Monthly Shaarli

All links of one month in a single page.

December, 2018

EU to fund bug bounty programs for 14 open source projects starting January 2019 | ZDNet

Some of the approved projects include KeePass, 7-zip, VLC Media Player, Drupal, and FileZilla.

Opinion | Our Cellphones Aren’t Safe - The New York Times
The year social networks were no longer social | TechCrunch
Before and After: What We Learned About the Hemisphere Program After Suing the DEA | Electronic Frontier Foundation

As the year draws to a close, so has EFF’s long-running Freedom of Information Act lawsuit against the Drug Enforcement Agency about the mass phone surveillance program infamously known as “Hemisphere.” We won our case and freed up tons of records. (So did the Electronic Privacy Information Center...

Uncovering What Your Phone Knows - The New York Times

Jennifer Valentino-DeVries, an investigative reporter for The Times, explains how reporters discovered some of the information mobile apps collect.

Is Windows 10 still telling Microsoft what you're doing even if you don't want it to? | ZDNet

Microsoft baffles Windows 10 users by apparently collecting data about recently opened websites and apps when users have opted against sharing that information.

Your Apps Know Where You Were Last Night, and They’re Not Keeping It Secret - The New York Times

Dozens of companies use smartphone locations to help advertisers and even hedge funds. They say it’s anonymous, but the data shows how personal it is.

Tinder : des millions de données intimes vendues par un Data Broker

Les données personnelles de millions d'utilisateurs de sites de rencontre comme Tinder, OkCupid ou M

Monsanto aurait créé des groupes de "faux agriculteurs" pour défendre le glyphosate

Un lobby de la société Monsanto a créé des groupes de "faux agriculteurs" chargés de se prononcer en faveur du glyphosate, révèle la cellule d’investigation de Greenpeace et du quotidien britannique "The Independent".

Des caméras connectées Foscam aux failles de sécurité béantes

Des chercheurs pointent du doigt les caméras connectées du constructeur chinois Foscam, qui intègrent en dur un mot de passe, exploitable évidemment à...

Internal Documents Show Facebook Has Never Deserved Our Trust or Our Data - Motherboard

Internal emails between Mark Zuckerberg and Sheryl Sandberg lay bare the fact that Facebook has long sought to leverage user data to turn a profit.

Le naufrage moral de Facebook - Standblog

C’est le nouveau scandale Facebook : comment les patrons du réseau social ont tout fait pour ne pas porter le chapeau suite aux multiples scandales dans lesquels la firme était

Facebook : le marketing idéologique doit être encadré rapidement en France - ZDNet

Bombe à retardement pour la démocratie. Il est urgent que Facebook trouve des outils efficaces pour encadrer le marketing idéologique sur sa plateforme.

Why You Should Never, Ever Use Quora – Waxy.org

Forget about Quora's security breach. Their ongoing efforts to block access to their content, including a multi-year ban on the Internet Archive, are reason enough to never use them.

Why Amazon, Apple, Facebook, and Google Need to Be Disrupted

Four companies dominate our daily lives unlike any other in human history. The only logical conclusion? We must bust up big tech.

[Slate] RGPD: Google, Facebook et Microsoft utilisent le webdesign pour tromper l’internaute – La Quadrature du Net

Depuis l'entrée en vigueur de la nouvelle législation européenne en matière de protection des données personnelles, les plaintes contre les Gafam s’accumulent. [...]

Contre le monopole des GAFAM, le logiciel libre
Explosion des prix de Google Maps : le département de Maine-et-Loire abandonne Google pour OpenStreetMaps, un service de cartographie open source

Début mai, Google a annoncé une refonte complète de son offre cartographique à destination des professionnels. Ces changements, qui impliquent de renseigner obligatoirement un code de carte bleue, se traduisent par une explosion des prix pour les usages professionnels avec une réduction drastique du volume d’affichages gratuits autorisés.Le quota gratuit de 25 000 cartes affichées par jour sur un site web passe maintenant à 28 000, mais par mois (soit en moyenne moins de 1000 par jour). C'est-à-...

