snac.daltux.net is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.
This server runs the snac software and there is no automatic sign-up process.
Who gets to decide how your data is used, especially when you never gave informed consent?
Aram Sinnreich & Jesse Gilbert explore the ethical gray areas of data use, from facial recognition to unseen algorithmic decisions, in THE SECRET LIFE OF DATA on the Future Knowledge #podcast, in conversation with Laura DeNardis.
🎧 Listen & subscribe ⬇️
https://futureknowledge.transistor.fm/episodes/the-secret-life-of-data
#Microsoft locks account that #VeraCrypt maintainer uses to sign #Windows bootloaders with no explanation or route for appeal. If they don't fix this, in a few months every Windows computer that uses VeraCrypt whole-disk encryption will stop being able to boot and all the data on it that isn't backed up elsewhere will be lost. 🤦
If this doesn't convince you big tech has too much control, I don't know what will.
h/t @zackwhittaker
https://techcrunch.com/2026/04/08/veracrypt-encryption-software-windows-microsoft-lock-boot-issues/
#infosec #privacy #TechIsShitDispatch
If a human right is in the way of your "innovative" technology, the expected solution should be to modify your technology to respect this human right, not to reduce the protections to this human right.
Technology and innovation must be in service of humanity, not the other way around.
🆕 blog! “Did WordPress VIP leak my phone number?”
As discussed in my last blog post, the scumsuckers at Apollo.io have been giving out my personal details.
Not only did they have my email address, they also had a copy of one of my phone numbers. I asked them where they got it from and they said:
Your phone number came from Parsely, Inc (wpvip.com) one of…
👀 Read more: https://shkspr.mobi/blog/2026/04/did-wordpress-vip-leak-my-phone-number/
⸻
#automattic #gdpr #privacy #WordPress
Wow, that is terrifying. Basically, through #wifi, we have surrendered any semblance of #privacy whatsoever.
While there are valid use cases for this, it's basically unrestricted at this point. What law enforcement and first responders can use in case of legitimate threats, so can criminals for nefarious behavior.
There are a plethora of #ethical red flags here as #legislation usually trails behind new #tech by years if not decades.
This needs to concern #everyone.
#Tails 7.6.1 is out now with #Tor Browser 15.0.9, Tor 0.4.9.6, #Thunderbird 140.9.0, and updated firmware packages https://tails.net/news/version_7.6.1/
👀 Check out #privacy news from @thenewoil
“# Apple Expands # AgeVerification to # Singapore & # SouthKorea https:// reclaimthenet.org/apple-expand s-age-verification-to-singapore-south-korea # privacy # cybersecurity”
https://mastodon.thenewoil.org/@thenewoil/116358355376919981
🤖 via RSS feed. Not an endorsement.
📢 Il convegno nazionale DevConf ti aspetta!
Nelle giornate del 7 e 8 Luglio, Pavia si trasformerà nella città della Scienza con l'evento biennale Dev Conference Italia.
Saranno due giornate in cui si parlerà di tanti temi, ma potrete visionare il programma completo qui https://devconf.it/2026/programma.html
Abbiamo attivato per i relatori ma anche per il pubblico alcune convenzioni visibili qui https://devconf.it/2026/
L'evento è aperto a tutti e l'ingresso è gratuito previa registrazione al link di seguito. I posti a sedere sono limitati.
https://pretix.eu/BoostMediaAPS/devconf2026/
#devconf #devconfita #opensource #freesoftware #fediverso #sicurezzadigitale #sicurezzainformatica #privacy #freedom #sovranitadigitale #sovranitatecnologica #boostmedia #ufficiozero #scuola
[copypasta]
California AB 2047: The End of Open Source 3D Printing
California just introduced a bill that doesn't just regulate "ghost guns", it mandates a digital kill switch for every 3D printer sold. California AB 2047 requires "blocking technology" that connects your printer to a government-approved database before every single print. If the system goes down, or your file is flagged, your hardware becomes a paperweight.
This isn't just about firearms. This is the death of Open Source. If this bill passes, it effectively bans Marlin, Klipper, and Orca Slicer, forcing every manufacturer to lock down their firmware. It turns general-purpose computing into a walled garden where you only rent permission to use the hardware you own.
