Étiquette : privacy (Page 1 of 45)

23andMe Just Filed for Bankruptcy. You Should Delete Your Data Now

A 23andMe saliva collection kit box.

“Users of the 23andMe test send the company samples of their saliva to learn about their ancestry and possible health risks. Wojcicki said that 85% of the company’s customers also consent to their genetic data being used to research diseases. Unlike with other forms of medical data, few guardrails protect genetic data stored by companies like 23andMe. According to Wirecutter’s guide to home DNA kits, “the vast majority of these companies are not subject to the HIPAA laws governing the privacy of your health and medical records.””

Source : 23andMe Just Filed for Bankruptcy. You Should Delete Your Data Now. | Reviews by Wirecutter

WhatsApp says journalists and civil society members were targets of Israeli spyware

https://i.guim.co.uk/img/media/b2cb95484d41a4fce89684cfe98bcac63fba1476/0_0_2252_1501/master/2252.jpg?width=1900&dpr=2&s=none&crop=none

“Nearly 100 journalists and other members of civil society using WhatsApp, the popular messaging app owned by Meta, were targeted by spyware owned by Paragon Solutions, an Israeli maker of hacking software, the company alleged on Friday.The journalists and other civil society members were being alerted of a possible breach of their devices, with WhatsApp telling the Guardian it had “high confidence” that the 90 users in question had been targeted and “possibly compromised”.It is not clear who was behind the attack. Like other spyware makers, Paragon’s hacking software is used by government clients and WhatsApp said it had not been able to identify the clients who ordered the alleged attacks.Experts said the targeting was a “zero-click” attack, which means targets would not have had to click on any malicious links to be infected.”

Source : WhatsApp says journalists and civil society members were targets of Israeli spyware | WhatsApp | The Guardian

Lawsuit accuses Amazon of secretly tracking consumers through cellphones

Illustration shows Amazon logo

“According to a proposed class action in San Francisco federal court, Amazon obtained « backdoor access » to consumers’ phones by providing tens of thousands of app developers with code known as Amazon Ads SDK to be embedded in their apps. This allegedly enabled Amazon to collect an enormous amount of timestamped geolocation data about where consumers live, work, shop and visit, revealing sensitive information such as religious affiliations, sexual orientations and health concerns. « Amazon has effectively fingerprinted consumers and has correlated a vast amount of personal information about them entirely without consumers’ knowledge and consent, » the complaint said.”

Source : Lawsuit accuses Amazon of secretly tracking consumers through cellphones | Reuters

Wiz Research Uncovers Exposed DeepSeek Database Leaking Sensitive Information, Including Chat History

“As DeepSeek made waves in the AI space, the Wiz Research team set out to assess its external security posture and identify any potential vulnerabilities. Within minutes, we found a publicly accessible ClickHouse database linked to DeepSeek, completely open and unauthenticated, exposing sensitive data. It was hosted at oauth2callback.deepseek.com:9000 and dev.deepseek.com:9000. This database contained a significant volume of chat history, backend data and sensitive information, including log streams, API Secrets, and operational details. ”

Source : Wiz Research Uncovers Exposed DeepSeek Database Leaking Sensitive Information, Including Chat History | Wiz Blog

Subaru Security Flaws Exposed Its System for Tracking Millions of Cars

Location Point Neighborhood Chart and Plot

“Most disturbing for Curry, though, was that they found they could also track the Subaru’s location—not merely where it was at the moment but also where it had been for the entire year that his mother had owned it. The map of the car’s whereabouts was so accurate and detailed, Curry says, that he was able to see her doctor visits, the homes of the friends she visited, even which exact parking space his mother parked in every time she went to church.”

Source : Subaru Security Flaws Exposed Its System for Tracking Millions of Cars | WIRED

US newspapers are deleting old crime stories, offering subjects a ‘clean slate’

 

https://i.guim.co.uk/img/media/f69e89c4525adb819db183d45ed72959d25f0b86/0_0_5760_3840/master/5760.jpg?width=1900&dpr=2&s=none&crop=none

“Civil rights advocates across the US have long fought to free people from their criminal records, with campaigns to expunge old cases and keep people’s past arrests private when they apply for jobs and housing.The efforts are critical, as more than 70 million Americans have prior convictions or arrests – roughly one in three adults. But the policies haven’t addressed one of the most damaging ways past run-ins with police can derail people’s lives: old media coverage. Some newsrooms are working to fill that gap. A handful of local newspapers across the US have in recent years launched programs to review their archives and consider requests to remove names or delete old stories to protect the privacy of subjects involved in minor crimes.”

