1232
you are viewing a single comment's thread
view the rest of the comments
[-] GiddyGap@lemm.ee 21 points 2 years ago

Well, it defers a lot from country to country.

For example, populations in the Scandinavian countries have high trust in their governments and let them collect a lot of private data. They have personal identification numbers that contain lots of personal information that many institutions (e.g. banks) have access to unless you ask for privacy protection. All of this also makes interaction with institutions very streamlined and easy, but it comes at the cost of less privacy.

In Norway and Sweden, for example, anyone can access personal income data about anyone living in the country. Full transparency, more or less.

On the other hand, a country like Germany does not issue personal identification numbers because the population is highly skeptical of data collection and registration, a remnant from the wars. Germany is much more bureaucratic and its government less efficient, but Germans prefer the arm's length approach to government data collection and almost no data is publicly accessible.

[-] Aceticon@lemmy.world 9 points 2 years ago* (last edited 2 years ago)

In Germany you have to show some kind of ID - which gets registered in a system - to buy a SIM card, something I never had to do in other countries I lived in, in Europe.

There is no other point in having such a requirement for stores to record people's ID when they buy SIM cards than to associate phone numbers with people for surveillance.

The UK too doesn't have ID cards or ID numbers for people and yet has the biggest densitity of surveillance cameras in Europe, automated license plate reading cameras in major roads and highways and, as shown by the Snowden revelations, has an even more broad civil society surveillance system in place than the US and, by the way, when that came out the political response was simply to retroactivelly make legal any part of it which weren't.

ID numbers are just one big "look over here" distraction from what's really going on.

[-] GiddyGap@lemm.ee 5 points 2 years ago* (last edited 2 years ago)

I didn't say that Germany doesn't collect data for basic protection of its citizens and for terrorism prevention (or, some may see that as surveillance). It does. It's just not shared in a big central system that other institutions and private companies can pull from like it is in the Scandinavian countries or the Netherlands.

E.g. if you move from one place to another in Germany, the government institutions in the two locales don't talk to each other about that. So, for tax and social benefits purposes, you have to tell each one that you moved. The federal government is also not involved.

Edit: spelling

[-] Aceticon@lemmy.world 4 points 2 years ago* (last edited 2 years ago)

Somehow the rest of Europe doesn't need to get people's IDs when SIM cards are sold "for basic protection of its citizens and for terrorism prevention". Further, the idea that "terrorists" won't just buy their SIMs in a different country and bring them over and using them in Germany is laughable (the only reason I did so for the couple of months I lived in Germany is because I was a heavy data user).

Also from what I've seen in Britain, having government entities unable to properly share data AND having a disproportionately high level of civil society surveillance are not at all incompatible.

I would've tended see the same association between no-IDs and no-crossing of data with low-surveillance that you seem to be making here if I hadn't seen first hand how that is not at all linked (or maybe it's actually inverselly correlated) during the time I lived in Britain.

[-] GiddyGap@lemm.ee 3 points 2 years ago

You're not right about the rest of Europe not needing ID for a SIM. In Denmark, you need ID. In Sweden, you need ID. In Norway, you need ID. I'm sure you need in many other countries as well.

In the US, you also need an ID to open an account.

[-] Aceticon@lemmy.world 2 points 2 years ago* (last edited 2 years ago)

Right, I'll grant you that - can only really speak for countries were I actually bought SIMs.

I know for sure you don't need an ID in Portugal, Spain, The Netherlands, the UK and Canada, or at least you didn't back when I did bought a SIM card over there (either because I lived there or stayed there long enough that it was worth it to get one for cheaper mobile data).

Funny enough, the countries you listed (except Germany) are ones were somebody else was pointing out that people trust the authorities and are more ameanable to the authorities having lots of information about them. (I just checked back and it was actually you who said that ;))

Personally I was quite shocked that Germany, the country which had both Nazism and in some parts Communism, and were one would expect people to shy-away from anything with even the slightest wiff of Gestapo/Stasi to it, to have very explicit and obvious laws in place to make sure the authorities knew who had what mobile phone line were in place and accepted by the population.

[-] GiddyGap@lemm.ee 1 points 2 years ago

In Germany, it's an anti-terrorist precaution. Criminals love anonymous prepaid SIMs.

You do need ID in the Netherlands, Belgium, and Spain now. I think it's the same in most EU countries. Same thing. Anti-terrorism.

[-] Schadrach@lemmy.sdf.org 1 points 2 years ago

In Germany, it's an anti-terrorist precaution. Criminals love anonymous prepaid SIMs.

Wouldn't they solve this by adding a level of indirection? Like offering to pay some schlub cash with a nice margin to buy several prepaids for them?

[-] Aceticon@lemmy.world 1 points 2 years ago* (last edited 2 years ago)

I looked around for The Netherlands and I found no such requirement for Pre-paid SIM cards.

Are you confusing the ones with a contract where naturally the actual mobile company wants to make sure you are who you say you are with it being a general rule for all SIMs? Can you point me at the source of that information (in Dutch would be fine, even in German I can probably read it)?