[/copypasta]
#OpenSource #RightToRepair #Privacy #Clippy #California #Monopolies #3dPrinters #3dPrinting #Technology #Government #Firearms #Guns #SoftwareFreedom #Surveillance #Panopticon #Lobbyists
All the donor-funded foundations ought to be fighting against and speaking out against this Orwellian garbage.
@eff@mastodon.social
@fsf@hostux.social
@linuxfoundation@social.lfx.dev
@privacyint@mastodon.xyz
@openssf@social.lfx.dev
@rms@mastodon.xyz
@CCIAnet@techpolicy.social
@WriterOfMinds@sigmoid.social
@SeaGL@mastodon.social
@hopeconf@mastodon.online
@w3c@w3c.social
@ACM@mastodon.acm.org
@irtf@discuss.systems
@osi@opensource.org
I created a Linux/BSD age attestation/verification tracker, to map out which distros are safe from that crap, which should be avoided.
https://odysee.com/@fossery-tech:4/Linux-BSD-age-attestation-verification-tracker:7e0569c608
(The list is a bit long, couldn't post it here)
If you know about the stance of any other OS I didn't list there, feel free to drop a comment. Other suggestions to improve the list are also welcome.
#Linux #BSD #AgeVerification #AgeAttestation #FosseryTech #Privacy
🧐 Headlines in #privacy from @thenewoil
“# Axios # npm hack used fake # Teams error fix to hijack maintainer account https://www. bleepingcomputer.com/news/secu rity/axios-npm-hack-used-fake-teams-error-fix-to-hijack-maintainer-account/ # cyber...”
https://mastodon.thenewoil.org/@thenewoil/116358119620709465
🤖 via RSS feed. Not an endorsement.
don't just be one of the crowd, stand out, join #ArcaneChat
#privacy #security #decentralization #openSource #resilience #sovereignty #autonomy #diday #digitalindependence
The Document Foundation expelled 30+ LibreOffice developers, many from Collabora Productivity, citing unclear legal conflicts despite major code contributions. ⚖️
Collabora plans a fork, raising risks to stability and governance transparency, as FOSS sustainability and user control depend on open stewardship. 🔐
🔗 https://byteiota.com/libreoffice-ejects-30-core-developers-fork-imminent/
#TechNews #LibreOffice #Office #OpenSource #FOSS #Collabora #Linux #Governance #Transparency #Privacy #Security #Software #Freedom #Developers #Tech #Europe #EU
Have you had your identity verified on LinkedIn to get the blue tick? If so, I’m afraid I have to tell you that your passport, ID and biometric data are now stored with ‘Persona Identities’, a company funded by Peter Thiel, which has already been cross-referenced with numerous US government databases. This data is shared with any US authorities at their discretion.
https://thelocalstack.eu/posts/linkedin-identity-verification-privacy/
#LinkedIn #Privacy
Wisconsinites Can Keep Watching #Porn After Governor Vetoes #AgeVerification Bill
Evers wrote that the bill doesn’t prevent platforms from giving collected personal data to third parties, such as the government or #dataBrokers. “This is a violation of personal privacy,” he wrote.
#privacy #pii #security #wisconsin #veto
https://www.404media.co/wisconsin-age-verification-bill-vetoed/
It has been a busy winter so far for me, which is why I haven't been posting a lot here. But today I'm proud to share with you the fruits of some of that labor: The Colorado Democratic Party's platform for 2026. For those unfamiliar, a platform (in the US) is a statement of values that a political party stands for, generally agreed upon by people who stand for election as representatives of the party.
I was elected during last year's party re-org to the Platform Committee. The chair of the committee asked if I would run the subcommittees for two of the "planks" (sections) of the platform: the Democracy section, and the New Tech & AI section. It was an honor to work on both.
I'm going to share screenshots from the New Tech & AI plank because it's relevant to the work I do here, and I think a lot of people might be interested to see this statement of values. This plank is brand new, never before covered in prior Platform documents.
I'm also pleased to report that the whole of the Platform Committee and the roughly 1500 delegates to last weekend's statewide party Assembly voted to approve this as-is, with no additional changes, on a vote of 98.9% in favor.
