#C4DT_EPFL #WeeklyPicks Google startete schon im 2010 ein 'Vulnerability Reward Program', ein Bug-Bounty für alle Services von Google, das Belohnungen auszahlt, alleine 17 Millionen US-$ im 2025. Diese Prämie wurde über mehr als 700 Analysten verteilt, die Fehler fanden in Android, der Google Cloud, aber auch in verbreiteten und häufig gebrauchten Open Source Programmen und Bibliotheken.

https://www.heise.de/news/Google-17-1-Millionen-US-Dollar-im-Bug-Bounty-Programm-2025-ausgezahlt-11211996.html

Google: 17,1 Millionen US-Dollar im Bug-Bounty-Programm 2025 ausgezahlt

Google hat beim Bug-Bounty-Programm „VRP“ im Jahr 2025 mehr als 17 Millionen US-Dollar Belohnung an IT-Forscher ausgezahlt.

heise online
Having a blast at the EPFL Industry Day, stuck «inside » the deepfake exhibit of the Centre for Digital Trust #c4dt_epfl

#WeeklyPick #C4DT_EPFL #EPFL #digiges #SocNum @digiges

Un sujet qui m'inquiète en tant que supporteur des logiciels libres et de la souveraineté qui les accompagne: Google veut fermeture sa plate-forme Android pour toute application qui n'est pas signé par un développeur agréé par Google. Le sujet fait débat surtout en Europe, où Apple a dû ouvrir ses iPhones aux applications étrangères.

https://www.societe-numerique.ch/2026/02/26/menace-sur-android-google-veut-verrouiller-nos-telephones-android-va-devenir-une-plateforme-fermee/

Menace sur Android: Google veut verrouiller nos téléphones

En verouillant l’accès aux applications, Google cherche à transformer Android, historiquement ouvert, en une plateforme sous contrôle strict, tout en renforçant encore davantage un pouvoir déjà excessif. Cette dérive met en péril le logiciel libre, les alternatives indépendantes et les libertés d’usage sur nos téléphones. Elle fait peser un risque sérieux sur nos services numériques et la souveraineté de la Suisse. Société Numérique lance une contre-offensive.

Société Numérique

#weeklypick #C4DT_EPFL #EPFL

I always liked Anthropic's stance of doing the good thing and setting standards with regards to security and ehtics in LLMs. Unfortunately they changed their mind and will now only define 'goals that we will openly grade our progress towards'. So these goals will be non-binding. At least they kept the rules of 'no AI controlled weapons' and 'no mass domestic surveillance'.

https://edition.cnn.com/2026/02/25/tech/anthropic-safety-policy-change

Anthropic ditches its core safety promise in the middle of an AI red line fight with the Pentagon

Anthropic, a company founded by OpenAI exiles worried about the dangers of AI, is loosening its core safety principle in response to competition.

CNN

The Center for Digital Trust (C4DT) is organising a special edition of our bi-annual open-source software services meet-up with an external guest speaker, David Monniaux from Université Grenoble Alpes.

https://rse.swiss/events/2026_03_04_oss_services_meet_up_special_edition/

#C4DT_EPFL

Open-source software services meet-up: special edition 'Fragilités et souveraineté numérique'

#eID #blog #SICPA #C4DT_EPFL

We are pleased to share some output of our work on electronic credentials in our technical blog: "Choosing a Cryptographic Library for Anonymous Credentials":

https://eid-privacy.github.io/wp2/2026/01/27/docknetwork-crypto-library.html

Choosing a Cryptographic Library for Anonymous Credentials

In WP1 we created a list of existing algorithms and tools for anonymous proofs in electronic identities. The findings of WP1 were used to create an overview of existing libraries which we can use to build our research on. This post describes how we evaluated the relevant libraries we found, and for which ones we did a deeper evaluation.

Sotto - E-ID Privacy Suggestions Technical Blob

Long live Friday: here is a short article pointing to our Proof-of-Concept on privacy-preserving #eID presentation of credentials. It includes proofs for issuer signature, holder binding, predicate proofs, and non-revocation proofs.

Spoiler alert: #NoirLang is awesome! It's easy to understand AND fast!

Have a look here:

https://eid-privacy.github.io/2026/01/09/poc-report.html

#C4DT_EPFL #C4DT_FACTORY

Proof-of-Concept for ZKPs

For the milestone 2 of our Innosuisse project, we created a proof-of-concept for our suggested implementations regarding a privacy-preserving e-ID. Our work packages included the following four presentations, which should be as privacy-preserving (unlinkeable and data minimizing) as possible:

Sotto - E-ID Privacy Suggestions Technical Blob

Finland is combatting Fake News at its destination. It teaches media literacy in schools, starting from the age of three, on through the whole curriculum of the students. This approach is paying off, with the country ranking at the top of the European Media Literacy Index. Meanwhile, here in Switzerland, students are mostly left to figure out for themselves what is real and what is fake.

https://www.euronews.com/next/2026/01/05/after-decades-of-teaching-media-literacy-finland-equips-students-with-skills-to-spot-ai-de

#C4DT_EPFL #C4DT_WeeklyPicks

How Finland is teaching schoolchildren AI literacy

As deepfakes proliferate online, Finland adds AI literacy to its school curriculum to help children as young as 3 to recognise AI-generated fake news.

euronews

This thought-provoking article challenges the rationale behind the increasing integration of large language models (LLMs) into our daily workflows. Is it the result of thorough risk-benefit analyses or because of our growing normalization of the problems inherent in these systems and complacency towards the potentially disastrous consequences?

https://embracethered.com/blog/posts/2025/the-normalization-of-deviance-in-ai/

#C4DT_EPFL #WeeklyPicks

The Normalization of Deviance in AI · Embrace The Red

The AI industry risks repeating the same cultural failures that contributed to the Space Shuttle Challenger disaster: Quietly normalizing warning signs while …

Embrace The Red

EPFL and CYD Campus announce the 13th call for Cyber-Defence Fellowships. Opportunities include: Doctoral Fellowships (up to 4 years), Distinguished Postdoctoral Fellowships (up to 2 years) – both with deadline Feb 25, 2026; Master Thesis Fellowships (6 months) and Proof of Concept Fellowships (12 months) – rolling calls. Online applicant workshop: Jan 13, 2026. Supported by armasuisse Science and Technology.

Contact: [email protected]

https://actu.epfl.ch/news/13th-call-for-proposals-cyber-defence-cyd-fellow-2/

#C4DT_EPFL #EPFL

13th Call for Proposals - Cyber-Defence (CYD) Fellowships

Cyber-threats have been accelerating due to the exponential growth of network connectivity. These new capabilities provide myriad opportunities for security hackers to wreak significant damage for commercial, political, or other gains. To promote research and education in cyber-defence, EPFL, the Swiss Federal Institute of Technology in Lausanne, and the Cyber-Defence (CYD) Campus have jointly launched the “CYD Fellowships – A Talent Program for Cyber-Defence Research.” There are two calls per year and the 13th call is now open.