Posts by adfichter@infosec.exchange
 (DIR) Post #B1q3HVWrFkV2zehUfI by adfichter@infosec.exchange
       0 likes, 1 repeats
       
       Denkt auch 2026 dran: Noten sind nicht alles... Source: Tom Gauld.https://www.instagram.com/tomgauld/Account on Bluesky: https://bsky.app/profile/tomgauld.bsky.social
       
 (DIR) Post #B3FHxUDEq9RRBRwrcu by adfichter@infosec.exchange
       1 likes, 7 repeats
       
       The war waged by the tech authoritarian oligarchy against the media has reached a new level: #Palantir is suing us. Us, the Republik Magazin. A small Swiss media company, funded by readers, founded in 2018 and free of advertising. I am not aware of any other media company globally that Palantir is currently targeting so aggressively. What is this about? Together with my wonderful colleagues at the WAV research collective Jenny Steiner, Lorenz Naegeli, Marguerite Meyer, and Balz Oertli, we published a two-part series on Palantir's activities in Switzerland on December 8 and 9. Using an extensive corpus of documents – which we obtained thanks to the Freedom of Information Act – we were able to trace a sales campaign over a period of seven years. Palantir tried to get in with many federal authorities – and was rejected everywhere. And we also found out that the Swiss Army Staff evaluated the products and came to the conclusion that the army should refrain from using Palantir products. Among other risks, they feared that data would be passed on to the US authorities.Palantir is not just any company. ICE uses its products to hunt down migrants in the US. The Israeli army IDF uses the software in its Gaza offensive. The British health authority NHS has made itself dependent on the products for data analysis during the pandemic. And CEO #AlexKarp displays inhuman and aggressive rhetoric towards Europe, while the company itself advertises the “optimization of the kill chain.” These are all facts, repeatedly verified and published by renowned media outlets. Our research relating to Switzerland and Zurich is based on this. In addition to analyzing documents, we also spoke to various sources – including Palantir executives here in Zurich. The quotes used were presented to them and approved. Of course, we always adhered to the high standards of journalistic work. We conducted a thorough fact check before publication. But the company doesn't want us to write the truth. After the US company owned by right-wing tech billionaire #PeterThiel dedicated an absurd blog post to us, claiming some misinformation (such as that they had not participated in official tenders with the federal administration, a point we never claimed. On the contrary: we spoke from the outset of attempts to establish contact, sales talks, informal meetings, business as usual), after the Global Director of Privacy & Civil Liberties (PCL) Engineering  and contact person for Swiss media Courtney Bowman launched personal attacks against us in LinkedIn comments between Christmas and New Year (“partisan fear-mongering”), Palantir's Swiss lawyers demanded a counterstatement on December 29.We rejected this demand in its entirety.In January, they demanded the same thing again. We rejected it again. And now we see each other in court. But why all this?Our research on the Swiss army report caused a huge international media response. The Guardian and the Austrian newspaper Der Standard reported on the Swiss army's rejection. Numerous financial portals and stock market magazines picked up our news (which could have consequences for the overvalued stock market company Palantir). And Chaos Computer Club spokesperson Constanze Kurz presented our research to a huge audience at the renowned IT conference Chaos Communication Congress in Hamburg at the end of December.All of this is making Palantir nervous.We have now submitted a comprehensive defense brief. We can substantiate all of our findings with several documents and publicly available media reports. We trust in the rule of law and freedom of the press in this country. In keeping with yesterday's event “Zurich, little Big Tech City” at the Gessneralle, where we first announced this news exclusively to the audience on site:World politics will soon be negotiated in Zurich: freedom of the press, the facts about ICE, Trump, Israel, Karp, tech authoritarianism.The truth.All this at the Zurich Commercial Court.We will not be intimidated. And we will keep you informed.
       