There's a lot to like, but my favorite aspect of this is that I managed to get widespread approval for use of the term #enshittification in the official platform, both from the Platform committee and the larger party leadership. Thanks @pluralistic for the inspiration. (I believe this is the first time the term has been used in any official political party platform ever.)
The full platform is readable at https://www.coloradodems.org/platform
#AI #datasovereignty #privacy #infosec #techequity #R2R #RightToRepair #politics #COpolitics #Boulder #Colorado #Democracy #democrats
Like all good nerds, I generate a unique email address for every service I sign up to. This has several advantages - it allows me to see if a message is legitimately from a service, if a service is hacked the hackers can't go credential stuffing, and I instantly know who leaked my address.
A few weeks ago I signed up for BrowserStack as I wanted to join their Open Source programme. I had a few emails back-and-forth with their support team and finally got set up.
A couple of days later I received an email to that email address from someone other than BrowserStack. After a brief discussion, the emailer told me they got my details from Apollo.io.
Naturally, I reached out to Apollo to ask them where they got my details from.
They replied:
Your email address was derived using our proprietary algorithm that leverages publicly accessible information combined with typical corporate email structures (e.g., firstname.lastname@companydomain.com).
Wow! A proprietary algorithm, eh? I wonder how much AI it takes to work out "firstname.lastname"????
Obviously, their response was inaccurate. There's no way their magical if-else statement could have derived the specific email I'd used with BrowserStack. I called them out on their bullshit and they replied with:
Your email address came from BrowserStack (browserstack.com) one of our customers who participates in our customer contributor network by sharing their business contacts with the Apollo platform.
The date of collection is 2026-02-25.
So I emailed BrowserStack a simple "Hey guys, what the fuck?"
I love their cheery little "No spam, we promise!"
Despite multiple attempts to contact them, BrowserStack never replied.
Given that this email address was only used with one company, I think there are a few likely possibilities for how Apollo got it.
There are other, more nefarious, explanations - but I consider that to be unlikely. I suspect it is just the normalisation of the shabby trade in personal information undertaken by entities with no respect for privacy.
But, it turns out, it gets worse. My next blog post reveals how Apollo got my phone number from from a very big company.
Be seeing you 👌
#gdpr #privacyThe Volla tablet testing unit has arrived from our friends at @volla ! Looking forward to developing #MyGNUHealth for a European, independent, privacy oriented, libre operating mobile operating system.
#privacy #freedom #gnu #GNUHealth #OpenScience
🔥 NHS staff resist using Palantir software
「 described Palantir as "ethically bankrupt" in justifying his refusal to use the software, and noted that he knows of coworkers who deliberately slow their work pace when forced to use the system. Another noted that the system actually "doesn't do anything new for us," and said they prefer to work around it, but that they also feel a tinge of ethical guilt whenever they have to use it 」
https://www.theregister.com/2026/04/03/nhs_staff_against_palantir/
*sigh*
Looks like Android is stripping GPS EXIF from photos whenever they're shared.
Affects QuickShare / Bluetooth - https://issuetracker.google.com/issues/485307531
And the web photo picker - https://issuetracker.google.com/issues/40287342
Basically the only way to get geolocation is using USB transfer.
Like, I get the privacy aspect, but it is so annoying to explain to users of @openbenches that they can't upload via the mobile website any more.
RE: https://mastodon.thenewoil.org/@thenewoil/116357294049745826
The accusation is much scarier as it taps into corporate espionage and mass surveillance.
Microsoft is accused of illegally searching browser extension whenever a user sign in into LinkedIn. It scans for any signs of use of religious belief, political orientation, as well as disabilities of individuals. There is also the accusation of the data being handed over to Israeli spyware firm.
"This is illegal and potentially a criminal offense in every jurisdiction we have examined."
#microsoft #tech #cybersecurity #privacy
Zijn er vragen of zorgen die jij hebt over je #privacy op internet? Of hoe je weg kunt komen bij Big Tech? Of hoe je een eigen domein registreert? Dingen die je graag wil weten, maar niet weet waar te beginnen of hoe aan te pakken.
