How Push Notifications Can Betray Your Privacy (and What to Do About It)

A phone’s push notifications can contain a significant amount of information about you, your communications, and what you do throughout the day. And there are myriad ways that law enforcement can access the content or metadata of push notifications. Let’s fix that.

Electronic Frontier Foundation

πŸ’‘ Security isn’t a collective fear - it’s a shared competence βœ…

🎯 π——π—œπ—šπ—œπ—§π—”π—Ÿ π—₯π—œπ—¦π—žπ—¦, 𝗧𝗛π—₯π—˜π—”π—§ π— π—’π——π—˜π—Ÿπ—¦, 𝗔𝗑𝗗 π—˜π— π—£π—”π—§π—›π—¬: 𝗧π—₯π—”π—œπ—‘π—œπ—‘π—šπ—¦ 𝗧𝗛𝗔𝗧 π—˜π— π—£π—’π—ͺπ—˜π—₯ - Łukasz KrΓ³l ✨πŸ”₯

Digital and cyber risks don’t always fit into standard risk assessment models. They use different language, involve complex causes, and depend on interlinked systems.

In this talk, Łukasz KrΓ³l shares how to make digital security feel real, relatable and doable, even for non-technical audiences. He’ll show how to compare digital risks to physical, financial, and legal threats using simple analogies, how to break down the myth of omnipresent surveillance, and how to use storytelling to make threat modelling feel less abstract.

With real examples he’ll prove that empathy, clarity, and simple frameworks can turn fear into action.

Łukasz Król https://pretalx.com/bsidesluxembourg-2026/speaker/NLVVCF/ is a digital security trainer at the ICRC Global Cyber Hub in Luxembourg. He has a background in politics, technology, and international relations. He is particularly interested in digital security pedagogies, selecting secure and sustainable digital tools, and effectively supporting at-risk groups and individuals.

πŸ“… Conference Dates: 6–8 May 2026 | 09:00–18:00
πŸ“ 14, Porte de France, Esch-sur-Alzette, Luxembourg
🎟️ Tickets: https://2026.bsides.lu/tickets/
πŸ“… Schedule: https://pretalx.com/bsidesluxembourg-2026/schedule/

#BSidesLuxembourg #DigitalSecurity #RiskAssessment #CyberTraining #OSINT #HackerLife #SecurityEducation

Another session announcement for BSides Luxembourg!

πŸ’» π—§π—›π—’π—¦π—˜ π—ͺ𝗛𝗒 𝗗𝗒𝗑’𝗧 π—Ÿπ—˜π—”π—₯𝗑 𝗙π—₯𝗒𝗠 π—–π—©π—˜π—¦ 𝗔π—₯π—˜ π——π—’π—’π— π—˜π—— 𝗧𝗒 π—₯π—˜π——π—œπ—¦π—–π—’π—©π—˜π—₯ π—§π—›π—˜π—  - Louis Nyffenegger (@snyff ) πŸ’₯

Real vulnerabilities don’t appear in isolation, they’re rooted in code, context, and human error. This session walks through actual CVEs, analyzing the code where they were introduced. You will see the patterns, assumptions, and language quirks that led to the flaw - not just the exploit, but the moment it could’ve been caught.

Louis Nyffenegger https://bsky.app/profile/snyff.pentesterlab.com is the founder of PentesterLab and AppSecSchool, application security expert, and hands-on trainer with experience at the National Bank of Australia, Australia Post, and Fitbit.

πŸ“… Conference Dates: 6–8 May 2026 | 09:00–18:00
πŸ“ 14, Porte de France, Esch-sur-Alzette, Luxembourg
🎟️ Tickets: https://2026.bsides.lu/tickets/
πŸ“… Schedule Link: https://pretalx.com/bsidesluxembourg-2026/schedule/

#BSidesLuxembourg #CVE #CodeReview #SecureCoding #PenTest #SecurityEducation #DevSecOps

So, You’ve Hit an Age Gate. What Now?

EFF is against age gating and age verification mandates, and we hope we’ll win in getting existing ones overturned and new ones prevented. But mandates are already in effect, and every day many people are asked to verify their age across the web, despite prominent cases of sensitive data getting leaked in the process.

Electronic Frontier Foundation
Surveillance Self-Defense: 2025 Year in Review

Our Surveillance Self-Defense (SSD) guides, which provide practical advice and explainers for how to deal with government and corporate surveillance, had a big year. We published several large updates to existing guides and released three all new guides. And with frequent massive protests across the U.S., our guide to attending a protest remained one of the most popular guides of the year, so we made sure our translations were up to date.

Electronic Frontier Foundation
Podcast Episode: Finding the Joy in Digital Security

Many people approach digital security training with furrowed brows, as an obstacle to overcome. But what if learning to keep your tech safe and secure was consistently playful and fun? People react better to learning, and retain more knowledge, when they're having a good time. It doesn’t mean the...

Electronic Frontier Foundation
Infostealers Crash Course: A Tradecraft Tuesday Recap | Huntress

Cybercriminals are sitting on a pile of stolen credentials, financial information, and sensitive data, thanks to the success of infostealers. Read more to learn how infostealers have grown to become a scourge to defenders, and how businesses can protect themselves.

What is Social Engineering? at Engineers Heaven Q & A

A Scope of Work and Definition along with its Brief History. ,

Engineers Heaven
Google’s Advanced Protection Arrives on Android: Should You Use It?

With this week’s release of Android 16, Google added a new security feature to Android, called Advanced Protection. At-risk peopleβ€”like journalists, activists, or politiciansβ€”should consider turning it on. Here’s what it does, and how to decide if it’s a good fit for your security needs.To get some...

Electronic Frontier Foundation

How Signal, WhatsApp, Apple, and Google Handle Encrypted Chat Backups

https://www.eff.org/deeplinks/2025/05/back-it-back-it-let-us-begin-explain-encrypted-chat-backups

#End-to-EndEncryption #SecurityEducation

How Signal, WhatsApp, Apple, and Google Handle Encrypted Chat Backups

Encrypted chat apps like Signal and WhatsApp are one of the best ways to keep your digital conversations as private as possible. But if you’re not careful with how those conversations are backed up, you can accidentally undermine your privacy. When a conversation is properly encrypted end-to-end,...

Electronic Frontier Foundation