expertmanofficial, (edited ) to random

There's a VERY interesting extension called "Privacy Check" that I use:

🔥 🦊 Firefox-only -> https://addons.mozilla.org/en-US/firefox/addon/privacycheck2-1

All you need to do is:

  1. Install the extension

  2. Go to any website's Privacy Policy

  3. Click on extension's icon (you can find it on toolbar's "Extensions" folder) and click button "Start".

It will analyze privacy policy, and tell you is it safe for you to use it.

atoponce, to random
@atoponce@fosstodon.org avatar

If your phone has a Qualcomm chipset, it might be spying on you. Unfortunately, this is happening at the firmware level, beneath iOS and Android.

https://www.nitrokey.com/news/2023/smartphones-popular-qualcomm-chip-secretly-share-private-information-us-chip-maker

gianni, to random
@gianni@disobey.net avatar

"During our security research we found that smart phones with Qualcomm chip secretly send personal data to Qualcomm. This data is sent without user consent, unencrypted, and even when using a Google-free Android distribution."

Source: https://www.nitrokey.com/news/2023/smartphones-popular-qualcomm-chip-secretly-share-private-information-us-chip-maker

itnewsbot, to tech
@itnewsbot@schleuss.online avatar

Zero trust for Zoom calls: ChromeOS getting universal microphone/camera toggles - Enlarge / Rather than app-by-app permissions that are set once, ChromeO... - https://arstechnica.com/?p=1934169 #chromebooks #webmeetings #microphone #videocalls #chromeos #security #privacy #camera #tech #zoom

CharlieMcHenry, to random
@CharlieMcHenry@connectop.us avatar

Smartphones with Qualcomm chip secretly send personal data to Qualcomm - “The fact that Qualcomm collects a large amount of sensitive data and transmits it via the insecure and outdated HTTP protocol shows us that they do not care about users’ privacy and security.” https://www.nitrokey.com/news/2023/smartphones-popular-qualcomm-chip-secretly-share-private-information-us-chip-maker

hehemrin, to random

Mobile phone data leakage to Qualcomm, and more. I hope I will read a blog post or comment from @e_mydata and any action. I would also like to read a view from @volla in respect to their hw and sw (not a topic in the article). https://www.nitrokey.com/news/2023/smartphones-popular-qualcomm-chip-secretly-share-private-information-us-chip-maker

itnewsbot, to random
@itnewsbot@schleuss.online avatar

WhatsApp Adds Option To Use the Same Account on Multiple Phones - WhatsApp users are no longer restricted to using their account on just a single ph... - https://yro.slashdot.org/story/23/04/25/1623217/whatsapp-adds-option-to-use-the-same-account-on-multiple-phones?utm_source=rss1.0mainlinkanon&utm_medium=feed

Theeo123, to random
@Theeo123@mastodon.social avatar

https://www.eff.org/deeplinks/2023/04/first-us-appellate-court-decide-finds-geofence-warrant-unconstitutional

California Court of appeal has held that geofence warrants are unconstitutional

For those who don't know, a Geofence warrant, instead of targeting an individual or location like a traditional warrant, forces a carrier such as google or T-Mobile or some other entity to turn over data from ALL users/devices in a given radius.

RTP, to internet
@RTP@fosstodon.org avatar

Totalitarian "Earn It Act" Is Back, w/Goal Of Treating All Users Online As Permanent Criminal Lineups - Scanning All Your Messages / Files

https://www.eff.org/deeplinks/2023/04/earn-it-bill-back-again-seeking-scan-our-messages-and-photos

debacle, to random
@debacle@framapiaf.org avatar

Wow, this might even affect , such as or , doesn't it?

"​s With Popular Chip Secretly Share Private Information With US Chip-Maker"

https://www.nitrokey.com/news/2023/smartphones-popular-qualcomm-chip-secretly-share-private-information-us-chip-maker

TiffyBelle, to infosec

This is a great series of articles by security researcher Mike Kuketz that documents the data transmission behavior of popular web browsers on their default settings, examining the type of connections they make and what data they "phone home" with:

https://www.kuketz-blog.de/brave-datensendeverhalten-desktop-version-browser-check-teil1/

For privacy, even on so-called privacy-respecting browsers, it's important to take time to tweak their configs properly.

Natanox, to random
@Natanox@chaos.social avatar

Smartphones using the Snapdragon 630 chip were found to call home to Qualcomm without the consent of the user, bypassing the whole operating system. Data includes unique hardware ID, current IP, country, your ISP, list of installed apps and other data.

It is send unencrypted and gets combined with data broker profiles.
https://www.nitrokey.com/news/2023/smartphones-popular-qualcomm-chip-secretly-share-private-information-us-chip-maker

As usual, big IT companies don't give a flying fart about any laws, their customers or ethics in general. Who would've guessed. 😔

Natanox,
@Natanox@chaos.social avatar

Also interesting in context:

In 2016 there already was a very similar (perhaps the same) security flaw found in Qualcomm devices: https://wwws.nightwatchcybersecurity.com/2016/12/05/cve-2016-5341/

However, back then it was the a java process on OS level that requested the data, not the firmware.

Should it be true that Qualcomm, instead of fixing the issue properly, simply moved it to a lower level (as @nitrokey implies) this could be huge. Perhaps @kuketzblog is better at analyzing this than me.

