this post was submitted on 25 Jul 2023
147 points (95.7% liked)

Technology

58760 readers
4583 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related content.
  3. Be excellent to each another!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, to ask if your bot can be added please contact us.
  9. Check for duplicates before posting, duplicates may be removed

Approved Bots


founded 1 year ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[–] LibertyLizard@slrpnk.net 7 points 1 year ago (2 children)

Is there a way to address the problems outlined by the proponents of these technologies without placing too much power in anti-democratic and anti-user organizations like Apple and Google?

[–] Jajcus@kbin.social 15 points 1 year ago

But the problem they try to solve is: user's device is not under full control of the service provider. The only solution to that problem is to take away the control from the device owner. You cannot have both.

[–] Overspark@feddit.nl 11 points 1 year ago (1 children)

Which problems? As far as I can tell this solves zero problems for users of websites. Wanting to replace captchas with this is just another arms race that normal users will suffer from.

[–] LibertyLizard@slrpnk.net 1 points 1 year ago* (last edited 1 year ago) (3 children)

Well, captchas seem likely to become useless in the near future, and are currently a key feature used to prevent unwanted bot activity on many if not most websites. What can replace them?

Would this technology work better if there were a coalition of attesters that granted access to newer and smaller browsers and os makers?

[–] Jajcus@kbin.social 9 points 1 year ago

The point of the attestation is to show that given browser won't do some things. If the browser is open source on open source operating system the user can modify it in any way he wants, so not such attestation can be given to such browser.

Even if we are ok with attested browser being official builds never modified by users, then user could still fake it if they have full control of their operating system. So the operating system must also be attested, so it cannot be freely modified. And what is a point of open source then? You can see, but you cannot touch?

[–] conciselyverbose@kbin.social 4 points 1 year ago

Nothing. Nothing should replace them.

You, as a website, unconditionally have zero right to know anything about what a user is doing on their computer.

Block behavior, not devices.

[–] Zeth0s@lemmy.world 2 points 1 year ago (1 children)

How can the attester attest that a bot is not using a valid browser on a valid os?

[–] YourAvgMortal@lemmy.world 1 points 1 year ago

It’s up to the attester to decide. Maybe it needs to run some verifications every so often. There’s nothing preventing it from refusing you attestation too, if your device is out of date, or is too old and won’t receive future updates