Khrys’presso du lundi 6 août – Framablog
I don't care about cookies – Get this Extension for 🦊 Firefox (en-US)

Download I don't care about cookies for Firefox. Get rid of annoying cookie warnings from almost all 'infected' websites!

Google's Top 35 Privacy Scandals | The Precursor Blog by Scott Cleland

Since Privacy International ranked Google worst in the world for Privacy in its 2007 privacy survey for its unique “comprehensive consumer surveillance & entrenched hostility to privacy,” Google has had at least 24 more public scandals/controversies over privacy/security.

France might be losing its first big information war

Foreign propagandists are getting a strong foothold in France, and the traditional media can’t fight it

Auto theft on the rise in Toronto area, and a security expert thinks he knows why | CBC News

Auto thefts are on the rise across the Greater Toronto Area, by 30 per cent in the city alone, and wireless key fobs may have a role to play.

Dust3D | Free 3D Modeling Software
New Parents Complain Amazon Baby-Registry Ads Are Deceptive - WSJ

Sponsored ads on Amazon’s baby registries are leading the family and friends of new parents to make purchases of unwanted gifts.

Talk about a cache flow problem: This JavaScript can snoop on other browser tabs to work out what you're visiting • The Register

Yes, even the Tor browser can be spied on by this nasty code

Inside Facebook’s Secret Rulebook for Global Political Speech - The New York Times

Under fire for stirring up distrust and violence, the social network has vowed to police its users. But leaked documents raise serious questions about its approach.

Netflix Pulls the Plug on Feature Designed to Get Kids Addicted to Netflix | Vanity Fair

Someone finally realized this was a potentially catastrophic idea.

We Should Replace Facebook With Personal Websites - Motherboard
Google’s Earth: how the tech giant is helping the state spy on us | News | The Guardian

The long read: We knew that being connected had a price – our data. But we didn’t care. Then it turned out that Google’s main clients included the military and intelligence agencies

The Business of Selling Your Location - The New York Times

Smartphone apps track a staggering amount of data about our whereabouts every day. That data has become a hot commodity.

Iranian phishers bypass 2fa protections offered by Yahoo Mail and Gmail | Ars Technica

Group breaches SMS-protected accounts. It's still testing attacks against 2fa apps.

Amazon’s Disturbing Plan to Add Face Surveillance to Your Front Door | American Civil Liberties Union

Recently, a patent application from Amazon became public that would pair face surveillance — like Rekognition, the product that the company is aggressively marketing to police and Immigration and Customs Enforcement — with Ring, a doorbell camera company that Amazon bought earlier this year.

Apple is right about privacy, but wrong about freedom – Purism
Liens vagabonds : Facebook de nouveau dans la tourmente | Meta-media | La révolution de l'information

A RETENIR CETTE SEMAINE  : Nouveau scandale chez Facebook dont les dirigeants auraient tout fait pour cacher l’implication russe dans les élections. Le modus operandi de Facebook dans la crise : re…

Ever used Sennheiser's HeadSetup app on a Mac? Read this. - 9to5Mac

If you’ve ever used a Sennheiser headset or speakerphone device with your Mac (or Windows PC), the accompanying HeadSetup app has left your machine wide open to attack. In what has been descr…

RGPD : une extension ajoute un refus global sur les sites utilisant le module Quantcast Choice

Le règlement général pour la protection des données est entré en vigueur en France il y a quelques mois déjà. Les sites ont commencé à s'adapter, mais...

Virer Zuckerberg et En Vrac - Standblog

En vedette : pourquoi Mark Zuckerberg est-il invirable ? Le New York Times explique pourquoi il va être difficile de virer Mark Zuckerberg de Facebook. Pourtant, les arguments ne

Russian accounts fuel French outrage online | World | The Times

Hundreds of social media accounts linked to Russia have sought to amplify the street protests that have rocked France, according to analysis seen by The Times. The network of accounts has...

Gilets jaunes, Facebook et le populisme - Standblog

Les gilets jaunes manifestent à Avignon par Sébastien Huette — licence CC-BY-NC-ND Ces derniers jours, j’ai parlé de 3 articles passionnants pris séparément. Mais pris ensemble,

Google and Mastercard have a secret pact to track offline purchases

Google wants to know what you buy and Mastercard is here to help.

