Mike Gerwitz's GNU Social Instance
  • Login
  • Public

    • Groups
    • Recent tags

Notices tagged with security

  1. Yale Privacy Lab (privacylab)'s status on Friday, 01-Jun-2018 14:58:34 UTC Yale Privacy Lab Yale Privacy Lab

    "The concern is that a rogue submodule can trick the Git into running code it shouldn’t outside the context of the repository. 'This allowed an adversary to exfiltrate data, pull down a web shell, plant a cryptominer or just totally own the machine...'" #security

    https://threatpost.com/bug-in-git-opens-developer-systems-up-to-attack/132395/

    about a month ago from mastodon.social permalink
  2. Yale Privacy Lab (privacylab)'s status on Friday, 01-Jun-2018 14:43:04 UTC Yale Privacy Lab Yale Privacy Lab

    "For more than a year, Mozilla Firefox and Google Chrome may have leaked users’ Facebook usernames, profile pictures, and likes if the users’ browsers visited malicious websites that employed a cutting-edge hack" #privacy #security

    https://arstechnica.com/information-technology/2018/05/chrome-and-firefox-leaks-let-sites-steal-visitors-facebook-names-profile-pics/

    about a month ago from mastodon.social permalink
  3. Yale Privacy Lab (privacylab)'s status on Wednesday, 23-May-2018 16:47:48 UTC Yale Privacy Lab Yale Privacy Lab
    • yaelwrites

    great piece by @yaelwrites including Jack Balkin's concept of information fiduciaries: "Although relationships with third parties might be lucrative for telecoms, any entity collecting sensitive information like location data has a moral obligation to keep it safe."
    #privacy #security

    https://slate.com/technology/2018/05/locationsmart-security-it-is-totally-legal-for-cellphone-companies-to-sell-location-data-to-third-parties.html

    about a month ago from mastodon.social permalink
  4. Yale Privacy Lab (privacylab)'s status on Tuesday, 22-May-2018 03:23:09 UTC Yale Privacy Lab Yale Privacy Lab

    Doctorow: "if that data leaks, it would allow anyone to break into your kid's cloud and plunder all their private data... Naturally, Teensafe stored thousands of parents and kids' usernames and passwords, without encryption, on an insecure server." #privacy #security

    https://boingboing.net/2018/05/20/utter-coathangers.html

    about a month ago from mastodon.social permalink
  5. Yale Privacy Lab (privacylab)'s status on Monday, 14-May-2018 15:40:18 UTC Yale Privacy Lab Yale Privacy Lab

    the question now: "How much intercepted encrypted e-mail will be (or has been) decrypted by intelligence agencies?" Not all PGP/GPG e-mail is vulnerable... but the extent of the fallout won't be known for a while. #security #privacy

    https://arstechnica.com/information-technology/2018/05/decade-old-efail-attack-can-decrypt-previously-obtained-encrypted-e-mails/

    about 2 months ago from mastodon.social permalink
  6. Yale Privacy Lab (privacylab)'s status on Monday, 14-May-2018 15:10:06 UTC Yale Privacy Lab Yale Privacy Lab

    PGP/GPG users: Keep Calm and Disable HTML Rendering. It's a good idea to protect you from other kinds of tracking (images in HTML e-mails). Short-term mitigation steps for "Efail" vulnerability: https://efail.de #security #privacy

    about 2 months ago from mastodon.social permalink
  7. Yale Privacy Lab (privacylab)'s status on Friday, 27-Apr-2018 20:58:00 UTC Yale Privacy Lab Yale Privacy Lab

    "...a 'rogue Alexa skill' that bypasses Amazon's security checks: it lurks silently and unkillably in the background of your Alexa, listening to all speech in range of it and transcribing it, then exfiltrating the text and audio of your speech..." https://boingboing.net/2018/04/26/user-supplied-listening-device.html

    #privacy #security

    about 2 months ago from mastodon.social permalink
  8. Yale Privacy Lab (privacylab)'s status on Wednesday, 25-Apr-2018 15:15:52 UTC Yale Privacy Lab Yale Privacy Lab

    "The really big data brokers - firms such as Acxiom, Experian, Quantium, Corelogic, eBureau, ID Analytics - can hold as many as 3,000 data points on every consumer, says the US Federal Trade Commission." #privacy #security

    http://www.bbc.com/news/business-43697133

    about 2 months ago from mastodon.social permalink
  9. Yale Privacy Lab (privacylab)'s status on Wednesday, 25-Apr-2018 14:26:40 UTC Yale Privacy Lab Yale Privacy Lab

    "The new terms asserted that Eventbrite staff had the right to 'enter and remain' at any event organized with the platform, record the entirety of the event with video and photography... and retain copyright over everything recorded." https://arstechnica.com/information-technology/2018/04/eventbrite-rolls-back-policy-that-would-have-given-it-right-to-record-events/

    #privacy #security

    about 2 months ago from mastodon.social permalink
  10. Yale Privacy Lab (privacylab)'s status on Wednesday, 25-Apr-2018 14:06:06 UTC Yale Privacy Lab Yale Privacy Lab

    "Netizens have the wrong idea about what their web browser's 'private' or 'incognito' mode actually does. This is according to researchers at the University of Chicago, in the US, and Leibniz University Hannover, in Germany, who this week declared that folks mistakenly believe that by enabling the incognito browsing mode, they are fully shielded from online tracking and malware." #privacy #security

    https://www.theregister.co.uk/2018/04/24/private_web_browsing_study/

    about 2 months ago from mastodon.social permalink
  11. Yale Privacy Lab (privacylab)'s status on Tuesday, 17-Apr-2018 15:21:11 UTC Yale Privacy Lab Yale Privacy Lab

