Search

Items tagged with: Privacy



By default, #Thunderbird automatically blocks images in your emails from being displayed -- because many of those images may contain tracking code.

(Sometimes these images are tiny "tracking pixels" you may not even see).

Take your protection one step further by installing #uBlock Origin to block all kinds of unwanted content in your RSS feeds -- it's now an official Thunderbird Add-on: addons.thunderbird.net/en-US/t…

#Privacy #Email

(EDITED FOR CLARITY)


Are AI tools really as smart as creative writers? 🧐 It looks like we will soon know for sure. In any case, AI and its influence on our societies must be watched closely: After all the tools were trained with human writers content who they are now supposed to replace.
vice.com/en/article/pkap3m/gpt…

Read more on this issue and why ChatGPT is a privacy nightmare: 👉 tutanota.com/blog/posts/chatgp…

#ai #creative #content #writers #privacy #chatgpt #bard #ernie


Today is #worldpressfreedomday
📻📺🗞️

Together with 45+ pro-privacy organizations such as @threemaapp @mozilla @nextcloud and others we are calling on democratic world leaders to uphold encryption, privacy & press freedom: tutanota.com/blog/posts/press-…

Our asks are simple:

▪️ Do NOT undermine encryption via overreaching legislative initiatives 🔒

▪️ Do NOT block or throttle technologies providing secure, encrypted services 🔒

#privacy #encryption #pressfreedom #pressfreedomday #worldpressfreedomday



Stay strong: Desperate governments worldwide want to downright criminalize #privacy and #encryption now, using laughable pretexts like #cybersecurity causing #childabuse to literally put everyone on the planet under a permanent wiretapping mandate like we're common criminals by default.

Smartphones are especially susceptible to surveillance, and among those devices we have the least control over instead of corporations merely renting them to us: It's time for that to change!


Google has just updated its 2FA Authenticator app and added a much-needed feature: the ability to sync secrets across devices.

TL;DR: Don't turn it on.

The new update allows users to sign in with their Google Account and sync 2FA secrets across their iOS and Android devices.

We analyzed the network traffic when the app syncs the secrets, and it turns out the traffic is not end-to-end encrypted. As shown in the screenshots, this means that Google can see the secrets, likely even while they’re stored on their servers. There is no option to add a passphrase to protect the secrets, to make them accessible only by the user.

Why is this bad?

Every 2FA QR code contains a secret, or a seed, that’s used to generate the one-time codes. If someone else knows the secret, they can generate the same one-time codes and defeat 2FA protections. So, if there’s ever a data breach or if someone obtains access .... 🧵

#Privacy #Cybersecurity #InfoSec #2FA #Google #Security


#ChatControl #OnlineSafetyBill #EarnIt - Lots of politicians want to undermine encryption once again. When will they ever learn that a "backdoor for the good guys only" is simply not possible?

Learn here why we must keep fighting for strong #encryption: tutanota.com/blog/posts/why-a-…

#OSB #CSAM #ClientSideScanning #Privacy

Politiker wollen wieder einmal die Verschlüsselung untergraben. Wann werden sie jemals lernen, dass eine "Hintertür nur für die Guten" einfach nicht möglich ist?




EFF Analysis: The Broad, Vague #RESTRICT Act Is a Dangerous Substitute for Comprehensive #Data #Privacy Legislation eff.org/deeplinks/2023/04/broa… The proposal "authorizes penalties, including 25 years of prison time, for any person who brings #TikTok into the U.S., whether by use of a #VPN or downloading it while in another country." This could potentially outlaw US use of the #Tor Browser that the US helped develop to bypass #censorship in unfree countries.


Tesla-Mitarbeiter ergötzen sich an Videoaufnahmen aus fremden Autos
heise.de/news/Tesla-Mitarbeite…

"Die Kunden hätte eh jede Erwartung von Privatsphäre aufgegeben."

Selbst Tesla Mitarbeiter würden keinen Tesla kaufen, seit sie von diesen Praktiken wissen...

#privacy




ChatGPT has leaked conversations and payment info of some users. While #OpenAI feels "awful" about this, experts say users "should have had zero expectation of privacy when using the #ChatGPT web demo."

theregister.com/2023/03/23/ope…

Read also our blog post on ChatGPT: A #privacy nightmare or a helpful tool? tutanota.com/blog/posts/chatgp…



You also say "We encourage all partners to be objective and accurate in their reviews." - Requiring your partners to agree to a code of conduct would be even better. 😉

We hope we can continue to fight for #privacy together and keep up healthy & fair competition!

5/5 🧵






Impressive campaign by @mullvadnet against the CSA Regulation #chatcontrol Here's more info: tutanota.com/blog/posts/chat-c…

Do you want to help as a citizen against scanning of all your chat messages? Sign the petition: civicrm.edri.org/stop-scanning… #privacy #encryption #stopscanningme


Microsoft Authenticator prompts the user to accept sharing analytics during the first launch. The prompt only dismisses when the user taps on "Accept." In fact, the app starts sending analytics even before accepting the privacy statement.🤦‍♂️

In this video, we downloaded the authenticator app from the App Store and we opened it as we monitored the iPhone network traffic. While the app was showing the permission prompt, we captured at least 3 calls made by the app sending diagnostics to Microsoft. The app sent 14 KB of analytics even before accepting the prompt.

The message on the prompt actually says that Microsoft needs to collect diagnostic data in order to keep Authenticator secure and up to date. 😵‍💫

#Privacy #Cybersecurity #2FA #InfoSec #Security #Microsoft

youtu.be/r5456XXG6v0






Der Einsatz biometrischer Methoden zur #Überwachung wird laut Koalitionsvertrag abgelehnt. Wie äußert sich das in der Praxis? Schauen wir mal.

Überwachung: Sicherheitsbehörden treiben automatisierte Gesichtserkennung voran
heise.de/news/Ueberwachung-Sic…

Aha. Noch Fragen?

#privacy



E-Patientenakte: "Wer nicht ausdrücklich widerspricht, ist automatisch dabei"
heise.de/news/E-Patientenakte-…

Inklusive der Datenweitergabe in "pseudonymisierter" Form an die Pharmaindustrie. Auch wenn die Struktur noch nicht wirklich fertig ist.

Was soll schon schief gehen...

#privacy



When #GooglePlay introduced privacy labels, I was very curious to see how they managed to get reliable data about the #privacy properties of Android apps. I know first-hand how difficult and time-consuming privacy audits of #Android apps can be. Now Mozilla has taken a closer look, and it seems #Google doesn't even have reliable data.

foundation.mozilla.org/en/blog…