Monthly Shaarli

All links of one month in a single page.

July, 2019

[1907.06520] Tracking sex: The implications of widespread sexual data leakage and tracking on porn websites

This paper explores tracking and privacy risks on pornography websites. Our
analysis of 22,484 pornography websites indicated that 93% leak user data to a
third party. Tracking on these sites is highly concentrated by a handful of
major companies, which we identify. We successfully extracted privacy policies
for 3,856 sites, 17% of the total. The policies were written such that one
might need a two-year college education to understand them. Our content
analysis of the sample's domains indicated 44.97% of them expose or suggest a
specific gender/sexual identity or interest likely to be linked to the user. We
identify three core implications of the quantitative results: 1) the
unique/elevated risks of porn data leakage versus other types of data, 2) the
particular risks/impact for vulnerable populations, and 3) the complications of
providing consent for porn site users and the need for affirmative consent in
these online sexual interactions.

Government Technology Policy, Social Value, and National Competitiveness by Frank Nagle :: SSRN

This study seeks to better understand the impact that government technology procurement regulations have on social value and national competitiveness. To do thi

Adding these Chrome and Firefox extensions puts your privacy at risk - The Washington Post
Think FaceApp Is Scary? Wait Till You Hear About Facebook | WIRED

The idea that FaceApp is somehow exceptionally dangerous threatens to obscure the real point: All apps deserve this level of scrutiny.

Google Photo is making your photos semi-public and you probably don’t realise

I’ve noticed something about Google Photos that is weird enough that nobody initially believes it.

listmonk/README.md at master · knadh/listmonk · GitHub

High performance, self-hosted newsletter and mailing list manager with a modern dashboard - knadh/listmonk

Google employees listen to Dutch conversations NOS

Steeds meer Nederlanders gebruiken de slimme Google Home-assistent in huis. Het zou zomaar kunnen dat medewerkers van Google meer horen dan je lief is.

Dear Google, I'm Blocking You From My Website · Bradley Taunt

Breaking down why I have decided to start blocking Google from crawling my website

FBI, ICE find state driver’s license photos are a gold mine for facial-recognition searches - The Washington Post
Facebook’s image outage reveals how the company’s AI tags your photos - The Verge

‘Oh wow, the AI just tagged my profile picture as basic’

They started caching images, but since open tracking pixel URLs are unique (afte... | Hacker News

They started caching images, but since open tracking pixel URLs are unique (after all, that's how they track an individual recipient) and Google only caches the image if you open the mail, essentially you still get tracking. You just don't get to count how many times the email is opened or the length it's opened (a common trick is to leave the connection open to see how long the client keeps the request open).

PixelBlock

PixelBlock is a Gmail extension that blocks people from tracking when you open their emails.

Email Trackers Are Watching Your Inbox. Here's How To Block Them. | HuffPost Life

You can tell who is using email trackers on you, and it's usually unsettling.

Former AWS Worker Is Accused in Cloud Hack of Capital One - Bloomberg

Capital One Financial Corp. said data from about 100 million people in the U.S. was illegally accessed after prosecutors accused a Seattle woman identified by Amazon.com Inc. as one of its former cloud service employees of breaking into the bank’s server.

Adblocking: How About Nah? | Electronic Frontier Foundation

For more than a decade, consumer rights groups (including EFF) worked with technologists and companies to try to standardize Do Not Track, a flag that browsers could send to online companies signaling that their users did not want their browsing activity tracked. Despite long hours and backing from...

Facebook deceived users about the way it used phone numbers, facial recognition, FTC to allege in complaint - The Washington Post
DailyMail Admit To Losing Half Of Their Google Traffic After June 2019 Core Update

Jesus Mendez, the SEO Director at MailOnline, which operators DailyMail.co.uk, has admitted publicly that the site took a massive hit by the June 2019 Google core update which began rolling out June 3

Dropbox silently installs new file manager app on users’ systems [Updated] | Ars Technica

Dropbox ambushes its users with a radically different version of its sync app.

