I love this in principle.
I just wish Mastodon instances were viewable without JavaScript. Opening the door to many types of browser exploit and fingerprinting shouldn’t be required just for reading.
I love the paranoia of you nerds. It’s valid but idk how you spare the effort.
idk how you spare the effort.
When you’ve been building networked systems for longer than JavaScript has existed, it no longer takes effort to spot design choices that put users at risk. When you’ve watched endless vulnerabilities be exploited over the years, it’s not paranoia, but a real-world problem that impacts real people. At that point, the flaws are impossible to responsibly ignore.
Spreading awareness and showing people how to build safer systems does sometimes get tiring, but I think it’s important.
It’s simple, when you understand how shaky the foundation of all digital infrastructure is it’s impossible to not be paranoid.
The Polyfill incident is bad (that seems to be how the hackers got into the internet archive), and the OpenSSH one could have been really nasty, if it wasn’t caught both early, and by chance (a performance engineer at a major software company noticed).
I’d say this comic is more relevant:
I actually gave up recently for my mental health of all things. Turns out accepting being tracked in just about everything I do but also getting all the benefits of living in the future, without the effort spent on mitigation, is a huge relief. Does Google know my daily routine? Yes. Did they when I had the tin foil hat on? Probably also yes.
I find the negatives detract from the benefits too much, usually. Like having your arm cut off and then receiving lovemaking: I am no longer in the mood.