we’re forbidding ad blockers in Chrome, come at us”. I bet there’d be less controversy. This WEI thing just makes them look like sniveling weasels.

  • Max-P@lemmy.max-p.me
    link
    fedilink
    English
    arrow-up
    98
    ·
    1 year ago

    They claim it’s to prevent bots, but we all know it’ll soon become standard in every WAF out there (Cloudflare, Akamai, etc) to just blanket block browsers failing attestation.

    All you need to know what will happen is to root an Android phone. You’d expect Netflix and bank apps and other highly sensitive apps to stop working. Okay, I can accept that, it kind of make sense. But the more you use the phone the more you realize a ton of apps also refuse to work. Zoom complains and marks your session as insecure, the Speedtest app refuses to test your speed, even the fucking weather app won’t give you weather anymore. Jira/Confluence/Outlook/Teams also complain about it. It’s ridiculous.

    Even if it’d trust Google to not misuse the feature and genuinely use it to reduce ad fraud, the problem is the rest of the developers and companies. Those, they absolutely cannot be trusted to not abuse the feature to block everyone. Security “consultants” will start mandating its use to pass security audits, government websites will absolute use it, and before you know it, half the web refuses to work unless you use Chrome, Edge or Safari.

    • 1984@lemmy.todayOP
      link
      fedilink
      English
      arrow-up
      50
      ·
      1 year ago

      Yup I noticed this also. I used a rooted phone without Google apps on it and so many apps simply refused to work. They use Googles api in the background which means Google finds out about literally everything we do on our phones. They already own the entire operating system but we can’t even run apps without them being in the middle.

      This is all similar to using Microsoft Windows or Mac OS so I guess people are so used to this behavior that it’s somehow ok.

      But I’m a long term Linux user and I’m used to the OS not calling home and not reporting what apps I use. And this is how it should be. I’m so over big tech it’s not even funny anymore.

      • Zak@lemmy.world
        link
        fedilink
        English
        arrow-up
        23
        ·
        1 year ago

        I used a rooted phone without Google apps on it and so many apps simply refused to work. They use Googles api in the background

        This has nothing to do with being rooted but with Google encouraging people to build apps using its proprietary libraries to make Google Android more valuable than Android Open Source Project. There may be a connection to the EU’s attempts to stop Google from forcibly bundling several of its other apps with the Play Store.

        For most use cases, good alternatives are available and it’s just a matter of developers being lazy, but I’m not sure there’s another good option for chat apps to get timely notifications without high battery consumption. MicroG provides an open source alternative to Google’s libraries and works for most apps, including chat notifications.

        • Max-P@lemmy.max-p.me
          link
          fedilink
          English
          arrow-up
          6
          ·
          1 year ago

          It’s a bit worse than just Google libraries, apps can use Play Integrity which uses hardware attestation to validate it’s bootloader lock status and that it’s running a vendor signed and Google approved ROM.

          Current bypasses emulate older devices without the necessary hardware, but those will eventually stop working and there won’t be bypasses unless someone leaks some master keys or finds TPM exploits to trick it into signing the integrity request. It’s very bad.

          • Zak@lemmy.world
            link
            fedilink
            English
            arrow-up
            3
            ·
            1 year ago

            Yes, but they’re two separate issues. Many apps that don’t care whether you have root or a third-party Android build use Google’s libraries.

            Patching apps is another workaround. It won’t beat server-side checks, but I think those are still fairly rare. ReVanced makes it easy to do, though I’m not sure there are patches related to SafetyNet yet.

      • Max-P@lemmy.max-p.me
        link
        fedilink
        English
        arrow-up
        12
        ·
        1 year ago

        It’s even worse without Google apps, but I was talking about SatetyNet/PlayIntegrity specifically.

        The mere act of unlocking the bootloader, without even modifying anything, will cause all the problems I outlined, and it’s the same API that Google is proposing to use by browsers to check for device integrity.

        Stuff depending on Google libraries, eh, that annoying but people can and will reimplement those, be it microG or Wine/Proton. Not being able to see the weather I literally could get just looking out the window because my bootloader is unlocked? That’s insane.

      • Clegko@lemmy.world
        link
        fedilink
        English
        arrow-up
        9
        ·
        1 year ago

        This is all similar to using Microsoft Windows or Mac OS so I guess people are so used to this behavior that it’s somehow ok.

        Not so much used to it, but just kinda sigh and accept it because I like my apps to work. I’m a long time Linux user as well, and I still have to keep a Windows box around for random shit that just refuses to work on Linux for various bogus reasons.

    • heimchen@discuss.tchncs.de
      link
      fedilink
      English
      arrow-up
      4
      ·
      1 year ago

      I have a rooted LineageOS running Android and besides Kostum widgest everything is working fine. Yea I had to fiddle around with the banking app, but other than some popups and ingame stores not working everything is fine.

      • Ebsku@sopuli.xyz
        link
        fedilink
        English
        arrow-up
        1
        ·
        1 year ago

        I heard spoofing safety net is possible with magisk so banking apps should work with it

          • Ebsku@sopuli.xyz
            link
            fedilink
            English
            arrow-up
            0
            ·
            1 year ago

            What other ways are there? At least my banking app worked with spoofed safetynet

            • Im28xwa@lemdro.id
              link
              fedilink
              English
              arrow-up
              1
              ·
              1 year ago

              Checking whether the bootloader is locked or not, checking for abnormal system properties like whether the ROM is using release keys or test keys, and other methods that idk of, you can test momo which is an app that checks the environment and tells you if there is anything abnormal about it, some use it to check if they were successful at hiding root and anything abnormal

  • stravanasu@lemmy.ca
    link
    fedilink
    English
    arrow-up
    99
    arrow-down
    2
    ·
    edit-2
    1 year ago

    There’s an ongoing protest against this on GitHub, symbolically modifying the code that would implement this in Chromium. See this lemmy post by the person who had this idea, and this GitHub commit. Feel free to “Review changes” –> “Approve”. Around 300 people have joined so far.

