Explore Ticketmaster hack, iOS photo bug, ChatGPT4 exploits. Learn about Apple & Google tracking, police devices, & Windows 11 features. Discover Google's Android privacy updates. Embrace Mastodon for better social media experience.
Join Mastodon for ad-free social media experience.
Be cautious with iOS photo deletion and storage mechanisms.
GPT-4 poses cybersecurity threats with advanced hacking abilities.
Deep dives
Ticketmaster Data Breach
Ticketmaster experienced a massive data breach affecting approximately half a billion users. The breach, claimed by hacker group shiny hunters, involved stolen sensitive user data, including names, addresses, phone numbers, and partial payment details. This breach highlights the risks associated with companies storing vast amounts of user data, emphasizing the importance of cybersecurity measures.
iOS Bug Resurfacing Deleted Photos
An iOS bug resurfaced deleted photos due to a unique data management approach. When users deleted photos, they were moved to a 'recently deleted' album and deleted after 30 days. However, the files were not immediately erased but marked as available for new data to be written, allowing for data recovery. Apple addressed the bug in iOS 17.5.1, underscoring the complexities in data deletion and storage mechanisms.
Chat GPT4 Exploiting Vulnerabilities
Chat GPT4 showcases remarkable capabilities in exploiting vulnerabilities, surpassing other models in hacking success rates. Through an open-source framework, GPT4 can automate the exploitation of real-world vulnerabilities simply by reading online threat descriptions. This advancement raises concerns about the swift development of AI-driven cyber threats and the need for improved cybersecurity measures to counteract such exploits.
New Windows AI Feature: Recall for CoPilot Plus PCs
Microsoft introduced a new AI-powered feature called Recall for CoPilot Plus PCs at a build conference event. This feature records user activities on a Windows 11 PC, including app usage, communication in meetings, and website visits. Despite privacy concerns, Recall allows users to search and retrieve past activities using snapshots encrypted and stored locally on their device.
Enhanced Security Features for Android Users
Android 15 introduces new security features like Private Space, allowing users to hide sensitive apps from view. Theft Detection Lock can detect theft scenarios and lock the device, making it unusable for thieves. Authentication Lock prevents unauthorized access after a factory reset, enhancing Android's security measures to protect user data and sensitive settings.
Most major social media platforms are a hot mess. Your feed is filled with tons of crap you never asked to see and your data is mined mercilessly to serve you targeted ads. The promise of having a place to trade interesting posts with friends and family is now muddied up with sponsored content chosen by hidden algorithms optimized to keep you scrolling. It doesn't have to be that way. I've found something much better, and I'm inviting you to come join me.
In other news: Ticketmaster breach leaks data on half a billion users; the iOS bug that resurrected deleted photos explained; GPT-4 can write working malware based only on CVE bug descriptions; Slack customers upset to learn that their data was being used to train AI systems; WiFi location service can be used to track mobile routers; police are trialing new devices that can track and identify you based on multiple electronic signals; new Windows AI feature records everything you do on your PC; Microsoft rolling out welcome changes to admin privilege use; Google adding several privacy and security features to Android 15; and iVerify how has an Android app.
Article Links
[Mashable] Ticketmaster hacked. Breach affects more than half a billion users. https://mashable.com/article/ticketmaster-data-breach-shinyhunters-hack
[9to5Mac] Security Bite: Here’s the iOS 17.5 bug that resurfaced deleted photos https://9to5mac.com/2024/05/26/security-bite-heres-the-ios-17-5-bug-that-resurfaced-deleted-photos/
[Dark Reading] GPT-4 Can Exploit Most Vulns Just by Reading Threat Advisories https://www.darkreading.com/threat-intelligence/gpt-4-can-exploit-most-vulns-just-by-reading-threat-advisories
[securityweek.com] User Outcry as Slack Scrapes Customer Data for AI Model Training https://www.securityweek.com/user-outcry-as-slack-scrapes-customer-data-for-ai-model-training/
[9to5Mac] Apple Location Services vulnerability can enable troop movements to be tracked https://9to5mac.com/2024/05/24/apple-location-services-vulnerability/
[Forbes] New Police Tech Can Detect Phones, Pet Trackers And Library Books In A Moving Car https://www.forbes.com/sites/thomasbrewster/2024/05/14/police-car-surveillance-tech-uncovers-phones-pet-trackers-and-library-books/
[Ars Technica] New Windows AI feature records everything you’ve done on your PC https://arstechnica.com/gadgets/2024/05/microsofts-new-recall-feature-will-record-everything-you-do-on-your-pc/
[PCWorld] Microsoft battens security hatches on Windows admin accounts https://www.pcworld.com/article/2344405/microsoft-battens-security-hatches-on-oft-used-windows-admin-accounts.html
[Lifehacker] Google Is Rolling Out Some Great Privacy Features to Android This Year https://lifehacker.com/tech/google-is-rolling-out-some-great-privacy-features-with-android-15
[iverify.io] iVerify Basic is now on Android! https://www.iverify.io/post/iverify-basic-is-now-on-android
Tip of the Week: Move to Mastodon https://firewallsdontstopdragons.com/how-to-move-to-mastodon/
Further Info
Send me your questions! https://fdsd.me/qna
Check out my book, Firewalls Don’t Stop Dragons: https://fdsd.me/book
Subscribe to the newsletter: https://fdsd.me/newsletter
Become a patron! https://www.patreon.com/FirewallsDontStopDragons
Get your Firewalls Don’t Stop Dragons Merch! https://fdsd.me/merch
Give the gift of privacy and security: https://fdsd.me/coupons
Support our mission! https://fdsd.me/support
Generate secure passphrases! https://d20key.com/#/
Table of Contents
Use these timestamps to jump to a particular section of the show.
0:02:34: Ticketmaster hacked, breach affects more than half a billion users
0:05:59: Here’s the iOS 17.5 bug that resurfaced deleted photos
0:12:28: GPT-4 Can Exploit Most Vulns Just by Reading Threat Advisories
0:17:36: User Outcry as Slack Scrapes Customer Data for AI Model Training
0:23:12: Apple Location Services vulnerability can enable troop movements ...
Remember Everything You Learn from Podcasts
Save insights instantly, chat with episodes, and build lasting knowledge - all powered by AI.