https://cybernews.com/security/global-data-leak-exposes-billion-records/

Speaking of ID verification companies being shady, #IDMerit, a global AI-based identity verification and "Know Your Customer" (KYC) solutions provider, left a terabyte of user data and biometrics on the open web. The breach exposed approximately 1 billion to 3 billion personal records across 26 countries, making it a significant event for data privacy in the financial and fintech.

Call me Cassandra. 🤷🏻‍♀️🤦‍♀️ #infosec #datasec #ageverification #surveillance

https://theshamblog.com/an-ai-agent-published-a-hit-piece-on-me/

This is a terrifying piece about what #OpenClaw has unleashed with its #agentic#ai” bots. Scott is a volunteer maintainer for #matplotlib, #python’s go-to plotting library. An agent tied to merge code, and Scott said no. The agent, apparently autonomously, proceeded to attempt to blackmail Scott, and when that didn’t work started posting hallucinations attacking Scott.

His lead in to the article: An AI agent of unknown ownership autonomously wrote and published a personalized hit piece about me after I rejected its code, attempting to damage my reputation and shame me into accepting its changes into a mainstream python library. This represents a first-of-its-kind case study of misaligned AI behavior in the wild, and raises serious concerns about currently deployed AI agents executing blackmail threats.

This nonsense needs to be nipped in the bud.

#infosec #datasec

An AI Agent Published a Hit Piece on Me

Summary: An AI agent of unknown ownership autonomously wrote and published a personalized hit piece about me after I rejected its code, attempting to damage my reputation and shame me into acceptin…

The Shamblog

Who would have thought that toxic ideology plays a big role in the #DataSec community? Holy moly, what a pile of shitty hatred and arrogance.

As a Fediverse mod says on a regular basis: It's Banhammer time!

(not funny, just sad)

Using Microsoft cloud for Police Scotland violates data protection laws, will keep doing it anyway. Not sure why Microsoft always gets a pass on these things!

https://www.computerweekly.com/news/366629871/Microsoft-refuses-to-divulge-data-flows-to-Police-Scotland

#Microsoft #Scotland #UKPol #DataSec

Microsoft refuses to divulge data flows to Police Scotland

Tech giant Microsoft is declining to share key information with Police Scotland about where the sensitive data it uploads to Office 365 will be processed, leaving the force unable to comply with UK-wide data protection laws

ComputerWeekly.com
Modern Solution: Bundesverfassungsgerich bestätigt – Wegsehen ist sicherer als Aufdecken

Karlsruhe hat gesprochen – und wieder einmal zeigt sich, wie absurd die deutsche Rechtsprechung im Bereich IT-Sicherheit funktioniert. Es geht…

"A systematic review published last month asks the question, how good at people are judging the accuracy of the news?" www.psychologytoday.com/us/blog/evid... #fakenews #media accuracy #infosec #datasec #cybersec

How Well Can People Spot Fake ...
How Well Can People Spot Fake News?

A systematic review published last month asks the question, how well do people judge the accuracy of the news?

Psychology Today
NY State Bar Assoc.: "Media literacy also promotes active citizenship. Understanding how media influences political discourse empowers us to identify #propaganda and participate more effectively in democratic processes." nysba.org/why-media-li... #fakenews #infosec #datasec #cybersec #news #security

Judging the Credibility of Wha...
Bluesky

Bluesky Social
Not sure I like the openness of ParkRun's data. Without a login you can get a lot of info about a particular runner. Thieves can figure out when you're likely to be out and grab your stuff. Insurers & bureaucrats can see how fit you really are. Your age is given away to the nearest 5 years. Seems a bit like accidental self doxxing.
Do any #infosec people have an opinion?
Click on a name to see what I mean:
https://www.parkrun.co.nz/universityofwaikato/results/latestresults/
#ParkRun #running #datasec #doxxed
What's your preferred method to send sensible documents via unencrypted email, but otherwise protected/encrypted? This is macos-specific, no Microsoft products in use here, not using Apple Mail, have PGP, but receiver doesn't.

Protecting a document or .zip from it with a good password doesn't seem enough.
And sending such docs via Wetransfer or such also seems weird.

Thanks for any help in advance.
#datasec #privacy • sent from #Hubzilla at #Fediverse. • sent from #Hubzilla at #Fediverse.
96kps biochips

Für die Totalüberwachung brauchen wir oft gar nicht die Politik. Macht die Industrie von ganz alleine. #Datenleck #EinmalMitProfis #Datasec
RE: mastodon.social/users/Computer…