Search

Items tagged with: security


Accrescent 0.27.0 is here! This is the most significant release we've made to date:

- New, stable app store API
- Complete installer rewrite, resolving all known bugs
- Tons of new features
- More snappy, correct, & informative UI

Check it out! 👇

github.com/accrescent/accresce…

#accrescent #security #privacy #appstore #android


For you activist folk that still use Google services, get your shit off google and do it now. Don't store your files there and move your email to @Tutanota

If you can't make that effort you're not to be trusted. Look at the last item on the list in the linked article. Given the current fascist admin, it's clear your files are not safe, secure or private if stored on Google. Likely other US services too.

#privacy #security #google #fascism #democracy #resist

inverse.com/input/tech/google-…


Today's AWS debacle is the perfect example of the reason why in the last few years I started to be less enthusiastic about Signal, and more oriented to federated or even P2P solutions like XMPP and Jami. I wrote about it already:

gagliardoni.net/#im_battle_202…

Signal was down for few hours today, after an outage that affected AWS:

mastodon.world/@Mer__edith/115…

Let's ignore for a second the blind reliance on AWS or any other cloud provider. In a decentralized system, this would not have happened, or at least it would have not impacted so many users.

Yes, I am a cryptographer myself, I know that Signal's encryption is the best. But encryption is not everything. Availability issues, geopolitical troubles, risk of enshittification, limitations on users' freedom to use and control the software lead to a lack of trust, even in a supersecure solution. And I say that with honest admiration for the folks at Signal, who are doing a great job.

May they prove me wrong over and over again.

#signal #im #aws #amazon #privacy #security #digitalsovereignty #selfhosting #fediverse #federation #p2p #enshittification #xmpp #jami #politics #opensource #freesoftware #libre


PSA: we're aware that Signal is down for some people. This appears to be related to a major AWS outage. Stand by.


NVDA 2025.3.1 Release Candidate is now available for testing.

This is a patch release to fix a security issue & a bug.

- Fixed a vulnerability which could prevent access to secure screens via Remote Access.

- Remote Access now returns control to the local computer if it locks while controlling the remote computer.

#NVDA #NVDAsr #PreRelease #News #NewVersion #Update #ScreenReader #Security


We've just fought #ChatControl - now Ireland 🇮🇪 wants its own backdoor law. 🔓

But we, together with ~40 orgs, are saying no.

#NoToBackdoors 💪

Read our open letter to Ireland: 👉 globalencryption.org/2025/10/o…

#backdoor #encryption #privacy #security


Fette Lücke in der #GameEngine #Unity mit Schadcodeausführung, teilweise auch aus dem Internet: heise.de/news/Spiele-Engine-Un…

Die Liste erscheint mir, auch mit der Einschränkung "in Unity Gaming Engine Editor Version 2017.1 oder neuer" erstellt etwas kurz, wenn man bedenkt wie krass verbreitet Unity doch ist. Und ob da noch alles gepatcht wird, darf bezweifelt werden - da sind ja so seinige Legacy-Titel bei.

Ohje ohje... 🙈

#Gaming #Security


Hey you! Yes, you, who maintains signatures for a so-called AntiVirus scanner! Could you please get those signatures fixed?

Here's from a year ago: github.com/nfcgate/nfcgate/iss…

And despite of those developers having reached out more than once, this is where we stay now, a year later: 29 (!!) engines falsely mark the NFCGate app as Malware: github.com/nfcgate/nfcgate/iss… – confusing people and scaring them away from it.

Do you also blame the vendor of the getaway car for the bank robbery? 🤦‍♂️

#security


Why this "AV" (Age Verification) requiring the upload of documents poses risks which are IMHO not justified by the reason:

discord.com/press-releases/upd…

What got out? Well, just "… Name, Discord username, email and other contact details … billing information … IP addresses … government‑ID images (e.g., driver’s license, passport) from users who had appealed an age determination"

Well, happy identity thefting then… Remember: what's not there, cannot be stolen 🤷‍♂️

#security #ageVerification


God help us

“A new report from Senate Democrats claims members of Elon Musk’s DOGE team have access to the Social Security Numbers of all Americans in a cloud server lacking verified security measures, despite an internal assessment of potential “catastrophic” risk. The report, released by Sen. Gary Peters (D-MI), cites numerous disclosures from whistleblowers, including one who said a worst-case scenario could involve having to re-issue SSNs to everyone in the country.

As outlined in the report, DOGE staffers moved a live copy of Americans’ personal information to a cloud server despite an internal risk assessment done by the Social Security Administration (SSA) that determined the impact could be “catastrophic” without the proper safeguards. The report notes that this information is considered “production data,” potentially allowing DOGE to “directly manipulate” it.”

#doge #tech #ssn #news #security #privacy
theverge.com/news/785706/doge-…


“The vulnerability might be in the proof-of-concept”

This is a common pattern I see for reporters to open source projects, where the proof-of-concept itself contains the vulnerability, not the project.

👉 sethmlarson.dev/the-vulnerabil…

#security #opensource #oss #vulnerability


Since we published our blog post on the future of Accrescent, donations have increased dramatically.

According to the rates in that post, we should now be able to fund full-time development through at least May 2026!

Thank you to our community for your monumental support!

Because of you, we can dedicate ourselves fully to our mission of building a modern Android app store focused on security, privacy, and usability.