    "A malicious app that can be downloaded from the Google Play store is extremely dangerous, as users will not think twice about downloading it because of their trust in Google" https://arstechnica.com/information-technology/2018/04/malicious-apps-in-google-play-gave-attackers-considerable-control-of-phones/ #security #privacy

    about 3 months ago from mastodon.social permalink
  12. Yale Privacy Lab (privacylab)'s status on Friday, 13-Apr-2018 20:04:49 UTC Yale Privacy Lab Yale Privacy Lab

    "Published today, a two-year study of Android security updates has revealed a distressing gap between the software patches Android companies claim to have on their devices and the ones they actually have."

    https://www.theverge.com/2018/4/13/17233122/android-software-patch-trust-problem # privacy #security

    about 3 months ago from mastodon.social permalink
  13. Yale Privacy Lab (privacylab)'s status on Friday, 16-Mar-2018 19:34:14 UTC Yale Privacy Lab Yale Privacy Lab
    • Exodus Privacy

    135 tracker signatures in the @exodus scanner, and all 2325 reports recomputing! expect some interesting finds in the reports 🕵️ https://news.exodus-privacy.eu.org/ #privacy #security

    about 4 months ago from mastodon.social permalink
  14. Yale Privacy Lab (privacylab)'s status on Friday, 16-Mar-2018 19:33:38 UTC Yale Privacy Lab Yale Privacy Lab

    135 tracker signatures in the @ExodusPrivacy scanner, and all 2325 reports recomputing! expect some interesting finds in the reports 🕵️ https://news.exodus-privacy.eu.org/ #privacy #security

    about 4 months ago from mastodon.social permalink
  15. Yale Privacy Lab (privacylab)'s status on Friday, 16-Mar-2018 19:27:31 UTC Yale Privacy Lab Yale Privacy Lab

    Our Sean O'Brien: "If India is to meet the challenge of cyber security as Prime Minister Modi has proposed, the challenge must be met with honesty, even if it is brutal and exposes flaws in administration or implementation." #privacy #security

    https://www.businesstoday.in/opinion/columns/bsnl-cyber-security-could-have-been-fixed-two-years-ago/story/272034.html

    about 4 months ago from mastodon.social permalink
  16. Yale Privacy Lab (privacylab)'s status on Friday, 16-Mar-2018 19:26:38 UTC Yale Privacy Lab Yale Privacy Lab

    135 tracker signatures in the @ExodusPrivacy scanner, and all 2325 reports recomputing! expect some interesting finds in the reports 🕵️ https://news.exodus-privacy.eu.org/ #privacy #security

    about 4 months ago from mastodon.social permalink
  17. Yale Privacy Lab (privacylab)'s status on Thursday, 15-Feb-2018 16:20:13 UTC Yale Privacy Lab Yale Privacy Lab

    "Just imagine if other governments of the world instructed their citizens and local carriers not to ink deals with Apple on account that the US government might have ways to crack iOS, regardless of whether that’s true or not." #privacy #security https://bgr.com/2018/02/14/iphone-encryption-backdoor-us-government-huawei-zte/ https://mastodon.social/media/PX6lFwNMjItL64-ZyvI

    about 5 months ago from mastodon.social permalink
  18. Yale Privacy Lab (privacylab)'s status on Thursday, 15-Feb-2018 14:55:30 UTC Yale Privacy Lab Yale Privacy Lab

    clever use of RTL to fake file extension and deliver malware "Telegram for Windows converted files with names such as 'photo_high_regnp.js' to "photo_high_resj.png,' giving the appearance they were benign image files rather than files that executed code" #security https://arstechnica.com/information-technology/2018/02/telegram-app-purged-of-critical-flaw-attackers-were-actively-exploiting/

    https://mastodon.social/media/LReZgVuunmjA7nnVYNE

    about 5 months ago from mastodon.social permalink
  19. Yale Privacy Lab (privacylab)'s status on Monday, 12-Feb-2018 02:24:32 UTC Yale Privacy Lab Yale Privacy Lab

    "Hovering computers will make it increasingly possible to hack equipment that doesn’t connect directly to the internet." #privacy #security https://www.technologyreview.com/the-download/610196/cyber-warfare-is-taking-to-the-skies-aboard-drones/

    https://mastodon.social/media/4ewfjsbr1Jr3S59kX3Q

    about 5 months ago from mastodon.social permalink
  20. Yale Privacy Lab (privacylab)'s status on Sunday, 11-Feb-2018 20:22:21 UTC Yale Privacy Lab Yale Privacy Lab

    Our Sean O'Brien on #Aadhaar security: "Whenever a security researcher looks at an official government Aadhaar app, there are blatant privacy problems and sloppy cyber-security, such as sending data over the Internet unencrypted." http://www.businesstoday.in/opinion/columns/bad-aadhaar-cybersecurity-tramples-on-the-right-to-privacy/story/270425.html #privacy #security

    https://mastodon.social/media/Wlspe8upr_33BonTE8o

    about 5 months ago from mastodon.social permalink
  • Before

Feeds

  • Activity Streams
  • RSS 1.0
  • RSS 2.0
  • Atom
  • Help
  • About
  • FAQ
  • TOS
  • Privacy
  • Source
  • Version
  • Contact

Mike Gerwitz's GNU Social Instance is a social network, courtesy of Mike Gerwitz. It runs on GNU social, version 1.2.0-beta4, available under the GNU Affero General Public License.

Creative Commons Attribution-ShareAlike 3.0 Unported All Mike Gerwitz's GNU Social Instance content and data are available under the Creative Commons Attribution-ShareAlike 3.0 Unported license.

Switch to mobile site layout.