Как маскировать персональные данные на изображениях: наш эксперимент с OCR и NER

Всем привет! Меня зовут Андрей Иванов, я NLP-исследователь в R&D red_mad_robot. Мы разрабатываем систему Guardrails для защиты персональных данных (PII) и фильтрации небезопасного контента. В этой статье расскажу, как мы решали задачу точечного маскирования PII на картинках без обучения специальных визуальных детекторов. Разберём связку оптического распознавания символов (OCR) с NER-моделью, покажем метрики на реальных данных, раскроем ограничения подхода и наши решения для их преодоления.

https://habr.com/ru/companies/redmadrobot/articles/1011450/

#ai #llm #ocr #ner #pii #computer_vision #маскирование_данных #обработка_изображений #nlp #rnd

Как маскировать персональные данные на изображениях: наш эксперимент с OCR и NER

Всем привет! Меня зовут Андрей Иванов, я NLP-исследователь в R&D red_mad_robot. Мы разрабатываем систему Guardrails для защиты персональных данных (PII) и фильтрации небезопасного контента. В этой...

Хабр
📢 Fuite de données chez un prestataire d’Ericsson USA : 15 661 personnes affectées
📝 Selon BleepingComputer (Sergiu Gatlan, 9 mars 2026), Ericsson Inc.
📖 cyberveille : https://cyberveille.ch/posts/2026-03-15-fuite-de-donnees-chez-un-prestataire-dericsson-usa-15-661-personnes-affectees/
🌐 source : https://www.bleepingcomputer.com/news/security/ericsson-us-discloses-data-breach-after-service-provider-hack/
#Ericsson #PII #Cyberveille
Fuite de données chez un prestataire d’Ericsson USA : 15 661 personnes affectées

Selon BleepingComputer (Sergiu Gatlan, 9 mars 2026), Ericsson Inc. (filiale américaine d’Ericsson) indique qu’un de ses prestataires de services a subi une intrusion ayant entraîné le vol de données. L’accès non autorisé a eu lieu entre le 17 et le 22 avril 2025, l’incident a été découvert le 28 avril 2025, signalé au FBI, et une enquête avec des experts externes s’est conclue le 23 février 2026. Au total, 15 661 personnes sont concernées, d’après des dépôts auprès des procureurs généraux de Californie, du Texas et du Maine.

CyberVeille

@pinjontall OFC #AB1043 is just #Cyberfascism - like all "#AgeVerfiication" horseshite, and needs to be actively sabotaged and subverted as a matter of principle!

Raisin Bombers - Wikipedia

[en] Is #AI "#supercharged #surveillance" #legal? (#USA)

"... answer is not straightforward."

"... huge amount of information that the #government can #collect on Americans that is not itself regulated ... by the #Constitution .. #Fourth #Amendment ..."

"... the government can purchase commercial data ... which can include #sensitive personal information like #mobile #location and web #browsing records."

"What AI can do is it can take a lot of information, none of which is by itself sensitive, and therefore none of which by itself is #regulated, and it can give the government a lot of powers ...".

"AI can aggregate ... information to spot patterns, draw inferences ... at massive scale ... law has not caught up with #technological reality".

https://www.technologyreview.com/2026/03/06/1134012/is-the-pentagon-allowed-to-surveil-americans-with-ai/

#privacy #pii

Is the Pentagon allowed to surveil Americans with AI?

Artificial intelligence is supercharging surveillance, and the law has not caught up with it.

MIT Technology Review
While 2020 data is outdated, this is the same info Trump's DOJ is suing Arizona for refusing to hand over. Trump basically got the #AZ Republican controlled Senate to bypass the elected Democrat Governor & AG exposing millions of Americans #PII to criminal Trump's incompetent security. Besides exposure to identity theft they're already using the other 12 compliant Red State's data to illegally intimidate & disenfranchise voters.
https://www.brennancenter.org/our-work/research-reports/tracker-justice-department-requests-voter-information
Tracker of Justice Department Requests for Voter Information

The Trump administration is pressing state officials to provide sensitive information about voters.

Brennan Center for Justice

OTTAWA - The Privacy Commissioner of Canada today held a press conference regarding the digital attack on Telus Canada's networks and information systems. Telus recently announced that attackers had claimed to have exfiltrated nearly 1 petabyte of company data, including customer data, equivalent to approximately 250,000 DVD movies.

The Commissioner announced a full investigation will take place. He also indicated that Canadian consumers should not be excessively worried about the breach of their personally identifiable information (PII), as the attackers will still be obligated to follow the requirements of the Personal Information Protection and Electronic Documents Act (PIPEDA), Canada's data privacy law since passage in 2000.

#Canada #privacy #Telus #hack #hackers #intrusion #exfiltration #PIPEDA #PrivacyCommissioner #security #PII

#PII

"The Social Security Administration’s internal watchdog is investigating a complaint that alleges a former U.S. DOGE Service employee claimed he had access to two highly sensitive agency databases and planned to share the information with his private employer — a claim that, if true, would constitute an unprecedented breach of security protocols at an agency that serves more than 70 million Americans."

https://www.washingtonpost.com/politics/2026/03/10/social-security-data-breach-doge-2/

Whistleblower claims ex-DOGE member says he took Social Security data to new job

The Social Security inspector general’s office is investigating allegations that the former DOGE engineer took sensitive data on a thumb drive in a major potential security breach, said people familiar with the process.

The Washington Post

@divVerent The problem is that @signalapp mandates #PII like #PhoneNumbers, which is critical for said #phishing...

#Signal can spout all their "#Metadata" - #FUD all day but in the end they fall under #CloudAct and will snitch on users because if they didn't it would've been a statistical inevitability that @Mer__edith and #Moxie would've been in jail and Signal shutdown like #EncroChat was.

  • Make of that what you will, but demanding a #PhoneNumber [which is either directly ("#KYC!") or indirectly / circumstantially linked to a person should be seen as *THE BIGGEST RED FLAG for any service.
    • It's like asking for an #ID at a store not as means to "verify age" with like a #DOB & Photo on something not trivial to forge but rather demanding someone's address just to buy a beer!
Kevin Karhan :verified: (@[email protected])

@[email protected] THERE IS *NO LEGITIMATE REASON* FOR #Signal TO DEMAND A #PhoneNumber (= #PII by circumstances if not mandatory doxxing to the governments aka. *"#KYC"*)… - so yes I [do blame Signal](https://infosec.space/@kkarhan/116200585213177913) because this attack vector is unique to #Signal's shittyness and would not exist with @[email protected] / #monoclesChat or even [`cock.li`](https://cock.li) of all places…

Infosec.Space