Show more

It looks like AI developer assistants will always carry the risk that it is trying to pwn the developer who is using it. This is a great write-up of how one was trained to insert malicious links via the source code it was trained on.

arstechnica.com/security/2025/

DeGoogling is possible, and it doesn't need to be difficult. 👏

Take a look at our in-depth guide of Google alternatives to learn how you can take back your privacy in 2025. ❤️🔒

👉 tuta.com/blog/how-to-leave-goo

Have you already DeGoogled? If so, let us know your favorite Google-free apps.

#DeGoogle #GoogleAlternatives #PrivacyMatters

We are celebrating 10 years of #reproducible builds in #FDroid this year, and we are overhauling the way the build server works.

Thanks to the funding from #NLnet, #NGI #NGIO part of #HorizonEurope, and your donations, our work is intended to power the future of #FDroid for the next ten and more.

Dig deeper for the why and the how in this 15 mins post: f-droid.org/2025/05/21/making-

Ever wonder how easy it would be for proprietary software like to get around the end-to-end encryption? provides a real world example. This is why there is no replacement for Free Software when it comes to privacy.

micahflee.com/despite-misleadi

"How is it legal, under international humanitarian law, for the US to destroy an entire building filled with civilians to kill one man?"

zeteo.com/p/signal-chat-war-cr

My latest on the clean OPSEC saga: TeleMessage customers include DC Police, Andreesen Horowitz, JP Morgan, and hundreds more micahflee.com/telemessage-cust

I'm no advocate of violence. But is it wrong that I'm getting a certain feeling of from prominent moguls being kidnapped for ransom? They share a huge part of the responsibility for enabling . Or can we just say ?

arstechnica.com/security/2025/

"A research project has shown that areas with greater amounts of green space have a lower prevalence of police violence. The study is the first to find a significant relationship between greenness levels and fatal police shootings."

medicalxpress.com/news/2025-04

Von wegen Sicherheit... Unterschreib’ jetzt unsere Petition & verhindere die Investition von Steuergeld in unsere eigene Unsicherheit! bundestrojaner.at/

Show thread

Österreich kann eine so komplexe Software wie den #Bundestrojaner nicht selbst entwickeln. Ein Zukauf bedeutet Millionen an Steuergeld für dubiose Firmen, die Sicherheitslücken in unseren Geräten am Schwarzmarkt verkaufen – auch an autoritäre Regime. derstandard.at/story/300000026

Last Friday, we (again) added a statement on the next iteration of the ministry of internal affairs trying to legalize #statetrojan #spyware for secret services: parlament.gv.at/gegenstand/XXV

TL;DR: It is a slight improvement over the last draft, but still doesn't align with technical reality.

#Austria #politics

@pleasedodisturb @fdroidorg F-Droid is a free software project. The best way to support it is to contribute.

#EU wants to ask app (and app store) developers about their interactions with app stores (specially of the very big kind) in the context of the Digital Services Act #DSA

The study aims to better understand content moderation practices, recommender systems, advertising mechanisms, and emerging challenges within the app ecosystem.

If you have 15-20 minutes to share your experience, make sure you visit the link until Tuesday May 27th, 2025.

Go: ec.europa.eu/eusurvey/runner/c

@aliceif @kurimu turns out that also had minimal checks on such things. I don't recall anything other than checking the domain names of Package Names. That's the ecosystem. Today, does or any other app store even check this?

@growse @guardianproject @signalapp @fdroidorg That would be nice, but sadly, no. That APK contains proprietary libraries from Google and maybe others.

@pixelcode @kkarhan I have followed their over the years, they never actually reproduce the whole thing from source, just the easy parts. Last I checked, all their native code is just pulled in as binaries when using their reproducer setup. Plus, they can't reproduce the proprietary Google libraries github.com/signalapp/Signal-An

and rebuild everything from source.

Show more
image/svg+xml Librem Chat image/svg+xml