    • 0xff@lemmy.world
      link
      fedilink
      English
      arrow-up
      8
      arrow-down
      2
      ·
      1 year ago

      That PR doesn’t appear to make any sense. It modifies an include rule, so at best it would make Android Webview fail to compile.

    • vinhill@feddit.de
      link
      fedilink
      English
      arrow-up
      9
      arrow-down
      3
      ·
      1 year ago

      I don’t think filling Google repositories with complaints and well-intentioned, but garbage issues/pull requests. At best they’ll just delete them occasionally and at worst work less in the open, changing permissions on repositories, doing discussions more in internal tools.

      What you can do is support alternative browsers, get other people to use them too and notify news as well as your local politicians about such problems. Maybe join organizations on protecting privacy or computer clubs (in Germany, support e.g. Netzpolitik.org and CCC).

      Maybe acknowledge what the in-principle good things about WEI would be and support alternative means of achieving them. This proposal uses good things like less reliance on captchas and tracking, a simple to use API to enable a huge potential for abuse and power grab. Alternatives might be a privacy pass, as mentioned by WebKit https://github.com/WebKit/standards-positions/issues/234

      • stravanasu@lemmy.ca
        link
        fedilink
        English
        arrow-up
        12
        ·
        edit-2
        1 year ago

        (also @ridethisbike@lemmy.world)

        Maybe it is pointless, maybe it is a bad idea. Maybe not. It’s difficult to predict what this kind of small-scale actions will have on the big picture and future development. No matter what you choose or not choose to do, it’s always a gamble. My way of thinking is that it’s good if people say, through this kind of gestures, “I’m vigilant, I won’t allow just anything to be done to me. There’s a line that shouldn’t be crossed”.

        Of course you’re right about supporting and choosing alternative browsers, and similar initiatives. There are many initiatives on that front as well. I’ve never used Chrome, to be honest; always Firefox. But now I’ve even uninstalled the Chromium that came pre-installed on my (Ubuntu) machines. Besides that I ditched gmail years ago, and I’ve also decided to flatly refuse to use Google tools (Google docs and whatnot) with collaborators, as a matter of principle. If that means I’m cut out of projects, so be it.

        Regarding WEI, I see your point, but I see dangers in “acknowledging” too much. If you read the “explainer” by the Google engineers, or in general their replies to comments and criticisms, you see that they constantly use deceiving, manipulative, and evasive language. As an example, the “explainer” says a lot “the user needs this”, “the user desires that”, but when you unfold the real meaning of the sentences it’s clear it isn’t something done for the user.

        This creates a need for human users to prove to websites that they’re human

        Note the “need for human users”, but the sentence actually means “websites need that users prove…”. This is just an example. The whole explainer is written in such a deceiving manner.

        The replies to criticisms are all evasive. They don’t reply the actual questions or issues, they start off a tangent and spout a lot of blah blah with “benefit”, “user”, and other soothing words – but the actual question or issue never gets addressed. (Well, if this isn’t done on purpose, then it means they are mentally impaired, with sub-normal comprehension skills).

        I fuc*ing hate this kind of deceiving, politician talk – which is a red flag that they’re up to no good – and I know from personal experience that as soon as you “acknowledge” something, they’ll drag your into their circular, empty blabber while they do what they please.

        More generally, I think we should do something against the current ad-based society and economy. So NO to WEI for me.

    • blindjezebel@lemmy.world
      link
      fedilink
      English
      arrow-up
      20
      ·
      1 year ago

      Dense US citizen here. Eli5 how I should explain “just trust us not to abuse collection of all your data or else get locked out of the world wide web” applies to antitrust laws for the FTC?

      I’m genuinely wanting to submit an email complaint/report. I understand that WEI protects nothing, but risks your data with all the sites you visit, all in an effort just to block possibly unprofitable users – but I’m not sure how to tie in and word the Breaks Antitrust Laws part.

      Thank for your time to post these links.

      • stravanasu@lemmy.ca
        link
        fedilink
        English
        arrow-up
        18
        arrow-down
        1
        ·
        1 year ago

        Nothing dense in this, I don’t quite know what to write either. In my opinion what you wrote in your comment is just perfect, you’re a citizen simply expressing an honest concern, without lying – not all people are tech-savvy. It also makes it clear that it’s a letter from a real person.

        But that’s only my point of view, and maybe I haven’t thought enough steps ahead. Let’s see what other people suggest and why.

      • Tuss@lemmy.world
        link
        fedilink
        English
        arrow-up
        4
        ·
        1 year ago

        Another dense citizen here. I ould say that you put it quite eloquently in your comment.

        But direct the question towards them.

        “Would googles new changes on their ad and user policy be affected by FTC data protection laws and GDPR or would they be in compliance”

        Or something among those lines.

  • bigredcar@lemmy.world
    link
    fedilink
    English
    arrow-up
    68
    ·
    1 year ago

    It’s time to use web integrity against them, by blocking access to your site if they “pass” integrity checks, and telling them to use a freedom respecting browser instead.

  • atzanteol@sh.itjust.works
    link
    fedilink
    English
    arrow-up
    54
    ·
    1 year ago

    It offers web publishers a way to integrate their websites or apps with a code that checks with a trusted party (such as Google)

    Imma stop you right there…

    • 8KfuATr3Y1@reddthat.com
      link
      fedilink
      English
      arrow-up
      14
      ·
      1 year ago

      I came to say the same.

      “checks with a trusted party (such as Google)”

      Google is not a trusted party.