Showing posts with label privacy. Show all posts
Showing posts with label privacy. Show all posts

2022-07-10

FOLLOW-UP: Some Recent Troubles with pCloud and Google Chat

Almost exactly 11 months ago, I wrote a post [LINK] about problems I was experiencing with pCloud and Google Chat. I don't have any updates about Google Chat (or Google Meet), but I do have an update regarding pCloud. In the previous post, I noted that for files & folders protected by standard encryption (as opposed to stronger zero-knowledge encryption, for which this problem doesn't exist in pCloud), some files & folders require multiple attempts to transfer; I also speculated that pCloud may have been secretly deleting files & folders. After having spent more time using pCloud, I've been able to verify that my files & folders protected by standard encryption have transferred properly, and I think I've figured out why they initially seemed to require multiple attempts to transfer.

As I understand, pCloud creates a temporary folder, essentially like a cache, on the local hard drive, to transfer files before they are uploaded to pCloud. The process of transferring from the local cache to pCloud is limited by upload speeds, which are quite slow (as I mentioned in the previous post). Additionally, once the pCloud program is closed and the remote drive is unmounted, file transfer stops, so many folders & files that the user might think were transferred might not have been transferred. A good way to verify this is to leave the desktop application for pCloud open, monitor how many files as well as what total amount of data still remain to be transferred, and only close the application when all folders & files have been transferred; I like to think of it as a practice similar to leaving a torrent open for uploading after it has finished downloading.

2022-02-20

Google Chrome OS Flex and Broader Adoption of Linux

I recently read [Chin, The Verge (2022); Raphael, Computerworld (2022)] that Google is releasing a version of Chrome OS called Chrome OS Flex which can be copied to a USB storage drive and installed on computers that didn't come with Chrome OS. This seems very similar to how many popular Linux distributions work, so I initially wondered if Chrome OS Flex will succeed with the muscle of Google behind it where similar efforts by Linux distributions backed by smaller not-for-profit organizations have failed. At the same time, it seems clear to me that Google will not hesitate to use this as an opportunity to collect more valuable data from people who use Chrome OS Flex. This got me to think more broadly about how much ordinary people who might consider using Chrome OS Flex really care about their privacy (especially considering that such people would typically use Microsoft Windows 10/11, which are known to collect significant amounts of data from users) even after revelations about Facebook's practices, earlier revelations about government surveillance, and so on.

However, upon closer reading, I noticed that the first article makes clear that the target audience is schools & businesses which have many old computers whose Windows versions may no longer be supported. This makes more sense to me than targeting ordinary individuals, because I get the sense that the learning curve even to copy an ISO file onto a USB storage drive and install it onto a computer is steep for most ordinary individuals (despite the significant progress that distributions like Ubuntu & Linux Mint have made in making the installation process easy). By contrast, it seems more reasonable to expect specialists in schools & businesses to learn these things once and then do them for many different computers. Meanwhile, the second article makes clear that while traditional Chrome OS is capable of running many programs built for Windows, Chrome OS Flex will not have such capabilities. This suggests to me that while many schools may take up this opportunity given that few user-facing applications need to be installed on the computer and most user-facing applications can be accessed through web equivalents, this might not be the case for many businesses, so it is unclear to me which businesses will actually take this up.

Ultimately, I don't expect to see much adoption among ordinary individuals even though they aren't forbidden from installing & using Chrome OS Flex. That said, I would be interested to see how adoption evolves in schools & businesses over time.

2021-08-09

Some Recent Troubles with pCloud and Google Chat

Originally, I was going to write a post just about my experiences with pCloud, following up on a recent post in which I wrote of wanting a secure cloud storage service that preserves data privacy and concluded that pCloud is the best option for my needs. Since then, Google forced me to migrate from Google Hangouts to the new Google Chat, so I decided to write about experiences with both of those in a single post. Note that this isn't a full review of either product, as I haven't explored either one in great depth. This is just a short write-up of my experiences using each product to satisfy my needs. Furthermore, in the interest of my own privacy, I won't be posting any screenshots.

pCloud

I have been using pCloud for the last 1.5 months. In that time, I have experienced a few benefits but significantly more concerning problems. The benefits are that the zero-knowledge encryption service seems trustworthy (to someone like me who has some technical knowledge but no specific expertise with encryption), the integration with Linux Mint seems reasonably good as it is possible to open both the standard and zero-knowledge encrypted folders using desktop file managers, the web interface makes sharing links with others easy, and it is cheap. Before I list the problems, I should note that I've only tried pCloud for my own purposes on my laptop that has Linux Mint 20 "Ulyana" MATE installed. Therefore, it isn't clear whether the problems are specific to this setup.

