Search
Items tagged with: privacy
Far-reaching powers over Internet access are being rushed through.
Last minute amendments have been shoved into the UK Children’s Wellbeing and Schools Bill.
Ministers will be able to force anyone over 13 to use unsafe and unregulated age-ID services to access whatever content the government wants.
Find out more ⬇️
openrightsgroup.org/press-rele…
#ageverification #privacy #freedomofexpression #internet #ukpolitics #ukpol
13 year olds could be compelled to use unregulated age verification
Last minute amendments to the Children’s Wellbeing and Schools Bill will have huge implications for freedom of expression and privacy in the UK, Open Rights Group has warned.Open Rights Group
Tools that summarize ToS etc
Do you have experience with any of these?
github.com/DavidHavoc/ToS-Read…
github.com/skamal23/ToS-Summar…
I'm interested in tools that highlight privacy invasive terms and conditions that are often hidden behind legal jargon or wrapped up in so much text that the end user is discouraged to actually read through the terms of service and/or the privacy policy.
GitHub - DavidHavoc/ToS-Reader-Summarizer: Summarize ToS and Highlight everything skecky
Summarize ToS and Highlight everything skecky. Contribute to DavidHavoc/ToS-Reader-Summarizer development by creating an account on GitHub.GitHub
They can't seem to help themselves with those internal memos 🤯:
"...reported that the company was considering adding facial recognition to its glasses. In an internal memo on the topic, a #Meta employee wrote that the timing to launch might be perfect: "We will launch during a dynamic political environment where many civil society groups that we would expect to attack us would have their resources focused on other concerns.""
businessinsider.com/meta-ray-b…
#Facebook #News #USA #US #privacy #tech
Meta Ray-Bans are fueling all kinds of bad behavior
Meta's Ray-Ban glasses are sparking a popular genre of video on social media: harassing store employees and random people.Katie Notopoulos (Business Insider)
(Although remember that nothing is private on Mastodon. Your private mentions/direct messages are not end-to-end encrypted so your instance admins – and anyone hosting a hammer to their knees – could be reading them all. If you want to talk privately, use Signal or Delta Chat. Never share sensitive information on “private” messages on Mastodon. That goes double for our friends in Gaza.)
Burp Anonymizer
Pentesters of the world, quit accidentally training ChatGPT on your boss API keys
A must needed Burp Suite extension to improve your privacy in the AI world
Just released #BurpAnonymizer, a Burp Suite extension that redacts PII, credentials, tokens and other sensitive data from HTTP requests/responses.
With one click, safely share requests and responses in reports, presentations, team reviews, or AI workflows, without exposing secrets and minimizing manual redactions.
🔗 Explore it here: github.com/sv1sjp/BurpAnonymiz…
#CyberSecurity #BurpSuite #AppSec #Privacy #SecurityTools #web PortSwigger
GitHub - sv1sjp/BurpAnonymizer: A Burp Suite extension that redacts PII, credentials, and other sensitive data from HTTP traffic with one click, enabling secure sharing of requests and responses in reports, team reviews, or AI workflows.
A Burp Suite extension that redacts PII, credentials, and other sensitive data from HTTP traffic with one click, enabling secure sharing of requests and responses in reports, team reviews, or AI wo...GitHub
Reddit and FaceID Verification
Reddit CEO says facial verification may be introduced. Ostensibly to prevent bots.
But we all know how dangerous this can be. But most likely Reddit users will just accept it.
Although they have a great free analogue right under their noses - Lemmy. Which is many times better than its competitor.
