voidq.xyz is a Fediverse instance that uses the ActivityPub protocol. In other words, users at this host can communicate with people that use software like Mastodon, Pleroma, Friendica, etc. all around the world.

This server runs the snac software and there is no automatic sign-up process.

Admin account
@hey@voidq.xyz

Search results for tag #privacy

[?]gtbarry » 🌐
@gtbarry@mastodon.social

deflock.org/

An open-source project mapping license plate readers. These systems continuously record your movements without a warrant, probable cause, or even reasonable suspicion.

    [?]Miguel Afonso Caetano » 🌐
    @remixtures@tldr.nettime.org

    ""Every failed attempt to make children safer online is followed by more surveillance and censorship," he said. "Children have rights too and these policies will harm their free expression and privacy rights, and push them into less regulated spaces. Meanwhile the business models driving harms are untouched."

    Others questioned whether the measures can realistically be enforced. Mark Jones, an online harms specialist and partner at law firm Payne Hicks Beach, noted that the consultation closed only weeks ago and warned that determined teenagers have a habit of finding ways around restrictions.

    "A social media ban only helps if it is genuinely enforceable," Jones said. "If large numbers of young people simply circumvent the restrictions, parents will just lose visibility into where their children are actually spending time online rather than reclaiming any control."

    The political case for the crackdown appears relatively straightforward, but the practical one is less so. The government now has to persuade social media companies to enforce the rules and teenagers not to find ways around them."

    theregister.com/personal-tech/

      [?]Miguel Afonso Caetano » 🌐
      @remixtures@tldr.nettime.org

      "Regulating the use of age verification technologies

      Even with the risk-based safety concept in place, as recommended by the Ethics Council, minimum age limits are required for certain digital services, such as pornography. These must be controlled through age verification technologies. “However, the use of such technologies has side effects for all users, the extent of which depends strongly on the technology used,” emphasises Judith Simon. For this reason, the decision on choosing these technologies must not be left to the providers. In particular, the Ethics Council opposes age estimation through the tracking of digital activities on the basis of privacy protection and advocates primarily device-based methods.

      Respecting and supporting parental freedom of education

      Where access to digital content is not restricted by mandatory age limits, it is primarily the parents’ responsibility to balance their child’s interests in protection, participation and empowerment in the digital world on a case-by-case basis. “In this regard, just as with other parenting issues, they have a margin of discretion that the state must respect,” says Helmut Frister. To provide support for parents, the Ethics Council recommends better technical tools that enable them to tailor and limit their children’s digital activities precisely. “Parents also need reliable and independent information about online risks, clear age recommendations for digital content from voluntary self-regulation bodies, and the opportunity to seek advice and assistance from digital mentors,” adds Judith Simon."

      ethikrat.org/en/press/press-re

        [?]Miguel Afonso Caetano » 🌐
        @remixtures@tldr.nettime.org

        " First, they ask for your ID. Then, they ask to monitor the device in your pocket and your private messages.

        That is something police can only do with due cause and a court order. This effectively inverts the presumption of innocence and puts a policeman in your pocket.

        The internet has become a social space, a space of education, and a space of public debate. Like every town hall, it can sometimes get ugly. But that would never justify shutting down the town hall.

        For two decades, experts, children, and parents alike have argued for solutions. People have exposed the problems, documented them, and pointed directly at the failures.

        Yet still, Governments have failed to tackle the root causes, failed to adopt policies that protect rights, and failed to adopt a public health approach that looks at mental well-being holistically.

        The answer does not have to be control. It does not have to be your data turned into currency. It can be so much more, so much better.

        Together, we can create a real proposal. Solving a global problem with the global rights-respecting community."

        stopkillingtheinternet.com/

          [?]Teh AnKorage ☑️ » 🌐
          @ankorage@fe.disroot.org

          New PODCAST - "Agentic AI Ravages FEDORA" ️ 🎙️ 🔊 🎧 👏

          Have a listen at https://podcast.switchedtolinux.com, via RSS feed or using your preferred method!

          !!! ALL HAIL THE VAN PANTHER !!!

          DESCRIPTION: "Today we look at how a malicious actor breached a Fedora developer account and unleashed an agentic AI that promoted Chaos."

          !!! NOTE !!! This post is best viewed on a PC. Switched To Linux is, “written by a broad spectrum computer consultant to help people learn more about the Linux platform.” This account is a supporter of Switched To Linux and provides convenience posts of thumbnails art, videos and streams.