[CNETFrance] Enceintes connectées et vie privée : des assistants un peu trop à l’écoute – La Quadrature du Net

Votre enceinte connectée, qu’il s’agisse d’Amazon Echo, de Google Home ou du Homepod d’Apple, n’est pas qu’un gentil petit assistant personnel à domicile, mais aussi un espion potentiel. Car ne l’oubliez jamais : ces appareils sont constamment à l’écoute. [...]

Six clichés qui vous empêchent de vous mettre au logiciel libre - Miroir Mag

Six clichés qui vous empêchent de vous mettre au logiciel libre4.9 (98.18%) 11 votes Un article de Nicolas Boeuf Publié le jeudi 23 janvier 2014 à 07h01 sur Miroir Mag Encore Continuer la lecture

Un malware trouvé dans certains appareils Archos, Auchan, ZTE... - Les Numériques

De la pub partout

[Numerama] RGPD : l’UFC-Que Choisir dénonce les stratagèmes des géants du net pour manipuler l’internaute – La Quadrature du Net

L'UFC-Que Choisir se tourne vers la CNIL pour lui signaler les tactiques de Google, Facebook et Microsoft pour orienter l'usager quand il se trouve dans les réglages des paramètres de confidentialité. [...]

Monsanto Paid Internet Trolls to Counter Bad Publicity

New court documents in the Roundup litigation allege Monsanto paid internet trolls to post comments on social media to counter bad publicity. Details here.

No More Google

Privacy-friendly alternatives to Google that don't track you

Facial recognition: It’s time for action - Microsoft on the Issues

In July, we shared our views about the need for government regulation and responsible industry measures to address advancing facial recognition technology. As we discussed, this technology brings important and even exciting societal benefits but also the potential for abuse. We noted the need for broader study and discussion of these issues. In the ensuing...

Facebook accused of striking 'secret deals over user data' - BBC News

More than 200 pages of confidential emails are shared online by Parliament's fake news inquiry.

Social media detox: Christina Farr quits Instagram, Facebook

Christina Farr used to spend 5 hours a week posting and interacting with friends on Instagram. She quit cold this summer, and her life changed dramatically for the better.

Keytap: description and some random thoughts | C++ and stuff

Introduction

kbd-audio/README.md at master · ggerganov/kbd-audio · GitHub

Tools for capturing and analysing keyboard input paired with microphone capture - ggerganov/kbd-audio

Google Shut Out Privacy and Security Teams From Secret China Project

Google executives ignored internal warnings about their censored China search plan and threatened that employees would be fired if they spoke out.

Security flaws let anyone snoop on Guardzilla smart camera video recordings | TechCrunch

A popular smart security system maker has ignored warnings from security researchers that its flagship device has several serious vulnerabilities, including allowing anyone access to the company’s central store of customer-uploaded video recordings. The researchers at 0DayAllDay found that Gu…

Facebook is not equipped to stop the spread of authoritarianism | TechCrunch

Facebook isn't responsible for government decisions to clamp down on free expression. But the question remains: How can companies stop assisting authoritarian governments, inadvertently or otherwise?

THE DATING BROKERS
Adactio: Journal—Browsers

I’m on Team Firefox.

Few people are actually trapped in filter bubbles. Why do they like to say that they are? » Nieman Journalism Lab

Plus: Are your Google results really that different from your neighbor's?

Windows 10 Sends Your Activity History to Microsoft, Even if You Tell It Not To

Windows 10 collects an “Activity History” of applications you launch on your PC and sends it to Microsoft. Even if you disable or clear this, Microsoft’s Privacy Dashboard still shows an “Activity History” of applications you’ve launched on your PCs.

Amazon won't sell Nest products from Google - Business Insider

Amazon won't sell Nest's connected cameras and security products. Meanwhile, it bought the smart home company Ring for $1 billion to compete with Google.

