Internet privacy, security, age restrictions, VPNs and backups

How have you reacted to internet restrictions

  • I have gone decentralised ages ago

    Votes: 0 0.0%

  • Total voters
    27
Why would the data leak be an issue? I had to verify my identity to bet on sports from my phone and order beer online. I would have to do the same to order cape products or firearms/ammunition.
The data leak would be an issue if they were to have to store images of government ID and/or face scans. In this day and age of deep fakes that could be easily enough to make an account with a financial organisation as well as possibly social engineering ones existing accounts.

I do not know what protections your online supply of gambling and beer have, but it is certainly a possibility that that could be a problem if they keep the data and get hacked. I try and minimise my attack surface for that sort of problem.
 
Bluesky has pulled out of Mississippi 'cos unlike the UK version, where they can farm out the problem to a third party personal data broker, they require Bluesky to collect and store sensitive information from all its users, in addition to the detailed tracking of minors.

This causes all sorts of problems, not least because of the potential for a data leak to be highly damaging to the individuals involved.
How does X handle this situation?
 
How does X handle this situation?
I do not know anyone still one Xitter so I cannot say. I do know a few on fecesbook, and none of them have been asked for age verification which surprised me.
 
I do not know what protections your online supply of gambling and beer have, but it is certainly a possibility that that could be a problem if they keep the data and get hacked. I try and minimise my attack surface for that sort of problem.

I'm not sure either. ID theft is a potential concern but I already locked my credit after last year's mass leak (and I don't need my SSN for beer). My online brokerage is the biggest risk in terms of personal data as they have the most information on me. I'm not worried about a leak showing what's in my portfolio though.
 
I do not know anyone still one Xitter so I cannot say. I do know a few on fecesbook, and none of them have been asked for age verification which surprised me.

I never had Twitter. I joined X to troll Bama football when they didn't make the playoffs. X sucks. There are too many accounts that just post the same meme 2-3 times a week long past the point of being funny, and the content I would actually want to see (updates from the Saints, Pels, and LSU) can be found elsewhere.
 
If it is I am not aware of it. Who is doing it?
Not specifically the coded username part, but using a third party provider for age/ID verification. It has the benefit of not directly revealing your credentials to the site you're actually trying to join, with the drawback of giving them to the certification provider and giving them the ability to track the sites you join. I'm sure it's a money maker.
 
Not specifically the coded username part, but using a third party provider for age/ID verification. It has the benefit of not directly revealing your credentials to the site you're actually trying to join, with the drawback of giving them to the certification provider and giving them the ability to track the sites you join. I'm sure it's a money maker.

Correct.

So the third party source would give you a token which you could then present to an age restricted site. They wouldn't necessarily need to know what site you're using.

The pro is if they have a leak, the hackers know only that you received a token. The con would be that simply obtaining a token could potentially be a bad look.

Being verified directly by the restricted site is better if you're gambling or buying booze since who cares if that gets leaked?

Third party verification is better if you're accessing X rated since it can't be directly linked to your activity without a second link. With the caveat that Draft Kings or Juul might do their own verification which would attach a stigma to third parties. Kind of like Only Fans, by allowing adult content, became associated with adult content and deterred G rated producers from participating.
 
***** and Kiwi Farms Sue the UK Over its Age Verification Law Avoiding paywall and auto censor

***** and Kiwi Farms sued the United Kingdom’s Office of Communications (Ofcom) over its age verification law in U.S. federal court Wednesday, fulfilling a promise it announced on August 23. In the lawsuit, ***** and Kiwi Farms claim that threats and fines they have received from Ofcom “constitute foreign judgments that would restrict speech under U.S. law.”

Both entities say in the lawsuit that they are wholly based in the U.S. and that they do not have any operations in the United Kingdom and are therefore not subject to local laws. Ofcom’s attempts to fine and block ***** and Kiwi Farms, and the lawsuit against Ofcom, highlight the messiness involved with trying to restrict access to specific websites or to force companies to comply with age verification laws.

The lawsuit calls Ofcom an “industry-funded global censorship bureau.”

“Ofcom’s ambitions are to regulate Internet communications for the entire world, regardless of where these websites are based or whether they have any connection to the UK,” the lawsuit states. “On its website, Ofcom states that ‘over 100,000 online services are likely to be in scope of the Online Safety Act—from the largest social media platforms to the smallest community forum.’”

Both ***** and Kiwi Farms are notorious online communities that are infamous for their largely anything-goes attitude. Users of both forums have been tied to various doxing and harassment campaigns over the years. Still, they have now become the entities fighting the hardest against the UK’s disastrous Online Safety Act, which requires websites and social media platforms to perform invasive age verification checks on their users, which often requires people to upload an ID or otherwise give away their personal information in order to access large portions of the internet. Sites that do not comply are subject to huge fines, regardless of where they are based. The law has resulted in an internet where users need to provide scans of their faces in order to access, for example, certain music videos on Spotify.

The Electronic Frontier Foundation has said the Online Safety Act “is a threat to the privacy of users, restricts free expression by arbitrating speech online, exposes users to algorithmic discrimination through face checks, and leaves millions of people without a personal device or form of ID excluded from accessing the internet.”

