privsecfoss

joined 1 year ago
[–] [email protected] 42 points 1 week ago

Someone mentioned that M365 is properly not legal. Guess what, it isn't.

The EDPS (European Data Protection Supervisor) investgated the EU-Commissions' use of M365 and found it to be illegal in march 2024. EPDS gave the Commission until December 2024 to, among other things, stop transfers of Personal Information to third countries in M365 outside the EU. Which of course made the Commission sue the EDPS. And MS to do the same..

So M365 is NOT legal to use for any Public Institution in the EU. Unless the Controller make Microsoft change their DPA, contract etc. Kinda like MS did for the Dutch government after the dutch firm Privacy Company made an in depth analysis of M365 and found numerous illegal processing etc.

Fun how Microsoft was made aware of how they acted illegal, and changed it - only for the Dutch Government...!! The rest of their Customers still have the illegal DPA, terms etc... Also fun how it is Common knowledge and IT-departments still choose to use M365, and move as much as possible there from more privacy and security oriented services.

EDPS investigation into the Commissions use of M365: https://www.edps.europa.eu/press-publications/press-news/press-releases/2024/european-commissions-use-microsoft-365-infringes-data-protection-law-eu-institutions-and-bodies_en

My point? EU-Linux is a fantastic idea! πŸ™‚

[–] [email protected] 2 points 3 months ago

I think bluetooth or 2.4 mhz is better than IR. Coming to think of it mine is a china something with keyboard on the side and remote on the other using 2.4 mhz. So point of line is not needed which is nice.

[–] [email protected] 4 points 3 months ago* (last edited 3 months ago) (4 children)

+1 Kodi. Been running it for ages on an old laptop with a infared remote with USB dongle. Kodi is set to autostart. Pretty hands off and can stream to it from local sources using Kore for android.

EDIT: Can stream from local AND online sources using Kore ex Newpipe (Youtube).

[–] [email protected] 34 points 3 months ago
[–] [email protected] 8 points 5 months ago

Nice. Upgraded a Thinkpad, installed Linux Mint and gave it to my dad. I have not heard anything from him about it for a couple of months. Was reminded of it with your post.

So wrote him right now and asked how it was going, and he replied that he loved it and uses it every day.

And that he had not had any problems he could not solve on his own. He's 70 and a windows only heavy user - until now πŸ™‚

As you said. Compelety painless.

[–] [email protected] 49 points 9 months ago* (last edited 9 months ago) (2 children)

I don't where you live. But almost all of bigtech US cloud is problematic (Read: Illegal to use) for storing or processing of Personal information according to the GDPR if you're based in the EU. Don't know about HIPPA and other non-EU legislation. But almost all cloudservices use US bigtech as a subprocessor under the hood. Which means that the use of AI and cloud is most likely not GDPR-complaint. Which you could mention to the right people and hope they listen.

Edit: It's illegal to use for the processing of the patients PII, because of transfer to insecure third countries and because bigtech uses the data for their own purposes without any legal basis.

Edit 2: The same is the case with your, and your colleagues PII.

In my opinion privacy and GDPR is the same in this case. I think most public authorities is required to have a DPO, fx hospitals or the relevant health authority. The DPO can help answer your and your bosses questions on the mentioned questions.

Hope you figure it out.

[–] [email protected] 7 points 10 months ago (1 children)

Duplicati runs om Windows AFAIK.

[–] [email protected] 3 points 11 months ago

Hetzner storage box

[–] [email protected] 5 points 11 months ago* (last edited 11 months ago) (1 children)

Often thought of the same thing. So leaving this comment here in case someone got a good solution that don't involve big tech.

When I get the time my plan is to read up on big techs solutions, fx Google and Apple, who as I understand can give your family access under certain conditions if your've passed.

EDIT: And replicate their solution using FOSS / self hosting.

[–] [email protected] 38 points 1 year ago

He made the world a better place.

[–] [email protected] 15 points 1 year ago* (last edited 1 year ago) (2 children)

Something that would do that neoliberism in the 80's with Reagan and Thatcher would not become the dominating political and economic theory it has been since that time.

[–] [email protected] 2 points 1 year ago

Merino ski underwear is dry in no time πŸ™‚

 

I have an old Google Pixel 2 XL, and would like to get started with Linux on mobile. What Linux OS would you recommend, and why?

 

How do you manage GPG / PGP Keys on android and Linux, and why?

 

I use uBlock Origin and make some changes to the default settings. Have seen recommend configs, but haven't gotten to implement them yet.

What do you do to make Firefox even more privacy respecting and secure?

 

Nice to haves:

  • Phone
  • GPS
  • Possibility for FOSS tracking fx using something like PhoneTrack and Nextcloud
 

I think it would be a nice feature to be able to group fx all "Linux" communities into one group, given the federated nature of Lemmy. Kinda like with RSS feeds to see all news on a specific topic.

Dunno if it's possible or I'm the only one that thinks it would be a great idea?

 

I currently use:

  • Client for sync accross devices
  • TOTP MFA
  • Floccus for bookmarks
  • Phonetrack for phone location
  • News for RSS
  • Contacts backup and sync

And more...

 

I'll start:

  • RSS and blogs, news vs. social media
  • XMPP vs. WhatsApp/FB messenger/Snapchat
  • IRC vs. Matrix, Teams, Discord etc.
  • Forums vs. Social media, Reddit, Lemmy(?)
 

It is battle tested, standardized, widely used, have open source servers and apps, end-to-end encryption (OMEMO), self-hostable and are low on ressources and federated / decentralized.

I use it with family and friends. Conversations and blabber.im on android and Gajim on Linux. There's also apps for windows and Apple.

Curious if anyone here use it and why, why not?

EDIT: Doh. In these Lemmy times I forgot federated. Added.

 

I use CalDav for calendar, contacts and tasks sync and share with the rest of the family.

Server is Nextcloud with WebDav/WebCal/CardDav and DavX5, Etar calendar, native contacts and OpenTasks on android. On Linux WebDav to access and sync Nextcloud files.

How do you use them?

Edit: Added CardDav for contacts.

23
submitted 1 year ago* (last edited 1 year ago) by [email protected] to c/[email protected]
 

I use it for news aggregation with Nextcloud news. Also for podcasts and PeerTube channels. Anyone using RSS for other things?

 

Currently using: Aeris, BitWarden, VeraCrypt, GPG etc. What are your standard and can't live without privacy/security apps?

 

As the title says: What is the best native Linux games?

view more: next β€Ί