1
 
 

cross-posted from: https://lemmy.dbzer0.com/post/36880616

Help Combat Internet Censorship by Running a Snowflake Proxy (Browser or Android)

Internet censorship remains a critical threat to free expression and access to information worldwide. In regions like Iran, Russia, and Belarus, journalists, activists, and ordinary citizens face severe restrictions when trying to communicate or access uncensored news. You can support their efforts by operating a Snowflake proxy—a simple, low-impact way to contribute to a freer internet. No technical expertise is required. Here’s how it works:


What Is Snowflake?

Snowflake is a privacy tool integrated with the Tor network. By running a Snowflake proxy, you temporarily route internet traffic for users in censored regions, allowing them to bypass government or institutional blocks. Unlike traditional Tor relays, Snowflake requires minimal bandwidth, no configuration, and no ongoing maintenance. Your device acts as a temporary bridge, not a permanent node, ensuring both safety and ease of use.


Is This Safe for Me?

Short answer: Yes.

Long answer: pobably. Here is why:

  • Your IP address is not exposed to the websites they access. So, you don't have to worry about what they are doing either. You are not an exit node.
  • No activity logs. Snowflake cannot monitor or record what users do through your connection. The only stored information is how many people have connected to your bridge. Check docs for further info on this.
  • Low resource usage. The data consumed is comparable to background app activity—far less than streaming video or music.
  • No direct access to your system
  • No storage of sensitive data. Snowflake proxies do not store any sensitive data, such as IP addresses or browsing history, on your system.
  • Encrypted communication. All communication between the Snowflake proxy and the Tor network is encrypted, making it difficult for attackers to intercept or manipulate data.

You are not hosting a VPN or a full Tor relay. Your role is limited to facilitating encrypted connections, similar to relaying a sealed envelope.

Your IP address is exposed to the user (in a P2P-like connection). Be mindful that your ISP could also potentially see the WebRTC traffic and the connections being made to it (but not the contents), so be mindful of your threat model.

For most users, it is generally safe to run Snowflake proxies. Theoretically, your ISP will be able to know that there are connections being made there, but to them it will look like you're calling someone on, say, Zoom.

Historically, as far as we know, there haven't been any cases of people getting in legal trouble for running entry relays, middle relays, or bridges. There have a been a few cases of people running exit nodes and getting in trouble with law enforcement agencies, but none of them have been arrested or prosecuted as far as I know it. If you are aware of any cases, let me know so I can update this post.

Do not hesitate to check Snowflake's official documentation for further reference and to make informed decisions.


How to Set Up a Snowflake Proxy

Option 1: Browser Extension (Brave, Firefox, or Chrome)

  1. Install the Snowflake extension.
  2. Click the Snowflake icon in your browser toolbar and toggle "Enable Snowflake."
  3. Keep the browser open. That’s all.

Note: Brave users can enable Snowflake directly in settings. Navigate to brave://settings/privacy and activate the option under "Privacy and security."


Option 2: Android Devices via Orbot

  1. Download Orbot (Tor’s official Android app).
  2. Open the app’s menu, select "Snowflake Proxy," and toggle it on.
  3. For continuous operation, keep your device charged and connected to Wi-Fi.

Your device will now contribute as a proxy whenever the app is active.


Addressing Common Concerns

  • Battery drain: Negligible. Snowflake consumes fewer resources than typical social media or messaging apps.
  • Data usage: Most users report under 1 GB per month. Adjust data limits in Orbot’s settings or restrict operation to Wi-Fi if necessary.

Why Your Participation Matters

Censorship mechanisms grow more sophisticated every year, but tools like Snowflake empower ordinary users to counteract them. Each proxy strengthens the Tor network’s resilience, making it harder for authoritarian regimes to isolate their populations. By donating a small amount of bandwidth, you provide someone with a critical connection to uncensored information, education, and global dialogue.

Recent surges in demand—particularly in Russia—highlight the urgent need for more proxies. Your contribution, however small, has an impact.

By participating, you become part of a global effort to defend digital rights and counter censorship. Please, also be mindful of your threat mode and understand the potential risks (though very little for most people). Check Snowflake's official documentation for further reference and don't make any decisions based on this post before taking your time to read through it.

Please share this post to raise awareness. The more proxies, the stronger the network.

