beli3ver, to linux German
@beli3ver@social.tchncs.de avatar

Is there a tool, to sort via
? I only need a local vision, no cloud or mobile sync.

mysk, to infosec

Western Digital just sent an email informing users about a recent data breach incident. The email only contains an image of the letter. Users can't read the email without allowing loading remote content. And the link doesn't use HTTPS.
Did WD learn anything from this incident?

#privacy #security #cybersecurity #infosec

The link to the image resource containing the letter. The link is embedded in the email that was sent to users. It's transported using insecure plain-text HTTP. Email clients must allow loading remote content for the image to be downloaded.

EDPS, to random
@EDPS@social.network.europa.eu avatar

Today is #EUOpenDay!
Meet #EDPS and @EU_EDPB staff at our booth in #Berlaymont. Come and learn about your fundamental rights to #privacy & #dataprotection and have fun with the attractions we prepared for you!

stefanf28, to random

“OpenAI’s new privacy and data protection extends only to customers who use the company’s API services. ‘We may use Content from Services other than our API,’ the company’s updated Terms of Use note. That could include, for example, text that employees enter into the wildly popular chatbot ChatGPT. Amazon reportedly recently warned employees not to share confidential information with ChatGPT for fear that it might show up in answers.”

#AI #ChatGPT #privacy https://www.cnbc.com/2023/05/05/sam-altman-openai-wont-tap-into-customer-apis.html

stefanf28,

I’m not against #AI tech in principle. But I do think we need to be quite concerned about who currently leads its development, and we should be actively seeking out and supporting ethical alternatives, just like we’re doing here on the Fediverse.

“The challenge for the open movement is already clear: build an alternative to corporate, closed machine learning systems. And to protect the commons from exploitation by these systems.”

https://openfuture.eu/blog/how-wikipedia-can-shape-the-future-of-ai/

#OpenData #ChatGPT #privacy

ne1for23, to random

#TikTok tracked #UnitedKingdom journalist via her cat's account

Two days before Christmas, TikTok called London-based journalist Cristina Criddle to tell her two of its employees in #China, and two in the #UnitedStates, had viewed user data from her personal account without her knowledge or consent.

#Journalism #Privacy
https://www.bbc.com/news/technology-65126056

KathyReid, (edited ) to random
@KathyReid@aus.social avatar

Today in , here are all the trackers that blocked on the Coles Group online shopping website 😯 (big ups, @eff)

What have you found during ?

Get Privacy Badger at:
https://privacybadger.org/

Privacy Badger blocked 16 potential trackers on www.coles.com.au:

adobetarget.data.adobedc.net
js.adsrvr.org
api.bazaarvoice.com
apps.bazaarvoice.com
network-a.bazaarvoice.com
bat.bing.com
dpm.demdex.net
ad.doubleclick.net
connect.facebook.net
www.googletagmanager.com
nebula-cdn.kampyle.com
adobedc.net.ssl.sc.omtrdc.net
c.oracleinfinity.io
apps.rokt.com
o1058658.ingest.sentr.io
dc.services.visualstudio.com

GrapheneOS, to random
@GrapheneOS@grapheneos.social avatar

Latest release of GrapheneOS replaces Qualcomm PSDS (XTRA) servers with a GrapheneOS server caching the data by default:

https://grapheneos.social/@GrapheneOS/110318519898395712

We've also fully removed the unnecessary User-Agent header instead of only removing the serial number from it as we did previously.

#grapheneos #qualcomm #xtra #psds #privacy

GrapheneOS, to random
@GrapheneOS@grapheneos.social avatar

GrapheneOS version 2023050500 released: https://grapheneos.org/releases#2023050500.

See the linked release notes for a summary of the improvements over the previous release.

Forum discussion thread:

https://discuss.grapheneos.org/d/4870-grapheneos-version-2023050500-released

#grapheneos #privacy #security

itnewsbot, to random

Journalist Writes About Discovering She'd Been Surveilled By TikTok - An anonymous reader quotes a report from the Financial Times, written by journalis... - https://yro.slashdot.org/story/23/05/05/1951248/journalist-writes-about-discovering-shed-been-surveilled-by-tiktok?utm_source=rss1.0mainlinkanon&utm_medium=feed #privacy

itnewsbot, to random

Judge Dismisses F.T.C. Lawsuit Against Kochava, a Location Data Broker - The ruling was a blow to the commission’s intensifying efforts to crack down on the sale ... - https://www.nytimes.com/2023/05/05/business/ftc-kochava-location-data.html #regulationandderegulationofindustry #data-mininganddatabasemarketing #suitsandlitigation(civil) #federaltradecommission #locationprivacy #healthprivacy #kochavainc #privacy