Source : US newspapers are deleting old crime stories, offering subjects a ‘clean slate’ | US news | The Guardian

Brussels probes Google and Meta secret ads deal to target teens

A montage of a teenager using a phone with the logos of Google and Meta in the background

“During the ad campaign, first revealed in an FT investigation published in August, staff at Google were helping Meta bypass the search company’s policies on how online advertising can be directed to minors. While Google bans ad personalisation for teens, the campaign for Instagram on YouTube deliberately pushed messages to a group of users labelled as “unknown” in its system. Google employees told Meta that it had internal data that showed this group skewed towards under-18s and was a way of “hacking” the audience safeguards in their system.”

Source : Brussels probes Google and Meta secret ads deal to target teens

Données de santé : Clever Cloud et d’autres sociétés saisissent la CEDH – Next

Données de santé : Clever Cloud et d’autres sociétés saisissent la CEDH

“…la pseudonymisation des données et la certification de Microsoft comme HDS (Hébergeur de données de santé), rendant obligatoires les audits réguliers.Insuffisant pour Clever Cloud : « il est de doctrine courante que la pseudonymisation des données n’apporte aucune garantie définitive quant à la protection des données personnelles, encore moins au regard des capacités de traitement des Intelligences Artificielles qui facilitent considérablement la réidentification ».Quant aux audits liés à l’accréditation HDS, ils « n’apportent aucune garantie supplémentaire face à des demandes d’accès extrajuridictionelles émises en particulier par la NSA et dont la spécificité est justement d’être couvertes par le secret ». Clever Cloud note également qu’aucune de ces justifications n’entre dans le cadre du RGPD.”

Source : Données de santé : Clever Cloud et d’autres sociétés saisissent la CEDH – Next

Building a Large Geospatial Model to Achieve Spatial Intelligence

“Niantic’s VPS is built from user scans, taken from different perspectives and at various times of day, at many times during the years, and with positioning information attached, creating a highly detailed understanding of the world. This data is unique because it is taken from a pedestrian perspective and includes places inaccessible to cars.Today we have 10 million scanned locations around the world, and over 1 million of those are activated and available for use with our VPS service. We receive about 1 million fresh scans each week, each containing hundreds of discrete images. ”

Source : Building a Large Geospatial Model to Achieve Spatial Intelligence – Niantic Labs

New intelligent, real-time protections on Android to keep you safe

https://no-flux.beaude.net/wp-content/uploads/2024/11/image12028529.png

“Real-time protection, built with your privacy in mind. Real-time defense, right on your device: Scam Detection uses powerful on-device AI to notify you of a potential scam call happening in real-time by detecting conversation patterns commonly associated with scams. For example, if a caller claims to be from your bank and asks you to urgently transfer funds due to an alleged account breach, Scam Detection will process the call to determine whether the call is likely spam and, if so, can provide an audio and haptic alert and visual warning that the call may be a scam. Private by design, you’re always in control: We’ve built Scam Detection to protect your privacy and ensure you’re always in control of your data. Scam Detection is off by default, and you can decide whether you want to activate it for future calls. At any time, you can turn it off for all calls in the Phone app Settings, or during a particular call. The AI detection model and processing are fully on-device, which means that no conversation audio or transcription is stored on the device, sent to Google servers or anywhere else, or retrievable after the call. Cutting-edge AI protection, now on more Pixel phones: Gemini Nano, our advanced on-device AI model, powers Scam Detection on Pixel 9 series devices. As part of our commitment to bring powerful AI features to even more devices, this AI-powered protection is available to Pixel 6+ users thanks to other robust Google on-device machine learning models.”

Source : Google Online Security Blog: Safer with Google: New intelligent, real-time protections on Android to keep you safe

« Older posts

© 2025 no-Flux

Theme by Anders NorenUp ↑