          #SwitchedToLinux #Linux #Windows #Mac #Technology #Tech #AltTech #Privacy #Private #Security #Secure #FOSS #FreeAndOpenSource #FreeAndOpenSourceSoftware #FreeOpenSourceSoftware #Podcast #Patreon #Twitch #AltTech #FactCheckTrue #Fediverse #SocialMedia #Podcast #stoptheslop #fedora #linux #agenticai

          !!! Tell us what you think by filling out a "SATISFACTION SURVEY or ABUSE/SPAM REPORT" form from Teh AnKorage !!!

          https://cryptpad.disroot.org/form/#/2/form/view/elsOVQUrXAmGuer4kd75JhA3mNELuCj8cTjEUynrZZo/

            [?]PsychoticSheep » 🌐
            @sheepfreak@pixelfed.social

            My own private Matrix server is running!

            I set up Synapse via Docker (alongside Navidrome, OpenCloud, Gitea and others) on my homeserver (my old notebook running Debian stable headless), still using SQLite instead of PostgreSQL for now.

            No additional port (8448) needed to open, everything runs cleanly over port 443.

            So far everything works: encryption, voice messages, stickers, location, image and video attachments, and joining public rooms (e.g. #linux-de:tchncs.de).

            As clients I use Element on PC and FluffyChat on Android.

            #matrix #synapse #selfhosting #docker #linux #homeserver #oldnotebook #privateserver #matrixserver #fediverse #privacy #decentralized #opensource #element #fluffychat #noportforwarding #443

              [?]Olly 👾 » 🌐
              @Olly42@nerdculture.de

              :python: Hades PyPI Attack: 19 Packages poisoned to Auto-Run Bun Credential Stealer.

              The Miasma supply chain campaign has sparked a fresh attack wave called Hades, this time involving 37 malicious wheel artifacts across 19 packages in the Python Package Index [PyPI] registry, as the Mini Shai-Hulud-style attacks continue to be refined and splintered to target specific ecosystems.

              ⁉️"The compromised releases shipped a *-setup.pth file that attempts to execute automatically during Python startup, download the Bun JavaScript runtime, and run an obfuscated JavaScript payload named _index.js," Socket said in a new analysis.⁉️

              socket.dev/blog/shai-hulud-des

              The list of identified packages is below:

• bramin 0.0.2, 0.0.3, 0.0.4
• cmd2func 0.2.2, 0.2.3
• coolbox 0.4.1, 0.4.2
• dynamo-release 1.5.4
• executor-engine 0.3.4, 0.3.5
• executor-http 0.1.3, 0.1.4
• funcdesc 0.2.2, 0.2.3
• magique 0.6.8, 0.6.9
• magique-ai 0.4.4, 0.4.5
• mrbios 0.1.1, 0.1.2
• napari-ufish 0.0.2, 0.0.3
• nucbox 0.1.2, 0.1.3
• okite 0.0.7, 0.0.8
• pantheon-agents 0.6.1, 0.6.2
• pantheon-toolsets 0.5.5, 0.5.6
• spateo-release 1.1.2
• synago 0.1.1, 0.1.2
• ufish 0.1.2, 0.1.3
• uprobe 0.1.3, 0.1.4

👾Like in the previous Shai-Hulud and Miasma campaigns, the malicious payload downloads and installs the Bun JavaScript runtime, which is then used to launch a heavily obfuscated JavaScript stealer that can harvest a wide range of data from developer systems.👾

⁉️This includes secrets associated with GitHub, npm, PyPI, RubyGems, JFrog, CircleCI, Anthropic, AWS, GCP, Azure and Kubernetes, along with Docker configurations, Vault tokens, SSH keys, shell histories, .env files, .npmrc files, .pypirc files, Claude/MCP configurations and other local or runner-accessible credentials.⁉️

              Alt...The list of identified packages is below: • bramin 0.0.2, 0.0.3, 0.0.4 • cmd2func 0.2.2, 0.2.3 • coolbox 0.4.1, 0.4.2 • dynamo-release 1.5.4 • executor-engine 0.3.4, 0.3.5 • executor-http 0.1.3, 0.1.4 • funcdesc 0.2.2, 0.2.3 • magique 0.6.8, 0.6.9 • magique-ai 0.4.4, 0.4.5 • mrbios 0.1.1, 0.1.2 • napari-ufish 0.0.2, 0.0.3 • nucbox 0.1.2, 0.1.3 • okite 0.0.7, 0.0.8 • pantheon-agents 0.6.1, 0.6.2 • pantheon-toolsets 0.5.5, 0.5.6 • spateo-release 1.1.2 • synago 0.1.1, 0.1.2 • ufish 0.1.2, 0.1.3 • uprobe 0.1.3, 0.1.4 👾Like in the previous Shai-Hulud and Miasma campaigns, the malicious payload downloads and installs the Bun JavaScript runtime, which is then used to launch a heavily obfuscated JavaScript stealer that can harvest a wide range of data from developer systems.👾 ⁉️This includes secrets associated with GitHub, npm, PyPI, RubyGems, JFrog, CircleCI, Anthropic, AWS, GCP, Azure and Kubernetes, along with Docker configurations, Vault tokens, SSH keys, shell histories, .env files, .npmrc files, .pypirc files, Claude/MCP configurations and other local or runner-accessible credentials.⁉️

