Simplifying w/Digital Minimalism: What's on My Phone
tilvids.com
external-link
Here's how I've implemented digital minimalism into one of my phones to give you all an idea of how I keep my technology simple, focused, minimal, and working for me. NextDNS Affiliate Link: https://nextdns.io/?from=5v4be7mt NextDNS Standard Link: https://nextdns.io/ How To Clear Homescreen: https://www.idownloadblog.com/2022/02/21/how-to-create-iphone-home-screen-with-no-apps/ Punkt Review That Inspired This Video: https://youtu.be/QdYrBpBJRI4 🔐 Our Website: https://techlore.tech 🕵 Go Incognito Course - to learn about privacy: https://techlore.tech/goincognito 🏫 Techlore Coaching - to get direct support: https://techlore.tech/coaching 💻 Techlore Forum - to connect with other advocates: https://discuss.techlore.tech 🦣 Mastodon - to stay updated: https://social.lol/@techlore We cannot provide our content without our Patrons, huge thanks to: Afonso, Boori, BRIGHTSIDE, Casper, Clark, Cyclops, Eldarix, JohnnyO, Jon, kevin, Larry, love your content, NotSure, Poaclu, x 🧡 Join them on Patreon: https://www.patreon.com/techlore 💚 To see our production gear, privacy tools we use, and other affiliates: https://techlore.tech/affiliates 💖 All Techlore Support Methods: https://techlore.tech/support 00:00 Intro to digital minimalism 00:50 Phone choices 01:52 Delete unused applications 02:37 Clean your homescreen 04:32 Changing your navigation 06:48 Screentime/downtime and other controls 08:22 DNS Filtering 09:46 The little things 11:10 The mentality 13:02 Summarizing things #minimal #minimalist #techlore

cross-posted from: https://monero.town/post/462856

Looking for an answer more detailed than just switch to pixel and use graphene or calyx.

What are the recommended changes to use in the Settings App to make Apple more secure and private? Should I just use the Safari browser due to all the browsers being the same as they all use WebKit

I’m looking for suggested changes to staying minimal but increasing privacy and security on iPhone

@nitefox@lemmy.world
link
fedilink
English
31Y

Can’t you use iCloud services enabling the end to end encryption?

Em Adespoton
link
fedilink
English
31Y

If you do, you have to be very careful. SOME data is encrypted at rest in iCloud, not all. It doesn’t matter if it’s encrypted in transit if it’s readable on the servers. Also, while some iCloud services are encrypted remotely against your private key, other services can also be decrypted by an Apple support key.

You can go through each service to ensure it (currently) fits your privacy needs, or you can just go with the basic rule that data managed by others is not private.

@Laitinlok@discuss.tchncs.de
link
fedilink
English
1
edit-2
1Y

Yes Apple has their iCloud key, if you live in China, the key is controlled by the Ccp, potentially dangerous for abuse from lea, highly recommend not to use Apple devices if you live there. The other problem is if they same set of keys for global users that it is possible to crack encryption for global users using the same keys, hence compromising security if one day Ccp want to access to the files of some American’s phone through iCloud.

Em Adespoton
link
fedilink
English
11Y

Unlike Microsoft, Apple appears to use unique regional keys for iCloud, so this risk is significantly less than it could be.

Having said that, that means that the key associated with your iCloud account will be for the region you set when you set up the account— so if you move, I believe your data is still stored in the original region and the key is for the original region.

You know some people like to hack real people’s phone for fun

Em Adespoton
link
fedilink
English
11Y

And some for profit. I’m not sure what this has to do with iCloud security and EEE vs EAR though.

I suppose it’s easier to access the cloud storage than the phone given how secure the iPhone is and with lockdown mode, it’s even harder.

@nitefox@lemmy.world
link
fedilink
English
21Y

Oh yeah, afaik the only services which don’t have end to end encryption are the mail, books, calendar and contacts storages. Most stuff is E2E (if you enable it)

Em Adespoton
link
fedilink
English
11Y

E2E refers to data in transit: the data will be encrypted between its source and destination. It says nothing about how that data is protected once it has arrived.

