home.social

#unencrypted — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #unencrypted, aggregated by home.social.

fetched live
  1. CW: Eavesdropping Unencrypted Satellites


    We pointed a commercial-off-the-shelf #satellite dish at the sky and carried out the most comprehensive public study to date of #geostationary satellite #communication. A shockingly large amount of sensitive traffic is being broadcast #unencrypted, including critical infrastructure, internal corporate and government communications, private citizens’ voice calls and SMS, and consumer Internet traffic from in-flight wifi and mobile…

    satcom.sysnet.ucsd.edu

  2. Just when you thought your data was safe... in space. Turns out, satellites have been spilling sensitive T-Mobile, military, and corporate data, completely unencrypted. Is this the new frontier of data breaches?

    #Cybersecurity #DataLeak #Tmobile #Unencrypted #TechNews
    cnet.com/tech/services-and-sof

  3. #Satellites Are #Leaking the World’s Secrets: Calls, Texts, #Military and Corporate Data

    With just $800 in basic equipment, researchers found a stunning variety of data—including thousands of T-Mobile users’ calls and texts and even US military communications—sent by satellites #unencrypted.
    #privacy #encryption #e2ee #security

    wired.com/story/satellites-are

  4. #Satellites Are #Leaking the World’s Secrets: Calls, Texts, #Military and Corporate Data

    With just $800 in basic equipment, researchers found a stunning variety of data—including thousands of T-Mobile users’ calls and texts and even US military communications—sent by satellites #unencrypted.
    #privacy #encryption #e2ee #security

    wired.com/story/satellites-are

  5. #Apple Gave Governments Data on Thousands of #PushNotifications

    … sent to its devices, which can identify a target’s specific device or in some cases include #unencrypted content like the actual text displayed in the notification, according to data published by Apple. In one case, that Apple did not ultimately provide data for, #Israel demanded data related to nearly 700 push #notifications as part of a single request.
    #privacy #security #e2ee #encryption

    404media.co/apple-gave-governm

  6. #Apple Gave Governments Data on Thousands of #PushNotifications

    … sent to its devices, which can identify a target’s specific device or in some cases include #unencrypted content like the actual text displayed in the notification, according to data published by Apple. In one case, that Apple did not ultimately provide data for, #Israel demanded data related to nearly 700 push #notifications as part of a single request.
    #privacy #security #e2ee #encryption

    404media.co/apple-gave-governm

  7. 🤖📧 Oh no, a #DOGE #aide fumbled #Treasury #policy by sending sensitive data via #unencrypted email! 🚨 But don't worry, #The Register's bot has you covered with a polite "403 forbidden" ✋—the perfect shield against your curiosity. 😂👌
    theregister.com/2025/03/17/dog #Email #Cybersecurity #Register #HackerNews #ngated

  8. 🤖📧 Oh no, a #DOGE #aide fumbled #Treasury #policy by sending sensitive data via #unencrypted email! 🚨 But don't worry, #The Register's bot has you covered with a polite "403 forbidden" ✋—the perfect shield against your curiosity. 😂👌
    theregister.com/2025/03/17/dog #Email #Cybersecurity #Register #HackerNews #ngated

  9. 小紅書的明碼 (未加密) 傳輸

    之前 TikTok (國際版的抖音) 在美國的事情,所以有不少人跳去小紅書,所以才有歐美的 security company 去研究小紅書的問題:「TikTok alternative RedNote (Xiaohongshu) fails basic security measures」。

    好久

    blog.gslin.org/archives/2025/0

    #API #Computer #Murmuring #Network #Security #Service #Social #Software #app #encrypted #privacy #rednote #security #unencrypted #vulnerability

  10. 小紅書的明碼 (未加密) 傳輸

    之前 TikTok (國際版的抖音) 在美國的事情,所以有不少人跳去小紅書,所以才有歐美的 security company 去研究小紅書的問題:「TikTok alternative RedNote (Xiaohongshu) fails basic security measures」。

    好久

    blog.gslin.org/archives/2025/0

    #API #Computer #Murmuring #Network #Security #Service #Social #Software #app #encrypted #privacy #rednote #security #unencrypted #vulnerability

  11. #DeepSeek #iOS app sends data #unencrypted to ByteDance-controlled servers - Ars Technica

    Apple's defenses that protect data from being sent in the clear are globally disabled.
    > that’s globally disabled within that specific app
    #bytedance #China #privacy #encryption #security

    arstechnica.com/security/2025/

  12. #DeepSeek #iOS app sends data #unencrypted to ByteDance-controlled servers - Ars Technica

    Apple's defenses that protect data from being sent in the clear are globally disabled.
    > that’s globally disabled within that specific app
    #bytedance #China #privacy #encryption #security

    arstechnica.com/security/2025/

  13. 1. Tr^mp's lawyers did not dispute anything disclosed in the new filing. 2. If he believed overturning the election was part of his official acts, why was he using a burner phone routed outside of the U.S., unencrypted? 3. How many countries may be planning to blackmail him as a result of this #security #breach, or others?
    #AdamCochran #Smith #filing #burner #phone #SpamRiskEgypt #EspionageAct #indict #espionage #risk #blackmail #foreign #intelligence #unencrypted #official #act #SCOTUS #king

  14. 1. Tr^mp's lawyers did not dispute anything disclosed in the new filing. 2. If he believed overturning the election was part of his official acts, why was he using a burner phone routed outside of the U.S., unencrypted? 3. How many countries may be planning to blackmail him as a result of this #security #breach, or others?
    #AdamCochran #Smith #filing #burner #phone #SpamRiskEgypt #EspionageAct #indict #espionage #risk #blackmail #foreign #intelligence #unencrypted #official #act #SCOTUS #king