Ik ga aankomende maanden meer blogartikelen uitwerken en een kleine moeite om meteen wat vraagstukken te verwerken 😉
Volgende maand (eerste zondag) is het weer #doeidag, dus wellicht ook meteen een kans wat mooie dingen te combineren (ik beschrijf, jij past toe) 💪
##Threema kostenlos?
Ja, das gibt es zu #Ostern beim jährlichen Osterrätsel!
Jeder der mitmacht bekommt 3 Threema Lizenzen zum weiterverschenken - die gehen auch für das googlefreie #ThreemaLibre
Hin zu #Europa und weg von US #Messenger wie #Signal oder gar #Whatsapp !!!
UnPlugBigTech #UnPlugTrump #GoEurope #Diday #Dutgemacht #Didit #Datenschutz #Privatsphäre #Privacy #Sicherheit #Demokratie #FckAfD #TechFaschismus
Two new Proton launches that might interest you.
Threema gibt es kostenlos nur am OstersSonntag & OsterMontag.
Threema veranstaltet jedes Jahr ein Osterrätsel.
Jeder Threema User der daran teilnimmt bekommt 3 Gratis Lizenzen für die ThreemaApp geschenkt. Aktueller Wert: knapp 20 Euro.
Threema tarnt diese Verschenekaktion als Gewinnspiel, tatsächlich aber bekommt JEDER Threema-User, der daran teilnimmt die 3 Lizenzen als "Trostpreis"- wahrscheinlich der sicherste Trostpreis den man jemals bekommen hat.
Die kann man dann prima an Freunde, Bekannte, Nachbarn & Co. verschenken.
Wenn Du aktuell selber kein Threema hast, es aber gerne haben willst, dann bitte jemanden von Deinen Freunden für Dich am Osterrätsel teilzunehmen.
Und so könnt Ihr ganz ganz viele Lizenzen bekommmen....
#Whatsapp #Signal #Telegram #Matrix #Element #Diday #Didit #DUTgemacht #Whatsabschalten #Datenschutz #Privacy #Privatspäre #Messenger #Werbung #FckAfD #Threema #ThreemaApp #ThreemaLibre #FediLZ #ThreemaWork #SignalApp
🆕 blog! “Someone at BrowserStack is Leaking Users' Email Address”
Like all good nerds, I generate a unique email address for every service I sign up to. This has several advantages - it allows me to see if a message is legitimately from a service, if a service is hacked the hackers can't go credential stuffing, and I instantly know who leaked my address.
A few…
👀 Read more: https://shkspr.mobi/blog/2026/04/someone-at-browserstack-is-leaking-users-email-address/
⸻
#gdpr #privacy
Interesting read. I have been decoupling from Google, and Proton has the throwaway email addresses I haven't tried. Yet.
So do other email providers.
Worth looking into.
LinkedIn is secretly scanning your browser for 6,000 extensions, and you weren’t told - https://thenextweb.com/news/linkedin-browsergate-extension-scanning-privacy-fingerprint bad #linkedin #privacy #surveillance
Ohne Google/Apple = Keine EUDI-Wallet
Die Wallet soll EU-Bürger*innen unabhängiger machen - doch sie vertraut blind den gleichen Tech-Giganten, die wir mit DMA & Datenschutzklagen bekämpfen.
Die Wallet prüft via Play Integrity (Android) & App Attest (iOS), ob euer Gerät sicher ist. Gerootet/Jailbroken? Kein Zugang. Veraltete Sicherheitsupdates? Blockiert.
Wie souverän ist eine digitale ID, wenn zwei US-Konzerne über ihre Nutzung bestimmen? Und was passiert, wenn Google/Apple die Attestierung einfach abschalten? Oder meinen Account sperren? Ich soll doch in der EUDI-Wallet zukünftig alles vom Personalausweis bis zum Mietvertrag speichern, wenn ich das recht verstanden habe.
via HackerNews
As someone in infosec, how do you handle your personal email?
I got tired of Gmail reading everything, so I built a self-hosted
alternative with:
- X25519 + AES-256-GCM encryption
- Postfix/Dovecot on a French VPS
- SPF/DKIM/DMARC + fail2ban
- An AI cockpit that classifies urgent vs noise
Curious what setups other infosec people use. ProtonMail?
