
Techlore Surveillance Report Google FLOC is FAILING! - Surveillance Report 39
13 snips
May 3, 2021 Explore the fallout of Google's FLoC facing mounting resistance and how many websites are opting to disable it. Learn about a significant Experian breach that exposed credit scores, and the troubling trend of banks deploying AI surveillance. Hear updates on iOS 14.5's app tracking transparency and a serious macOS bug that jeopardized protections. Discover concerns over smart lampposts and witness the ethical dilemmas surrounding USPS's covert social media monitoring. Plus, celebrate the use of open source software on Mars!
AI Snips
Chapters
Transcript
Episode notes
Supply Chains Create Hidden Risks
- Supply-chain attacks and single-point failures make even audited password managers risky.
- Nathan highlights the Password State backdoor and recommends strong master passwords and 2FA as mitigations.
Micro-Op Cache Bypasses Spectre Fixes
- New CPU attacks can bypass Spectre mitigations by exploiting micro-op caches very early in execution.
- Nathan explains this lets attackers read data before existing defenses take effect.
Contact Discovery Enables Mass Enumeration
- Contact discovery designs in messengers leak user presence at scale because phone numbers are low-entropy and checks lack rate limits.
- Researchers sampled WhatsApp, Signal, and Telegram to demonstrate easy bulk enumeration risks.
