Monthly Shaarli

All links of one month in a single page.

June, 2018

When the business model *is* the privacy violation
Exposing the Secret Office 365 Forensics Tool | LMG Security : LMG Security

An ethical crisis in the digital forensics industry came to a head last week with the release of new details on Microsoft’s undocumented “Activities” API. A previously unknown trove of access and activity logs held by Microsoft allows investigators to track Office 365 mailbox activity in minute detail. Following a long period of mystery and rumors... View Article

Facebook Patent Imagines Triggering Your Phone’s Mic When a Hidden Signal Plays on TV
ProtonMail on Twitter: "Our network has been under sustained attack this morning. We are working with our upstream providers to mitigate the attack. Emails are delayed but will not be lost. Thank you for your patience."
Ad-Blocker Ghostery Just Went Open Source—And Has a New Business Model - firefox

While we're at it, might as well include the links of the other privacy suggested addons collected here:

I originally sourced from this comment

HTTPS Everywhere, Cookie AutoDelete, Don't touch my tabs, Link Cleaner, CanvasBlocker and MixedContentHunter. Edit: Links for uBlock Origin, Decentraleyes, privacy badger

On the Rise of FinTechs – Credit Scoring Using Digital Footprints by Tobias Berg, Valentin Burg, Ana Gombović, Manju Puri :: SSRN

We analyze the information content of the digital footprint – information that people leave online simply by accessing or registering on a website – for predict

Google vous écoute désormais en continu... pendant 8 secondes

Pour moins répéter "OK Google"

Facebook : bientôt des publicités vidéo dans Messenger
MyHeritage Statement About a Cybersecurity Incident « MyHeritage Blog

<p>Today, June 4, 2018 at approximately 1pm EST, MyHeritage’s Chief Information Security Officer received a message from a security researcher that he had found a file named myheritage containing email addresses and hashed passwords, on …</p>

This Smart Doorbell Was Accidentally Sending Data To China, Until People Started Freaking Out
Le logiciel libre dont on ne peut utiliser les libertés - LinuxFr.org
Temelio permet à Auchan de monétiser ses données | Alliancy, le mag

A l’instar de Casino avec RelevanC ou d’Amazon avec Amazon Marketing Services (AMS), Auchan monétise ses données via l’outil Data Shopper de Temelio et aide les marques industrielles à mieux cibler leurs campagnes média.

Alternatives to Google Products (Complete List) | Restore Privacy

If you're ready to start using Google alternatives, this guide will provide you with all your options. We cover alternatives for every Google product.

Fuite de données Yahoo! : le groupe condamné au Royaume-Uni

Des mesures de protection jugées insuffisantes

UN: Facebook has turned into a beast in Myanmar - BBC News

A probe into human rights abuses against Rohingya Muslims in Myanmar holds Facebook to account.

Panerabread.com Leaks Millions of Customer Records — Krebs on Security
Mapocalypse : Migrer depuis Google Maps, Maintenant (2/2)

Le 16 Juillet, Google Maps change ses pricings.
On ne parle pas d’une augmentation de 10%.
On parle d’un changement d’ordre de grandeur. Des quotas gratuits divisés par 30, des prix Pay-as-you-Go qui flambent (x14 sur le géocodage par exemple), bref, c’est la Mapocalypse.

Après quelques semaines d’échanges avec de nombreuses personnes, je m’essaye à écrire pour partager notre analyse de ce qu’il s’est passé, et vous aider à répondre à la question: Quelle alternative?

Drop dead | ~mathowie
Google Rivals Ask EU to Toughen Measures in Antitrust Case - WSJ

Google continues to stymie competition in online shopping despite a record fine from European authorities and an order to modify its behavior, rivals say.

German court rules Facebook use of personal data illegal | Reuters
Facebook Gave Device Makers Deep Access to Data on Users and Friends - The New York Times

The company formed data-sharing partnerships with Apple, Samsung and dozens of other device makers, raising new concerns about its privacy protections.

Against privacy defeatism: why browsers can still stop fingerprinting
Verizon, Sprint, AT&T and T-Mobile stop sharing real-time cell phone location data | ZDNet

The scandal erupted after one company claimed to be able to track any cell phone in the US "within seconds."

Hundreds of Apps Can Listen for Marketing ‘Beacons’ You Can’t Hear | WIRED

So-called ultrasonic beacons are becoming even more popular with marketers. Here's how to shut them out.

Norwegian Consumer Council report on how tech companies use dark patterns [pdf] | Hacker News
Thermostats, Locks and Lights: Digital Tools of Domestic Abuse - The New York Times
Messageries, moteurs de recherche... comment se passer de Google, Facebook ou Twitter
Ghostery is now Open Source - Android

If you are concerned about privacy, then ghostery still isn't ideal, as it still seems to collect data on the user and has an 'opt-in' ad service which will put adds in.

As others have recommended, for android other browsers are better. As for extensions, there are better ones as well (privacy badger + ublock origins will do what it does, but better).

Another severe flaw in Signal desktop app lets hackers steal your chats in plaintext

Another critical code injection vulnerability found in Signal Desktop app lets remote hackers steal your chats in plaintext

GitHub - jparise/chrome-utm-stripper: Browser extension that strips Google Analytics (UTM) tokens from URL query strings

chrome-utm-stripper - Browser extension that strips Google Analytics (UTM) tokens from URL query strings

Google Home et Chromecast : une faille permet de vous géolocaliser
How the Chinese Government Fabricates Social Media Posts for Strategic Distraction, not Engaged Argument | GARY KING

Gary King, Jennifer Pan, and Margaret E. Roberts. 2017. “How the Chinese Government Fabricates Social Media Posts for Strategic Distraction, not Engaged Argument.” American Political Science Review, 111, 3, Pp. 484-501.