Self-hosted? Something else?
#infosec #email #privacy #selfhosted #encryption
RE: https://techhub.social/@rayckeith/116338182555614323
#Perplexity's “Incognito” mode still shares your chats, email, and identifiers with Meta/Google. It’s surveillance with better branding.
#Privacy #AI #DigitalRights #PrivacyRights #TechAccountability
"EU ready to cave to Trump on tech" https://pluralistic.net/2026/04/04/digital-subjugation/#greenlands-next (@pluralistic)
I can't say this often enough these days: Our dependence on US-controlled tech (AWS, Microsoft, Google, Apple, Meta), at all levels of society, is a massive security risk and a tool of coercion that must be addressed urgently. #Privacy #Security #DigitalFreedom #ThinkOpen
@neil Haha reminds me of that time in 2007 when the NHS Medical Training Application Service, the entity with the monopoly on doctors applying for specialty training jobs, openly published online personal details, including telephone numbers and sexual orientation, of applicants. I'm given to understand that the firm to whom the job had been contracted was er... rewarded with more government contracts.
Which is to say, even an account with a second party has a significant possibility of getting contracted out to a third party. Argh!
#medicine #privacy #infoSec #NHS #juniorDoctors #medmastodon #cyberSecurity #healthcare
while you chat happily without interruptions, this is what happens in the arcanechat.me servers! oh no!!! 😱 does anyone has a spare umbrella? ☔
#ArcaneChat #privacy #decentralization #security #humor #meme #joke #selfhosting #sysadmin #server #opensource #autonomy #digitalindependence #sovereignty
👀 Check out #privacy news from @thenewoil
“New # CrystalRAT # malware adds # RAT , stealer and # prankware features https://www. bleepingcomputer.com/news/secu rity/new-crystalrat-malware-adds-rat-stealer-and-prankware-features/ # cybersecurit...”
https://mastodon.thenewoil.org/@thenewoil/116340188970552172
🤖 via RSS feed. Not an endorsement.
📢 Il programma della prima edizione del DevConf è stato definito!
Tanti talk su:
❤️ applicazioni Open Source
❤️ sicurezza informatica
❤️ sovranità digitale
❤️ fediverso
🚩 Il convegno si svolgerà il 7 e 8 Luglio presso il Learning Space Cravino in Via Agostino Bassi 2 a Pavia.
Di seguito il link al portale di riferimento per l'edizione 2026.
Che aspetti, prenota il tuo ingresso gratuito.
Vi aspettiamo numerosi!
#devconf #devconfita #opensource #freesoftware #sovranitadigitale #libertadigitale #scuolaopensource #fediverso #sicurezzainformatica #sicurezzadigitale #privacy #fedimeteo
Hi Mastodon! I'm Pascal and new to Mastodon. I'm a computer engineer and a researcher in operations research. I'm a (fairly) strong advocate for #openSource and #openScience. I'm interested in many topics but mostly #sustainability #privacy #lowtech #epistemology.
I'm a bit of a #typesetting nerd, so I #LaTeX (or #TeX), and #Typst. I maintain two Typst packages: glossarium and algorithmic.
I have some free time before my next work contract starts, so I have been slowly going through my personal projects backlog...
Looking forward to meet people here!
⚖️ Looking for an exciting path into litigation, #IT #law and digital rights? We’ve got you covered! We are seeking bright new people to support our work for #privacy and #GDPR enforcement from November 2026 onwards. 📆
❗ You are interested and hold a law degree from an EEA university? 🇪🇺 Apply now! https://noyb.eu/en/traineeship
I wish you a happy Easter on LinkedIn — Damn it!!?
«LinkedIn secretly injects code to spy on your browser:
LinkedIn may have been spying on you, an investigation reveals, calling it “the largest corporate espionage and data breach scandals in digital history.”»
