Monthly Shaarli
February, 2020
The current insecure DNS system leaves billions of people around the world vulnerable because the data about where they go on the internet is unencrypted. We’ve set out to change ...
The move is part of EU’s efforts to beef up cybersecurity, after several high-profile incidents shocked diplomats and officials.
It's not a bug, it's a feature, explains the Chocolate Factory
The reasoning behind the switch is two-fold. South Korea was looking to reduce its reliance on Microsoft and Windows and cut down on software licensing costs.
Your online privacy resource center
Countries focus on increasingly effective encryption of communications
The encryption app is putting a $50 million infusion from WhatsApp cofounder Brian Acton to good use, building out features to help it go mainstream.
New Microsoft Edge now displayed on Windows 10
'I've seen many breaches in my life, but I've never seen such a ridiculous breach like this that did this much damage,' says senior programmer.
It's not finished, but many of the basics for an open source smartphone are here.
One of the less-considered side effects of car features moving from hardware to software is that important features and abilities of a car can now be removed without any actual contact with a given car. Where once de-contenting involved at least a screwdriver (or, if you were in a hurry, a hammer), now thousands of dollars of options can vanish with the click of a mouse somewhere. And that’s exactly what happened to one Tesla owner, and, it seems many others.
Goedenavond TAG! This is not your typical spec review, and is highly related to #320. But, because @torgo asked nicely, I'm opening up a review for a specific application of UA-CH as a replacem...
OpenSnitch is a GNU/Linux port of the Little Snitch application firewall - evilsocket/opensnitch
Telling whether the product that arrived in your Amazon box is what you meant to order can be puzzling. Can you guess which ones of these are the imposters?
We know our digital devices are logging our every move, yet we still trust in Apple, Facebook and Android. What if we "unGoogled" ourselves and took back control of our data? Two startups hope we will do just that.
Tech from NEC aimed at spotting wanted persons on the streets to alert officers.
Facebook Dating was always doomed to be as dystopian and inhumane as a speech from Mark “I’m not a robot, I swear it” Zuckerberg, but who could have guessed that the company would consider cheating and hookup sites its direct competition. The creators of an app called #Open recently started a petition demanding Facebook stop its …
Dear PrivacyTools community,
On the 15th of October, it was brought to our attention that Startpage.com was
reportedly (partially?) taken over
[https://www.reddit.com/r/privacy/comments/di5rn3/startpage_is_now_owned_by_an_advertising_company/]
by a company called the Privacy One Group, which is in turn owned by a company
called System1. We found this quite remarkable as the two companies seem to have
conflicting business models. Startpage has been known for basing their
advertisements on what
The company’s new one-tap star rating feature seeks to get more customer feedback ... from actual customers.
Push messages are an essential part of connected mobile devices. They are also one of the critical missing pieces in the open source Android ecosystem. Until...
The Multi-Account Containers Add-on will now sync your container configuration and site assignments. Firefox Multi-Account Containers allows users to separate their online identities into different ...
Watching you watch: the tracking ecosystem of over-the-top TV streaming devices, Moghaddam et al., CCS’19 The results from this paper are all too predictable: channels on Over-The-Top (OTT) s…
A year later. Getting by without a SIM card in my smartphone.
Phoronix is the leading technology website for Linux hardware reviews, open-source news, Linux benchmarks, open-source benchmarks, and computer hardware tests.
So, you own or are thinking of buying a Ring camera. This post outlines a list of privacy and civil liberties concerns we have with Amazon’s Ring system so that you can be a more informed consumer, or—if you already own a Ring camera—be a more considerate neighbor. If You’re Thinking of Buying...
Chrome is trying to lure Edge users away from the Microsoft browser by issuing provocative messages on their platforms.
From now on uBO will CNAME-uncloak network requests. CNAME-uncloaked network requests will appear as blue entries in the popup panel and the logger. The uncloaked entries in the popup panel will also show the related aliases (in smaller characters underneath the canonical names):
Microsoft doesn’t want users to set up with a local account, it would seem – and less choice is never a good thing.
OPNION. Pour cette nouvelle décennie, notre chroniqueur Frédéric Koller a procédé à un suicide numérique en guise de bonne résolution
Microphones and cameras lurk everywhere. You may want to slip on some privacy armor.
© 2010-2019 F-Droid Limited and Contributors
A reminder, because this sometimes surprises people, and feel free to correct me if the facts have changed recently:
Telegram supports end-to-end encryption only in 1:1 private chats.
End-to-end encryption is disabled by default.
Telegram does not support end-to-end encryption, at all for group chats, its most popular use case.
Instead, Telegram claims that those group chats are "encrypted" by dint of the TLS connection between Telegram clients and the Telegram servers, which can, in this model, read all group traffic.
People like to dunk on the weirdness of the limited E2E crypto Telegram does have; it's archaic and idiosyncratic and people have published research results about it, though none to my understanding are of real practical impact. I support people dunking on bad crypto. But that has nothing to do with why Telegram is an inferior secure messenger.
By comparison, Signal, which Durov has repeatedly talked down:
-
has modern, ratchet-based forward secure end-to-end crypto, always, in both group and private messaging;
-
won the Levchin Prize, refereed by some of best-known names in academic cryptography, for the design and implementation of that cryptosystem, as well as for its implementation at WhatsApp;
-
ha repeatedly foregone basic messaging app features simply to avoid collecting user metadata; Signal didn't even have user profiles until they could figure out a way to implement it in a privacy-preserving manner, and even their GIF sharing feature has a purpose-built anonymity system; we'll only this year potentially get usernames instead of phone numbers because it took that long to design a trustworthy social graph that didn't leave Signal with a giant pile of subpoenable metadata.
Use whatever messaging app you want.
I have a Wacom drawing tablet. I use it to draw cover illustrations for my blog posts, such as this one.
Critical Security Flaw Found in WhatsApp Desktop Platform Allowing Cybercriminals Read From The File System Access