 (DIR) Post #B3TZ5oZzQ1SI6KaPNg by adfichter@infosec.exchange
       1 likes, 3 repeats
       
       How tenaciously Palantir courted SwitzerlandThe controversial tech company Palantir provides surveillance technology to militaries and intelligence services around the world. In Switzerland, however, its pitches have been rejected by both government authorities and the army. Internal documents have now revealed why.Our articles from December 2025 finally available in english and paywall-free!Because of THIS article (there is another one) Palantir is suing us. Please read and spread it. And if you want donate and support us, you can donate us for this specific article without subscribing. We are commited to journalistic standards, we have a huge documentation and provided lots of evidence to the court. https://www.republik.ch/2026/02/18/how-tenaciously-palantir-courted-switzerland
       
 (DIR) Post #B4I6Czb1rvHygf6CkC by adfichter@infosec.exchange
       0 likes, 2 repeats
       
       Die peruanische ICC-Richterin Luz del Carmen Ibáñez...von ihrer Bank in der Niederlande gecancelt (weil diese sonst von den USA sanktioniert wird), ihre Apple/Google-Konten ebenfalls alle gesperrt (wie sie in einem anderen Interview sagte), und ausgelöscht aus dem digitalen Leben...weil sie ihren Job machte. "Darüber hinaus erstrecken sich die Sanktionen auch auf die Familien der Richter. Und genau da liegt das größte Problem. Meiner Tochter, einer internationalen Anwältin, wurden Visum und Kreditkarte entzogen . Sogar ihre Google-Konten, E-Mails usw. wurden gesperrt. Es ist unfassbar, denn sie lebt nicht bei mir, arbeitet nicht mit mir zusammen und hat keinerlei Verbindung zum IStGH. Dieselben Maßnahmen wurden auch gegen die Familien meiner Kollegen verhängt – gegen ihre Ehemänner, Partner, Mütter und sogar gegen ihre Ex-Frauen, die aufgrund ihrer Unterhaltszahlungen ebenfalls als potenzielle Sanktionskandidaten gelten.Welche Rechtfertigung gibt es also für die Misshandlung und willkürliche Angriffe auf Familien?  Der einzige Zweck ist, die Macht der Stärksten auszuüben und diejenigen einzuschüchtern und anzugreifen, von denen man glaubt, dass sie diesen Gewalttaten erliegen werden . Das ist nicht nur ungerecht, sondern völlig unverdient und willkürlich."https://www.rfi.fr/es/programas/programa-especial/20260210-luz-del-carmen-ib%C3%A1%C3%B1ez-la-jueza-peruana-de-la-cpi-sancionada-por-el-gobierno-de-donald-trump
       
 (DIR) Post #B4Nw5UVFF0xDdHwBBA by adfichter@infosec.exchange
       0 likes, 0 repeats
       
       This is insane...EU officials had started using encrypted and auto-deleting messaging services in the wake of Washington’s hostile attitude towards the bloc’s digital enforcement.The US House Judiciary Committee sent letters to ten US tech companies, including Apple, Meta, Alphabet and Amazon, in which the body led by MAGA lawmaker Jim Jordan demanded to see communications between the tech giants and so-called “foreign censors” – including information sent via private messaging channels?!By Anupriya Dattahttps://www.euractiv.com/news/eu-urges-us-tech-firms-to-follow-rules-on-handling-staff-data/
       
 (DIR) Post #B4SP5inNmCB5GNit1M by adfichter@infosec.exchange
       0 likes, 1 repeats
       
       Hallo SRF... Einfach Nein, Nein, Neinder Titel im Artikel...«Smart Glasses»: Wieso wir alle bald bebrillt sein sollenLead: der Leidensweg der «VR-Brillen» ist ein Langer. der LEIDENSWEGLetzter Abschnitt:"Bezüglich Umgang mit Daten werden wir Meta dann schlicht vertrauen müssen. Oder Apple und Google. Auch diese beiden Datenkonzerne glauben daran, dass smarte Brillen smarte Phones ablösen können und wollen bald eigene Produkte anbieten."Ist das Satire?Alle Talking Points of Big Tech in einem SRF-Artikel eingelöst✅ come on you can do betterhttps://www.srf.ch/wissen/technik/smarte-brillen-smart-glasses-wieso-wir-alle-bald-bebrillt-sein-sollen
       
