cross-posted from: https://programming.dev/post/37646129

Source: Reddit postPrivate front-end.

Samsung Statement to Android Authority:

Samsung is committed to innovation and enhancing every day value for our home appliance customers. As part of our ongoing efforts to strengthen that value, we are conducting a pilot program to offer promotions and curated advertisements on certain Samsung Family Hub refrigerator models in the U.S. market.

As a part of this pilot program, Family Hub refrigerators in the U.S. will receive an over-the-network (OTN) software update with Terms of Service (T&C) and Privacy Notice (PN). Advertising will appear on certain Family Hub refrigerator Cover Screens. The Cover Screen appears when a Family Hub screen is idle. Ad design format may change depending on Family Hub personalization options for the Cover Screen, and advertising will not appear when Cover Screen displays Art Mode or picture albums.

Advertisements can be dismissed on the Cover Screens where ads are shown, meaning that specific ads will not appear again during the campaign period.

  • wetbeardhairs@lemmy.dbzer0.com
    link
    fedilink
    English
    arrow-up
    6
    arrow-down
    2
    ·
    9 hours ago

    Wow really? I was under the impression that the SSL part would prevent the pihole from being able to spoof itself as a legitimate DNS

    • very_well_lost@lemmy.world
      link
      fedilink
      English
      arrow-up
      30
      ·
      8 hours ago

      prevent the pihole from being able to spoof itself as a legitimate DNS

      Not to be pedantic, but a pihole is legitimate DNS. Being able to do your own DNS has always been a fundamental part of the Internet Protocol, and is used a lot in enterprise to handle name resolution for internal subnets and stuff like that.

      • wetbeardhairs@lemmy.dbzer0.com
        link
        fedilink
        English
        arrow-up
        7
        ·
        8 hours ago

        Being pedantic is totally OK here - we’re talking about SSL’s spoof protection. I’ll have to look up how any rando can host a DNS that supports DNS/HTTPS when a system would be expecting a valid SSL cert that declares who it was issued to and by whom and the requester is expecting a particular whom.

        • WhyJiffie@sh.itjust.works
          link
          fedilink
          English
          arrow-up
          2
          ·
          3 hours ago

          unbound, bind, or if you want a gui then technitium DNS.

          but this thread is so, so full of misinfo. you don’t need a local doh capable DNS server at home. having one won’t solve anything either, because your advertising fridge won’t be using it. that’s the actual problem. you need to block any doh servers that the fridge might access (and regular DNS servers too), so that it doesn’t have a choice but respect your pihole, but that is very difficult because doh traffic looks like regular web traffic (because it is). yeah the fridge does not need to load websites, but it does all its questionably useful functions through HTTPS APIs too, so if you want to give it internet, you can’t just block web traffic for it.

          • TipRing@lemmy.world
            link
            fedilink
            English
            arrow-up
            2
            ·
            edit-2
            1 hour ago

            I had a spirited discussion with an LG repair guy working on the smart fridge that came with my home. I don’t allow malware on my network so the fridge doesn’t get to do whatever a fridge needs internet access for.

            He tried to scare me by saying it would connect to whatever network was available but I live in the sticks and there isn’t even cell coverage here much less another router for it to connect to so unless they are putting a satellite uplink in it that would not happen and I would think he knew that since I had to put him on my guestnet so he could call his support line.

            So then he said it wouldn’t work properly unless it was on the network and I told him if it somehow connected I would use an ACL to ensure it couldn’t talk to anything.

            Anyway, bought a cheap fridge from CostCo with an extended warranty and they dumpstered that LG POS. Good riddance.

    • FishFace@lemmy.world
      link
      fedilink
      English
      arrow-up
      4
      ·
      8 hours ago

      SSL operates after name resolution. It’s one way that information about your browsing habits is not protected by application-layer encryption; the domains you’re visiting are available to your DNS server.

      • frongt@lemmy.zip
        link
        fedilink
        English
        arrow-up
        1
        ·
        5 hours ago

        Unless you’re using DNS over TLS!

        Or DNS over https, but that’s kind of gross.

        • Anivia@feddit.org
          link
          fedilink
          English
          arrow-up
          3
          ·
          4 hours ago

          No, you misunderstood the parent comment. Your connection to the DNS server being encrypted doesn’t change the fact that the DNS server knows the domains you are resolving