[-] GiddyGap@lemm.ee 1 points 2 years ago

Yes, I may be thinking of a contract in the Netherlands. They may still be among a few countries allowing prepaid SIMs without registration. But I'm not sure.

[-] Aceticon@lemmy.world 1 points 2 years ago
[-] redfox@infosec.pub 1 points 2 years ago* (last edited 2 years ago)

@GiddyGap@lemm.ee

Since I also appreciate EUs privacy mindset, and you guys actually mentioned interesting things about the various populations, I'm going to post devil's advocate question:

Is there anything to allow privacy invasion we should do for law enforcement and CSAM? Since that's all political excuses for it?

Here's a story I heard recently that talks about it from a technician cyber crime podcast: https://darknetdiaries.com/episode/131/

Disclaimer: I cried while on a run in the middle of a populated area.

My emotions on the topic go from shock and sadness to the punisher style rage, and what vigilante justice.

There's also apps like kik, where apparently this shit is unchecked.

So my question is, can we all have our no data collection privacy, but still give law enforcement a way to hunt these pieces of shit into extinction without them overreaching?

[-] Aceticon@lemmy.world 3 points 2 years ago* (last edited 2 years ago)

As with everything, there has to be Proportionality (are the gains from mandate backdoors on everybody's software or mandatory taps on every phone out there so great they justify the high risk of massive loss of privacy and security of the general population) and ther has to be Independent Oversight, as in, it has to happen with a Court Order which is the result of a Judge having examined the case of the police and determined that there is sufficient reason to break somebody's privacy, same as is necessary for the Police to break into somebody's house to conduct a search, and we're not talking about "special" surveillance courts with secret proceedings that even the defense attorneys can't attend such as the US' FISA courts and the UK's equivalent (whose name now evades me) - though in the UK there are even surveillance systems which, by Law, the Police does not need a Court Order access as they see fit.

Given that the smart criminals - read big, dangerous ones - don't use phones they bought when showing their ID and where they have a contract that they pay from their bank account, and in some cases even use proprietary comms apps rather than the ones common people use (it's not as if it's hard to make an encrypted comms app for anybody with even just a bit of mobile development experience: I can make you one with unbreakable cryptography in a week, but it does require periodic transport of harddisks filled with random bytes because the key is as long as the message) things like mandated backdoors on widelly available comms apps only provide a mild improvement in Police effetiveness whilst openning a massive attack vector on millions, tens of millions, or even hundreds of millions (for the whole of the EU) of law-abiding citizens, hence are a massivelly dispropotionate solution versus other options, such as bugging the devices, direct surveillance of the suspects and so on.

Also for me personally, having lived in the UK, you cannot at all in any way or form trust the Authorities with such power as they will with absolute certainty abuse it. Also even if a country's authorities are squeaky clean, prim and propper today (most definitelly not so in the UK, were they even had surveillance on the Green Party, but most of Europe is better), there is no guarantee the next ones will still be so (remember, most of Europe was at some point under Fascist or Communist dictatorships), and in this day an age stuff once recorder exists forever and can be later fished out and used against you even when back in the day when you said it or wrote it, it's was totally legit.

So it's the balance of pros and cons (i.e. the fail in Proportionality) that makes mandated backdoors on everybody's comms apps for the purpose of surveillance, even under proper oversight by a Court of Law in a country with trustworthy Authorities and proper Laws rather than "funny" surveillance Courts, still be an unacceptable option.

Yeah, you'll always find cases were you're told "if only we had backdoors in every comms app we could have stopped it", same as you would for "mandatory taps in every phone" or "mandatory cameras in every person's home" (though, "curiously", they never mention the problem that with so much data it's way harder to spot those single instances of lawbreaking), but having such things for every single person in a country is still an incredibly disproportinate solution for what it solves.

[-] redfox@infosec.pub 1 points 2 years ago

These are good points, well said.

I agree. Insert great power/responsibility saying.

They always seem to go off the rails.

I would be in favor of mandatory disclosure (though, this would be extremely difficult and costly). I imagine anytime a government privilege was used, especially when behind closed doors, and reviewed by "...the proper oversight officials...", whoever that means, I would rather like the governments to prove it.

I would support an idea that by law, it all has to be documented, and after a reasonable amount of time after the prosecution is complete, they have to disclose everything they did, all the snooping, etc. With redacted private information of course for unrelated people.

This is fairly unreasonable/unrealistic. But for me, if you could see all the cases where a government invaded privacy and link it to all to nothing but legitimate uses, it might help restore some faith/trust in officials.

[-] cashews_best_nut@lemmy.world 2 points 2 years ago

Are you saying Europe isn't a country and the countries in Europe have their own laws and history?

Say it ain't so!

this post was submitted on 14 Feb 2024
1232 points (100.0% liked)

Technology

76339 readers
1306 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related news or articles.
  3. Be excellent to each other!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
  9. Check for duplicates before posting, duplicates may be removed
  10. Accounts 7 days and younger will have their posts automatically removed.

Approved Bots


founded 2 years ago
MODERATORS