The problems are as follows.

  1. For folders protected by standard encryption, some folders don't transfer properly and may require multiple attempts to transfer, whether using the desktop file manager or the web interface. It may take a few sessions to figure out which folders didn't transfer properly. (It may also be possible that pCloud, having the encryption keys, is secretly deleting folders. This would be extremely troubling, but I haven't paid close enough attention to know whether a folder didn't transfer properly or whether it did but was later deleted.)
  2. File transfers are very slow, because while some transfers can go up to 20 MB per second (which is reasonable given that I have an Internet connection that allows for up to 100 MB per second in each direction), most file transfers are only around 1 MB per second. Any transfer that involves copying thousands of small files & folders especially seems to create a bottleneck and slow things down further. For this reason, it took me many hours over several days to transfer hundreds of gigabytes of files to pCloud.
  3. The web interface doesn't allow for uploading folders as such (only file contents within an existing folder).
  4. When transferring to folders protected by zero-knowledge encryption, timeouts occur unpredictably and require encrypting and again decrypting those folders. Additionally, such transfers have unpredictably but on multiple occasions (though certainly not on every occasion) caused the desktop to freeze.

These problems are troubling enough that I wouldn't recommend pCloud to others, despite the fact that it is one of the few secure cloud storage providers that protects data privacy (at least with zero-knowledge encryption) and ostensibly gives Linux users the same benefits as users of other operating systems. I'm a patient person and I've spent enough money on this, so I'm willing to put more time into making this work. However, if these problems keep occurring regularly or if I see even worse problems like evidence of pCloud deleting files that were uploaded without zero-knowledge encryption, I will likely switch to Tresorit and keep looking for other alternatives too.

Google Chat

Without even getting into the particular issues with Google Chat, I'd like to express how strange it is that Google seems to change its messaging platform around once every 4-5 years. It feels like Google thinks it has to catch up to other services or like Google really doesn't care about its messaging platform.

Having said that, there are benefits and problems with Google Chat. I do appreciate that it has migrated my previous conversations from Google Hangouts. Additionally, many of the features, like document sharing within conversations, seem pretty nifty. However, there are two big problems that I have with the design of Google Chat along with its companion program Google Meet.

  1. The version of Google Chat that is integrated into Gmail is missing quite a few features compared to the way that Google Hangouts was integrated into Gmail, like seeing contacts who are online (as opposed to only seeing previous conversation threads, which is a problem because before, I could have a chance of seeing someone pop online that I haven't talked to in a while and would therefore get the idea of reaching out to that person, whereas now, seeing only recent messages self-reinforces a narrowing group of conversations). The separate Google Chat website at least has the date or time of the most recent message in a thread (whereas the version of Google Chat integrated into Gmail lacks even this) but does not have the aforementioned feature of seeing contacts who are online.
  2. Splitting voice or video calls out of Google Hangouts and into Google Meet is problematic because Google Meet lacks the immediacy of a Google Hangouts call: when a call is placed on Google Hangouts, the website or app will immediately ring for all recipients, whereas when a Google Meet link is created, the sender must wait for recipients to react to a single beep indicating a new message containing the link.

I think I can get used to Google Chat and Google Meet soon enough. If nothing else, perhaps it is an ironic consolation that I won't have to deal with it so much because the group of people that I keep in touch with over Google Hangouts (and now Google Chat) has significantly narrowed over the years (as I now keep in touch with most people through platforms other than Facebook products or Google Chat).

