893
top 50 comments
sorted by: hot top controversial new old
[-] FE80@lemmy.world 1 points 18 hours ago
[-] Diplomjodler3@lemmy.world 174 points 6 days ago

There's a very easy trick to defeat this: use Linux.

[-] bloogoose@lemmy.zip 103 points 6 days ago

No you don't understand... I've spent the last 30 years investing in increasingly awful software companies to create "industry standards" and leaving these companies behind would require me to change and learn!!!

[-] Dindonmasker@sh.itjust.works 25 points 6 days ago

I talked with the women i'm working with where we print our price lists about changing from adobe to something else and she told me it would be a bad idea since it would make both of our work much more buggy and time consuming with more chances of the end result being worse. So i'll keep using indesing and the adobe suite for now but i did switch from sketchup to blender for 3D modeling and it's a bit challenging and more messy then i'm used to but i get better rendering results from what i tried so far.

load more comments (3 replies)
[-] M137@lemmy.today 16 points 6 days ago

So many issues with the world boils down to that last part, people refusing to change and learn. I never understood it, I've always loved change and learning. I've seen so many people go from having that same openness to only caring about keeping everything the same and never learning, it's really disturbing. Some are like that from a very early age, others fall into it at any other part of their lives and it's never a good thing IMO.

load more comments (4 replies)

If your system uses systemd, it has an etc/machine-id, which is used for a lot of different things. And changing it will break a lot of stuff, probably until you reboot. I guess you could write something to randomly shuffle it every time you reboot? But it is the go-to way for lots of programs (including browsers) to identify themselves. Which means (unless you have done the work to scramble your machine ID) you can be tracked on Linux as well.

[-] treadful@lemmy.zip 56 points 6 days ago

The difference is that Linux isn't sending telemetry to some central entity associating that ID to an IP.

Microsoft’s records showed that at that exact same minute, a Windows device carrying GDID g:6755467234350028 had visited the ngrok signup page. Three hours later, the same GDID visited the retailer’s own website, through the same Tzulo proxy address used to set up the ngrok account.

This article is super vague about this as well. How does Microsoft not only have the GDID->IP link, but they have Web history as well? Are they just exposing all this through advertising telemetry?

Fucking gross. And if you know of anything on Linux exposing/transmitting the machine-id, please do let everyone know because nothing should. Anything that does should be considered malware.

[-] hirihit640@sh.itjust.works 20 points 6 days ago
[-] treadful@lemmy.zip 31 points 6 days ago

It’s not just Windows tracking your web browsing history. GPU drivers do it too.

..on Windows. if you explicitly install their malware and agree to data sharing.

load more comments (1 replies)
[-] inari@piefed.zip 20 points 6 days ago

That's wild. Shit like this makes me distrust proprietary drivers

[-] can@sh.itjust.works 21 points 6 days ago

I distrust proprietary anything at this point

load more comments (15 replies)
[-] DevDave@piefed.social 20 points 6 days ago

also there's the TPM chip.

[-] Septimaeus@infosec.pub 18 points 6 days ago* (last edited 6 days ago)

Upvoting both comments for awareness, since Linux is the first of a multi-step process, not a privacy panacea.

But we must be clear that in both theory and practice there’s little comparison between systemd and modern Windows machine-user association.

Someone using Windows regularly has a gaping wound, is actively bleeding out. Switching to Linux is just a tourniquet, but every other treatment is at best no-effect until that tourniquet is applied.

E: transpose systemd/Windows for clarity

load more comments (8 replies)
load more comments (1 replies)
load more comments (1 replies)
load more comments (4 replies)
[-] ArmchairAce1944@discuss.online 33 points 5 days ago

I switched to Linux Mint a long ass time ago. Micropenis can go fuck themselves.

[-] db2@lemmy.world 110 points 6 days ago

So they're saying that all these "secret" societies online, like the Peter Thiel psychopathy, are relatively easily identified and rounded up and prosecuted to the fullest extent of the law, and they're just choosing not to do it? I'm shocked.

[-] Trainguyrom@reddthat.com 17 points 5 days ago

I mean Epstein was actively talking about his crimes over plaintext Gmail

[-] starman2112@sh.itjust.works 20 points 6 days ago

Why would they catch pedophiles? Their founder is one

[-] daggermoon@piefed.world 81 points 6 days ago

What idiot hacker uses Windows?

[-] Eximius@lemmy.world 69 points 6 days ago

A genz hacker. In a world where "hacking" is writing prompts and calling IT help desks.

[-] Passerby6497@lemmy.world 32 points 5 days ago

and calling IT help desks.

It always amazes me how much people shit talk social engineering, when it's been a power house for hackers since the beginning.

The human (or I guess AI now) element is always the weakest link

[-] heartSagan5@lemmy.zip 22 points 6 days ago

Wait, calling IT Help Desks isn’t social engineering now?

[-] scutiger@lemmy.world 11 points 5 days ago

It always is. Even if you're actually calling for help, you need to basically trick them into helping you these days.

