FBI releases PSA warning about all the ways that cybercriminals are using AI to commit fraud on a larger scale and to increase the success of their scams. The advisory warns about deepfaked videos and voice calls, as well as AI generated profile images to impersonate people.

Among their recommendations:

-Create a secret word or phrase with your family to verify their identity.

-Look for subtle imperfections in images and videos, such as distorted hands or feet, unrealistic teeth or eyes, indistinct or irregular faces, unrealistic accessories such as glasses or jewelry, inaccurate shadows, watermarks, lag time, voice matching, and unrealistic movements.

-Listen closely to the tone and word choice to distinguish between a legitimate phone call from a loved one and an AI-generated vocal cloning.

-If possible, limit online content of your image or voice, make social media accounts private, and limit followers to people you know to minimize fraudsters' capabilities to use generative AI software to create fraudulent identities for social engineering.

-Verify the identity of the person calling you by hanging up the phone, researching the contact of the bank or organization purporting to call you, and call the phone number directly.

-Never share sensitive information with people you have met only online or over the phone.

-Do not send money, gift cards, cryptocurrency, or other assets to people you do not know or have met only online or over the phone.

ic3.gov/PSA/2024/PSA241203

This entry was edited (1 year ago)

reshared this

in reply to BrianKrebs

I would add to this list is something I have tried to do with those in my immediate orbit who need a little more help against scams and spams: Set their phone so that incoming calls are limited to people on their contacts list; all the rest go to voicemail. At this point, we are way beyond expecting everyone to be experts at spotting fake this or that.

reshared this

Today I got the chance to ask our computer graphics professor a question that I asked myself quite some time ago: what the fuck is the color pink?

Like, the color right before infrared is red, the color right before ultraviolet is violet. And every other color is some wavelength between those two colors. EXCEPT FOR PINK!?

On a hue color wheel pink is between red and violet, so it's wavelength has to be somewhere around there, right??

Well, turns out pink is the color humans perceive when red and violet are mixed (duh), meaning the red and blue cones are stimulated. Since both cones respond to wavelengths on the opposite ends of the visible spectrum, there is no monochromatic wavelength that would trigger both, hence there is no wavelength that looks pink.

That's also the reason pink does not appear in a rainbow, because there white sunlight light, a mixture of (almost, hi Astro-fedi) all monochromatic wavelengths, is refracted based on wavelength, so no mixed colors occur in it.

I love that Walmart is a free AIRA access point. That should have happened a long time ago. However, it bothers me that they are talking about how they are committed to accessibility for the blind and visually impaired, when there iPhone app has been broken for quite some time now, among other accessibility issues throughout the shopping experience for us there. I am positive they know the search in the app is broken. Free AIRA is a tool, not a crutch. Not everyone wants a third-party in the middle of their shopping experience.
chainstoreage.com/walmart-prov…

U.S. seeks to end subminimum wage for workers with disabilities - Bloomberg apple.news/AO-Aj2kfJTSqPLx8Cqv…

I've noticed a concerning trend of "slop security reports" being sent to open source projects. Here are thoughts about what platforms, reporters, and maintainers can do to push back:

#oss #opensource #security

sethmlarson.dev/slop-security-…

This entry was edited (1 year ago)

reshared this

Reason to celebrate: the email client #Thunderbird celebrates its 20th birthday. Please remember the parent #Netscape-Suite too. It's been 30 years.

@thunderbird #mozilla

20 Years of Thunderbird
updates.thunderbird.net/en-US/…

Our #GivingTuesday campaign is officially LIVE!

We’re raising $75,000 to fund a new hire: ✨ Trust & Safety Lead ✨

A crucial role in protecting Mastodon’s growing community by strengthening our trust & safety tools incl. #moderation & server blocklists.

Your support is an investment in the future of a decentralised, free and respectful online community, where every user feels safe & supported.

Thank you for being part of this movement! 💪

Donate what you can today: givebutter.com/givingmastodon

Thanks for using us and for your feedback on the folders! We have a Mozilla Connect suggestion on this if you'd like to upvote/comment on it: connect.mozilla.org/t5/ideas/t…

The ACT (Accessibility Conformance Testing) Rules Community Group and related Task Force are looking for feedback from voice control users.

