EU_Commission , (edited ) to Random stuff
@EU_Commission@social.network.europa.eu avatar

We are a Union of 27 countries and 450 million people sharing one future.

Diversity is what defines, unites us.
Diversity is also what makes us love the fediverse.

As we mark two years on Mastodon, thank you for enlivening the conversation with insightful comments and content.

Love does not increase after the first day, but it deepens.

Let's make this journey even more engaging!

What topics did you like the most and would like to see more often 👇

helma ,
@helma@mastodon.social avatar

@EU_Commission Well, the topic I disliked the most is your plan to compromise the online safety, security and privacy of all 450 million Europeans with the plans to scan their devices. In addition, you are not open and transparent enough about these plans, as most of those 450 million do not know you are working on this. You know it does not work and that is in violation with human rights, yet you keep pushing. Why?

thisismissem , to News from fediverse
@thisismissem@hachyderm.io avatar

If you're concerned about CSAM in the Fediverse, then you'll want to read these notes: https://fediforum.org/2024-03/session/3-c/

xyhhx , to Random stuff
@xyhhx@fosstodon.org avatar

you know, i really want to like . i really do. in fact, it's the only group orient IM i use. but it's lack of decent mod tools is pathetic.

communities are being harassed with and and they can't do anything about it. i'm actually ashamed that i recommend it to people.

this isn't new, and they've lost huge communities to it. i'm actually fucking pissed. this should be number one priority, no excuses.

@matrix @matthew @element

do something

fantafanta , to Random stuff German
@fantafanta@mastodon.social avatar

The ‘non-profit start-up’ Thorn, founded by Ashton Kutcher, is a driving force behind the EU’s campaign to scan the net for child abuse material. Newly public documents and financial information obtained by Follow the Money reveal the blurred boundaries between Thorn’s do-good public face and the powerful business behind it.

Free to read (register with e-mail):
https://www.ftm.eu/articles/ashton-kutchers-non-profit-start-up-makes-millions-from-fighting-child-abuse-online

admin , to Random stuff
@admin@bostonsocial.online avatar

This Firefish server, bostonsocial.online, and Mastodon server, hear-me.social, now has (Child Sexual Abuse Material) scanning active.

If the hash of any image matches the hash of a known CSAM image in the NCMEC.ORG database, a report will be automatically filed, and the image will be blocked. It will soon be deleted from the bucket.

While I realize that nobody on these two servers are involved in sending or receiving CSAM images, because this server relays with over 1,500 other servers, the scans are needed as these images can easily find their way in via the relay.

For clarification, the images are not seen by anyone or any software. A mathematical hash is calculated from the image binary and is matched to a hash stored in the database.

admin , to Random stuff
@admin@hear-me.social avatar

This Mastodon server, hear-me.social, and Firefish server, bostonsocial.online, now has (Child Sexual Abuse Material) scanning active.

If the hash of any image matches the hash of a known CSAM image in the NCMEC.ORG database, a report will be automatically filed, and the image will be blocked. It will soon be deleted from the bucket.

While I realize that nobody on these two servers are involved in sending or receiving CSAM images, because this server relays with over 1,500 other servers, the scans are needed as these offensive images can easily find their way in via the relay.

For clarification, the images are not seen by anyone or any software. A mathematical hash is calculated from the image binary and is matched to a hash stored in the database.

rvaneijk , to Random stuff
@rvaneijk@mastodon.nl avatar

Dutch outgoing Minister @Dilan_Yesilgoz of Justice and Security's comparison between client-side scanning and correcting spelling errors on the end-user device is disingenuous. She deploys an irrelevant feature of on-device machine learning to argue the Dutch government's position. Stop promoting a false narrative, please. Privacy is a fundamental right!

Letter to the Dutch House of Representatives here: https://www.rijksoverheid.nl/documenten/kamerstukken/2023/09/18/tk-brief-inzake-motie-over-de-europese-verordening-ter-bestrijding-en-voorkoming-van-seksueel-misbruik

snowe , to Selfhosted in I just developed and published a script to clear your pict-rs object storage from potential CSAM.
@snowe@programming.dev avatar

Hey @db0, just so you know, this tool is most likely very illegal to use in the USA. Something that your users should be aware of. I don't really have the energy to go into it now, but I'll post what I told my users in the programming.dev discord:

that is almost definitely against the law in the USA. From what I've read, you have to follow very specific procedures to report CSAM as well as retain the evidence (yes, you actually have to keep the pictures), until the NCMEC tells you you should destroy the data. I've begun the process to sign up programming.dev (yes you actually have to register with the government as an ICS/ESP) and receive a login for reports.

If you operate a website, and knowingly destroy the evidence without reporting it, you can be jailed. It's quite strange, and it's quite a burden on websites. Funnily enough, if you completely ignore your website, so much so that you don't know that you're hosting CSAM then you are completely protected and have no obligation to report (in the USA at least)

Also, that script is likely to get you even more into trouble because you are knowingly transmitting CSAM to 'other systems', like dbzer0's aihorde cluster. that's pretty dang bad...

here are some sources:

hrefna , to Random stuff
@hrefna@hachyderm.io avatar

The following hash-based systems exist for detection and could be things to look into for integration. They are at varying levels of maturity and pricing.