🤦 https://cybernews.com/privacy/linkedin-surveillance-browsergate/
#linkedin #spyware #internet #spy #web #privacy #investigation #espionage #code #injection #databreach #spying #scandal #microsoft #explorer #webbrowser #browser
🔐 #Privacy news & updates from @privacyguides:
“🚨 This Week In Privacy #47 will be live in 30 minutes, we'll be talking about
Claude Code leaking it's own source code 💀, and the latest in the privacy & security space! 🔒 Come watch live! 👋 https:// streamyard...”
https://mastodon.neat.computer/@privacyguides/116342666832469124
🤖 via RSS feed. May not reflect our views.
Okay, so comsec folks, I have two questions:
1) How does this compare security-wise with Jitsi's protocols?
2) Have we heard anything more about the politics of this one since that one red-flag event a year or two ago?
(I'm thinking immediately of @cyberlyra and @hen but there are many others who may have insights)
Just like many other social media corporations #Reddit is planning to require biometric / ID verification* of some users.
To get ahead of this, I have prepared an alternative for everyone :)
🎉 ...and just launched our rapidly growing #DeMeta Reddit community on a journey into the #Fediverse!
People can now also DeMeta on #Lemmy:
#Privacy #News #Happy #SocialMedia #celebration #Meta #Facebook #Instagram #MetaAI #Threads #Announcement #verification #Internet
varias personas en #Cuba reportan que de repente no tienen acceso a su #WhatsApp
no se para que la gente sobre todo los cubanos usan WhatsApp, los de WhatsApp se la pasan secuestrandote el chat y bloqueandote acceso hasta que actualices y cosas asi, de la nada, y ahora esto, de repente pierdes acceso total a todos tus chats y mensajes mandados de la noche a la mañana
porque una cosa es que no te deje mandar mensajes más y no se conecte más y otra que completamente te tome la lista de chats y mensajes y no te deje leerlos, no se dan cuenta que no tienen control alguno sobre sus propios mensajes??? mientras tanto en Delta Chat tú eres el dueño de tu información y nadie puede privarte de acceso a tus mensajes, puedes irte a vivir offline a una cueva y vas a poder seguir leyendo tus mensajes
tus mensajes viven en tu bolsillo, no en "la nube" de un monopolio mal intencionado
#DeltaChat #decentralization #decentralized #privacy #autonomy #digitalindependence #opensource #security #sovereignty #soveranía #independecia #independenciadigital #privacidad #autonomia #softwarelibre #descentralizacion
We've signed an open letter by @fightforthefuture.org calling on Meta to keep encryption on Instagram available. 🔒
Why? Lots of activists use social media - and in times like these they need #privacy more than ever!
If Meta does not change its mind, your DMs will be open starting on May 8! 💡 Switch to #Instagram alternatives now: https://tuta.com/blog/instagram-alternative
👉Sign as well: https://www.fightforthefuture.org/actions/meta-promised-safe-dms-but-is-selling-us-out/
Interesting bit of news currently making headlines:
So now we know the specific type of illegal cyberweapon ICE uses to violate #privacy. A bit of digging revealed some capabilities and an interesting forensic analysis by Canadian human rights organization The Citizen Lab:
- https://citizenlab.ca/research/a-first-look-at-paragons-proliferating-spyware-operations/
The mitigation strategies are expensive. Upgrading to an iPhone 17 and enabling lockdown mode or switching to #grapheneos still appear to be the most effective approach.
OkCupid gave 3 million dating-app photos to facial recognition firm, FTC says - Ars Technica
OkCupid and Match settle with Trump FTC, don’t have to pay any financial penalty.
Archive: ia: https://s.faithcollapsing.com/0kxk1
#privacy
https://arstechnica.com/tech-policy/2026/03/okcupid-match-pay-no-fine-for-sharing-user-photos-with-facial-recognition-firm/
Indeed. As I said, and at the risk of being overly-cynical, it's all about the money. But deAmericanizing one's tech stack is a sound plan, regardless. #resiliency #autonomy #privacy
The BrowserGate folks have provided an evidence pack, proving the scraping of data from your computer.
This includes a sworn affidavit by LinkedIn’s Senior Manager of Software Engineering and Machine Learning, Milinda Lakkam. It’s an admission of guilt. Under oath.
https://browsergate.eu/the-evidence-pack/
🧵 2/2
#BrowserGate #LinkedIn #InfoSec #OpSec #Privacy #Crime #YouAreTheProduct #Microsoft