• frongt@lemmy.zip
    link
    fedilink
    English
    arrow-up
    0
    ·
    3 days ago

    Why not? Is that information considered sensitive? Personally I tend to avoid running untrustworthy programs outside of a sandbox or VM.

    • WhyJiffie@sh.itjust.works
      link
      fedilink
      English
      arrow-up
      0
      ·
      3 days ago

      Personally I tend to avoid running untrustworthy programs outside of a sandbox or VM.

      what does that mean? are you not running any programs at all? you cannot know just by looking at the name if a program reads such sensitive info. and its not unlikely that some developer figured it would be a good idea to include it in automatic crash reports

      yes, this is sensitive information. its like your fingerprint, you cannot change it. I think its quite obvious. web browsers firefox is fighting to hide more and more that even indirectly could lead to identification. websites can’t read this ID, this is just a comparison.

        • WhyJiffie@sh.itjust.works
          link
          fedilink
          English
          arrow-up
          0
          ·
          1 day ago

          have you ever used Gentoo? if you do, you know how long it takes to build updated software from source code.

          vetting all that, even just the changes would take a lot more time. and it’s a constant effort.

          • Axolotl.cpp@lemmy.dbzer0.com
            link
            fedilink
            English
            arrow-up
            0
            ·
            24 hours ago

            Never used gentoo but i do build the software i use often

            vetting all that, even just the changes would take a lot more time. and it’s a constant effort.

            First of all, I am, like you and everyone else not alone in this, and for changes it’s sooo easy thanks to Git

            • WhyJiffie@sh.itjust.works
              link
              fedilink
              English
              arrow-up
              0
              ·
              12 hours ago

              yes, git is a godsend. but who will you trust that they checked the new code, and found nothing bad? different people have different expectations too.

    • palordrolap@fedia.io
      link
      fedilink
      arrow-up
      0
      ·
      3 days ago

      Are you a believer in the idea “They who have nothing to hide have nothing to fear”? Hint: You shouldn’t be.

      And do you know for certain that your sandboxes and VMs don’t simply pass through the CPUID instruction? And if they don’t, do they rotate their fake CPUIDs? And how often does that happen?