CharlieMcHenry, to random
@CharlieMcHenry@connectop.us avatar

Journalist writes about discovering she’d been surveilled by TikTok - This is just creepy. Raises a lot of urgent questions. #journalists #journalism #surveillance #TikTok #china #Bytedance #trust #privacy https://arstechnica.com/tech-policy/2023/05/tiktok-spied-on-me-why/

thisismissem, (edited ) to random
@thisismissem@hachyderm.io avatar

Has anyone heard of this new EU Chat Control legislation? Just saw this via instagram and holy shit it's terrifying. #eu #privacy #chatcontrol

gmate8, to random

Why Use #Monero for Commerce?

A new official video from the Monero team.

#privacy #crypto

https://www.youtube.com/watch?v=138CogLuGC0

brunty, to random
@brunty@brunty.social avatar

TIL about Mullvad #VPN

Daaaaamn they take #privacy seriously

https://mullvad.net

vsaw, to random
@vsaw@mastodon.social avatar

Wtf? 😳

“his penny-pinching landlord suddenly attempted to install a facial recognition camera in the entrance … all tenants and their loved ones would be forced to submit to a face scan to enter the building”

https://gizmodo.com/nyc-msg-facial-recognition-landlords-ban-law-hearing-1850401997

#camera #privacy

unklar, to random

Why Educational Institutions are Prone to Ransomware Attacks (and What They Can Do to Protect Themselves) -- THE Journal https://thejournal.com/articles/2023/05/04/why-educational-institutions-are-prone-to-ransomware-attacks.aspx
#education #school #teaching #learning #edtech #technology #security #ransomware #privacy

GrapheneOS, to random
@GrapheneOS@grapheneos.social avatar

GrapheneOS Apps (app repository client) version 20 released: https://github.com/GrapheneOS/Apps/releases/tag/20.

See the linked release notes for a summary of the improvements over the previous release and a link to the full changelog.

Forum discussion thread:

https://discuss.grapheneos.org/d/4862-grapheneos-apps-app-repository-client-version-20-released

#GrapheneOS #privacy #security #android #repository

jtk, to random
avoidthehack, to random

To become an #Amazon Clinic patient, first you sign away some #privacy

HIPAA does not apply to data but rather covered entities.

For using Amazon's clinic service, Amazon wants you to sign saying it's okay to use and disclosure protected health information.

No thanks.

#privacymatters #hipaa

https://www.washingtonpost.com/technology/2023/05/01/amazon-clinic-hipaa-privacy/

PeterSoukup, to random Czech
@PeterSoukup@mastodon.social avatar

The same idiotic idea EU politicians came out with-client side scanning of end-to-end encrypted messages-that violates basic human right to #privacy all in the name of fighting against child pornography (there is always an excuse) - US politicians are proposing practically the same thing. Even in democratic countries while politicians are screaming "#freedom" are constantly trying to take some of those freedoms away and we need to stay vigilant. #encryption #democracy
https://www.youtube.com/watch?v=n1S7PSyrvSs

mitexleo, (edited ) to random

Did you ever read @mozilla Firefox's privacy policy ?

Here's a link to their privacy policy: https://www.mozilla.org/en-US/privacy/firefox/

#privacy #fedipoll #browser

mitexleo, (edited )

You might also consider reading this article before putting faith on Mozilla. I used to be a hardcore supporter of them.. Now, I'm exactly opposite !

Edit : I'm not referring this site as a source of information. I found out about this site on a Session community.

Read : https://digdeeper.club/articles/mozilla.xhtml

#privacy #deception #mozilla #foss #goolag

topher, to internet

Even the baddest of LimeWire and KaZaA spywares could have only dreamt of being as nasty as today's genuine operating systems and browsers are straight out of the box - and people even pay to get them!

#privacy #spyware #internet #surveillancecapitalism #surveillance #piracy

RL_Dane,
@RL_Dane@fosstodon.org avatar

@topher

Don't forget all the crappy little mobile apps

#piracy #surveillance #surveillancecapitalism #internet #spyware #privacy

admin, to socialwork

TITLE: Confusion in Text Messaging, Encryption, and HIPAA

A therapist colleague of mine contacted Ring Central (a video and
telephone platform that provides HIPAA BAA subcontractor paperwork upon
request) with questions about their messaging capabilities and
encryption. They were looking for a compliant way to text message with
clients. The support staff directed them to this article:

https://support.ringcentral.com/article-v2/Intro-to-end-to-end-encryption-in-RingCentral-messaging.html?brand=RingCentral&product=MVP&language=en_US
<https://support.ringcentral.com/article-v2/Intro-to-end-to-end-encryption-in-RingCentral-messaging.html?brand=RingCentral&product=MVP&language=en_US>

At first glance, the article would seem to make messaging with clients
golden as a good level of encryption is described and the therapist has
a HIPAA BAA with Ring Central. Right?