 (DIR) Post #B4ajxCGcU7eAMar1hw by adfichter@infosec.exchange
       0 likes, 1 repeats
       
       "The Maven Smart System is the platform that came out of those exercises, and it, not Claude, is what is being used to produce “target packages” in Iran. There are real limits to what a civilian like myself can know about this system, and what follows is based on publicly-available information, assembled from Palantir product demos, conferences, as well as instructional material produced for military users. But we can know quite a bit. The interface looks like a tacticool, dark mode send-up of enterprise software paired with the features of geospatial application like ArcGIS. What the operator sees are either maps with GIS-like overlays or a screen organized like a project management board. There are columns representing stages of the targeting process, with individual targets moving across them from left to right, as in a Kanban board.Before Maven, operators worked across eight or nine separate systems simultaneously, pulling data from one, cross-referencing in another, manually moving detections between platforms to build a targeting case. Maven consolidated and orchestrated all of these behind a single interface. Cameron Stanley, the Pentagon’s chief digital and AI officer, called it an “abstraction layer,” a common term in software engineering, meaning a system which hides the complexity underneath it.16 Humans run the targeting and the ML systems underneath produce confidence intervals. Three clicks convert a data point on the map into a formal detection and move it into a targeting pipeline. These targets then move through columns representing different decision-making processes and rules of engagement. The system evaluates factors and presents ranked options for which platform and munition to assign, what the military calls a Course of Action. The officer selects from the ranked options, and the system, depending on who is using it, either sends the target package to an officer for approval or moves it to execution.The AI underneath the interface is not a language model, or at least the AI that counts is not. The systems that detect targets in satellite imagery, fuse data from radar and drone footage, and track objects across multiple intelligence sources are computer vision and sensor fusion.17 They predate large language models by years. Neither Claude nor any other LLMs detects targets, processes radar, fuses sensor data, or pairs weapons to targets. LLMs are late additions to Palantir’s ecosystem;they were added in late 2024, years after the core system was operational, “AIP” was added as a natural language layer that summarizes documents or constructs and answers queries.18 When Anthropic was blacklisted, the Pentagon signed a replacement contract with OpenAI within hours. Replacing one language model with another is often just a simple configuration change, all you really have to do is change the API endpoint.The language model was never what mattered about this system. What mattered was what Maven did to the process: it consolidated the systems, compressed the time, and reduced the people. That is not a new idea. The United States military has been trying to close the gap between seeing something and destroying it for as long as that gap has existed, and every attempt has produced the same failure. Maven may not even be the most extreme case."https://artificialbureaucracy.substack.com/p/kill-chain
       
 (DIR) Post #B5Lg0cR6NTDf0UFZ5M by adfichter@infosec.exchange
       0 likes, 1 repeats
       
       Anthropic just quietly launched ID verification for Claude...If this is going to be mandatory, its time to say goodbye... Not only because of ID verification. Also because you know who is behind: Persona Identities aka Peter Thiel aka crosschecks with US databases, Pentagon etc and your Identity/Passport Data will train OpenAI/Anthropic Models (with all your other data on Claude) EDIT: here is the Original Source: https://support.claude.com/en/articles/14328960-identity-verification-on-claude
       
 (DIR) Post #B5W4eDmhn8OCcDN3dg by adfichter@infosec.exchange
       0 likes, 1 repeats
       
       Look at objection.ai...this is a new "SLAPP-as-a-service"-startup...Intimidate and destroy Media Companys and Journalists in just a few clicks.Funded by Peter Thiel (Gawker case anyone?). https://objection.ai/
       
 (DIR) Post #B5eCZ37SN4AkzHnk7k by adfichter@infosec.exchange
       0 likes, 0 repeats
       