  • MS's PhotoDNA Cloud Service
  • Google's Content Safety API
  • CloudFlare's CSAM Scanning Tool
  • Safer.io (runs on AWS)
  • WebIQ's Instant Image Identifier (EU, doesn't appear to be available yet)
mastodonmigration , (edited ) to Random stuff
@mastodonmigration@mastodon.online avatar

Urgent! An important issue is bearing down on us.

You may be aware of the recent WaPo story referencing the Stanford Internet Observatory study that flags child abuse material found in the Fediverse. Yes, those behind the study/article may have it in for us, and this may be a "hit piece", however it is a real threat.

@tess has an explainer: https://mastodon.online/@tess@mastodon.social/110776007923242534

We need to take this seriously and be proactive before it gets away from us.

ALT
  • Reply
  • Expand (26)
  • Collapse (26)
  • Loading...
  • realcaseyrollins , to Random stuff
    @realcaseyrollins@social.freetalklive.com avatar

    This is a massive problem, and the main reason I haven't tried to self host a instance on my own again.

    The first question I ask is "how do I keep off the instance" and nobody can answer that question.

    https://www.theverge.com/2023/7/24/23806093/mastodon-csam-study-decentralized-network

    0x58 , to Cybersecurity
    @0x58@infosec.exchange avatar

    📨 Latest issue of my curated and list of resources for week /2023 is out! It includes, but not only:

    ➝ 🦠 🇺🇸 Schools say US teachers’ retirement fund was breached by hackers
    ➝ 🇨🇳 🇺🇸 Chinese spy did not collect information over US, says
    ➝ 🇨🇳 🦠 Says Supplier Hacked After Group Claims Attack on Chip Giant
    ➝ 🇷🇺 Russian Cybersecurity Executive Arrested for Alleged Role in 2012 Megahacks
    ➝ 🇷🇺 🛰️ Hackers attack Russian telecom provider, claim affiliation with
    ➝ 🇬🇧 ⚕️ More than a million patients’ details compromised after cyber attack
    ➝ 📊 🐛 releases new list of top 25 most dangerous software
    ➝ 🇷🇺 Pro-Russia DDoSia hacktivist project sees 2,400% membership increase
    ➝ 💻 🛡️ Browser boosts privacy with new local resources restrictions
    ➝ 🦠 🏦 Anatsa Banking Targeting Users in US, UK, Germany, Austria, and Switzerland
    ➝ 🇺🇸 💵 White House releases cybersecurity budget priorities for FY 2025
    ➝ 🇺🇸 🇧🇷 8Base Ransomware Spikes in Activity, Threatens U.S. and Brazilian Businesses
    ➝ 🇬🇧 🔐 speaks out against bill that could mandate scanning in iMessage
    ➝ 🇵🇭 2,700 People Tricked Into Working for Cybercrime Syndicates Rescued in
    ➝ 🇩🇪 ⚡️ Energy confirms data breach after MOVEit data-theft attack
    ➝ 🕵🏻‍♂️ 📱 , a phone tracking app spying on thousands, says it was hacked
    ➝ 🦠 💰 Prominent exchange infected with previously unseen Mac
    ➝ 🤖 📝 and ? It Starts with Summarization
    ➝ 🇺🇸 👨🏻‍🎓Hackers steal data of 45,000 New York City students in MOVEit breach
    ➝ 🇨🇦 ⛽️ Suncor Energy cyberattack impacts Petro-Canada gas stations
    ➝ 🦠 🕹️ Trojanized Super Mario Game Installer Spreads SupremeBot Malware
    ➝ 🇩🇪 💾 SSD missing from datacenter turns up on , sparking security investigation

    📚 This week's recommended reading is: "Alice and Bob Learn Application Security" by @SheHacksPurple

    Subscribe to the to have it piping hot in your inbox every week-end ⬇️

    https://infosec-mashup.santolaria.net/p/infosec-mashup-week-262023

    gamingonlinux , (edited ) to Random stuff
    @gamingonlinux@mastodon.social avatar
    kkarhan ,
    @kkarhan@mstdn.social avatar
  • All
  • Subscribed
  • Moderated
  • Favorites
  • Mordhau
  • WatchParties
  • Rutgers
  • loren
  • Lexington
  • cragsand
  • mead
  • RetroGamingNetwork
  • mauerstrassenwetten
  • MidnightClan
  • xyz
  • PowerRangers
  • AnarchoCapitalism
  • kamenrider
  • supersentai
  • itdept
  • neondivide
  • AgeRegression
  • Teensy
  • WarhammerFantasy
  • space_engine
  • learnviet
  • bjj
  • electropalaeography
  • steinbach
  • khanate
  • jeremy
  • fandic
  • All magazines