Post AbhuaVv2Vs0sVglJSa by merospit@infosec.exchange
(DIR) More posts by merospit@infosec.exchange
(DIR) Post #AbhmBSNNkV1aeJYmRM by stefano@mastodon.bsd.cafe
2023-11-11T18:23:53Z
0 likes, 0 repeats
This is interesting:Warning: New Outlook sends passwords, mails and other data to Microsofthttps://mailbox.org/en/post/warning-new-outlook-sends-passwords-mails-and-other-data-to-microsoft#Security #DataProtection
(DIR) Post #AbhoINl7VtzaGU5qrY by Anniiii@gts.ferreo.dev
2023-11-11T18:46:38Z
0 likes, 0 repeats
@stefano I'd say I'm shocked, but with what Microsoft is doing nowadays it was only a matter of time until they'd try something like this.
(DIR) Post #Abhq8HoUxooMpzzGa0 by wojtek@fedi.sysartist.com
2023-11-11T19:08:22Z
0 likes, 1 repeats
@stefano Setting up a new iPhone prompts for user's MacBook password. Hash or not - completely bonkers when the user has iCloud passwords/keychain sharing turned off and one closed OS can tell if password stored on another closed OS on closed hardware is proper or not.How are users supposed to be security conscious when major vendors are pulling crap like this for the sole purpose of gathering any and all private data they can get their VC-funded hands on?
(DIR) Post #AbhsmEwnEuJNRL2vGS by stefano@mastodon.bsd.cafe
2023-11-11T19:37:46Z
0 likes, 0 repeats
@wojtek I've been a fond supporter of open source and secure solutions and, year after year, it's becoming even more important. Too bad people still don't understand it and feel secure giving all their data to those big companies.
(DIR) Post #AbhtyxtS3ZUCGc7AmG by wojtek@fedi.sysartist.com
2023-11-11T19:51:31Z
0 likes, 0 repeats
@stefano Sadly, convenience numbs security-related thinking and bigtech has a generous budget on boosting the efficiency of dark patterns and lobbying for user-hostile regulations.
(DIR) Post #AbhuaVv2Vs0sVglJSa by merospit@infosec.exchange
2023-11-11T19:57:08Z
0 likes, 1 repeats
@stefano I have been alarmed by Little Snitch alerts on Mac which show Outlook trying to resolve URLs when I click on them. They should only be resolved by my chosen browser, not by an invisible system in my mail application.#cybersecurity
(DIR) Post #AbhudsYwmTWdbh27Xc by stefano@mastodon.bsd.cafe
2023-11-11T19:58:40Z
0 likes, 0 repeats
@merospit this is quite scary.
(DIR) Post #AbhvFyK3oX4oTWEaGW by merospit@infosec.exchange
2023-11-11T20:04:38Z
0 likes, 0 repeats
@stefano It's work, which for me is cybersecurity, so I notice. Almost all others wouldn't notice and Outlook would be out resolving potentially sensitive URLs without their knowledge and telling Microsoft (which possibly includes Bing) about the results.
(DIR) Post #AbhvpPM9INAMSD6m2a by fedops@fosstodon.org
2023-11-11T20:11:02Z
0 likes, 0 repeats
@stefano if you use outlook voluntarily I guess you wouldn't care anyway.If you have to use it professionally - meh. My employer thinks msft is a great idea, they pay me for it, it's their data. IDGAF. 🤷