• Zerush@lemmy.ml
    link
    fedilink
    arrow-up
    7
    ·
    edit-2
    6 hours ago

    How I see it, ocurres when the laws are made by ancients which confuse an remote control with an smartphone.

  • Matt@lemmy.ml
    link
    fedilink
    arrow-up
    5
    ·
    7 hours ago

    The solution lets users prove they are over a certain age without revealing their name, exact birth date, or full identity document. To prevent credentials from being copied, cloned, or reused by modified clients, the project relies on keys stored in protected hardware like Android TEE, StrongBox, or Apple’s Secure Enclave.

    The project’s technical specification requires age verification apps to use native cryptographic hardware when available. However, stricter checks like root detection, Google Play Integrity, and Apple App Attest are not universally mandated by the reference implementation and may be left to individual deployers.

    So there’s a chance that GrapheneOS will be supported. I mean, we can still decompile the app, modify it and then repackage it. Or someone will make a patcher app.

  • ☂️-@lemmy.ml
    link
    fedilink
    arrow-up
    32
    ·
    edit-2
    13 hours ago

    so bye anything that isn’t microsoft, apple or google? really tech independent of europe.

  • ☆ Yσɠƚԋσʂ ☆@lemmy.ml
    link
    fedilink
    arrow-up
    29
    ·
    14 hours ago

    Can’t wait for EU to ban general purpose computing. At some point ,everybody is just going to get a locked down Windows tablet where only EU approved software runs.

  • Em Adespoton@lemmy.ca
    link
    fedilink
    arrow-up
    56
    ·
    20 hours ago

    The whole thing is wrongheaded in the first place; any child wanting to access adult-only content will use an adult’s account to do so; any adult attempting to access adult-only content is likewise going to use an adult’s account.

    So unless they’re tying this to biometrics that are actually secure against an adverserial child, all the system really does is creates a registry of adults. And we already have those.

    • FineCoatMummy@sh.itjust.works
      link
      fedilink
      English
      arrow-up
      15
      ·
      15 hours ago

      Wasn’t there something about the effectiveness of the Australian law to restrict minors on social media? Ah…

      Four in five under-16s in Australia using social media despite ban, study shows

      Experts say law not enough to stop children accessing harmful content online and more ‘convincing strategy is required’ . More than 80% of under-16s in Australia said they were still using social media three months after legislation banning them from it came into force, research shows.

      • Em Adespoton@lemmy.ca
        link
        fedilink
        arrow-up
        10
        ·
        14 hours ago

        It’s like any controlled substance ban — unless there’s a really invasive crack-down it just shifts the problem to a less safe black market.

        Making things easy and safe to access with controls that are adjustable is always more effective than an outright ban that shifts the access fully into unregulated territory.

    • Jul@piefed.blahaj.zone
      link
      fedilink
      English
      arrow-up
      41
      ·
      18 hours ago

      Creating a registry of adults and what content they access is exactly the point of these laws. Always has been. “Protecting children” is just the easiest excuse to make it seem more urgent to violate people’s rights. Just like removing trans healthcare started with children and is now targeting adults.

      • Em Adespoton@lemmy.ca
        link
        fedilink
        arrow-up
        5
        ·
        18 hours ago

        Thing is, it doesn’t create a registry of what content adults access. Just what content their registered identity accesses.

        • Jul@piefed.blahaj.zone
          link
          fedilink
          English
          arrow-up
          13
          ·
          edit-2
          17 hours ago

          But in most cases, it is, because most adults are not that technically inclined to get around the logins. Sure there are some tech savvy ones who will bypass it. And maybe a few kids who will use their parents’ accounts rather than just bypassing the logins but it’s still the family accessing the information, but for the majority, it does work as a registry. And though it’s only on a few categories of sites now, the categories inevitably will expand. It’s not just porn, but info on reproductive and gender healthcare, LGBTQ+ dating, and many other subjects that “children must me protected from”, but really they want to know who’s gay, looking for abortions or transgender healthcare or information about whatever other rights their government is trying to force them to give up.

  • printf("%s", name);@piefed.blahaj.zone
    link
    fedilink
    English
    arrow-up
    11
    ·
    edit-2
    20 hours ago

    Please explain… If I’m below the age of… Whatever they decide, what will or will not be accessible to me? Like, if I’m below a certain age, will some EU appointed DNS restrict what domains I can reach? Or, since this article is about hardware-bound attestation, are my devices going to prevent me from installing and using certain apps if I’m below the age? I don’t understand where the restrictions are going to lie…

    Bonus: can’t I just buy, say, five phones right now, root them or install custom OSs before shit hits the fan and be happy?

    • SocialistVibes01@lemmy.mlOP
      link
      fedilink
      arrow-up
      27
      arrow-down
      1
      ·
      edit-2
      19 hours ago
      1. The real explanation is that they want control. The children are a excuse.

      2. No because you can go to jail for that, like the dude with his GrapheneOS in the US. They’re probably working on that next.