Wrong.

A few different topics are getting confused here -- smart phone SMS text
messaging, messaging within Ring Central apps and websites, and HIPAA
BAA subcontractor agreements.

With SMS text messaging by phone it will never be HIPAA compliant (even
if the therapist sends it from within Ring Central) because the client
will get the SMS text message unencrypted on their smartphone.

Messaging within the Ring Central apps and website IS at an excellent
level of encryption -- but won't be covered by the therapist's HIPAA BAA
agreement unless the people messaged are also part of the therapist's
company account or are other therapists with their own Ring Central
accounts with HIPAA BAA subcontractor agreements. This will rarely if
ever cover therapy clients.

This gets confusing. So -- for example -- when I go into my Ring
Central account online and click on "Message" I'm invited to email a
messaging link to anyone I choose. So far so good. But when that
person (like a client for example) goes to that messaging link, Ring
Central REQUIRES them to sign up for their own FREE Ring Central
account. That FREE account WILL NOT be covered by a HIPAA BAA
agreement. So the messages sent to them (inside a Ring Central app or
website) will be encrypted but not HIPAA compliant.

Similar problem with Ring Central video conferencing. As long as the
client DOES NOT sign in with their own free account -- and instead goes
to my anonymous video link -- it will be covered under my BAA agreement
with Ring Central. However, Ring Central invites clients to sign up for
their own FREE account in order to video conference with me. If the
client makes that mistake, then its no longer a HIPAA compliant video
conference session because only one of our two Ring Central accounts is
covered by BAA.

I sometimes wonder why this all is left in such a confusing state?

Of course, I'm not a lawyer, so do your own research too.
*
Michael Reeder, LCPC
*
Hygeia Counseling Services : Baltimore / Mt. Washington Village location

#psychology #neurology #socialwork #psychiatry @psychology
@socialwork @psychiatry #mentalhealth
#psychotherapists @psychotherapists #pharmacy
#medicationchecker #drugs #druginteractions #cookies #tracking #hacking
#3rdpartytrackers #HIPAA #privacy #dataprivacy #webbeacons#RingCentral
#VoIP #telephony

admin,

I've said several times that the Signal messaging app may not be HIPAA compliant.

I was likely wrong.

From another thread (thank you Siderea): "You don't need a BAA from Signal to be in compliance with HIPAA. Signal is one of the very few platforms that meets the carrier standard not to need one, because they have no access to the contents of messages sent through them."

However, there is more to the story. You need to read this write-up from 2016 (so it may be dated):
https://personcenteredtech.com/vendorreview/signal/

Person Centered Tech says it best (above), but some factors include:

a) The need to keep copies of all communications in the client's chart. So you have to get messages out of Signal and into your chart. You also have to convince clients not to set their messages to self-destruct or you need to retrieve them before that happens! Signal messages (as of 2016) were not backed up automatically when your phone is backed-up. Lose your phone -- lose your messages.

b) You may need client phone numbers stored in your phone. Do you store them not under their names (initials maybe)? Do you need a BAA agreement with the vendor that backs-up your phone directory?

c) You may need to keep Signal from displaying client names on screen whenever you get a new pop-up alert of a new Signal message.

-- Michael

@siderea @psychology @socialwork @psychiatry @psychotherapists

#psychology #socialwork #psychiatry #mentalhealth
#psychotherapists #pharmacy
#cookies #tracking #hacking
#3rdpartytrackers #HIPAA #privacy #dataprivacy #webbeacons #Signal
#telephony #SMS #messaging

  • All
  • Subscribed
  • Moderated
  • Favorites
  • JUstTest
  • mdbf
  • ngwrru68w68
  • tester
  • magazineikmin
  • thenastyranch
  • rosin
  • khanakhh
  • InstantRegret
  • Youngstown
  • slotface
  • Durango
  • kavyap
  • DreamBathrooms
  • megavids
  • tacticalgear
  • osvaldo12
  • normalnudes
  • cubers
  • cisconetworking
  • everett
  • GTA5RPClips
  • ethstaker
  • Leos
  • provamag3
  • anitta
  • modclub
  • lostlight
  • All magazines