One thing I’m concerned about is recording equipment leaving identifiable information without us knowing about it.

  • HiddenLayer555 ( HiddenLayer555@lemmy.ml ) 
    link
    fedilink
    English
    arrow-up
    65
    ·
    edit-2
    11 months ago

    Tons of websites record your mouse, keyboard, and scroll activity, and can play back exactly what you saw on your browser window from its backend dashboard as a video. This is called session replay. There are pre-made libraries for this you can import so it’s super common, I believe Mouseflow is one of the biggest providers.

    When a mobile app, Windows app, or even website crashes nowadays, it automatically sends the crash dump to the app developer/OS vendor (the OS often does this whether the app requests it or not because the OS developer themselves are interested in what apps crash and in what ways). We’re talking full memory dump, so whatever private data was in the app’s memory when it crashed gets uploaded to a server somewhere without your consent, and almost certainly kept forever. God help you if the OS itself crashes because your entire computer’s state is getting reported to the devs.

    Your phone’s gyroscope can record what you say by sensing vibrations in the air. It may or may not be something humans will recognize as speech if played back because the frequency range is too limited, but it’s been shown that there’s enough information for a speech recognition AI to decode. Good chance the accelerometer and other sensors can be used in the same way, and using them together will increase the fidelity making it easier to decode. Oh did I mention no device has ever implemented permission controls for sensors so any app or even website can access them without your consent or knowledge?

    • Correction: GrapheneOS has implemented permission controls for sensors. It also has sandboxing and permission scopes to prevent many of those leaks.

      However, Graphene is not available to everyone, and it’s still problematic due to bystanders/passerby.

    • bountygiver [any] ( bountygiver@lemmy.ml ) 
      link
      fedilink
      English
      arrow-up
      19
      ·
      11 months ago

      nah only the minidump is reported back which only contains the memory the crashing stack is using. Sending the full dump would requires uploading gigabytes of data which would cripple any home internet as they mostly have very limited upstream bandwidth.

  • Dr_Vindaloo ( Dr_Vindaloo@lemmy.ml ) 
    link
    fedilink
    English
    arrow-up
    62
    ·
    11 months ago

    Most modern cars are SIM-enabled and are constantly sending data back to the mothership. But even those that aren’t will still collect data locally and that data will be collected when you send the car to an “official/licenced/authorized” repair shop.

  • मुक्त ( mukt@lemmy.ml ) 
    link
    fedilink
    arrow-up
    51
    ·
    11 months ago

    Photos taken by digital cameras are also trackable in a similar way as prints taken from a printer. I recall reading they were trying to identify the device after a Harry Potter book was leaked by someone taking digital photographs.

      • HiddenLayer555 ( HiddenLayer555@lemmy.ml ) 
        link
        fedilink
        English
        arrow-up
        2
        ·
        11 months ago

        Even without EXIF data I would bet the actual encoding of the image will be identifiable to a specific instance of the camera software.

        Similar to how websites fingerprint your browser by rendering something in the canvas or webgl and sending back the rendered image. The exact same rendering procedure will produce slightly different images for each browser instance. I suspect browsers are fully aware and complicit in this because why the actual fuck would they not make the rendering engines deterministic to their inputs?!

    • who ( who@feddit.org ) 
      link
      fedilink
      English
      arrow-up
      9
      ·
      edit-2
      11 months ago

      To be clear, this is not about EXIF data (which is its own problem).

      Digital cameras can be fingerprinted from the images they produce, due to variations between pixels in any given sensor. If you’re concerned about an image being traced back to your camera, you might consider some post-processing before distributing it.

  • Arthur Besse ( cypherpunks@lemmy.ml ) 
    link
    fedilink
    English
    arrow-up
    36
    ·
    11 months ago

    Social graph connections can be automatically inferred from location data. This has been done by governments (example) for a long time and is also done by private companies (sorry I can’t find a link at the moment).

  • JustVik ( JustVik@lemmy.ml ) 
    link
    fedilink
    English
    arrow-up
    33
    ·
    11 months ago

    Maybe this. Most smartphones have a modem inside, this modem has a separate closed-sourced operating system and it usually has the main priority in controlling the smartphone relative to the processor running the main operating system, such as Android. Sometimes the modem has access to the microphone or memory, even bypassing the CPU. Although maybe everyone already knows that.