       Da ich immer wieder gefragt werde, wo das Verfahren steht: die #Palantir-Anwälte lesen fleissig meine LinkedIn-Postings mit (und integrieren diese sogar in die Rechtsschriften), wir sind jetzt bei Runde "Triplik" (Runde 3). Mehr sage ich deswegen im Moment nicht. Erst nach der Verkündung des Urteils. Hoffentlich sehr bald.Umso mehr freut mich aber: wir sind nominiert mit der Story für den prestigeträchtigen Zürcher Journalistenpreis (Verleihung am 12. Mai)! Wir = meine Kolleg:innen des WAV Recherchekollektiv Jennifer Steiner Lorenz Naegeli Balz Oertli Marguerite Meyer et moi!Freude herrscht 🎉 🎉 🎉 https://www.zh-journalistenpreis.ch/zuercher-journalistenpreis-die-nominierten-2026/
       
 (DIR) Post #B5eCZ3hGDwoQmKYKvo by adfichter@infosec.exchange
       0 likes, 1 repeats
       
       RE: https://infosec.exchange/@adfichter/116441740383855339Since I’m constantly being asked to give an update on our case: the #Palantir lawyers are reading accurately all my LinkedIn posts (and are even integrating them into their legal submissions); we’re now at the ‘triplic’ stage (round 3). That's why I won’t comment further about the case for the moment. Until the final decision of the judge of the Zurich Commercial Court will happen.Hopefully very soon.That said, we can announce some good news: we're nominated for the prestigious Zurich Journalism Award (12. may). We = my fantastic colleagues from the WAV research collective: Jennifer Steiner, Lorenz Naegeli, Balz Oertli, Marguerite Meyer et moi from @republik_magazinRT: https://infosec.exchange/users/adfichter/statuses/116441740383855339
       
 (DIR) Post #B5mv72cuewXqYMDGts by adfichter@infosec.exchange
       0 likes, 0 repeats
       
       @kuketzblog Nice...müsste man etwas updaten. unsere klage steht da nicht drin;)
       
 (DIR) Post #B61kpQvLV0yMWjCOVk by adfichter@infosec.exchange
       0 likes, 0 repeats
       
       😡 So sieht die Agov Access App bei mir aus, die man in der Schweiz für digitale Behördengänge braucht. Und ja, es macht mich hässig...Gestern an der interessanten Konferenz TRANSFORM zu Digital Public Infrastructure haben Bundeskanzlei, BAG-Vertreter:innen betont wie wichtig es sei, dass der Staat wie bei der Eisenbahn eine digitale hoheitliche Infrastruktur schafft (auch wenn sie von Privaten gebaut wird).Digital ist das natürlich etwas schwieriger zu übersetzen, wegen Datenhaltung, Hardware, Software und technologischen Abhängigkeiten. Dennoch: der Big Tech-Zwang bei der Agov Access App ist eine absolute Frechheit. Nur für iOs und Android.Zwar gelobt die Bundeskanzlei Besserung und will diese verfügbar machen für alternative Betriebssysteme. Ob die eID am 1.12.2026 für Nicht-iOS/Nicht-Android-Usern zur Verfügung stehen wird, das steht noch in den Sternen.Es kann nicht sein dass man von digitaler öffentlicher Infrastruktur redet, jedoch alle Einwohner:innen dieses Landes nötigt das Big Tech-Duopol (von den man sich ja ironischerweise allgemein emanzipieren will) zu installieren.@GrapheneOS  One more app to add for your "Wall of Shame".Mein Text dazu folgt am Montag.(morgen kommt was zu Überwachung und VÜPF 2.0, kleiner Teaser;))
       
 (DIR) Post #B6B9mc2xvzy3Qq9cau by adfichter@infosec.exchange
       0 likes, 2 repeats
       