E2E iCloud means a third party won’t be able to snoop on the data while you are reading from iCloud or writing to iCloud. But Apple employees can still log into your account and decrypt the data at rest on iCloud in many circumstances because the data at rest is encrypted against a key held by Apple.

A recent example of how this can go wrong was seen with Azure (which hosts some of iCloud) where a Microsoft dev key leaked and attackers were able to use it to generate a working decryption key for the US Government Azure service (a different product) and read terabytes of government data off the cloud services.

The attackers could have targeted iCloud hosting services instead of the US government and done the same thing for all data in all iCloud accounts not specifically encrypted against a personal key held only in your personal keychain.

And if you use iCloud Keychain of course, the same technique can be used to attack your keychain by pretending to be Apple Support and “recover” the contents of the keychain.

NaN
link
fedilink
English
5
edit-2
1Y

According to Apple they do not have the keys when you enable Advanced Data Protection, which is why they force you to have your own backup recovery methods (recovery key, recovery contacts). When they talk about E2E the endpoints they are referring to are user-owned devices.

iCloud Keychain recovery is also much more complex than you are describing.

@nitefox @adespoton doesn’t EEE imply that decryption happens on both ends?

NaN
link
fedilink
English
11Y

Yes. The ends are user devices.

@Bitrot yes, but not only your devices. The corp hosting the data for you does have access to the unencrypted data. They can log into their systems and see the unencrypted contents. EEE will parent a 3rd party from reading g your data while I’m transit, but not once it has arrived at the final destination

NaN
link
fedilink
English
2
edit-2
1Y

Potentially only your devices. If they are encrypted on device with keys that the host does not have, it is still end to end encrypted with no way for them to recover. In the case of iCloud, this is how Advanced Data Protection works and even logging into the web only grants access to a subset of data (it is literally end to end encrypted between only user devices). When ADP is not enabled, some data is recoverable by Apple and some is not (when enabled a small bit still is, such as email because they need access for it to function, but far less).

Create a post

In the digital age, protecting your personal information might seem like an impossible task. We’re here to help.

This is a community for sharing news about privacy, posting information about cool privacy tools and services, and getting advice about your privacy journey.


You can subscribe to this community from any Kbin or Lemmy instance:

Learn more…


Check out our website at privacyguides.org before asking your questions here. We’ve tried answering the common questions and recommendations there!

Want to get involved? The website is open-source on GitHub, and your help would be appreciated!


This community is the “official” Privacy Guides community on Lemmy, which can be verified here. Other “Privacy Guides” communities on other Lemmy servers are not moderated by this team or associated with the website.


Moderation Rules:

  1. We prefer posting about open-source software whenever possible.
  2. This is not the place for self-promotion if you are not listed on privacyguides.org. If you want to be listed, make a suggestion on our forum first.
  3. No soliciting engagement: Don’t ask for upvotes, follows, etc.
  4. Surveys, Fundraising, and Petitions must be pre-approved by the mod team.
  5. Be civil, no violence, hate speech. Assume people here are posting in good faith.
  6. Don’t repost topics which have already been covered here.
  7. News posts must be related to privacy and security, and your post title must match the article headline exactly. Do not editorialize titles, you can post your opinions in the post body or a comment.
  8. Memes/images/video posts that could be summarized as text explanations should not be posted. Infographics and conference talks from reputable sources are acceptable.
  9. No help vampires: This is not a tech support subreddit, don’t abuse our community’s willingness to help. Questions related to privacy, security or privacy/security related software and their configurations are acceptable.
  10. No misinformation: Extraordinary claims must be matched with evidence.
  11. Do not post about VPNs or cryptocurrencies which are not listed on privacyguides.org. See Rule 2 for info on adding new recommendations to the website.
  12. General guides or software lists are not permitted. Original sources and research about specific topics are allowed as long as they are high quality and factual. We are not providing a platform for poorly-vetted, out-of-date or conflicting recommendations.

Additional Resources:

  • 1 user online
  • 5 users / day
  • 10 users / week
  • 72 users / month
  • 645 users / 6 months
  • 1 subscriber
  • 665 Posts
  • 11.1K Comments
  • Modlog