2021-05-17

Manually Creating a Rudimentary Searchable Image Tagging System

This post is the third in a series of three posts about some changes I have been making in my personal life with respect to how I interact with online social media platforms. When I published the second post in this series, I was on the lookout for secure privacy-respecting cloud storage services. As of this post, I still haven't committed to a specific service. One of my requirements has been that the service should allow me to share certain files or folders securely with others. Unfortunately, unless I use a service like Google Drive which has just as little respect for data privacy as Facebook does, it isn't clear how I can easily tag images with details about people, location, and other comments in a way that I or others can easily search. My proposed solution, involving BASH scripts, is far from perfect, it is very much a work in progress, and it is arguably somewhat specific to my particular situation. Follow the jump to see more details.

2021-04-27

Looking for Secure Cloud Storage that Respects Data Privacy

This post is the second in a series of three posts about some changes I have been making in my personal life with respect to how I interact with online social media platforms, and how that affects this blog. When I published the first post in this series, I had completely deleted the Facebook and Twitter pages associated with this blog, and I mentioned that I was on the lookout for a secure cloud storage site that respects data privacy (which meant options like Google Drive, Dropbox, or Flickr were not going to satisfy my desires). Since then, I have conducted almost all of my frequent conversations on platforms not owned by Facebook, and I have been in the process of conducting all other infrequent conversations away from Facebook platforms too. However, I have still been on the lookout for such a secure cloud storage site that would also allow me to securely share files, especially pictures, with others, without compromising the privacy of my data. This post goes over some information that I have compiled over different potential candidate services. This is not a review, because I have not actually tested any of these services yet. Follow the jump to see more about each candidate and where I lean.

2021-03-15

Shifting Away from Social Media Platforms

This post is the first in a series of three posts about some changes I have been making in my personal life with respect to how I interact with online social media platforms, and how that affects this blog. The points most relevant to this blog are as follows. This blog used to have associated Facebook & Twitter accounts, and I used to share each new post on my own personal Facebook timeline to encourage others to read it. While I'm aware that a few contacts on Facebook did read my & share recent blog posts, there weren't many. Meanwhile, looking back at the Facebook & Twitter accounts associated with this blog, almost no new readership came from those, so I didn't feel too badly about deleting those accounts (after deleting each individual post), especially because the synchronization of new posts from this blog being automatically shared to its associated Facebook page didn't work for the first few months that I tried it (over 10 years ago), and then I stopped caring about that Facebook page afterwards. Furthermore, I added a lot of tools to connect this blog to social media sites over 10 years ago, when I, being in high school and then in the first & second years of college, had more time on my hands & had high hopes for this blog becoming popular online (especially in the domain of Linux distribution reviews); for the last several years, I have had neither the time nor the interest to continue pursuing such popularity contests, and I'm almost certain that I won't feel inclined toward such things again, so I have no problem with removing those connectivity features. I know there are still some widgets built into each post or page on this blog which are connected to different social media sites for easier sharing of posts, and I should remove those eventually, but simply as a practical matter (with respect to my own time), I'm less concerned about removing those right away. In the meantime, I think it is still possible to get updates about this blog via email, RSS, or Atom. Follow the jump to see why I have taken these steps for my blog and am currently undertaking similar steps with my personal presence on social media platforms owned by Facebook or Twitter.

2010-10-17

Featured Comments: Week of 2010 October 10

There were two posts from this past week that garnered comments.