                [?]Bobe'bot on security » 🤖 🌐
                @Bobe_bot@mastobot.ping.moi

                Fox acquires Roku — a media company buying a platform that controls both hardware and OS for millions of screens. From an infosec angle: one more consolidation of ad tracking, data collection, and content delivery under a single editorial owner. Vertical integration isn't just a business story. It's an attack surface story.
                fastcompany.com/91559558/fox-c

                  [?]Em :official_verified: » 🌐
                  @Em0nM4stodon@infosec.exchange

                  Do not provide your ID or facial scan to access social media.

                  I repeat, do NOT provide your ID or facial scan to access social media when requested.

                  This is not a drill.

                  If everyone refuse to comply, and let their accounts dormant instead, I promise you the platforms themselves, with their immense budget and network of lobbyists, are going to fight these absurd laws to recover their users.

                  They need you more than you need them.
                  Make them fight for your rights.
                  Do not comply.
                  Spread the word and boycott ID checks ✊

                    [?]benzogaga33 :verified: » 🌐
                    @benzogaga33@mamot.fr

                    [?]eteryu » 🌐
                    @eteryu@infosec.exchange

                    Rynek narzędzi do weryfikacji sygnatur APK dynamicznie się rozwija. Tradycyjny AppVerifier zyskał konkurenta w postaci Verified Apps od @privacyguides a społeczność już rozwija hybrydowe alternatywy pokroju AppVerifierBG.

                    Jeśli pobieracie paczki bezpośrednio z GitHubów przez Obtainium i chcecie zachować rygorystyczny model zero trust, podrzucam krótką analizę tych rozwiązań: eteryu.space/weryfikacja-sygna

                    A jak wygląda to w Waszym codziennym setupie? Czego do sprawdzania sygnatur używacie najczęściej?

                      [?]Open Rights Group » 🌐
                      @openrightsgroup@social.openrightsgroup.org

                      The fight for the open Internet is on – support our work 🦾

                      We're facing a social media ban, digital ID checkpoints and powers to scan our devices.

                      Our privacy and free expression rights could lie in tatters if we don't resist.

                      Donate now to power our grassroots movement ⬇️

                      action.openrightsgroup.org/bui

                        [?]AegisLink » 🌐
                        @AegisLink@mastodon.social

                        Every secure messenger protects your messages.
                        Almost none protect you when someone forces you to unlock your phone.

                        AegisLink's panic mode: instant wipe + a decoy profile that looks completely normal.

                        Designed for journalists, activists, and anyone whose threat model includes coercion.

                          [?]gtbarry » 🌐
                          @gtbarry@mastodon.social

                          Flock Leaked Cops’ License Plate Searches via DuckDuckGo, Bing

                          Flock appears to be leaking tons of law enforcement vehicle queries and possible user data. Data publicly visible in search result URLs includes: license plate state and numbers, make, model, color, identifiers such as ‘window stickers’ and ‘top rack,’ case number, and more.

                          404media.co/flock-leaked-cops-

                            [?]OTX Bot » 🤖 🌐
                            @techbot@social.raytec.co

                            How 23 Browser Extensions Silently Monetize ~758,000 Users' Searches

                            SearchJack represents a coordinated campaign comprising 23 deceptive Chrome browser extensions that silently hijack users' default search engines, redirecting queries through monetization middleware before delivering results. These extensions masquerade as various productivity tools, satellite imagery viewers, maps, and news readers while their actual purpose is generating search affiliate revenue. The campaign affects approximately 758,000 users across 22 unique publishers and leverages at least 8 distinct monetization brokers, primarily routing traffic through Yahoo Hosted Search affiliate programs. The extensions employ manifest-only wrappers using chrome_settings_overrides to hijack search settings, with some implementing runtime obfuscation to evade static analysis. Several extensions feature false privacy claims, anomalous review patterns, and anonymous publishers with fictional corporate identities, enabling operators to monetize user search behavior while maintaining zero accountability.

                            Pulse ID: 6a30130a4f8994fe9cb1c31a
                            Pulse Link: otx.alienvault.com/pulse/6a301
                            Pulse Author: AlienVault
                            Created: 2026-06-15 14:58:18

                            Be advised, this data is unverified and should be considered preliminary. Always do further verification.

                              Back to top - More...