If you want to read the original blog post: blog.accrescent.app/posts/the-…

Or if you want to see our plans: blog.accrescent.app/posts/prog…

#accrescent #security #privacy #android #appstore


Today is the day! Read all about our development progress, view our roadmap for the future, and check out the new projects we're releasing as open source in our new blog post!

blog.accrescent.app/posts/prog…

Check out our new repositories:

github.com/accrescent/android-…
github.com/accrescent/director…
github.com/accrescent/director…
github.com/accrescent/ina

#android #security #privacy #accrescent #appstore


Accrescent depends completely on donations to run. Today we share a significant update in our new blog post on the future of Accrescent: blog.accrescent.app/posts/the-….

New releases of Accrescent and our developer console are also out, with Android 16 updates and Material 3 changes. Check them out!

github.com/accrescent/accresce…
github.com/accrescent/parcelo/…
github.com/accrescent/console/…

#security #privacy #accrescent #android #appstre


So…who hates those Google log-in pop-ups that are seemingly everywhere now? Wanna make them go away?

1. Get uBlock Origin (which you should have already been using):

github.com/gorhill/uBlock

2. Open the plugin and click the settings button.

3. Click on the “my filters” tab and paste this into the input:

||accounts.google.com/gsi/*$xhr,script,3p

That’s it! Worked flawlessly for me.

(Updated URL. Thx @IceWolf
and @emz!)

#Google #Privacy #Security #PopUps #InfoSec #BadGoogle


🛡️ "Stop Subverting Sandboxes"
with Michael Catanzaro at #GUADEC2025
📅 25 July 🕒 13:40 CEST 📍 Brescia

🔒 Flatpak can protect users—but not if we keep bypassing it. Michael calls for stronger sandboxing, better portals, and shares GNOME’s new security bounty program.

🔗 events.gnome.org/event/259/con…

#Flatpak #GNOME #Sandboxing #Security #FOSS




Why is security work unlike any other contribution to an open source project?

We need to re-think the tight association between maintainers and security work if we want sustainable open source security.

Read more: sethmlarson.dev/security-work-…

#opensource #oss #security #supplychain



Who says you can’t have #privacy and #security in an OS? Meet PureOS — the #Linux OS that respects you.

No ads
No trackers
No #surveillance
No terms of service traps

PureOS supports Purism’s Librem 5 & Liberty Phone.

More Info: puri.sm/posts/what-is-pureos-a…



🔐 "Fixing Desktop Keyrings"
with Dhanuka Warusadura at #GUADEC2025
📅 24 July 🕒 12:30 CEST 📍 Brescia
🧩 GNOME 49 plans to replace gnome-keyring with a new D-Bus Secret Service. Here’s what’s changing.

🔗 events.gnome.org/event/259/con…

#GNOME #Security #Keyring #OpenSource


🛡️ "The evolution of Linux targeted cyber threats"
with Pau Hoz at #GUADEC2025
📅 24 July 🕒 11:05 CEST 📍 Brescia

🔍 From supply chain attacks to evasive malware, Pau digs into how Linux threats are evolving—and what it means for FOSS security.

🔗 events.gnome.org/event/259/con…

#Linux #Security #FOSS #CyberThreats


Who says you can’t have #privacy and #security in an OS?

Meet PureOS — the #Linux OS that respects you.

No ads
No trackers
No #surveillance
No terms of service traps

PureOS supports Purism’s Librem 5 & Liberty Phone.

More Info: puri.sm/posts/what-is-pureos-a…


Who says you can’t have #privacy and #security in an OS? Meet PureOS — the #Linux OS that respects you.

No ads
No trackers No #surveillance
No terms of service traps

PureOS supports Purism’s Librem 5 & Liberty Phone.

More Info: puri.sm/posts/what-is-pureos-a…


How can #OpenSource and #security be interconnected?
What will be the future of funding the open source-dependent public digital infrastructure?

These and many other questions will guide the discussion of our panelists:
🔸@bagder from #cURL
🔸@melanierieback from @ros
🔸Matteo Mole from @EuropeanCyber SecurityOrganisation
🔸Nicholas Gates from @OpenForumEurope
🔸Mirko Boehm from #TheLinuxFoundation

Join the webinar : europeanopensource.academy/for…


Our monocles crowdfunding is ongoing and we're so grateful for the support so far! Thank you!

monocles empowers you with open-source, community-driven messaging via XMPP, a privacy friendly email service, a cloud and more – for a transparent alternative for your digital life.

Help us create this real ethical digital solution, by the people, for the people. Every contribution makes a huge difference!

Be part of the journey & donate today ✊️: startnext.com/en/monocles

#xmpp #monocles #security


Who says you can’t have #privacy and #security in an OS?

Meet PureOS — the #Linux OS that respects you.

No ads
No trackers
No #surveillance
No terms of service traps

PureOS supports Purism’s Librem 5 & Liberty Phone.

More Info: puri.sm/posts/what-is-pureos-a…


Lightweight open source Google reCaptcha alternative: ALTCHA leverages a proof-of-work mechanism to safeguard your website, APIs, and online services from spam and abuse. Unlike traditional solutions, ALTCHA is self-hosted, does not rely on cookies or fingerprinting, and ensures complete user privacy. It is fully compliant with GDPR, WCAG 2.2 AA-level, and the European Accessibility Act. github.com/altcha-org/altcha

#privacy #webdev #security #opensource


Who says you can’t have #privacy and #security in an OS?

Meet PureOS — the #Linux OS that respects you.

✅No ads
✅No trackers
✅No #surveillance
✅No terms of service traps

Run it on Purism’s Librem 5 & Liberty Phone.

Link - What is #PureOS?: puri.sm/posts/what-is-pureos-a…