– llama

2
submitted 2 years ago* (last edited 2 years ago) by [M] to c/privacy@lemmy.dbzer0.com
 
 

It's hard to make the full switch towards a more private life, but switching your mail already fixes a big underlying issue: that being, Google or other companies having access to all your emails. So, I'll cover the basics of making your online mailing more private.

Switching Mail Providers:

Your email is a big part of your online footprint and helps you keep track of your online identity. So, in order to keep that to yourself, I encourage leaving services like:

"Gmail" or "Outlook",

for others like:

"ProtonMail" or "Tutanota".

This is already a big step towards keeping all your emails private and safe. Both of these are free and respect your privacy on their free tier, but expand in features with paid plans. This takes time, as you have to switch your email on most accounts to this new email.

For the best privacy, you should delete most accounts and create new ones with this new email or with aliases. Some people, like myself, prefer to have multiple emails over aliases. For example:

  • "something.banking11231@provider.me" -> For banking and finance
  • "something.social12312@provider.me" -> For social media
  • "general.use@provider.me" -> For casual and responsible internet use
  • "something.trash21412@provider.me" -> For crappy websites or similar uses

(Self-hosting your own mail domain is possible, but it’s a harder process, and custom domains are not always accepted or reliable.)

(You should keep your old email for a year or so to make sure no important service was left behind locked to that email. Once that's done, you can delete the account.)

Tips:

If you can, you should try expanding your protocol with this:

  • Adding 2FA to any online website, especially email. I use ~~"Authy" ~~for this. -> Better use Aegis, good app!

  • Switching your browser to something like "Librewolf".

  • Switching to a password manager like "Proton Pass" or "1Password".

  • Encourage your close family to do the same once you're comfortable with the process.

  • Switch social media to private alternatives.

  • If you take any efforts to switch browser or install Aegis, try to use "F-droid", or even better, "Droidify". These being a FOSS app store, and a good Material alternative frontend. For apps not in here, consider "Aurora store", a more private **"Play store" **alternative

This is about it for me, quick posts from class, feel free to add into this topic bellow.

Edit:

Important additions after reading the comments:

  • Proton is a bit disencouraged by some for some political views published by the CEO under proton's account and image. They backed down, and I believe it isn't something too bad as for users to leave such a good privacy oriented suite of apps. I encourage anyone who cares about this topic to research before making the switch.

  • Mail is not 100% private with any option, and shouldn't be used for highly sensitive information. For that use end to end encrypted apps well respected, like "signal". Still is best to just don't send very sensitive information online.

  • As a comment pointed, for a mail to be as private as possible, both the sender and reciever should have a private mail, otherwise you can be private but the other person would still be having your mail conversations stored under "gmail" or similar.

Sorry if this post didn't give the best newbie advice, I tried to track back some of my old knowledge, but I'll take more time to research the next time. Take care and stay private!

3
4
5
 
 

cross-posted from: https://piefed.ca/c/privacy@lemmy.ml/p/859482/proton-drive-linux-client-is-being-actively-developed

I received the email this morning from Proton announcing improvements to Drive speed, and they just happened to tuck this in there:

... It also allowed us to focus on deeper integration with the rest of the Proton ecosystem (such as Drive in Lumo) and support for a Linux client, which we're now actively building.

Glad I won't have to continue using my cobbled together Syncthing solution much longer.

Here's the full email for anyone interested, seems the announcement isn't on their website yet.

Tap for spoilerDear Proton community member,

A faster, more powerful Proton Drive is here, giving you smoother access, stronger protection, and more control over your files.

Proton Drive is up to 3x faster

We rebuilt Proton Drive around a single, shared engine that now powers uploading, downloading, and encryption across all our apps. Uploads are up to 3x faster and downloads up to 2x faster, plus smoother scrolling and quicker loading in Photos. It also allowed us to focus on deeper integration with the rest of the Proton ecosystem (such as Drive in Lumo) and support for a Linux client, which we're now actively building.

Faster, stronger encryption

Your files stay end-to-end encrypted — that hasn't changed, and never will. But that happens more efficiently now. We've adopted a cryptographic advance in the OpenPGP standard, cutting encryption time for new file uploads by up to 4x.

More control over who can manage your shared files

When you share a file or folder, you can already choose Viewer or Editor access. Now you can also decide whether an Editor can manage sharing on your behalf — inviting others, changing permissions, or removing access. To keep that control for yourself only, open the share's Settings and toggle off access.

