This is only the tip of the iceberg. A majority of the "user content" (product reviews, brand engagement, comments on social media sites, etc) is completely fake, bought for and paid by big money interest aka bots. No different than automated scans of the IPv4 address space: simple, unsophisticated, low-cost and without any repercussion.
Are there even IP cameras manufactured domestically to even choose? I have some inside my home (pointed at exterior doors; not inside bedrooms which seems borderline creepy and/or sadistic), but they're not connected to public networks and thus I don't consider them a risk.
Social media access to user data (whether foreign or domestic) is bad, but it is a distraction from the real evil: behavioral management at scale. When you can target specific demographics and control what they see 8-10 hours of the day, you can change what they think, say, do, and most importantly, how they vote. People are literally being programmed (euphemistically, "conditioned") by the specific triggers and stimuli with almost surgical precision, and completely unbeknownst to them. This is uncomfortable to recognize and discuss, so the conversation is sadly reduced to "China/AI is bad/evil" to further foment hate and division.
The news is literally designed to do that to you. Stop consuming so much of it for your own mental well-being, and that of everyone else you interact with.
Open it in a regular and "incognito" browser tab. This is a long term identifier of your browser which persists across cookie clearing, IP address changes and other ritualistic totems privacy-seeking individuals still inexplicably cling to.
Most of the nefarious tracking is taking place via canvas fingerprinting these days, clearing cookies does nothing but make the unaware user feel good they're "doing something".
People who use multiple "angry face" emojis to express themselves are generally moody, petulant and emotionally unfit to work among highly compensated engineers. Instead of whining, adapt and overcome the circumstances you recognize in your professional life.
Perhaps, but deviating from social norms and ubiquitous technologies multiplies scrutiny. Most efforts made to boost privacy actually often have the opposite effect, but this is a subtle nuance few will understand.
How else do you expect they get your device on a surveillance list? Or do people honestly believe that the 0.001% of mobile phone users that unlock their bootloader for custom operating systems are not subject to additional scrutiny by big brother? NSA flagged Linux Journal as an "extremist forum" and flagged readers for extra surveillance - and that was a decade ago.
> There’s a big difference between identity keys and session keys. It makes total sense to use lots of throw away keys (this is how tls works) but making a new identity key for every message is madness.
That's not what happens (new identity for each message) and compromise of a Signal identity key has no impact on message security, unlike GPG. Also it's not how all TLS works; it's how TLS works with perfect secrecy ciphers only.
> There is no empirical evidence for how frequently to rotate your identity keys.
Certainly not if you refuse to look for it.
> A few years ago NIST started recommending never changing passwords unless they are compromised
Passwords derive session keys (cookies) which rotate very frequently. You have a lot to learn about computer security, I'm happy to make some reading recommendations if you're sincerely interested.
I'm trying to read it by asking you to cite something, but you have so far been unable to. "Lots of scenarios" is vague and you should be able to come up with at least a few specific examples to support your argument.