       Seit einigen Jahren habe ich ein Pixel-Smartphone, auf dem GrapheneOS installiert ist. Das ist ein datenschutz­orientiertes und alternatives Android-Betriebs­system, das ohne vor­installierte Google-Dienste auskommt.Eingerichtet habe ich das aus mehreren Gründen: um dem Duopol Apple und Google zu entgehen. Und vor allem: damit es schwierig wird, mir einen «Staats­trojaner» unterzujubeln.Damit ist Spionage­software gemeint, die die Sicherheits­lücken von Betriebs­systemen wie jenen von Google oder Apple ausnutzt und selbst Nachrichten mitlesen kann, die Ende-zu-Ende-verschlüsselt sind. Zwar ist auch GrapheneOS nicht zu 100 Prozent immun gegen solche Angriffe – aber wegen des mehrstufigen robusten Sicherheits­prozesses ist bislang kein erfolgreicher Spyware-Angriff bekannt.Kurz gesagt: GrapheneOS erfüllt viele «Best Practices» im IT-Sicherheits­bereich.Insgesamt lief das bisher für eine privacy­bewusste Nutzerin wie mich ohne spezifischen IT-Hinter­grund ganz gut. Denn die wichtigsten Apps erhalte ich ohnehin aus dem Google Play Store, der in einer isolierten Umgebung (im Jargon: Sandbox) läuft. Und trotzdem ist das darunter­liegende Betriebssystem weder datengierig, noch gehört es zu einem unsympathischen IT-Konzern aus den USA.Ich habe somit das Beste aus zwei Welten auf einem Smartphone vereint.Und: Da ich als Journalistin von den Schweizer Über­wachungs­gesetzen nicht ausgenommen bin, kann ich mit GrapheneOS zumindest selber das höchstmögliche technische Mass an Quellen­schutz bieten. Das sorgt auch nach aussen für Vertrauen bei potenziellen Informanten.Doch im Verlauf des letzten Jahres habe ich schon erste Komfort­einbussen zu spüren bekommen. So hat etwa die für das Kulturleben wichtige Ticket­corner-App – respektive die Firma dahinter – entschieden, dass ihre App alternativen Betriebs­systemen nicht zur Verfügung steht. Ich war deshalb letztes Jahr auf mein zweites Handy angewiesen, um etwa die Shows rund um den Eurovision Song Contest in der Schweiz besuchen zu können.Auf Anfrage wird der Entscheid so begründet: Man müsse sicherstellen, «Nutzer von Bots zu unterscheiden und somit Missbrauch effektiv zu verhindern». Dieselbe faden­scheinige Begründung lieferte die Post zu ihrer (mittlerweile eingestellten) Swiss-ID-App.Und seit diesem Jahr haben sich die Banken-Apps dazugesellt.Warum mich und viele, viele datenschutzbewusste User das verärgert. Und warum diese Schikane von Google sowie auch die neuesten Identitätsprüfung von App-Entwickler:innen ein klarer Fall von Machtmissbrauch ist...insgesamt gab es nämlich 150 Beschwerden bei der Schweizer Wettbewerbskommission. Der Text: https://www.republik.ch/2026/05/11/ctrl-wie-google-seine-macht-missbraucht-einmal-mehrGrossen Dank für Inspiration an Leser R.F.Und an inhaltliches Peer Review @marcel!
       
 (DIR) Post #B6DK9eoXCRXYX4x2FE by adfichter@infosec.exchange
       0 likes, 0 repeats
       
       WTF„Die EU-Kommission knickt ein und sendet ein fatales Signal: Wenn Tech-Konzerne bei Verstößen gegen die EU-Digitalregeln keine Konsequenzen zu fürchten haben, bleiben Gesetze wie der DMA wirkungslos. Das Ausmaß der digitalen Abhängigkeit von den USA wird hier sehr deutlich: Statt ihre eigenen Regeln durchzusetzen, lässt sich die EU offenbar aus den USA unter Druck setzen und schwächt damit den Schutz ihrer Bürgerinnen und Bürger sowie demokratische Grundprinzipien."https://www.lobbycontrol.de/pressemitteilung/von-der-leyen-stoppt-milliardenstrafe-gegen-google-kritik-von-parlament-und-zivilgesellschaft-125080/