They have created a test site with 27 controls and a corresponding survey:
docs.google.com/forms/d/e/1FAI…

This is to inform WCAG SC 2.5.3 Label in Name support.

#a11 #accessibility

#AndroidAppRain at apt.izzysoft.de/fdroid today brings you 9 updated and 1 added apps:

* Redomi: Open songs from different platforms to your favourite one 🛡️

1 update had to be rejected: WeatherMaster was compiled for debug and thus the APK was not accepted for update.

RB status: 359 apps (29.4%)

At apt.izzysoft.de/magisk 2 #Magisk #modules where updated.

Enjoy your #free #Android #apps with the #IzzyOnDroid repo :awesome:

Synapse 1.120.2 was just released with several security fixes: github.com/element-hq/synapse/…
You should really update now and while the last 2 CVEs say, they were fixed on 1.106, to my knowledge that is only true if you enabled authenticated media, which only became the default in 1.120, so you really want to update even for those or at least update your config.

Thank you! :)

#matrix #synapse #security

Wow, what a clusterfuck: 404media.co/a-total-meltdown-b… (article by @jasonkoebler)

Thinking about it, their conclusion that “the app-ification of everything can lead to some pretty absurd scenarios” isn’t necessarily correct. It isn’t the app-ification – it’s delegating control to some server on the internet which is expected to have 100% availability. It’s the same issue with you losing access to your local e-books or games because a vendor went out of business. Same thing is increasingly happening to hardware which seemingly has little reason to rely on internet services.

I can think of several possible solutions which don’t rely on internet connectivity at all or only require a connection at the time of the reservation (unproblematic: without connectivity no reservation confirmation). These would deposit a token on user’s device which can be verified locally, without relying on the vendor’s server.

While this wouldn’t be hard to implement, it would require the vendor to consider their centralization a potential weakness. This isn’t aligned with their incentives however, as centralizing the system makes it easier to control everything and collect every last piece of data.

This entry was edited (1 year ago)

Would you like to see your amazing ideas on the DebConf 25 website, on T-shirts, etc., so that people all over the world can take them home? Only 12 days left to submit your artwork: deadline December 15! lists.debian.org/debconf-annou… #debian #debconf25 micronews.debian.org/2024/1733… #debian

Přátelé kávomilci, rád bych pořídil mlýnek na ☕. Kromě nastavení hrubosti vlastně nevím, co od něj chtít, nikdy jsem žádný neměl.

S jakým máte kdo zkušenosti? Děkuji předem za tipy. 🙏😘
Za boost králíčky, může být?

in reply to 𝕆𝕥𝕥𝕠 𝕧𝕠𝕟 𝕎𝕖𝕟𝕜𝕠𝕗𝕗 🐾🐐🐇🐔

@satai já obevil nedávno Kaffia Barista (X) a nedám na něj dopustit. Ruční mlýnek, pomleto rychle a snadno, stojí pár korun a zvládá jak super jemné tak hrubé mletí. Podle mě přesně to co chceš. A teď jak jsem hledal obrázek jsem narazil na to, že přechozí verze, kterou jsem chtěl a nebyla tenkrát :D, je teď za 299 Kč. Jako podle mě je to mlýnek s hodnotou tisíc korun, neváhej a ber, i kdyby jen do rezervy :) A ta starší verze navíc neklouže jak to Xko. A přikup aeropress :)
in reply to kepi has moved

Mně ten ruční taky stačí. Piju jen moka kávu, vždy námelu na dva tři dny a pohoda. Možná to je pro někoho problém, že třetí den není úplně čerstvá, ale ta plechová huba co mám, odchovaná českým turkem, to stejně nepozná 😀

@OttovonWenkoff @satai

in reply to Archos

@archos Jak ti rozumím, s hubou jsem na tom tak ňák stejně. 😂 O nás už arci tak nejde, ale z mláděte už je taky pička kávy... Prostě už taky pije kafe, dyk je to kurña dobře napsaný! 🤣
Možná skončím, resp. začnu u klikotoče, tipů se tu sešlo dost. @kepi @satai
Unknown parent

mastodon - Link to source

Archos

@jirikyr Já mám tohle aromaniac.cz/525-rucni-mlynek-… na českého turka myslím taky dobrý.@kepi @OttovonWenkoff @satai

🚀 FluffyChat v1.23.0 is here!