I wish more people would discover Lemmy, but that's unlikely.
eYou promises to change social media. But the alternatives already exist
eYou promises to change social media. But the alternatives already exist
Mastodon, Lemmy and Pixelfed already exist. Why is no one talking about them?Dorian Diaconu (doriandiaconuro)
#Palantir extends reach into British state as it gets access to sensitive #FCA data | Palantir | The Guardian
What one Earth is the government thinking giving #PeterThiel and his cronies access to such sensitive data? Nothing good can come out of this.
theguardian.com/technology/202…
#UK #Politics #Privacy #DataProtection
Palantir extends reach into British state as it gets access to sensitive FCA data
Exclusive: Allowing US tech firm to analyse intelligence in name of tackling fraud raises fresh concerns over privacyRobert Booth (The Guardian)
Europol predicts a 2035 with no privacy, robot police, robots displacing workers, debates about "robot rights" and criminals commanding hundreds of drones simultaneously
cross-posted from: lemmy.today/post/49749386
If the video isn't working, try these links:
* cdn.videy.co/8f2f25e11.mp4
* streamable.com/0xj1ni (slightly better quality but only up for 2 days)Clipped from full hour long video (around 49 minutes in): bitchute.com/video/jmhFAjqbxnQ
Europol report: europol.europa.eu/cms/sites/de…
Watch Truthstream Europol Unmanned Future(s) | Streamable
Watch "Truthstream Europol Unmanned Future(s)" on Streamable.Streamable
itsfoss.com/news/systemd-age-v…
#systemd #privacy #runit #openRC
Systemd’s New Feature Brings Age Verification Option to Linux
The optional birthDate field gives other projects a standardized data source for age verification compliance.Sourav Rudra (It's FOSS)
NaiHe – small encrypted chat for people who can't speak freely, looking for forks
The part I think is actually useful: there's a clipboard mode where you type plaintext, it encrypts and copies to clipboard, then you paste the ciphertext into WeChat or email or whatever. The other person does the reverse. You don't even need to be using the same app.
ChaCha20-Poly1305, Argon2id, Rust + Tauri, ~5MB exe.
I know there are better tools for most threat models (Signal, Briar, SimpleX). This isn't trying to compete with them. It's for situations where you can't install a dedicated messenger or need to smuggle encrypted text through an existing channel.
No forward secrecy, no traffic obfuscation, not audited, Windows only. All documented in the README.
Unlicense. I won't maintain it. Fork it if it's useful to you.
GitHub - clinamen0/Naihe
Contribute to clinamen0/Naihe development by creating an account on GitHub.GitHub
haha “privacy and relevance.” You can’t put google in that list if the focus is on #privacy. Hell, given the recent revelations that google is rewriting headlines using AI, the definition of “relevance” is strained. Use google for search and you are just feeding AI slop to this AI spreadsheet. Compounded errors.
It will be a marvel if, after all the climate destroying AI emissions, it actually gets the right result.
out of the loop, what's the problem with signal?
i've just seen a comment in a post, in this very community, saying people trust signal because of missinformation (from what i could undertand).
if this is true, then i have a few questions:
-what menssaging app should i use for secure communications? i need an app that balances simplicity and security.
-how to explain it to my friends who use signal because i recomended?
-what this means for other apps in general?
GrapheneOS Foundation To Never Required ID or Other PII To Use GrapheneOS
cross-posted from: lemmy.ml/post/44781501
GrapheneOS will remain usable by anyone around the world without requiring personal information, identification or an account. GrapheneOS and our services will remain available internationally. If GrapheneOS devices can't be sold in a region due to their regulations, so be it.
A rogue #AI led to a serious security incident at #Meta
theverge.com/ai-artificial-int…
A rogue AI led to a serious security incident at Meta
Last week, an AI agent similar to OpenClaw triggered a high-severity security incident at Meta by independently giving inaccurate technical advice on an employee forum.Stevie Bonifield (The Verge)
The old headline of the article said it all:
"As #Meta removes #privacy controls, #TikTok explains why it never had any"
No idea why they changed it 🤔
-Guess even big #News have to suck up to the algorithms ✅
fortune.com/2026/03/17/tiktok-…
Your Instagram DMs are no longer encrypted: Meta is reversing course on privacy and removing end-to-end encryption from Instagra
Two of the world's most powerful platforms are making a deliberate bet that safety beats privacy—and experts say they're right.Catherina Gioino (Fortune)
Sheesh, the US is sure getting scary. Well, it's a good thing it would be impossible to trace Signal to someone via metadata like a phone number, right?
