An effort led by security research lab CovertLabs is actively uncovering troves of (mostly) AI-related App Store apps that leak and expose user data, including names, emails, and chat history.
Most apps on Firehound appear to expose data via improperly secured databases or cloud storage, and many listings disclose the underlying data schemas and record counts.
If your threat model includes the TLA types, then backup to a physical server you control in a location geographically isolated from your main location. Or to a local set of drives that you physically rotate to remote locations.
Thanks for posting. Love to see rust as strategic direction for MS and how they are using it in core OS, Azure and security areas, and much of it open source.
In Automerge 3.0, we've rearchitected the library so that it also uses the compressed representation at runtime. This has achieved huge memory savings. For example, pasting Moby Dick into an Automerge 2 document consumes 700Mb of memory, in Automerge 3 it only consumes 1.3Mb!
Finally, for documents with large histories load times can be much much faster (we recently had an example of a document which hadn't loaded after 17 hours loading in 9 seconds!).
To help with quality and improve our products, human reviewers may read, annotate, and process your API input and output. Google takes steps to protect your privacy as part of this process. This includes disconnecting this data from your Google Account, API key, and Cloud project before reviewers see or annotate it. Do not submit sensitive, confidential, or personal information to the Unpaid Services.
By the majority in Congress voting to block any attempts to challenge the executive branch.
Judges are acting to stay executive orders, but judicial processes are deliberately slow and the current administration seated several current Supreme Court judges.
Civil disobedience and mass unrest seems inevitable when the rule of law and balance of powers is systemically undermined.
Physical cards also allow you to practice shuffling and card handling in general improving dexterity.
Electronic cards would allow you to play more widely (presumably we all don’t walk around with a deck in our pockets). But I don’t often get into spontaneous card games. They are usually planned and at a location with easy access to decks.
This is a good point. We are easily distracted, especially when waiting for people to take their turn. The device based distractions can be stopped by using Guided Access. It can temporarily lock a device to one app, and block notifications from popping up.
True hacker spirit embodied in this project. Very well done!
“So there was a whole study to make the LEDs simulate the glow of the original lamps. And then we found out that different lamps from different years had a different glow time. Measurements were done, math was applied, but we added lamp glow. More CPU time is spent on simulating that than on simulating the original CPU!”
Tailscale [0] says the private keys never leave the device.
“Security
Tailscale and WireGuard offer identical point-to-point traffic encryption.
Using Tailscale introduces a dependency on Tailscale’s security. Using WireGuard directly does not. It is important to note that a device’s private key never leaves the device and thus Tailscale cannot decrypt network traffic. Our client code is open source, so you can confirm that yourself.”
Holden Karnofsky resigns from the Board, citing a potential conflict because his wife, Daniela Amodei, is helping start Anthropic, a major OpenAI competitor, with her brother Dario Amodei. (They all live(d) together.) The exact date of Holden’s resignation is unknown; there was no contemporaneous press release.
Between October and November 2021, Holden was quietly removed from the list of Board Directors on the OpenAI website, and Helen was added (Discussion Source [1]).
It doesn’t look like the moved away from gVisor due to security reasons.
“We were able to achieve these improvements because the second generation execution environment is based on a micro VM. This means that unlike the first generation execution environment, which uses gVisor, a container running in the second generation execution environment has access to a full Linux kernel.”