You can now send multiple files at once. The login page got a redesign with SSO as the new default action (legacy password login still available in the context menu at the top right corner).

MAS account settings now available in the profile, making FluffyChat ready for the Matrix OIDC change! 💪

Lot's of new colors and style settings with much better chat wallpapers also landed in this release. 🐾

Learn more at ko-fi.com/post/FluffyChat-Vers…

#FluffyChat #matrix

Synapse security release day! We fixed multiple security vulnerabilities, some affecting all prior versions of Synapse. We are not aware of these vulnerabilities being exploited in the wild, but please upgrade!

github.com/element-hq/synapse/…

reshared this

in reply to The Matrix.org Foundation

Dutch police explicitly states in their press release that the criminal network has 'nothing to do' with the business and communication protocol of the same name. politie.nl/nieuws/2024/decembe…

@thunderbird Is there some way to enable images in feeds? For example, what appears in the viewer as
<blogger.googleusercontent.com/…
AVvXsEgLHWpExAPWLVONv6iarWipMlWIqrqAze0eRCccaKEEeye-
maI7t22D1OsNKbycR7CixZ18goeuQQVzTWcxswFUnH1SRmw3y_62CYJ4Zh0Bf-
CICYsOfe4BYGu997ZIuNOtTnxj11aLHDeO7Pn5ZWE8WLjhNUGsRr-
RHFpJ68SCFP7qaHTb7OaWwoopfdI/s720/mapa.camino.png>

And in emails? I have a lot of emails that displayed in Office 365 show embedded images, however, they are included as attached files in the downloaded email, and I do not get any message as the text (from kb.mozillazine.org/Privacy_bas…):

This entry was edited (1 year ago)
in reply to O Iago

Here is how to enable remote content in emails. We have asked one of our support team about RSS feeds and will let you know on that once we have an answer: support.mozilla.org/en-US/kb/r…
in reply to Thunderbird: Free Your Inbox

Thanks! Actually, looking for the notification bar, I found that my issue (both for emails and feeds) was that I had configured
View (Alt-V) - Message Body as - Plain Text
instead of
View (Alt-V) - Message Body as - Original HTML
support.mozilla.org/es/questio…

🎆 🎉

#Thunderbird

This entry was edited (1 year ago)
in reply to anuerysm

Is this happening in Android? If so, take a look at this GitHub issue that seems to describe the same error! github.com/thunderbird/thunder…

How does a *winter only* ban on e-bikes in the subway make sense? Surely, batteries can burst into flame in any season? And surely every train carries hundreds of laptop lithium batteries, that don't burst into flame?

Sounds like an e-bike battery-manufacturing regulation issue being resolved at the user level, where it (as usual) harms the neediest the most 😥

Via @cbcnews flipboard.com/@cbcnews/toronto…

📧 Your email isn’t just a way to communicate—it’s part of your brand.

✅ A professional email boosts credibility, but it should also prioritize security 🔒

🛡️ With end-to-end encryption, Tuta ensures your business communication stays private and secure.

Read more here 👉 tuta.com/blog/small-business-e…

#SmallBusinessTips #SecureEmail #EndToEndEncryption #ProfessionalEmail #BusinessSecurity

Neuer Prototype Fund, neue Stelle: Ab 2025 startet nicht nur unsere Neuauflage, sondern auch eine neue Person für Projektbetreuung & Förderrundenmanagement.
Zur Stellenausschreibung:
prototypefund.de/ausschreibung…
in reply to SuspiciousDuck

Veci na revitalizaciu je v Bratislave a aj na celom Slovensku IMHO neurekom.

Ale pozor: mastodon.social/@phanecak/1135…

This entry was edited (1 year ago)