Uber is experimenting with letting riders wait longer for a cheaper fare — Quartz

Would you wait five minutes to save $5?

Rendez-vous sur Arrakis | 06 - Chromium Iridium meilleur que Firefox
la carte de fidélité et le profilage. Bienvenue à bord – Tuxicoman
Open source isn’t the community you think it is | InfoWorld

The irony is that what makes open source work—and differ from commercial software—is that only a few developers do the major work on any project

Facebook ambitionne d'analyser le mouvement des yeux

Un cran supplémentaire dans la surveillance ?

Bing Maps Streetside Imagery Now Integrated into OpenStreetMap iD Editor | Maps Blog

This week Microsoft is integrating its Streetside imagery for the United States in to iD, a popular web-based editor for contributing to OpenStreetMap. This is the same imagery currently visible on Bing Maps now embedded in to a popular editing application initially developed and now maintained by Mapbox.

Leaked Emails Show Google Expected Lucrative Military Drone AI Work to Grow Exponentially
Hausse des tarifs de Google Maps : « On a plus que jamais besoin d’alternatives libres »
Blacklist Blocker | F-Droid - Free and Open Source Android App Repository

This application allows you to block unwanted calls and/or SMS in a variety of ways: blacklists, whitelists, contacts-only.

Roomba vacuum maker iRobot betting big on the 'smart' home | Reuters
All Twitter Followers Are Fake Followers - The Atlantic

A <em>New York Times</em> exposé of a “black market” for online fame diagnoses the symptom of social-media despair, but misses its cause.

Facebook lost around 2.8 million U.S. users under 25 last year. 2018 won’t be much better. - Recode

That’s according to research firm eMarketer.

Behind the Messy, Expensive Split Between Facebook and WhatsApp’s Founders - WSJ

After a long dispute over how to produce more revenue with ads and data, the messaging app’s creators are walking away leaving about $1.3 billion on the table.​

Apple Engineers Its Own Downfall With the Macbook Pro Keyboard | iFixit

A titan of tech and industrial innovation has been laid low by a mere speck of dust. Last week, Apple quietly announced that they were extending the warranty on their flagship laptop’s keyboard by four years. As it turns out, the initial run of these keyboards, described by Jony Ive as thin, precise, and “sturdy,” has been magnificently prone to failure.

In our eyes, the new design was a repairability flop. We downgraded Apple from a seven-out-of-ten to a two. The subsequent 2013 update sent the MacBook line into a freefall, earning a mere 1/10—the lowest a notebook had ever earned at that point. They haven’t recovered since.

Why nobody ever wins that car giveaway at the mall

We had a hunch that no one ever actually wins those mall car giveaways. But we had no idea how deep the rabbit hole went…

Qwant va aussi concurrencer Google dans la cartographie, le paiement et l’e-mail
MixedContentHunter - Modules pour Firefox
Don't touch my tabs! (rel=noopener) - Modules pour Firefox
Potent malware that hid for six years spread through routers | Ars Technica

Nation-sponsored Slingshot is one of the most advanced attack platforms ever.

LocationSmart API Vulnerability – Robert Xiao

On May 16th, I found a vulnerability in the LocationSmart website which allowed anyone, with no prior authentication or consent, to obtain the realtime location of any cellphone in the US to within…

Journal de mvexel | OpenStreetCam sign detection code and training data open sourced | OpenStreetMap

OpenStreetMap is a map of the world, created by people like you and free to use under an open license.

Comment les montres connectées vous espionnent

Des mots de passe facilement piratés

L'usage d'Amazon Rekognition par la police suscite la contestation
Google Removes 'Don't Be Evil' Clause From Its Code of Conduct
Facebook ordered to explain deleted profile - BBC News

The social network has been ordered by a UK judge to reveal who told it to delete the profile of a jazz musician

YouTube Blocks Blender Videos Worldwide — blender.org

Home of the Blender project - Free and Open 3D Creation Software

Amazon shareholders demand company stop selling facial recognition technology to governments | The Independent

Concerns that surveillance technology could be used to target activists, immigrants and people of colour

Scripting News: I fear Google's control of the web

The wonder of the web is that it is not subject to the whims of chaotic corporate management.

Unlisted Links Aren’t Quite as Private as YouTube Promised - PSafe Blog

Unlisted Links Aren’t Quite as Private as YouTube Promised

How Firefox is using Pocket to try to build a better news feed than Facebook - The Verge

Pocket CEO Nate Weiner on how local data processing is the future of personalized recommendations.

Mark Zuckerberg just laid out Facebook's role in reported 'ethnic cleansing' in Myanmar

Zuckerberg said that both Buddhists and the Rohingya were being incited towards violence in messages sent on the website.

Fuite de données personnelles: Optical Center condamné à 250.000 euros d'amende

La Commission nationale de l'informatique et des libertés (Cnil) a annoncé jeudi avoir infligé une amende de 250.000 euros à Optical Center, pour atteinte à la sécurité des données des clients du site internet www.optical-center.fr.

Utiliser son Android de façon plus sécurisée - LinuxFr.org
Comment bloquer les publicités sur Android sans root | Info24android
Shaarli - Modules pour Firefox
Facebook is banning all ads promoting cryptocurrencies — including bitcoin and ICOs - Recode

It’s an "intentionally broad" policy aimed at stopping scammers.

That article doesn't summarize the ruling very well. Here's a short tl;dr of the... | Hacker News
Apple jams Facebook's web-tracking tools - BBC News

The next versions of the iOS and the Mac operating systems will block the social network's trackers.

Facebook discloses data-sharing with Chinese electronics firms like Huawei - Axios

Among them is Huawei, which some U.S. officials have called a national security threat.