      • utopiah@lemmy.ml
        link
        fedilink
        arrow-up
        4
        arrow-down
        2
        ·
        7 hours ago

        No because you can go to jail for that, like the dude with his GrapheneOS in the US. They’re probably working on that next.

        no… you can not go to jail, in the EU or the US at least, for having a phone with a custom OS. They are facing charge for using a duress code which wiped their phone. It is very different.

      • Fluffy Kitty Cat@slrpnk.net
        link
        fedilink
        English
        arrow-up
        1
        ·
        7 hours ago

        The fact that children can be deprived of rights with only the vaguest unproven assertion of “safety” is a critical threat to the rights of everyone

        • FineCoatMummy@sh.itjust.works
          link
          fedilink
          English
          arrow-up
          8
          ·
          15 hours ago

          Sorry, what is the story about guy in USA with GrapheneOS?

          Someone else linked the story, but do note that he isn’t in jail. Or wasn’t last I looked a week ago. He IS facing criminal charges, which is very serious. It will most likely become a Big Important Case and could even get appealed up and up until it reaches SCOTUS.

          Current SCOTUS is corrupt. But sometimes they have managed to make good rulings anyway, such as in Carpenter v. United States, and Chatrie v. United States, about GPS location privacy.

          I say this b/c social media leads ppl to believe extreme versions of events. There were allegations in another lemmy thread that this GrapheneOS Guy was in prison. He is not. He was at his own home. But he is facing a very stressful future as a criminal defendant. He may, hopefully, be exonerated. But it remains to be seen, how it will go. Anything could happen.

          • D06M4@lemmy.zip
            link
            fedilink
            English
            arrow-up
            5
            ·
            edit-2
            16 hours ago

            Duress. And yeah, as OP mentioned kids are an excuse to have an easier time defaming anyone pushing against it. “You wouldn’t steal a car” vibes. Suddenly everyone is a CSAM producer or thief unless proven otherwise, and I doubt there will ever come a time when an authoritarian figure has interest to prove someone they’re pursuing is innocent.

            But I must say you can install whatever OS you want. The reason they placed federal charges against that guy was because he allegedly deleted incriminatory evidence. They told him they were searching for child pornography, something that was completely made up as they had been tracking him because of his links with activists that were trying to protect a forest. He gave the wrong code (and could say he did so by mistake) and whoever had the misfortune of taking the phone from him wiped the phone’s data when entering it.

    • it_depends_man@lemmy.world
      link
      fedilink
      arrow-up
      16
      ·
      19 hours ago

      First of all,

      I don’t understand where the restrictions are going to lie

      Yes. That’s exactly the question.

      The point of the… excitement around this is exactly the uncertainty. We simply don’t know what the EU or national governments of the EU will do with this.

      The first problem is that the “hardware bound attestation” isn’t just hardware bound, it’s specifically Apple and Android’s attestation and NOT the more open standard. That means the device that can do this thing, whatever it’s going to be “necessary” for, MUST always be an Apple or Google device, with that bit intact. Tbh, I don’t really know how much rooting affects this, but I would be surprised if it didn’t.

      The second problem is that once the infrastructure for blocking access to something and requiring this sort of authentication is in place, it’s just a list of targets. It’s very easy to add another platform, website, app or anything else behind it.

      And the reason for this excitement happening now is that the specification that was given for all this to happen previously only said it should be “secure” somehow, but not detailing the “how”. They think they can do it as an implementation detail and pretend it’s not a big deal. So it’s very clearly something those bastards have tried to be sneaky about.

      Can you use rooted phones

      No, whatever the point of their efforts is, they will make sure to not leave obvious loopholes like that open.

    • LeapSecond@lemmy.zip
      link
      fedilink
      arrow-up
      15
      ·
      19 hours ago

      The services themselves will probably be made to ask for verification and your devices will answer through the age verification app. Since custom mobile OSs (or desktop Linux) won’t provide hardware attestation, the app won’t work on them and the websites will treat you as underage. The types of services that require age verification aren’t specific, they can change based on EU decisions so eventually people not using “approved” OSs may be locked out of most of the internet.

      • FineCoatMummy@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        5
        ·
        15 hours ago

        so eventually people not using “approved” OSs may be locked out of most of the internet

        Agree 100%. I hope everyone realizes this! I have seen too many ppl who think, “It’s OK, open source will save us”. But open source can’t. This is a legal and social prob, and needs a legal and social solution.

      • humble_boatsman@sh.itjust.works
        link
        fedilink
        English
        arrow-up
        6
        ·
        16 hours ago

        And you can be damn sure this will infest necessary government services and apps that won’t allow you to contact the government in any other way.

    • quick_snail@feddit.nl
      link
      fedilink
      arrow-up
      1
      ·
      4 minutes ago

      They won’t enforce it on you. They enforce it on the manufactures

      So you’ll just have to pay more for an imported laptop that doesn’t have this

    • ☂️-@lemmy.ml
      link
      fedilink
      arrow-up
      6
      ·
      edit-2
      12 hours ago

      even if you are forced to use their stuff for banking, state services and increasingly more?

      at best we are looking at having private devices separate from corporate ones. we’d need both devices and services that are ours.