Even State Department-funded Human Rights Watch admits that authorities combine legal and illegal methods to obtain convictions: text.hrw.org/report/2018/01/09…
Combining dragnet surveillance with device hacking is intended in the design of both tools. Hence, State Department-funded Signal dupes you into handing over your identity as part of the population-centric mapping. In custody, your phone will be hacked when it is taken away if it's important.
Mass surveillance is on the rise. License plate reader cameras & tools meant for safety can also put people at risk, including those seeking reproductive health care or those targeted by ICE.
On the Future Knowledge #podcast, Cindy Cohn talks with Rainey Reitman about digital safety, surveillance, and why protecting yourself online matters.
🎧 Listen & subscribe ⬇️
futureknowledge.transistor.fm/…
@eff @internetarchive #Privacy #DigitalRights
Future Knowledge | Privacy's Defender
For more than three decades, Cindy Cohn, the executive director of the Electronic Frontier Foundation (EFF) has been at the center of the fight to protect privacy, free expression, and innovation o...Future Knowledge
Orion: a fantastic browser for IOS, Mac & Linux !
Not really a review more just a recommendation for those who might be interested.
Developed by the wonderful folks at Kagi Search! On IOS and Mac the app is designed off WebKit. And offers built in ad block and pretty strong telemetry block.
It also works with certain Chrome extensions.
I’ve been using it primarily on IOS. My only two gripes is the cookie clear on close doesn’t work and the logo really is just another butthole.
Certain sites freak out but I don’t want to lower the settings so it’s a compromise im ok with it.
If your on IOS might be worth checking out !
Haven’t tried the Linux version but I’m going to soon.
FBI is buying location data to track US citizens, FBI Kash Patel said during a Senate hearing Wednesday
cross-posted from: lemmus.org/post/20954019
Reddit.Source: Intelligence Committee’s annual Worldwide Threats hearing, question by Senator Ron Wyden.
Clip by Headquarters News.
North Korean's 100k fake IT workers net $500M a year for Kim
theregister.com/2026/03/18/res…
#tech #technology #news #technews #security #privacy #politics #northkorea
North Korea's 100,000-strong fake IT worker army rake in $500M a year for Kim Jong Un
: Researchers map full org chart of the scam from dodgy recruiters to helpful Western collaboratorsDan Robinson (The Register)
Hi Mastodon 👋
We're Node Star — a publishing and community project building neighborhood mesh networks in Southern California and beyond.
We just published a free community playbook: "Own the Internet: Neighborhood Networks That Can't Be Shut Down."
Written for the person who wants to start, not the person who already knows how.
Download it free at
nodestar.net
Share it freely!
#MeshNetworking #DecentralizedWeb #EmergencyPreparedness #Web4 #FOSS #Privacy
Node Star — Own the Internet
Node Star publishes tools, guides, and community resources for building neighborhood mesh networks that can't be shut down.nodestar.net
volla, /e/, etc is a fucking shithole (or why simply renaming Google to volla will change nothing)
Once again, I have to remind everyone the difference between a replacement and an alternative.
- Yes, google is shit
- That dosent mean /e/, iode, and the rest is automatically better than google.
That being said, the volla attestation API is once again a google replacement. Not an alternative, but a „google” with another name. They are still just as vulnerable to corruption, court orders, etc as google is. Its like throwing out your Alexa for spying, but instead buying another Alexa, but instead of Amazon it's nozama. Look people, instead of unsecured s3 bucket 3, I use unsecured S3 bucket 4 that I'm sending my data through via http. Me so smarty pants
Once again, volla and their attestation will become just as big and corrupt as google. It is the job of the software to be designed in a way that it can't be abused like google is abusing their G services. This is not given with volla attestation. There is already an implemented software. Its called android attestation.