More power and flexibility across Proton Drive

Alongside the updates above, we’ve continued improving Proton Drive across platforms, making it easier to automate workflows, browse shared files, manage syncing, and work more efficiently.

  • The Proton Drive CLI is now available for Linux, macOS, and Windows, so you can script uploads, downloads, and sharing from your terminal. 
  • Grid view is now available on public Proton Drive links, making shared photo folders much easier to browse.
  • On the Windows desktop app, you can now pause syncing for a few hours or until the next day, and Proton Drive automatically resumes so you don't forget to turn it back on.
  • A new encrypted cache stores your 500 most recently viewed thumbnails, so albums you've already browsed load instantly the next time.
  • Proton Sheets now supports custom currency, number, and date/time formats, alongside bug fixes and reliability improvements.

Protecting your privacy is our priority. Follow us on X for the latest feature releases, privacy news, and security tips. Join the discussion on Reddit for insights directly from our team, and share your ideas on UserVoice to help shape Proton’s future.

Thank you for your continued support. Stay secure,

The Proton Drive team

6
 
 

cross-posted from: https://lemmy.world/post/49717026

🐍 Not shocked by #Meta or the kind of people they put in charge of their “digital experiences for kids”¹.

Exactly the kind of person to entrust with social media #ageverification (calls, live videos, photographs etc.).

I mean they already love scanning messages for child sexual abuse material via #ChatControl².

☑️ Entrust children's data to the people literally caught exploiting them, all under the banner of protecting kids?

¹ https://cybernews.com/cybercrime/meta-engineering-manager-caught-sexting-teen

² https://www.techspot.com/news/113062-eu-revived-law-meta-google-scan-messages-critics.html

7
 
 

cross-posted from: https://lemmy.world/post/49761199

If you have been wondering about the effectiveness of the social media ban of under 15 year olds, this study got you :)

Spoiler: 92%+ of kids age 14-15 in Australia still use it 🥳

Meanwhile IMO forced verification of users had a much better success rate 😉

Source: https://www.nber.org/system/files/working_papers/w35162/w35162.pdf

8
 
 
9
 
 

cross-posted from: https://lemmy.world/post/49729865

However you look at it age verification is a major change to the internet and our freedoms.

We've seen all kinds of legislation pushed through in the past, often even against major resistance.

What makes me suspicious this time is the speed at which some of the slowest bureaucracies in the world are adopting it and how it's happening in 20+ countries in parallel.

It's like they're all in a group chat, fast-tracking this before resistance can even form.

10
 
 

YouTube video of live stream https://www.youtube.com/watch?v=56-DCAHU29Y

Audio from live stream in case you don't want to use YouTube. To get it under 200mb and because nothing interesting is happening on the video i decide to remove it. https://files.catbox.moe/p2uiz0.mp3

11
12
 
 

cross-posted from: https://lemmy.world/post/49682374

Surprise Surprise Meta Lies Lies Lies ;)

13
14
15
submitted 1 week ago* (last edited 1 week ago) by to c/privacy@lemmy.dbzer0.com
 
 

cross-posted from: https://piefed.world/c/tech/p/1268605/how-cops-use-flock-to-track-people-not-cars

Cops have used Flock's FreeForm search feature to look for people with tattoos and wearing specific sport shirts, and searches sometimes include the target's race, according to data reviewed

16
 
 

23andMe agreed to pay $18 million to settle claims over a 2023 data breach affecting 6.9 million users.

And that is before the lawyers take most of it. Basically zero consequences for breach of DNA sequences, health reports, ethnicity, race, location, etc. Fascists surely won’t use this for anything horrific.

17
18
19
 
 

GDID is the persistent Windows ID that helped FBI trace a Scattered Spider hacker despite VPNs. Here's how it works and how to limit it.

20
 
 

cross-posted from: https://piefed.world/c/tech/p/1246200/pdf-a-hacker-s-arrest-reveals-microsoft-can-track-users-ip-history-even-with-vpn-full-we

You can read about it yourself here on page 12 (or page 8 of affidavit), then page 33 and down (page 29 of affidavit)

First one to notice this: Security researcher, VX-Underground.

21
22
 
 

For use only on private property you have a legal right to access.

23
 
 

Anonymity remains under attack.

24
25
view more: next ›