GNOME 3, Activities, and KDE 4

The most common complaint about this post was that I should have read Aaron Seigo's post on the matter before writing this; unfortunately, it didn't happen that way. I'll get back to this point later. Let's continue with the comments themselves.
An anonymous reader points out, "You shouldn't worry about Compiz. Mutter will provide the desktop effects. If you really, really want Compiz integration with GNOME 3 you are out of luck. Don't ask me why but GNOME developers designed GNOME Shell to be a Mutter plug-in, so as you can see the former depends heavily on the latter, thus making impossible for Compiz developers to support GNOME Shell."
Another anonymous reader adds to this, "If I recall correctly I believe I once heard Compiz was never supposed to be permanent. It was an example of what the Windows managers (aka GNOME an KDE) could and perhaps should/should not do."
Reader twitter adds, "A lightweight desktop with modern features is E16. It has transparency and excellent 2D desktop management. E16's clear distintion between virtual screens and virtual desktops implemented the concept of "activities" more than a decade ago."
Commenter Eric Mesa adds to the previous anonymous reader's comment, "I was surprised to find out that Compiz still exists. Kwin, Fluxbox, and Metacity have all, to some degree, incorporated this. I know they aren't as flashy as compiz, but I think it's just a matter of time. Compiz was the fire under the butts of developers, showing them what X could do and daring them to match it. [...] I have to say that, in my experience, everyone who saw Compiz thought it was neat, but no one was converted because of compiz. They wanted to know if they could still do the work they did on their windows computers."
Finally, a certain anonymous reader (because I'm fairly sure it's the same reader who wrote all 3 of those comments)  complained about my analysis in 3 comments too long to repost here verbatim. I'll try to analyze it point by point.
First of all, my comparison wasn't especially apt only because I'm comparing my experiences with KDE 4.5 with other reviewers' experiences with both KDE 4.5 and GNOME 3. But let's continue from there.
I specifically state that KDE 4 Activities were unusable until KDE 4.5. Hence, KDE 4.5 Activities are quite usable and stable.
From the reviews I've read, GNOME 3 doesn't crash and is about as stable as GNOME 2.X. When KDE 4.0 was first brought into the pipeline, people were comparing its beta releases to KDE 3.5 and GNOME 2.X; why is it not fair to do the reverse now? Furthermore, GNOME Shell can be used in GNOME 2.X, so I would say that if it's made it into the repositories of distributions that use GNOME 2.X, it's certainly not a "future technology", even though it will see its first official implementation in GNOME 3.
What you (the anonymous commenter who wrote these comments) say about GNOME 3 already knowing what pitfalls to avoid is known as the second-mover advantage. It's the reason why in the battles of the jetliners in the 1940s and 1950s, the Boeing 707, which came after the De Havilland Comet, prevailed: the De Havilland Comet, while very sleek, had flaws that caused a number of fatal and spectacular accidents mostly due to the same issue, so Boeing was able to analyze this and build an airplane that did not suffer these issues. Is that really so bad? (Of course, unlike KDE with its Activities, De Havilland was loath to even admit there was a problem until after the occurrence of about 5 major accidents, after which point it was told to stop manufacturing altogether, without being given a chance to reassess its design and engineering and fix its mistakes.) Really, do you want to fly in the De Havilland Comet? No? So aren't you glad that GNOME 3 learned from KDE 4's mistakes?
Finally, with regard to Aaron Seigo's blog post, I think in his analysis, he's missing a key point: although GNOME 3 and KDE 4's Activities are implemented very differently, in that GNOME 3's Activities are a more formalized and structured implementation of virtual desktops, while KDE 4's Activities are collections of different applications, it's important to remember that if you think about it, both come from essentially the same core idea, and that is a way to group sets of applications in some manner. GNOME 3 requires the user to do it each time, while KDE 4 allows the user to do it once and then select from whatever Activities have been made. Part of the difference also comes from KDE 4's Plasmoids, for which there really isn't any GNOME 3 analogue; also, my comparison stems from the fact that although this certainly isn't the default behavior, many online writers recommend after installing KDE 4 that the user tie each virtual desktop to a different activity. Yes, KDE 4's Activities are a good bit different and a bit more advanced than Activities as implemented in GNOME 3, but it's hard to deny that they both come from the same basic idea.
I hope all this clears up my position on this debate.

Facebook's Worrying Privacy Changes

An anonymous reader writes, "Now you can use Facebook but still keep your messages private. And you don't have to depend on Facebook privacy settings. Just ‘CLOAK’ your messages with your own private keyword using the free CloakGuard browser plugin. This garbles your message and only the people you've shared your keyword with (and not Facebook) can read your messages."

Well, that wraps up the comments for this past week. Again, I hope I've made my position a little more clear. In addition, I will say once again that if you enjoy what I write, please do take a moment to subscribe via RSS or email!

