little endian
8.1K posts


@elonmusk @drk_2_lite South Africa should be sanctioned and shunned by the world.



Pete Hegseth quoted a fake Bible verse from Pulp Fiction during a Pentagon sermon.

Fake Christian Pete Hegseth quotes fake Pulp Fiction Bible verse during Pentagon sermon

📵The European Age Verification App is ready and soon available for citizens to use. It is our duty to protect our children in the online world, just as we do in the offline world. Because children's rights in the EU come before commercial interest. 🔗link.europa.eu/HmnrJc



.@vonderleyen "The European #AgeVerification app is technically ready. It respects the highest privacy standards in the world. It's open-source, so anyone can check the code..." I did. It didn't take long to find what looks like a serious #privacy issue. The app goes to great lengths to protect the AV data AFTER collection (is_over_18: true is AES-GCM'd); it does so pretty well. But, the source image used to collect that data is written to disk without encryption and not deleted correctly. For NFC biometric data: It pulls DG2 and writes a lossless PNG to the filesystem. It's only deleted on success. If it fails for any reason (user clicks back, scan fails & retries, app crashes etc), the full biometric image remains on the device in cache. This is protected with CE keys at the Android level, but the app makes no attempt to encrypt/protect them. For selfie pictures: Different scenario. These images are written to external storage in lossless PNG format, but they're never deleted. Not a cache... long-term storage. These are protected with DE keys at the Android level, but again, the app makes no attempt to encrypt/protect them. This is akin to taking a picture of your passport/government ID using the camera app and keeping it just in case. You can encrypt data taken from it until you're blue in the face... leaving the original image on disk is crazy & unnecessary. From a #GDPR standpoint: Biometric data collected is special category data. If there's no lawful basis to retain it after processing, that's potentially a material breach. youtube.com/watch?v=4VRRri…

New Federal Law to Require Age Verification on All Operating Systems H.R. 8250 ("To require operating system providers to verity the age of any user of an operating system, and for other purposes.") has been introduced in the U.S. Congress.





This should be a mandatory video to watch for anyone before investing into Elon's ventures going forward 😂