Natanox,
@Natanox@chaos.social avatar

To make anyone of you go ballistic on how bad this currently looks, put it into context to what current-gen Qualcomm smartphones are doing:
https://www.theverge.com/22811740/qualcomm-snapdragon-8-gen-1-always-on-camera-privacy-security-concerns

A phone that calls home on hardware level with always-on mic AND cameras and the ability to analyze that data using the inbuilt NPU (Neural Processing Unit)? Oh boy, do I feel safer now.
🔥 :thisisfine: 🔥 🔥

nw, to random
@nw@ioc.exchange avatar
thor_rapid, to random German
@thor_rapid@social.tchncs.de avatar

Smartphone-Wanze ab Werk. 😠

Qualcomm-Chip sendet private Informationen an US-Chiphersteller - LinuxNews
https://linuxnews.de/qualcomm-chip-sendet-heimlich-private-informationen-an-us-chiphersteller/

neimi,
@neimi@voi.social avatar

@thor_rapid

Da tuste alles Mögliche zu bändigen und dann sendet der Chip am Betriebssystem vorbei nach Hause 😤

@digitalcourage

linusable, to internet French
@linusable@mastodon.social avatar


RT @protonprivacy

"After finding out shares its data with , tens of millions of users switched to other privacy-first messaging apps like @signalapp

Find out what the best alternatives are for your :"

https://proton.me/blog/whatsapp-alternatives

kde, to random
@kde@floss.social avatar

g10 Code becomes a KDE patron🎉! g10 Code are the creators and maintainers of , the vital engine 🔒 that is one of the fundamental technologies that ensures 🔑 and online.

https://dot.kde.org/2023/04/25/g10-code-becomes-kde-patron

trusttrist, to random French

Ah ben… 😳

“As the BBC's QI revealed, ticking the little box is actually letting the site check things like your internet browsing history to determine whether you're a real person or not.

"Ticking the box is not the point. It's how you behaved before you ticked the box that is analysed," Sandi Toksvig explained to the panel.”

https://www.unilad.com/technology/i-am-not-a-robot-captcha-does-what-730411-20230424

gael, to opensource French
@gael@mastodon.social avatar

Waouh! We caught Der Spiegel's attention with the Murena One and /e/OS! 📰

Thank you Der Spiegel @mkremp for this comprehensive and balanced test drive.

"a pleasantly simple and convenient way to fulfill the dream of a (...) smartphone without Google, without having to give up cherished apps."

@murena @e_mydata

Article in 🇩🇪:
https://www.spiegel.de/netzwelt/gadgets/murena-one-im-test-ein-smartphone-ohne-google-a-ddb1f5dd-5d19-4b5e-a3c9-806367c060d6

image/png

mitexleo, to opensource

I didn't read @bitwarden 's privacy policy and tos when I started to use their services. Honestly, it was a great Mistake !

Read their TOS : https://tosdr.org/en/service/1348

kuketzblog, to random German
@kuketzblog@social.tchncs.de avatar

LineageOS hinterlässt weder einen datenschutzfreundlichen, noch wirklich sicheren Eindruck. Es unternimmt keine besonderen Anstrengungen, um sich von Google abzunabeln. Fairerweise muss man aber auch erwähnen: Das haben sie nie behauptet. 👇

https://www.kuketz-blog.de/lineageos-weder-sicher-noch-datenschutzfreundlich-custom-roms-teil4/

strypey, to random
@strypey@mastodon.nzoss.nz avatar

"The powers that surveil us do more than simply store this information. Corporations use surveillance to manipulate not only the news articles and advertisements we each see, but also the prices we’re offered. Governments use surveillance to discriminate, censor, chill free speech, and put people in danger worldwide. And both sides share this information with each other or, even worse, lose it to cybercriminals..."

https://www.schneier.com/books/data-and-goliath

strypey, to random
@strypey@mastodon.nzoss.nz avatar

"In his excellent book on , Bruce Schneier has pointed out we would never agree to carry tracking devices and report all our most intimate conversations if the government made us do it.

But under such a scheme, we would enjoy more legal protections than we have now. By letting ourselves be tracked voluntarily, we forfeit all protection against how that information is used.

Those who control the data gain enormous power over those who don't."

https://idlewords.com/talks/what_happens_next_will_amaze_you.htm

fediversereport, to fediverse
@fediversereport@mastodon.social avatar

Audon is a great real-time audio streaming service for the ! Think Spaces or Clubhouse, and you pretty much got it. You create a room for audio, where other people can listen to you, or just give them the role of speaker as well.

You can easily log in with your fediverse (Mastodon/Calckey/Pleroma) account, create a room, share the link, and you're ready to go!

Check it out at https://audon.space

Screenshot showing the room itself with my personal account as host and speaker, and this account as listener

JoergSorge,

@fediversereport
Could somebody explain, how the is technically handled? And how about ?

  • All
  • Subscribed
  • Moderated
  • Favorites
  • anitta
  • mdbf
  • magazineikmin
  • thenastyranch
  • hgfsjryuu7
  • InstantRegret
  • ngwrru68w68
  • Youngstown
  • slotface
  • vwfavf
  • rosin
  • PowerRangers
  • kavyap
  • DreamBathrooms
  • Leos
  • cubers
  • everett
  • ethstaker
  • Durango
  • modclub
  • GTA5RPClips
  • khanakhh
  • osvaldo12
  • cisconetworking
  • tester
  • normalnudes
  • tacticalgear
  • provamag3
  • All magazines