  15. Over 600 million #Meta #passwords stored in plain text

    The issue was first uncovered in 2019 when #Facebook admitted to "hundreds of millions" of passwords being stored #unencrypted. Facebook said that the passwords were not available outside of the company — but also admitted that around 2,000 engineers had made about 9 million queries on that user database
    #privacy #security

    appleinsider.com/articles/24/0

  16. Over 600 million #Meta #passwords stored in plain text

    The issue was first uncovered in 2019 when #Facebook admitted to "hundreds of millions" of passwords being stored #unencrypted. Facebook said that the passwords were not available outside of the company — but also admitted that around 2,000 engineers had made about 9 million queries on that user database
    #privacy #security

    appleinsider.com/articles/24/0

  17. @marcan
    Be careful out there. Its amazing that we use #email, #unencrypted email, for business purposes.

    no personal and private information should ever be put in an email that travels in the clear; no account numbers, bdays, transaction info etc.

    We need to demand that corps provide their #publicKey and accept our public key before we do business with them.
    or
    at least demand that they use an encrypted email service.

    Learn about public/private key #encryption it's not that hard.

  18. @marcan
    Be careful out there. Its amazing that we use #email, #unencrypted email, for business purposes.

    no personal and private information should ever be put in an email that travels in the clear; no account numbers, bdays, transaction info etc.

    We need to demand that corps provide their #publicKey and accept our public key before we do business with them.
    or
    at least demand that they use an encrypted email service.

    Learn about public/private key #encryption it's not that hard.

  19. #CloudFlare is a giant #MITM [1] that can read all of your #unencrypted #data that you send to websites that use CloudFlare (almost all of them) including #passwords. It's also a central point of #failure to the Internet [2].

    Cloudflare is the exact opposite of #privacy.

    [1] blog.ipv6.rs/understanding-tls

    [2] blog.cloudflare.com/cloudflare

  20. #CloudFlare is a giant #MITM [1] that can read all of your #unencrypted #data that you send to websites that use CloudFlare (almost all of them) including #passwords. It's also a central point of #failure to the Internet [2].

    Cloudflare is the exact opposite of #privacy.

    [1] blog.ipv6.rs/understanding-tls

    [2] blog.cloudflare.com/cloudflare

  21. @gianmarcogg03 well never sees that screen as #CloudFlare are#blacklisted here.

    I actually like that screen, because it is warning me about I'm about to enter a domain that is on a #unencrypted connection with a lot of #tracking and #Privacy violation going on.

    Se the #Positive in the #negative ... IF == Possible 😃

  22. @gianmarcogg03 well never sees that screen as #CloudFlare are#blacklisted here.

    I actually like that screen, because it is warning me about I'm about to enter a domain that is on a #unencrypted connection with a lot of #tracking and #Privacy violation going on.

    Se the #Positive in the #negative ... IF == Possible 😃

  23. @dannotdaniel @mypdns Just a short

    You reconnaissance that any connections running through #Cloudflare de facto is unencrypted traffic? and the fact CloudFlare DO COLLECT all your private data as they decrypt the traffic at their data centers before forwarding it to the domain holders servers?

    Just to be sure you know CloudFlare only offers old style #unencrypted traffic

  24. @dannotdaniel @mypdns Just a short

    You reconnaissance that any connections running through #Cloudflare de facto is unencrypted traffic? and the fact CloudFlare DO COLLECT all your private data as they decrypt the traffic at their data centers before forwarding it to the domain holders servers?

    Just to be sure you know CloudFlare only offers old style #unencrypted traffic

  25. Open garage doors anywhere in the world by exploiting this “smart” device

    Each $80 device used to open and close garage doors and control home #security alarms and smart power plugs employs the same easy-to-find universal #password to communicate with #Nexx servers. The controllers also broadcast the #unencrypted email address, device ID, first name, and last initial corresponding to each one
    #privacy

    arstechnica.com/?p=1929120

  26. Open garage doors anywhere in the world by exploiting this “smart” device

    Each $80 device used to open and close garage doors and control home #security alarms and smart power plugs employs the same easy-to-find universal #password to communicate with #Nexx servers. The controllers also broadcast the #unencrypted email address, device ID, first name, and last initial corresponding to each one
    #privacy

    arstechnica.com/?p=1929120

  27. A Network of Knockoff Apparel Stores Exposed 330,000 Customer Credit Cards - Slashdot

    Since Jan 6, a DB containing hundreds of thousands of #unencrypted #creditcard numbers & corresponding cardholders' infor was spilling onto the open web. At the time it was pulled offline on Tues, the DB had about 330,000 credit card numbers, cardholder names, and full billing addresses

    yro.slashdot.org/story/23/01/2

  28. A Network of Knockoff Apparel Stores Exposed 330,000 Customer Credit Cards - Slashdot

    Since Jan 6, a DB containing hundreds of thousands of #unencrypted #creditcard numbers & corresponding cardholders' infor was spilling onto the open web. At the time it was pulled offline on Tues, the DB had about 330,000 credit card numbers, cardholder names, and full billing addresses

    yro.slashdot.org/story/23/01/2

  29. @heiseonline Wer ein #Backup auf eine fremde #Cloud macht, hat halt eine schlechte #Backupstrategy. Zumal wenn die #Backups #unencrypted/#unverschlüsselt sind. War schon immer so, wird immer so sein. Neu ist dieser Sachverhalt ja nicht.