Chronique du Geek : Qui dit libéral dit (logiciel) libre ? | Chroniques d'architecture

Quelle est la différence entre un étudiant en architecture une heure avant son diplôme et un jeune architecte une heure après son inscription à l’Ordre ? Il s’agit du montant que représentent les licences de logiciels. Le logiciel libre présente une véritable alternative.

Google accusé de trahir des patients en prenant le contrôle d’une appli de santé | Slate.fr

Tout ça à cause de Streams, une application utilisée par les médecins anglais. DeepMind, une société d’intelligence artificielle vient de transférer le contrôle de son application de santé, Streams, à Google. Une décision critiquée, car elle va à l’encontre d’une promesse de...

GitHub - vtoubiana/QookieFix: Code for the QookieFix extension

Code for the QookieFix extension. Contribute to vtoubiana/QookieFix development by creating an account on GitHub.

Facebook Emails Show Its Real Mission: Making Money and Crushing Competition - The New York Times

Messages released publicly on Wednesday suggest the idealistic image the company promoted for years was a carefully cultivated smoke screen.

Gilets jaunes: Les autorités enquêtent sur une possible ingérence étrangère | Le Huffington Post

Les services de renseignements français ont lancé des vérifications après la multiplication de faux comptes pro-gilets jaunes sur les réseaux sociaux.

New study: Google manipulates users into constant tracking : Forbrukerrådet
Simulating identification by zip code, gender, birthdate

A widely cited result says that 87% of Americans can be uniquely identified by their zip code, sex & birth date. We do a simulation to show this is plausible.

L'État dévoile la liste des logiciels libres qu'il recommande - Tech - Numerama

Nouvelle année, nouvelle édition des logiciels libres recommandés par les services de l'État. Une liste globalement similaire à celle publiée l'année dernière, mais avec quelques changements.

Contre Google, cherchez encore - Libération

Au regard de la surface financière acquise par Google, l’amende que vient de lui infliger l’Union européenne, pour record qu’elle soit, a tout d’une goutte...

Le Maine-et-Loire trouve une alternative Open Source à Google Maps

Face au changement de politique de Google sur la cartographie, le département de Maine-et-Loire a choisi de faire appel au service d’Openstreet.

De Linux à Windows : une partie de l'Allemagne bascule - ZDNet

Après être passé en 2006 de Solaris à Linux, le land allemand de Basse-Saxe veut à présent migrer 13.000 postes de travail d'OpenSuse vers Windows, vraisemblablement Windows 10. Justification avancée : la standardisation des OS.

Troy Hunt: We're Baking Have I Been Pwned into Firefox and 1Password

Pretty much every day, I get a reminder from someone about how little people know about their exposure in data breaches. Often, it's after someone has searched Have I Been Pwned (HIBP) and found themselves pwned somewhere or other. Frequently, it's some long-forgotten site they haven't even thought about in

bypass-paywalls-firefox/README.md at master · iamadamdev/bypass-paywalls-firefox · GitHub

Bypass Paywalls for Firefox. Contribute to iamadamdev/bypass-paywalls-firefox development by creating an account on GitHub.

Leave Gmail in 10 steps – Adrien Di Pasquale Blog

Mostly blogging about web development and Open Data

Busting a Fake Chrome Extension with ExtraHop Reveal(x) | ExtraHop

A mysterious (and fake) Chrome extension. A clever data exfiltration scheme. They would have gotten away with it, too, if it weren't for those meddling security analysts using ExtraHop Reveal(x)! Follow along as we go from threat detection to response in this real-life threat hunt with network traffic analysis.

Quora Security Update - Quora
Inside Facebook's Hellish Two Years—and Mark Zuckerberg's Struggle to Fix it All | WIRED

How a confused, defensive social media giant steered itself into a disaster, and how Mark Zuckerberg is trying to fix it all.

GitHub - SPRITZ-Research-Group/Skype-Type: Don't Skype & Type! Keyboard acoustic eavesdropping tool.

Don't Skype & Type! Keyboard acoustic eavesdropping tool. - SPRITZ-Research-Group/Skype-Type

13brane.net
Marriott hack hits 500 million Starwood guests - BBC News

The hotel chain says details of up to 500 million guests may have been accessed in a database breach.