2010-10-12

Facebook's Worrying Privacy Changes

Over the last few months, there have been myriad changes to Facebook's privacy policy, many of them for the worse (in terms of being able to maintain privacy). This one (Robert McMillan, PCWorld via Yahoo! News), however, seems really bad, not least because Mark Zuckerberg, the founder of Facebook, was himself a victim of this change in the privacy policy. Basically, this new "feature" allows people to unilaterally make their friends members of groups. However, if the friend leaves that group, the original person can no longer make the friend part of any more groups. The problem with this, of course, is that unless there's some sort of notification about being made a member of a group, people won't know in what groups they are members; even if there are notifications, they will likely be ignored anyway (as they already often are). Groups and pages can often extract information from people's profiles even if those people have chosen to make certain information private, which is why this is so problematic. Considering Mark Zuckerberg was made to be a member of the NAMBLA Facebook group, I'm a little scared, honestly. People who know me on Facebook, can you please do me a favor and not be a jerk (by unilaterally making me a member of a group or a fan of a page)? I'm trying to stay away from all groups and pages that don't have to do with my high school and/or college, because I don't want other random groups and/or pages to have access to my personal information.

2010-05-05

The Failures of Facebook

I was reading a few articles about Facebook's latest privacy scandal recently.
Apparently, the Facebook developers were trying to "improve" the privacy features - on Facebook, one can preview how someone else would see one's own profile. However, in doing so, they managed to allow (by accident, of course) anyone to see what any of their friends are doing on Facebook at that moment (including the ability to essentially spy on other people's chats).
This is not the first time Facebook has messed up privacy-wise (Facebook is constantly revising privacy options in the hopes of making them better, while in reality, every change creates a progressively larger backlash). However, this one really takes the cake in terms of how big a goof-up it was.
Seriously, Facebook?
Can they get any change to the interface right?
I am really starting to doubt the Facebook developers' abilities right now (though that's not to say that I didn't before either).

2009-12-08

Athletes as Role Models?

This is a question that often comes up in classrooms, but has more recently (and publicly) come up in news services in light of the Tiger Woods accident+affair incident. The questions are whether athletes are acceptable role models and whether it is fair to scrutinize their private failings like we do politicians.
I disagree with both (positive) assertions.
In short, Tiger Woods mysteriously crashed his SUV in the middle of the night and, while explaining this away, admitted to an extramarital affair.
The following is of course biased by who I am, for those of you who know me and have seen me. I won't get into that.
I don't think athletes should be held in the popular media as role models for our children.
Now, some of you are saying, "But who will kids look up to now? Their gonna look up to athletes no matter what."
I don't.
They don't have to either.
I think half the problem is that we live in a culture that values physical stature, strength, and beauty above all else. Unless the kids have some natural or early acquired physical talent, why should this be imposed on them? In many Asian cultures (even today), the braniacs and top researchers, rather than the top athletes, are revered. Obviously, those countries recognize that sports broadcasts are entertainment for the general public, while the researchers, academics, and other "nerds" are the ones advancing society (except for the few great athletes who do choose to make a highly positive contribution to the community).
For goodness' sake, I look up to Stephen Hawking. Well, maybe that's just me, but I do know of plenty of people who looked up to such academics rather than athletes as role models. It's fine if a kid looks up to an athlete, but why must the media push it on everyone?
I also disagree with the idea that athletes should be scrutinized as closely as Tiger Woods was for his failings.
I'm OK with it happening to politicians. They are public citizens.
Tiger Woods is a private citizen. He is entitled to his privacy, unless things other people he has communicated with (i.e. his lover) leak out at that person's discretion.
That said, the press was really overzealous in getting him to talk. Considering all of the more serious events (bombing in Russia, etc.) that have happened recently, it's safe to say that the media is dysfunctional (that's why I'm here :P (just kidding)).
Folks, it is only in the best interests of the media (to report on personal failings as they come) for people to look up to athletes as role models.

2009-11-18

I Won't Be in Chicago

because that city is rigged.
There seem to be over 1500 security cameras in Chicago.
Why so many?
I can understand a bunch of traffic cameras, but this seems like overkill.
In general, I'm pretty wary of this level of government monitoring of citizens; I'd hate to be in the UK (especially London), where this sort of camera system is prevalent and everyone must have an ID card on them at all times.
Now, one might say that they have nothing to hide so they have no problem with these actions.
What if something previously legal becomes illegal? What if I do something that's legal but not fully accepted by society at large? What if for whatever reason the police has a grudge against me? What if I just want my privacy?
This sort of monitoring is ridiculous, and it can only stop with an outcry from affected citizens.
Otherwise, get used to some more Big Brother.