323 private links
That was in 2022.
The 2020 ruling, known as “Schrems II”, marked the ending of the Privacy Shield, a framework that allowed for EU data to be transferred to US companies that became certified.
In this specific case, noyb (the European Center for Digital Rights) found that IP addresses (which are classified as personal data by the GDPR) and other identifiers were sent to the US in cookie data as a result of the organisation using Google Analytics.
Une vision pessimiste puisque la surveillance est de plus en plus possible.
Another european company switch to the French cloud services provider Scaleway.
Sans surprise
But the most troubling part of this story is Apple’s terrible handling of the issue. Murphy reported the bug in June 2024, and Apple responded a month later, saying they had launched an internal investigation. Then, in March of this year, they announced they’d fixed the issue—except they hadn’t. Murphy checked, and the flaw was still there. So in May, Apple changed its tune and flat-out told him to shut up, but the most annoying thing about this whole situation is the crappy handling of it: “We would appreciate it if you wouldn’t disclose this information until our investigation is complete.” In short, just shut up while we do nothing to fix it ^^.
(via https://korben.info/apple-hide-my-email-faille-adresse-reelle.html)
Il s'agit de recommandation et de clarification. Le boitier télématique, l'application mobile ainsi que les capteurs du véhicule produisent des données, que le gestionnaire de flotte, le fournisseur du boitier télématique, l'agrégateur et le constructeur peuvent exploiter.
Cryptomator propose de chiffrer les données avant de les synchroniser sur des drives.
Encryption is only a first step: there are others in order to control the devices we use daily. "Sovereign control" means answering yes to each of the following:
- Do you own the encryption keys — not the platform provider?
- Are backups protected end-to-end, by default, without manual configuration?
- Is metadata shielded from external observation, including communication patterns, timing, and participant identity?
- Do you control who can access message content, with no external request system that can override that?
- Do you govern which devices, users, and integrations can access sensitive channels?
- Can the platform be deployed on infrastructure you control, in jurisdictions that meet your data residency requirements?
Not the mainstream privacy-focused tools like AdGuard, uBlock Origin or Ghostery, but the others having audiences numbering in the millions
That is why transparency should be one of the first things users evaluate before installing any browser extension.
Streaming related extensions under the "dogooodapp" brand
Before installing an extension, it’s worth running through a quick checklist:
- search in the privacy policy for phrases like:
- “may share”
- “business partners”
- “analytics purposes”
- “commercial purposes”
- “affiliates and third parties”
- Be wary of extensions with no privacy policy at all
- Check who developed the extension
- Read reviews critically
- Avoid installing unnecessary extensions entirely
- Go for well-established open-source privacy tools when possible
Utiliser les IA et leurs MCP, c'est effectivement donner l'accès total des données utilisées par l'IA aux États-Unis.
De ce fait, le département d’Indre-et-Loire illustre le paradoxe français en matière de numérique. On parle de souveraineté à longueur de discours, mais quand vient le moment d’acheter, l’habitude et la facilité l’emportent. Le réflexe Microsoft est ancré depuis trente ans dans toutes les administrations. De plus, personne ne semble vouloir prendre le risque politique de basculer.
D'autres comme l'Île-de-France utilise cependant déjà des infrastructures européennes.
Pas bête la remarque: un système de DNS européen est primordial pour assurer la sécurité de l'accès à Internet.
Sur iPhone et MacOS, les applications Facebook et Instagram peuvent lire vos conversations WhatsApp. Donc malgré le chiffrement, Facebook peut lire vos conversations WhatsApp.
Les chercheurs de Mysk ont identifié que WhatsApp enregistre l'historique des conversations dans un fichier nommé "Axolotl.sqlite". Ce dernier est placé dans un conteneur partagé entre les applications d'un même développeur, désigné sous l'identifiant "group.net.whatsapp.WhatsApp.shared"
Des explications plus profondes sont trouvées sur https://blog.cryptographyengineering.com/2026/02/02/whatsapp-encryption-a-lawsuit-and-a-lot-of-noise/
Pour la vie privée, Signal, DeltaChat ou Threema sont recommandées.
Ou comment les États-Unis peuvent récolter les données de santé.
Merci PURR pour ce partage d'informations
Describes tracking capabilities a website can do on behalf of the user consent.
The project is available at https://github.com/kadir/cloakrs
his web app will send you a confirmation email to make sure you own the email address. In that email there will be another link. Click that link and you will be taken to a page where you can trigger test emails to be sent to you. Those test emails are specially crafted to use a variety of techniques, to attempt to send information back to this server when read. It will then display the results for you.
The project is available at https://gitlab.com/grepular/ept3
le FBI a réussi à extraire et lire des messages Signal d’un iphone à l’aide de techniques de forensic.
car l'aperçu des notifications est stocké en clair dans une base de données locale du système.
Signal est ici pas en cause, mais bien le stockage des aperçus de notifications.
Si vous utilisez un iPhone, quelques réglages simples peuvent limiter les dégâts :
- Dans Signal → Notifications → “Ni le nom ni le message”
- Dans iOS → Notifications → Signal → désactiver les aperçus ou les limiter à “Quand déverrouillé”
Et surtout, il faut déconstruire une idée reçue tenace : celle de “l’application magique” qui réglerait tous les problèmes de sécurité. C’est une illusion dangereuse.