Amazon.com: The Aisles Have Eyes: How Retailers Track Your Shopping, Strip Your Privacy, and Define Your Power (9780300212198): Joseph Turow: Books
IPTC metadata automatically added to uploaded images on Facebook - Stack Overflow

Many images uploaded on Facebook contain IPTC/IIM fields which are apparently automatically added during the upload process:
Special Instruction, a string beginning with "FBMD"
Original Transmiss...

Malicious apps infect 25 million Android devices with 'Agent Smith' malware

Malicious apps from a campaign called "Agent Smith" have been downloaded to 25 million Android devices, according to new research by cyber-security firm Check Point.

More Than 1,000 Android Apps Steal Your Data Without Permission | Tom's Guide

New study reveals scary, sneaky tactics

Two Billion Records Exposed in 'Smart Home' Breach - SecAlerts - Security vulnerabilities in your inbox

Security researchers have found a user database, belonging to a company that operates a smart home device management platform and consisting two billion records,

I Opted Out of Facial Recognition at the Airport—It Wasn't Easy | WIRED

Opinion: We've been assured that facial recognition technology is secure, reliable, and accurate. That's far from certain.

https://www.emailprivacytester.com/
mailhops-plugin/README.md at master · MailHops/mailhops-plugin · GitHub

MailHops Postbox and Thunderbird plugin. Contribute to MailHops/mailhops-plugin development by creating an account on GitHub.

Allow HTML Temp :: Modules pour Thunderbird

This Add-on allows to have HTML temporarily allowed in the currently displayed message by only one click. When switching to another message, it'll be shown automatically again in plain text or simple html mode (if this is your default mode).

Le Sénat impose une sensibilisation des fonctionnaires aux enjeux numériques et aux logiciels libres
Why we should be very scared by the intrusive menace of facial recognition | John Naughton | Opinion | The Guardian

When even Microsoft starts calling for government regulation, you know the technology is a problem

Siri records fights, doctor’s appointments, and sex (and contractors hear it) | Ars Technica

In a new report, Apple takes its turn in the crosshairs over how it reviews user recordings.

Apple bleee. Everyone knows What Happens on Your iPhone – hexway

Users value their privacy, and Apple understands that. We even see related PR activities.

Aaron Greenspan :: Writing :: Mark Zuckerberg's Ponzi Scheme
Google is gathering face data for Pixel 4 by giving people $5 - 9to5Google

Google employees are apparently stopping people in the streets of some major cities in an effort to gather face data, probably as it prepares for Pixel 4.

De-Googled Android Experience | Samuel Walladge

Context

C’est Qwant qu’on va où ? – Framablog
Adding these Chrome and Firefox extensions puts your privacy at risk - The Washington Post
Viral App FaceApp Now Owns Access To More Than 150 Million People's Faces And Names
DuckDuckGo Expands Use of Apple Maps for Enhanced Search With the Same Commitment to Privacy

Earlier this year we announced that we're using Apple's MapKit JS framework to power our mapping features. Today, we're excited to show you some new improvements.

Edin Jusupovic on Twitter: "#facebook is embedding tracking data inside photos you download. I noticed a structural abnormality when looking at a hex dump of an image file from an unknown origin only to discover it contained what I now understand is an IP…
Zoom Zero Day: 4+ Million Webcams & maybe an RCE? Just get them to visit your website!

Vulnerability in the Mac Zoom Client allows any malicious website to enable your camera without your permission. The flaw potentially…

Watchdog group Electronic Frontier Foundation warns people of the dangers of using Slack, the popular work chat app now worth $18 billion

By default, Slack keeps all messages forever. The EFF is calling Slack out on this policy for not putting more control over data in the hands of users.

Real-Time Content and Re-Open Tracking Return to Gmail | Movable Ink Blog
MailHops :: Modules pour Thunderbird

MailHops maps the route an email took to get to you. Displaying the senders location, weather, user-agent and authentication used.

Mail Merge :: Modules pour Thunderbird

Create and Save or Send Multiple Individual and Personalized Messages from a Draft

Superhuman is Spying on You » Mike Industries
Grubhub is using fake websites to drive up commission fees from real businesses - The Verge

Grubhub has been buying up to 23,000 fake domains that resemble real restaurants.