Vos photos โ‰  le carburant dโ€™une IA ๐Ÿง โŒ

IMMICH, cโ€™est Google Photosโ€ฆ
๐Ÿ‘‰ en open-source
๐Ÿ‘‰ chez vous
๐Ÿ‘‰ sans abonnement
๐Ÿ‘‰ sans tracking

Reconnaissance faciale & recherche IA 100% locale ๐Ÿ”’
โ–ถ๏ธ https://youtu.be/yUpjxrVNBAI?si=J9sCY4FC8F8vHxAh

@immichapp @truenas @docker

Hashtags X (15)

#Immich #GooglePhotos #SelfHosting #OpenSource #Privacy
#HomeServer #Linux #NAS #Tech #IA
#DataPrivacy #Cloud #AutoHebergement #Docker #TrueNAS

IMMICH : Lโ€™Alternative Open-Source qui Enterre Google Photos ?

YouTube

Merry Christmas!
May you have a peaceful and joyful few days ๐ŸŽ„ โ›„ ๐ŸŽ

If you need a last minute present that does not break the bank, consider our unhackable, untrackable, fully encrypted period tracker:
https://github.com/KeepDataPrivate/MyPeriodDataIsMine

#MyPeriodDataIsMine #UnhackablePeriodTracker #DataPrivacy

GitHub - KeepDataPrivate/MyPeriodDataIsMine: My Period Data Is Mine!

My Period Data Is Mine! Contribute to KeepDataPrivate/MyPeriodDataIsMine development by creating an account on GitHub.

GitHub

It's been a busy 24 hours in the cyber world with significant updates on AI-driven scams, a major phishing platform takedown, chatbot vulnerabilities, and big tech's strategic moves. Let's dive in:

AI-Driven Scams and Phishing Takedowns ๐ŸŽฃ
- The SEC has charged multiple entities in a $14 million cryptocurrency scam where fraudsters used social media, fake financial professionals, and AI-generated investment tips to lure victims into fake trading platforms and steal their funds.
- The Nomani investment scam has surged by 62%, now leveraging highly realistic AI deepfake videos of public figures and bogus news articles across social media platforms like YouTube to promote non-existent investment products.
- US law enforcement successfully shut down web3adspanels.org, a platform facilitating SEO poisoning campaigns that stole bank account credentials, leading to $14.6 million in losses and highlighting the continued effectiveness of social engineering to bypass MFA.

๐Ÿ“ฐ The Hacker News | https://thehackernews.com/2025/12/sec-files-charges-over-14-million-crypto-scam-using-fake-ai-themed-investment-tips.html
๐Ÿ“ฐ The Hacker News | https://thehackernews.com/2025/12/nomani-investment-scam-surges-62-using-ai-deepfake-ads-on-social-media.html
๐Ÿ•ต๐Ÿผ The Register | https://go.theregister.com/feed/www.theregister.com/2025/12/24/us_shutters_phishermens_146m_passwordhording/

Chatbot Vulnerabilities & Disclosure Woes ๐Ÿค–
- Researchers at Pen Test Partners uncovered four critical flaws in Eurostar's public AI chatbot, including prompt injection and HTML injection, which could lead to system prompt leakage and potential stored/shared XSS.
- The vulnerabilities stemmed from the chatbot's API design, which only performed guardrail checks on the latest message, allowing attackers to tamper with earlier messages in the chat history.
- The responsible disclosure process was fraught with issues, including Eurostar outsourcing its VDP and its head of security allegedly accusing the pen testers of "blackmail" for following up on their report.

๐Ÿ•ต๐Ÿผ The Register | https://go.theregister.com/feed/www.theregister.com/2025/12/24/pentesters_reported_eurostar_chatbot_flaws/

Apple Fined Over ATT Rules โš–๏ธ
- Italy's antitrust authority has fined Apple โ‚ฌ98.6 million, asserting that its App Tracking Transparency (ATT) framework unfairly restricts competition in the App Store.
- The AGCM found that ATT imposes "disproportionate" and excessively burdensome double-consent requirements on third-party developers for personalised ads, while Apple's own apps can gain consent in a single tap.
- This ruling highlights ongoing regulatory scrutiny of Apple's privacy policies and their impact on market competition, with similar probes in other European countries.

