#privacy

See tagged statuses in the local Rambling Readers community

Data privacy is a matter of safety for survivors of modern slavery, domestic abuse and gender-based violence.

ORG backs Siân Berry MP's amendment to the UK Data Use and Access Bill. This will introduce a statutory complaints procedure with the Information Commissioner's Office and right of appeal to the Information Tribunal for people in vulnerable situations.

Find out more ⬇️

https://www.openrightsgroup.org/press-releases/i-was-failed-by-the-ico-data-bill-amendment-could-help-survivors-of-abuse/

🚨 Tor Browser opsec discovery: The security level slider cannot be relied upon without a full browser restart: https://www.privacyguides.org/articles/2025/05/02/tor-security-slider-flaw/

If you frequently switch between security levels in Tor Browser (or Mullvad Browser!), make sure you are fully restarting the browser every time, otherwise you could still unexpectedly have dangerous JS features enabled!

This requirement is not publicly documented anywhere. Hopefully @torproject will add a prompt to restart after modifying this setting in a future Tor Browser release.

One of the moderators, Carrotcypher, has a history of hostility and intolerance towards minorities that does not align with Fosstodon's stated values.

Here is the moderator defending the of

https://www.reddit.com/r/politics/comments/1j90vv6/comment/mhb8gtw/

Here's the moderator endorsing a law that unclosets children

https://www.reddit.com/r/privacy/comments/16nr11q/comment/k1gaxxi/?context=1

Here's the moderator censoring discussion of surveillance of people in a community

https://lemm.ee/post/60365167

Google is so sneaky. This prompt inside Gmail gives you three options. The two most visible options (number 1 is 'Try it now' and number 2 is 'Continue') basically mean 'Enable Gemini AI to write emails.' The third option cancels it which is hidden well. Google, you could do better than this. This is a perfect example of a dark pattern. For those who want AI to write basic emails can enable it but there is not need to do this kind of "shady" stuff.

🛑 It’s official: Cybersecurity CVE funding has expired.

The U.S. government let MITRE’s contract lapse — and with it, the core of our global cybersecurity vulnerability tracking ecosystem.

This means:
📛 No new CVE IDs
🧩 Disruptions across patch workflows
🔄 Coordination breakdowns for defenders worldwide
⚠️ Increased time-to-response across industries

Every org that relies on coordinated disclosure is now flying with one engine. This isn’t a future risk — it’s a present emergency.


https://www.theregister.com/2025/04/16/homeland_security_funding_for_cve