GrapheneOS (@GrapheneOS@grapheneos.social)
Here's a post where the @vollaficationist@mastodon.social clearly refers to themselves as being part of Volla and shares internal information which would only be known to someone working at Volla This account doesn't belong to someone who uses and s…GrapheneOS (GrapheneOS Mastodon)
OSS Anti Surveillance: public tracker for OS-level age signaling and related surveillance mechanisms
GitHub - AntiSurv/oss-anti-surveillance: Document. Revert. Rebuild.
Document. Revert. Rebuild. Contribute to AntiSurv/oss-anti-surveillance development by creating an account on GitHub.GitHub
Phony security rules will make India’s phones less safe
Master Browser Fingerprint Spoofing with Expert Techniques
Master Browser Fingerprint Spoofing with Expert Techniques
Learn how to protect privacy and enhance automation by spoofing browser fingerprints. Discover tools, code snippets, & ethical considerations.BrowserCat Team (BrowserCat)
Static + dynamic analysis of Signal's APK. The good news first: Signal is genuinely exceptional.
Rust core (libsignal_jni.so), post-quantum hybrid Double Ratchet (Kyber-1024 + X25519), Direct ByteBuffers with immediate zeroing after PIN/username hashing, Intel SGX attestation for SVR — MREnclave verification means even a compromised Signal server can't extract your PIN hash.
But two things stood out:
1. Firebase is always there. Google receives IP + notification timestamps regardless of message content. If you need metadata privacy, Signal still leaks presence data to Google's infrastructure.
2. Certificate revocation endpoints hit g.symcd.com in plaintext. An ISP or state-level observer can fingerprint Signal usage from DNS queries and HTTP traffic to those CAs — without touching message content.
Conclusion: strongest crypto engineering in consumer messaging. The attack surface isn't the cryptography. It's the operational dependencies.
Soon the full analysis
#infosec #AndroidSecurity #Signal #privacy #ReverseEngineering #postquantum #mobileforensics
Self-hosting dev tools as a privacy win: no more sending your data to random online tools
The No-BS Self-Hosting Guide for Developers (2026)
Replace $200/month in SaaS subscriptions with a $5 VPS. Free guide with code examples for 7 essential self-hosted services.5.78.129.127
This is such an important issue! All universities, institutions, citizens & responsible communicators should be using a "communications platform that is accessible to all citizens, without the need for an account; an independent network not subject to [monetisation &] censorship due to opaque algorithms or political bias."
Thanks for this clear explanation!
Russia’s crackdown on VPNs reaches new heights as internet restrictions intensify
49MB download: one NYTimes webpage
The 49MB Web Page
A look at modern news websites. How programmatic ad-tech, huge payloads and hostile architecture destroyed the reading experience.thatshubham.com
Hackers Expose The Massive Surveillance Stack Hiding Inside Your “Age Verification” Check
Hackers Expose The Massive Surveillance Stack Hiding Inside Your “Age Verification” Check
We’ve been saying this for years now, and we’re going to keep saying it until the message finally sinks in: mandatory age verification creates massive, centralized honeypots of sensitiv…Techdirt
‘It beggars belief’: MoD sources warn Palantir’s role at heart of government is a threat to UK’s security
‘It beggars belief’: MoD sources warn Palantir’s role at heart of government is threat to UK’s security
Experts say that claims UK data remains under government ownership miss the point that the company has the capability to build its own detailed picture of the British population, and even infer state secrets.Charlie Young (The Nerve)
Q: Whatever happened to our promised Signal - WhatsApp compatibility?
The news first came in 2024, but it's been very quiet since.
I've been waiting this whole time to jettison WhatsApp from my phone.
Is it available only in some parts of the world? If so can I spoof it?
We know that adversarial interoperability works, so why have we not been able to make this work?
All else failing, are there any unofficial WhatsApp clients I can use to preserve my privacy?
Adversarial Interoperability
“Interoperability” is the act of making a new product or service work with an existing product or service: modern civilization depends on the standards and practices that allow you to put any dish into a dishwasher or any USB charger into any car’s c…Electronic Frontier Foundation