๐Ÿ“ฐ The Hacker News | https://thehackernews.com/2025/12/24/italy-fines-apple-986-million-over-att-rules-limiting-app-store-competition.html

Strategic Tech Shifts & Acquisitions ๐Ÿš€
- ServiceNow is set to acquire cybersecurity firm Armis for $7.75 billion, aiming to integrate Armis' real-time security intelligence with its CMDB to enhance cyber exposure management and vulnerability response with AI.
- This acquisition is part of ServiceNow's broader strategy to expand its security and data management capabilities, following other recent buys like identity security platform Veza and data governance platform Data.World.
- Microsoft has announced an ambitious goal to eliminate all C and C++ code from its codebase by 2030, migrating to memory-safe Rust to significantly improve software security and reduce common vulnerabilities.

๐Ÿ•ต๐Ÿผ The Register | https://go.theregister.com/feed/www.theregister.com/2025/12/23/servicenow_to_buy_armis_in/
๐Ÿ—ž๏ธ The Record | https://therecord.media/servicenow-cyber-armis-acquisition
๐Ÿ•ต๐Ÿผ The Register | https://go.theregister.com/feed/www.theregister.com/2025/12/24/microsoft_rust_codebase_migration/

#CyberSecurity #ThreatIntelligence #AIScams #Phishing #Deepfake #Vulnerability #PromptInjection #ResponsibleDisclosure #DataPrivacy #RegulatoryCompliance #Acquisition #ServiceNow #Armis #Microsoft #RustLang #InfoSec

Wow, what an interesting email to get on Christmas Eve, turns out Themis Bar Review Bar Exam study subscribers got notice of a class action settlement over Themis sharing user data (like video watches) with Facebook's targeting pixel without consent, violating VPPA privacy laws. Privacy law at work! #ClassAction #DataPrivacy

Large language models are ever more commonly handling sensitive data at scale. ๐Ÿ“ˆ

RAG Servers and MCP Servers serve completely different purposes. The security implications differ just as much, especially around database access. ๐Ÿ”’

Our latest blog delves into the differences so you can make an informed decision. Check it out ๐Ÿ‘‰ https://www.pgedge.com/blog/rag-servers-vs-mcp-servers-choosing-the-right-approach-for-ai-powered-database-access

#programming #cybersecurity #compliance #pii #hipaa #ccpa #gdpr #privacy #dataprivacy #ai #llm #dataengineering #developers #mcp #rag #postgres

RAG Servers vs MCP Servers: Choosing the Right Approach for AI-Powered Database Access

As AI capabilities continue to evolve and integrate more deeply into our applications, weโ€™re faced with interesting architectural decisions about how to expose our data to large language models (LLMs). Two approaches that have gained significant traction are Retrieval Augmented Generation (RAG) servers (such as pgEdge RAG Server) and Model Context Protocol (MCP) servers (such as pgEdge Natural Language Agent). Both have their place, but they serve quite different purposes and come with vastly different security implications โ€“ particularly when it comes to database access.

My charity pick for the last 3 years, along with Freedom of the Press and Signal. #nonprofit #charities #dataprivacy

@eff https://mastodon.social/@eff/115774213481914513

What are the best European countries to host a website? What are the advantages of using a secure website host? From environment-friendly data centers to privacy laws, here's why you should consider moving your data to Europe.

#EU #DataCenters #websiteHosting #dataPrivacy #websites

https://negativepid.blog/web-hosting-and-data-residency-in-europe/
https://negativepid.blog/web-hosting-and-data-residency-in-europe/

Web hosting and data residency in Europe - PID Perspectives

When choosing a web hosting provider for your website, cost is often a primary factor in the evaluation process. But where your data resides matters more.

PID Perspectives

Here's a case that prompted a massive advance in cybersecurity measures in the United States. The Target data breach prompted the use of pin-and-chip cards and the adoption of SIEM. Here's how this incident sparked such a massive change in payment data protection.

#targetDataBreach #cards #creditCards #SIEM #paymentData #dataPrivacy #dataProtection

https://negativepid.blog/the-target-data-breach/
https://negativepid.blog/the-target-data-breach/

The Target Data Breach - PID Perspectives

Target is an American retail corporation that operates a chain of discount department stores and hypermarkets. It is the seventh-largest retailer in the United

PID Perspectives
Europe's Data Act reshapes connected device rules for marketers: European Data Act establishes data sharing obligations for connected devices and cloud services starting September 2025, affecting digital advertisers' access to IoT data. https://ppc.land/europes-data-act-reshapes-connected-device-rules-for-marketers/ #DataAct #IoT #DigitalMarketing #DataPrivacy #ConnectedDevices
Europe's Data Act reshapes connected device rules for marketers

European Data Act establishes data sharing obligations for connected devices and cloud services starting September 2025, affecting digital advertisers' access to IoT data.

PPC Land