Skip to main content

Privacy

See All Stories

Privacy is a growing concern in today’s world. Follow along with all our coverage related to privacy, security, what Apple and other companies are doing to keep your information safe, and what steps you can take to keep your information private.

Mark Zuckerberg pushing encrypted Messenger and ephemeral Stories to brand Facebook ‘privacy’

Facebook earnings

Facebook CEO, Mark Zuckerburg, outlined a detailed vision for the future of the social media platform today, specifically its messaging services. Notably, in contrast to how the company operates today, he says the future of the platform will be privacy-focused with features like end-to-end encryption, interoperability between its various apps like Facebook, Instagram, and WhatsApp, reducing how long it holds data, secure storage of personal data, and more.


Expand
Expanding
Close

Second problem found with Facebook 2FA security: phone numbers are searchable

Second problem with Facebook 2FA identified

We always recommend that people take advantage of two-factor authentication (2FA) to protect online accounts, but a second problem with Facebook 2FA has now been discovered.

The company last year admitted that it used 2FA phone numbers for ad targeting, and it has now been revealed that it also makes your phone number searchable – and you cannot fully opt out …


Expand
Expanding
Close

Investigation into at least 11 iOS apps sending sensitive data to Facebook, inc sexual activity

11 popular apps sending sensitive data to facebook

A New York regulator has written to Facebook and the developers behind at least 11 popular iPhone apps found to be sending sensitive data to Facebook, to demand an explanation.

This data included things like weight, BMI, menstrual cycles, alcohol consumption, food consumption, heart-rate, blood pressure and calories burned during exercise – including in one case the category ‘sexual activity’ …


Expand
Expanding
Close

iPhone and Android hacking tool used by FBI and DHS on sale on eBay for as little as $100

A Cellebrite UFED extracting data from an iPhone

The Cellebrite Universal Forensic Extraction Device (UFED) is a smartphone hacking tool commonly used by the FBI, Department of Homeland Security and other law enforcement agencies in the US and elsewhere. It’s the most powerful tool yet created by the Israeli company, able to extract a huge amount of data – even data which has been deleted from phones.

A brand new one normally costs $5,000 to $15,000 depending on the model, but older models can be found on eBay for as little as $100 …

Expand Expanding Close

End-to-end encryption ‘infects’ law enforcement, says FBI, as Apple and others seek to protect it

End-to-end encryption 'infects' law enforcement

A senior FBI official who testified to Congress during its battle with Apple over access to a locked iPhone has said that end-to-end encryption ‘infects’ law enforcement.

The remark was made as Apple and other tech companies warn of the danger of compromising strong encryption after the Australian government passed a law which would require them to help access encrypted messages on demand …


Expand
Expanding
Close

Facebook

Facebook still planning ‘clear history’ feature to address user privacy concerns

Facebook has shared today that its previously announced “clear history” feature is set to be released sometime this year. It will allow users to see all the apps and websites they’ve interacted with and delete the data. Facebook will also begin allowing users to stop the platform from recording such data moving forward.


Expand
Expanding
Close

Popular apps caught secretly sending health data and more to Facebook, should Apple intervene?

Facebook privacy apps

A new investigative report from The Wall Street Journal today looks into the controversial practice of popular third-party iOS and Android apps sending very personal user data to Facebook. In some cases, this happened immediately after an app recorded new data, even if the user wasn’t logged into Facebook or wasn’t a Facebook user at all. Notably, the report highlights that Apple and Google don’t require apps to divulge all the partners that user data is shared with.


Expand
Expanding
Close

Apple cuts ties with social media utility app that exposed emails of Instagram users shortlisted for Shot on iPhone contest

apple instagram security flaw

Yesterday, 9to5Mac was alerted to a flaw in a third-party utility app for Instagram, called Exposure. The app helps brands connect with Instagram posters, automating the collection of agreements to use imagery for commercial purposes.

It just so happens that Apple was using this tool for its Shot on iPhone campaign. 9to5Mac contacted Apple to report the security issue. Following an investigation, a few hours later, Apple cut ties with the Exposure service. (Update: Statement from the parent company of Exposure below)


Expand
Expanding
Close

Security hole in Mojave allows rogue apps to access your Safari browsing history

Safari browsing history accessible by rogue apps

An attempt by Apple to protect your Safari browsing history in macOS Mojave has a security hole which allows full access by a rogue app, says a Mac and iOS developer.

Prior to Mojave, your browsing history was freely available to any app that looked inside  ~/Library/Safari. In macOS 10.14, however, Apple locked down access so tightly that you can’t even list the contents in Terminal – in theory …


Expand
Expanding
Close

Tim Cook says unaware of Absher app, used to spy on Saudi women, promises to investigate

Absher app can be used to track and control women's travel

Tim Cook says that he was unaware of the Absher app, a Saudi-based government app which allows men to track female family members, and even prevent them from travelling, but will investigate.

It follows Oregon Senator Ron Wyden writing to both Cook and Google’s Sundar Pichai, calling on them to ‘immediately remove’ the app from their App Stores …


Expand
Expanding
Close

Gambling and porn apps caught being distributed under Apple’s Enterprise Certificates program that suffers from weak policing

Default iOS apps

After Facebook and Google had their Enterprise Certificates revoked by Apple, a new investigation by TechCrunch has revealed more companies exploiting the program for uses outside of the terms and conditions. Specifically, TC verified over two dozen gambling and porn apps that use the Enterprise Certificates to distribute their apps to non-employees, with thousands more likely doing the same. The publication also discovered just how easy it is to gain access to an Enterprise Certificate.


Expand
Expanding
Close

Apple Absher App Store

Senator asks Apple and Google to ‘immediately remove’ controversial Saudi-based Absher app

Both Apple and Google have come under fire this month for hosting a Saudi-based app called Absher on their mobile platforms. Among other uses, the app is designed to let Saudi men track and control Saudi women. Now, Oregon Senator Ron Wyden has formally written to both Apple and Google urging them to remove the app from iOS and Android.


Expand
Expanding
Close

New Face ID patent application seems likely to fix the 3D-printed mask issue

Face ID mask

A new Apple patent application suggests that the company has boosted the security of Face ID in order to defeat the attack method demonstrated in 2017, when a specially-designed 3D-printed mask was able to unlock an iPhone X.

The attack was a sophisticated one, meaning that ordinary users didn’t have much to fear, but the security researchers did suggest that high-profile targets – like company CEOs – might want to avoid using Face ID …


Expand
Expanding
Close

[Update: Over 200 bounty hunters bought data ‘tens of thousands of times’] User location data sold by AT&T, T-Mobile, and Sprint is making its way to bounty hunters, says report

A new report from Motherboard today takes a look into the practices of US wireless carriers selling user location data to third-parties. While it’s often credit card and other financial companies buying the location data for fraud detection and more, Motherboard says some rogue third-parties have access to user location data and it’s landing the hands of bounty hunters and the black market.


Expand
Expanding
Close