stackdiary.com

Webflow got caught with its hand in the cookie jar and wants to settle disputes quietly.

260
24
stackdiary.com

In a significant data breach, hacktivist group NullBulge has infiltrated Disney's internal Slack infrastructure, leaking 1.2TB of sensitive data. This breach, posted on the cybercrime platform Breach Forums on July 12, 2024, exposes many of Disney's internal communications, compromising messages, files, code, and other proprietary information.

587
58
stackdiary.com

According to the YouTube channel Gamers Nexus, over 600,000 customer warranty claims for MSI products were publicly accessible via Google search. MSI, a leading computer hardware and peripherals manufacturer, had exposed data that included sensitive information such as names, addresses, phone numbers, and specific order details.

272
20
stackdiary.com

British bulk SMS provider IdentifyMobile exposed 200M records because a developer misconfigured an AWS S3 bucket and made it public. A research group from Germany spotted the issue and were able to access more than six terabytes of data. The said data included not only SMS message content but also phone numbers, sender names, and sometimes other account information. Twilio also recently disclosed a security incident in relation to this news, but their alert email completely downplayed the level of data that was available from this AWS bucket.

78
2
stackdiary.com

During installation, the router sent several data packets to an Amazon server in the US. These packets contained the configured SSID name and password in clear text, as well as some identification tokens for this network within a broader database and an access token for a user session that could potentially enable a MITM attack. Linksys has refused to acknowledge/respond to the issue.

643
43
stackdiary.com

To attend the championship this year, fans must use a digital ticket provided through UEFA’s Ticket application. According to Heise, this app requires access to personal data, including name, email, phone number, and GPS permissions. While app store descriptions note the collection of personal information and activity data for analysis purposes, they omit any mention of location sharing.

118
9
stackdiary.com

OpenAI, which is co-defendant with Microsoft, is seeking an informal discovery conference to compel the Times to produce documents demonstrating the originality and ownership of the copyrighted works in question. According to OpenAI’s court filing, the information is critical to their defense against claims of copyright infringement.

38
2
stackdiary.com

Moritz Körner, Member of the European Parliament, disclosed the decision on Twitter. Swedish publisher SVG said, “The question was removed at the last moment from Thursday’s ambassadorial meeting in Brussels”.

809
105
stackdiary.com

Patrick Breyer, a staunch defender of digital rights, laments the Pirate Party’s exit from the EU Parliament as a blow to online privacy.

712
161
stackdiary.com

A user on the online forum 4chan has leaked a massive 270GB of data purportedly belonging to The New York Times. This leak includes what is claimed to be the source code for the newspaper’s digital operations.

528
83
stackdiary.com

The latest proposal mandates user consent for monitoring messages on all communication apps, including those with end-to-end encryption.

233
38
https://stackdiary.com/ticketmaster-confirms-data-breach-with-a-sec-filing/

Access was gained through a third-party cloud database provider, which we know to be Snowflake.

195
7
stackdiary.com

The only exception is private messages, and some users have reported difficulty opting out.

255
40
stackdiary.com

Would you like a spicy spaghetti dish? Just use some gasoline.

197
18
stackdiary.com

The service offers the ability to purchase credits through cryptocurrencies, as well as offers the data for AI training purposes.

360
36
https://stackdiary.com/a-developer-recreates-the-fake-gemini-multimodal-demo-with-gpt-4/

Greg Sadetsky introduces his demo, Sagittarius, as a response to Google's Gemini. Utilizing GPT-4, Sadetsky's demo showcases real-time capabilities similar to those claimed by Gemini but were lacking in Google's demonstration.

49
0
https://stackdiary.com/grok-refuses-to-answer-a-prompt-says-its-a-violation-of-the-openai-policy/

Twitter enforces strict restrictions against external parties using its data for AI training, yet it freely utilizes data created by others for similar purposes.

256
33
https://stackdiary.com/metas-behavioral-ads-banned-in-eu-eea-by-edpb/

The EDPB issued an urgent binding decision that essentially bans Meta from using personal data for behavioral advertising in the entire European Economic Area (EEA).

340
18
https://stackdiary.com/23andme-updates-tos-to-force-binding-arbitration/

This change will force its users into binding arbitration, which is a means to resolve disputes (such as a cybersecurity breach leaking your DNA data) outside of court.

506
14
https://stackdiary.com/microsoft-patents-a-system-to-care-for-your-well-being-using-ai/

Microsoft is working on a Jarvis that will monitor anything and everything about your digital life to try and optimize your life for "well being".

40
9
The data of 760,000 Discord.io users was put up for sale on the darknet
  • "Initials" by "Florian Körner", licensed under "CC0 1.0". / Remix of the original. - Created with dicebear.comInitialsFlorian Körnerhttps://github.com/dicebear/dicebearSK
    skilledtothegills
    1y ago 100%

    I'm actually curious where did they got the passwords from? Discord.io looks to be using Discord itself for authenticating users, but I myself have never used the service so I have no idea.

    34