    • DarkAri ( DarkAri@lemmy.blahaj.zone ) 
      link
      fedilink
      arrow-up
      8
      ·
      11 months ago

      They run a mini Linux distro and you can ssh or tyy into them if you have a serial port. They have access to much of the hardware but usually over something like a serial interface but still can inject code and stuff. They are a completely secret self-contained computer and I don’t even think they get updated for security. They could easily be hacked by anyone probably mostly government regimes. There is only a few companies that make them and they are ultra secretive and protective over them. This is the main reason it’s nearly impossible to get an open source phone. Arm is proprietary, modems are proprietary. They run blobs. I have probably the one phone in existence that can run an open source modem firmware, and interestingly I have figured out that there is basically no security whatsoever on the cell networks. (Monopolies gonna monopoly) So that might be one reason they are so secretive about it, another reason is because they don’t want citizens being able to just have open source radios that they can’t easily hack or sell to drug cartels or something.

      It does have complete access to your mic and Bluetooth and other stuff since they share buses, it has access to all your data being sent. It can record phone calls. It can triangulate your position. It can even imitate other modems to pick up people’s messages and calls, which means not only can it spy on you but also it can spy on other people around you. I don’t think it’s really possible to disable these things completely outside of physically cutting power. They boot up with the phone and can probably run even when the phone is powered off since it’s a self contained system, often with a direct connection to the battery.

      Between Bluetooth, and cellular modems, they have basically complete access to many bands around you, as well as sensor data and sound and video, and with satellites recording the entire planet, they can trace anyone who doesn’t have a device back in time anyways. Cell towers can triangulate you as well and do. It’s part of location services in all phones now. The modems can connect to almost any towers at least for “emergency purposes”.

      Basically the only place that’s safe now is inside your own head but even that’s becoming unsafe because of AI that can read your facial expressions and infer your mental state.

      The ways they get around the legalities is originally with the eyes programs, where countries would spy on their allies citizens to escape domestic laws like those pesky constitutions, but nowadays they just literally sell everyone’s personal data to the highest bidder, international or domestic. The CCP can buy this I do just as easily as Black Rock can, not that Black Rock is or every was an American company. These are international corporations that exist outside of the idea of a state.

      It’s also not the CIA or NSA spying on you, but private companies. Even the people in the CIA and NSA aren’t allowed to know about the extent of the true intelligence apparatus which is completely secret, outside the law, and contained entirely in international corporations. The entire Internet has been saturated with bots since 2001 or something probably. The internet is just a massive psyop and propaganda program. The average person in the 90s would be horrified at the opinions of common people today. Nukes are also probably not real. Just a way to scare people into believing Russia and America and China are actually enemies while they partial up and nationalist culture that doesn’t want to give all its resources up to the international secret world management and finance corporation. Fiat currency too is a giant scam to make sure the working person never acquires wealth, and has to work forever, and corporations and wealthy humans who’s names will never be spoken publicly, can own anything and have unlimited leverage and I finite money without ever having to work or produce anything of value. The text books in nearly every school in America are made by a company in Israel who was co-founded by glisten Maxwell’s father. The left in U.S politics is fake, and the whole social justice warrior movement was a clever psyop to push all the countries further right wing run by internationalist corporations btw. 25% of Americans are addicted to legal amphetamines, more on other drugs like weed which reduces people’s ability to understand what’s real, Md nearly half of working age people in America cannot or won’t find work. Wages have been dropping for decades and now IQs are dropping. Most of human genetics have been completely ruined, as we as humanity has destroyed nearly every honest, principled and empathetic human on the planet for profit.

        • DarkAri ( DarkAri@lemmy.blahaj.zone ) 
          link
          fedilink
          arrow-up
          3
          ·
          11 months ago

          It’s just reality and it is too much for most people. It’s like that old saying. You want the truth? You can’t handle the truth! It’s easier to believe in the fairytale. The government and God loves you. Good always wins. Honestly and hard work pay off. People are good. The state will protect you. Just go back to sleep, but make sure you show up to work on time because we are too rich to clean those floors like you common people do, and although you will never have a retirement that is both safe from the stock market manipulation, and inflation, we have boats and nice cars to buy.

  • Ardens ( Core_of_Arden@lemmy.ml ) 
    link
    fedilink
    arrow-up
    23
    ·
    11 months ago

    Isn’t it common knowledge? I’ve known about it for at least two decades…

    BTW - you can easily work around it. Get someone else to buy your printer for you, or trade with someone who has the same printer… Now, they will still be able to match it to the printer, if they find it at your home, but other that that, you are free…

    PS. Don’t use your printer to blackmail FBI or CIA. ;-)

  • Ohh ( Ohh@lemmy.ml ) 
    link
    fedilink
    arrow-up
    11
    ·
    11 months ago

    No… But i’ve thought about how easy it would be to implement in ebooks and pdfs (e.g. my daily newspaper i can download as pdf). I’ve thought about this when sailing the high seas.

    Is it a thing?