Ofcom began investigating ***** over alleged violations of the Online Safety Act in June. On August 13, it announced a provisional decision and stated that ***** had “contravened its duties” and then began to charge the site a penalty of £20,000 (roughly $26,000) a day. Kiwi Farms has also been threatened with fines, the lawsuit states.

"American citizens do not surrender our constitutional rights just because Ofcom sends us an e-mail. In the face of these foreign demands, our clients have bravely chosen to assert their constitutional rights," Preston Byrne, one of the lawyers representing ***** and Kiwi Farms, told 404 Media.

"We are aware of the lawsuit," an Ofcom spokesperson told 404 Media. "Under the Online Safety Act, any service that has links with the UK now has duties to protect UK users, no matter where in the world it is based. The Act does not, however, require them to protect users based anywhere else in the world.”
 
I would have thought most such companies would wait until the UK government tried to get its fines enforced in US courts.

But I suppose there is always one which lets the lawyers jump in early.
 

uk-users-must-verify-their-age-to-access-steam-store-pages-v0-3x94yb002ylf1.png

If you don’t have a credit card then you won’t be able to access mature content games or pages on Steam, as there’s no other way of verifying your age.

Valve’s decision to require a credit card comes weeks after the UK’s new age-gating rules have been found to be easy to bypass, especially with VPNs. Discord and Reddit’s UK age verification could be briefly defeated by Death Stranding’s photo mode, but the face scanning tools have since been updated to block this bypass method.
UK users won’t even be able to access the community hubs of mature content games unless a valid credit card is stored on a Steam account.

FiGTDNYX0AEXpnM.jpg
 
Last edited:

The UK government made a broader attempt to force Apple to provide “backdoor” access to private customer data than was previously known, a new court document suggests.

The legal filing, seen by the Financial Times, indicates that the UK government sought access to not just an optional extra layer of encryption but Apple’s standard iCloud service as well.

It also suggests that the Home Office is yet to modify its demand for Apple to grant access to data belonging to customers outside the UK, despite claims by Trump administration officials last week that the British government had “agreed to drop” its effort to tap American citizens’ private information.
However, the new IPT filing states the TCN “is not limited to” data stored under ADP, suggesting the UK government sought bulk interception access to Apple’s standard iCloud service, which is much more widely used by the company’s customers.

The TCN also included “obligations to provide and maintain a capability to disclose categories of data stored within a cloud-based backup service”, the filing states, which suggests the government sought to tap messages or passwords that were backed up in the cloud as well.

“The obligations included in the TCN are not limited to the UK or users of the service in the UK; they apply globally in respect of the relevant data categories of all iCloud users,” the IPT filing adds.

Uk Gov typical statement - ''Dont know what you talkin about'' -

A UK government spokesperson said it did not comment on “operational matters”, including “confirming or denying the existence” of TCNs.

Even though Apple's challenged them, the Uk Gov most def' must be doing this kinda stuff to many more companies who are willingly or not, but are quietly complying with such orders.

Knowing them, there is no way they only went after Apple.

The Uk Gov is batting hard to get thier way -

 
Last edited:
You have only 2 days left to contact your representatives to tell them to OPPOSE Chat Control, before they finalize their positions on Friday, September 12th.

Contact your representatives NOW.

How
Why
 
There's been a breach already...


Proof-of-age ID leaked in Discord data breach​

Video game chat platform tells users that driver’s licences and passports were among the forms of data accessed via a third-party customer service provider

Video game chat platform Discord has suffered a data breach, informing users that their personal information – including identity documents of those required to prove their age – were compromised.


The company stated last week that an unauthorised party had compromised one of Discord’s third-party customer service providers, leading to the access of “a limited number of users” who had been in contact with the customer service or trust and safety teams.

The data compromised may have included usernames, email, billing information, the last four digits of credit card numbers, IP addresses and messages with customer support.

Discord said the alleged attacker “also gained access to a small number of government ID images (eg driving licence, passport) from users who had appealed an age determination.

Affected users were in the process of being notified as of last week.

“If your ID may have been accessed, that will be specified in the email you receive,” Discord said.

The support system was targeted to access user data with a view to extort a financial ransom from Discord, the company stated.

Discord said it revoked the third-party provider’s access to its ticketing system and launched an internal investigation, including engaging with law enforcement.

The attack appears to have occurred on 20 September, according to a user who received a notification.

Discord has said it has over 200m active monthly users.

Discord began using facial age assurance to check the age for users in the UK and Australia earlier this year. The company said facial images and ID images “are deleted directly after” ages are confirmed, but Discord’s website noted that if verification fails, users can contact the trust and safety team for a manual review.

Under the under 16s social media ban to come into effect on 10 December, the Australian government has outlined that it expects platforms such as Discord – which is one of the platforms that has been asked to assess if it is required to comply – should have multiple options for assessing a user’s age, and a way for them to quickly appeal an adverse decision.

Platforms can ask for ID documents as part of the age assurance scheme, but it cannot be the sole method of age assurance offered by the platforms under the policy.

The Australian privacy commissioner confirmed it had been notified about the breach by Discord.

Discord was approached for comment.


1ec134814a3420ca263873d4942a64f8.gif
 
Back
Top Bottom