[-] lordziv@lemmy.nz 23 points 6 days ago* (last edited 6 days ago)

Tbf, some of the best hackers were social engineering their way into the backend just by calling up certain support numbers in the 80s

[-] skozzii@lemmy.ca 10 points 6 days ago

I refuse to call social engineers hackers, conmen is more fitting.

[-] thallamabond@lemmy.world 14 points 6 days ago

Hacking is making something work in an unconventional or unexpected way. Social engineers hack people in that way.

[-] Squirrelanna 10 points 6 days ago

Defcon would disagree. I've watched so many presenters talk about all forms of penetration testing, many of which used social engineering and lockpicking as a way to create exploitable vulnerabilities in networks. Whether or not you care to call them hackers... It doesn't really matter, won't stop them from hacking.

[-] Cybersteel@lemmy.world 11 points 6 days ago

The weakest link in cybersecurity are usually the users after all.

[-] Passerby6497@lemmy.world 7 points 5 days ago

You can refuse to call them hackers, everyone is entitled to be wrong about something.

Kevin Mitnick was a prolific hacker who used social engineering regularly to infiltrate, and hackers still do today. Humans are a massive weak point in any org, that's why we have to take quarterly training not to be a moron and let someone into our network through doing something stupid.

load more comments (1 replies)
load more comments (1 replies)
[-] Regrettable_incident@lemmy.world 12 points 6 days ago

Sounds like the tagline for a really crap movie. How far we've fallen from two people on one keyboard.

load more comments (2 replies)
[-] daggermoon@piefed.world 13 points 6 days ago

Gen Z knows how to use Windows?

load more comments (1 replies)
[-] someone@lemmy.today 62 points 6 days ago

I can't believe Microslop would do something like this to its loyal customers!

[-] cley_faye@lemmy.world 44 points 6 days ago

I was gonna comment something about Linux distro also having a machine ID, but then I remembered that it's not in a big database, and it's so well enforced I routinely have multiple machines with the same ID pop up :D

[-] PieMePlenty@lemmy.world 17 points 6 days ago

Linux users will probably tell you their id if you ask them nicely and seem interested in their distro of choice.

load more comments (1 replies)
[-] the_riviera_kid@lemmy.world 51 points 6 days ago* (last edited 6 days ago)

The level of naivete to think it's a good idea using a microsoft account on a microsoft product for your illegal activity is astounding. Especially when you consider the amount of technical knowledge required to do such a thing.

I legitimately cannot make that connection, Microsoft has never been shy about tracking you or their tight relationship with 3 letter agencies. It doesn't take a genius to know they are going to snitch, I figured that was a foregone conclusion.

Kids need to learn about OPSEC.

load more comments (5 replies)
[-] wylinka@szmer.info 5 points 4 days ago* (last edited 4 days ago)

None of the articles I've read about this explains how the GDID gets mapped onto the user's activity.

"Windows device carrying GDID g:6755467234350028 had visited the ngrok signup page"

So does it mean that Windows monitors your activity outwith just Microsoft services and sends all data to their servers? Is it maybe MS Edge history sync?

[-] EpicMuch@sh.itjust.works 28 points 6 days ago

My laptop came with Win11, I’ve removed that drive a few months ago and replaced it with Mint.

Does this mean MS has my motherboard, WiFi, other hardware identifiers that would still tie that laptop to their database?

[-] TeddE@lemmy.world 39 points 6 days ago

Yup!

Motherboard, CPU, GPU models and serial numbers. Ram size and speed. Those were used during Windows activation as old as windows 95. But likely yes, a full list of every component connected.

Your Android phone collects every WiFi network it has ever seen and sends it to Google, so we should assume Microsoft does the same (Android can locate you without GPS by using your neighbors' WiFi signals as position identifiers, and can triangulate you to a few feet using the relative networks' signal strengths)

[-] Reygle@lemmy.world 13 points 6 days ago
[-] TeddE@lemmy.world 14 points 6 days ago

Cannot wait for the Motorola/GrapheneOS collab phones.

load more comments (8 replies)
load more comments (14 replies)
load more comments (2 replies)
[-] iterable@sh.itjust.works 13 points 5 days ago

Cant wait for someone to make or reveal they already have a GDID spoofer and can now make grandma look like the worlds number 1 hacker.

[-] MehBlah@lemmy.world 9 points 5 days ago

Its doesn't have a off switch but you can generate a new one.

load more comments (2 replies)
[-] Hairyfishnuts@feddit.online 22 points 6 days ago
[-] JoMiran@lemmy.ml 21 points 6 days ago
[-] mystik@lemmy.world 12 points 6 days ago

Ctrl-f NSAKEY (sees nothing)


it seems the internet has forgotten the NSAKEY debacle https://en.wikipedia.org/wiki/NSAKEY

load more comments
view more: next ›
this post was submitted on 13 Jul 2026
893 points (100.0% liked)

Technology

86470 readers
2909 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related news or articles.
  3. Be excellent to each other!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
  9. Check for duplicates before posting, duplicates may be removed
  10. Accounts 7 days and younger will have their posts automatically removed.

Approved Bots


founded 3 years ago
MODERATORS