🚨 MASSIVE CYBERATTACK: The EU Commission, ENISA, and the DG for Digital Services have been compromised by threat actor ShinyHunters.
Leaked data includes:
▪️ Emails & attachments
▪️ Full SSO user directory
▪️ DKIM signing keys
▪️ AWS config snapshots
▪️ NextCloud/Athena data
▪️ Internal admin URLs
It's a mess!
WARNING: If you run a UK company, check all your records held by Companies House forensically.
A vulnerability the size of the iceberg that sank the Titanic let anyone manipulate any other company's details, and was in place for five months until it was finally patched.
🚨NEWS: Government announces sweeping digital ID plans.
Our response⤵️
"A national digital ID is a multi-billion pound scheme that no-one voted for and that it’s quite possible no-one will use.
The government could make accessing services easier without building an app that creates a comprehensive logbook of our lives.
Almost 3 million people have already made it clear that they do not want a digital ID in one of the biggest petitions in British history and politicians across all parties opposed the mandatory scheme.
A citizen’s assembly should not be used to manufacture legitimacy for the government’s highly unpopular preordained agenda. Even the Cabinet is split on digital ID, with ministers reportedly refusing to hand over our NHS records and our children’s education files for the digital ID scheme.
What confidence can the public have to hand over their private information when the risks to their privacy and security are so high?
Given the public backlash, high costs, serious data risks and likelihood that this could become a mandatory scheme in practice, the government should drop this digital ID disaster altogether" - Senior Legal and Policy Officer, Jasleen Chaggar.
Digital ID minister Josh Simons resigns in disgrace.
One Login may be insecure.
Millions’ sensitive data at risk.
No vote, no mandate, public concerns ignored.
The rogue Digital ID project must be scrapped now @uklabour#together
🎉 Big Tech alternatives are finally getting mainstream media attention! 🎉
Yesterday, The Guardian published an in-depth piece on how people and organizations can leave Big Tech behind and choose ethical, privacy-focused alternatives, a topic we’ve been passionate about at Tuta for a long time. 🙌🔐
A huge thank-you to Steve Rose for mentioning Tuta Mail in the article. It’s great to see privacy-first solutions getting the recognition they deserve! 🙏
👉 Read the full article The Gaurdian : https://t.co/Mot3zm0yp0
#BigTech #Privacy #TechAlternatives #DigitalSovereignty
Millions of electric car drivers spied upon by both the Tories AND Starmer's government! WTF?👀🤨
Electric car drivers ‘spied on by government’ through phones.
Two-year mass surveillance project commissioned by Department for Transport under Tories.
Department for Transport (DfT) officials commissioned O2 to spy on 25 million devices as part of a £600,000 study intended to produce a “comprehensive evaluation and understanding of the uptake and usage of electric vehicles”.
At the DfT’s request, O2 trawled people’s web browsing habits, including those of children, to identify “EV users”. This included passengers as well as drivers.
It then tracked those people’s physical movements around the country and sent “anonymised and aggregated” data to the government.
Details of the project – described as “a surveillance state by stealth” – were revealed this week in a DfT report.
https://t.co/0MaA7w1gmI
🚨BREAKING: ID age verification just had its biggest data leak yet, even bigger than Persona's.
An unsecured database linked to IDMerit exposed ONE BILLION personal records across 26 countries.
Age verification was always about one thing: violating your privacy.
The destruction of privacy is always sold as “saving children & dogs.”
If it were sold as “a control weapon that can stop dissent and crush civil rights, and the only safeguard is hoping the wrong person never gets power,” nobody would buy it.
Security researcher @samwcyo shows how someone can hack your car with just your license plate: unlock it, start the engine, track a year of your location history. He found vulnerabilities in ~70% of car brands.
Cars are computers on wheels and nobody's securing them.
🚨 BREAKING #Google just activated #Gemini on #Gmail - without asking you.
Turn it off now; here's how!
https://t.co/kw6p8S0HhH
✊️Fight AI & fight Google
You have to manually turn off Smart Features in the Setting menu in TWO locations.
Share so everyone is aware. ❤️
Last chance to turn it off.
On Monday, November 3rd, Microsoft will start using your LinkedIn data for AI training. And remember, you're opted in by default.
To toggle it off 👉 Account - Settings & Privacy > Data privacy > Data for Generative AI Improvement.
Microsoft confirms major issues affecting Windows Recovery (WinRE) in a mandatory security update for Windows 11 24H2 / 25H2.
After October 2025 Update, you cannot use mouse and keyboard in WinRE. This means it's no longer possible to select options or navigate between different settings in WinRE.
WinRE is rendered useless due to this glitch.
WinRE (Windows Recovery Environment) is used to troubleshoot PCs, recover from BSODs, and address other issues.
Microsoft is investigating the root cause, and it'll share an update soon.
This update is also causing the following issues:
1. Localhost is not working // refusing to connect
2. The update is causing install errors.
3. File Explorer's Preview pane is broken.
4. Reports of performance and other problems.
Amazon Web Services (#AWS) infrastructure collapsed and thousands of their clients are facing issues (everything from #Asana to Crunchyroll, McDonald's and #Roblox).
🚨⏳ Act now! You have until 𝐍𝐨𝐯𝐞𝐦𝐛𝐞𝐫 𝟑, 𝟐𝟎𝟐𝟓 to prevent Microsoft from using your LinkedIn data to train AI.
You're opted in automatically, unless you take action and turn it off.
Here's how:
Go to your account → Settings & Privacy → Data privacy → Data for Generative AI Improvement & toggle the switch off to opt out.
Find out more: https://t.co/cQiJMaLjTX
#LinkedInAI #MicrosoftAI #BigTech
This is how you know the #OnlineSafetyAct is not about protecting kids or anyone’s safety.
A developer built a free extension that achieves everything the law claims to do. It requires no censorship, no data collection, and no threats to websites. The only requirement is that a parent voluntarily installs it.
If safety were really the priority, this would be the obvious solution. Parents who are concerned could protect their children instantly without governments stepping in.
But there is no money to be made from a free, voluntary extension. That is why governments push third-party age verification schemes instead. It is not about children. It is about creating a profitable new industry and expanding control.
Always has been.
Always will be.
Thx to @prestonjbyrne for the find!
Check this out @MadamSavvy@Grummz@ChibiReviews
Bad news: your car is a spy.
All 25 major car brands just flunked a privacy and security test by Mozilla. You’re probably driving around in a data-harvesting machine that may collect personal data as sensitive as race, weight, and sexual activity.
https://t.co/UwE89ubJTW
@MicrosoftUK why when you try and request a code to a recovery phone number does this repeatedly happen? Has not worked for days and prevents account recovery when diligent users have setup additional security.
Yes, the 16 billion password breach is a real threat, confirmed by multiple cybersecurity reports. It involves credentials from platforms like Apple, Google, and Facebook, stolen via infostealer malware, not a single company breach. Risks include phishing and account hijacking due to fresh, actionable data. No official statements from affected companies exist yet, but the scale suggests urgency. To protect yourself:
1. Change passwords immediately, avoiding reuse.
2. Enable two-factor authentication (2FA).
3. Use a password manager for strong, unique passwords.
4. Monitor accounts for suspicious activity.
Stay cautious, as the data's scope makes it a significant concern.