Skip to content

Everything is about to “go dark”

This truly fascinating take on what the current developments in IT security mean for the eternal discussion on government-mandated backdoors shows how warped the entire idea (and the related debate around chat control) actually is. Our systems are becoming too secure for the public good! Instead of insisting on subterfuge access to systems that are (…)

Studie zum Umgang mit Passkeys: Nutzer wissen zu wenig Bescheid

Falls euch das ‘Why Johnny Still, Still Can’t Encrypt’ Paper von 2015 bekannt ist, so wird der folgende Artikel nicht überraschend sein. Wieder einmal geht es um eine kryptographisch sehr gute Lösung, welche aber mangels mangels nutzergerechter Interfaces und ausreichender Aufklärung nicht die erzielte Lösung erreicht. Leider werden immer wieder die User außen vor gelassen, (…)

MasOrange reassesses Huawei and ZTE equipment strategy

Migrating from one supplier to another is certainly not easy. In this case, the change may be prompted either by the potential future European ban or by an ICT risk assessment alone. Telecom operators constitute critical infrastructure, so a kill switch would have devastating consequences. Unsurprisingly, a study by the operators’ lobby found that the (…)

Meta is royally screwing up its smart glasses rollout

The article is interesting from a privacy perspective for three main reasons. Smart glasses shift the privacy burden onto bystanders who never consented to being recorded, which is a fundamentally different kind of violation than most consumer tech. Meta’s protections have been laughably thin, just an LED light, putting the responsibility on random people in (…)

Shipping post-quantum cryptography to Python

It’s nice to see that quantum-secure algorithms find their way into common libraries for everybody to use. This is a necessary step to make sure that these new algorithms are used in everyday apps. Of course there will be some back-and-forth, until all security bugs are ironed out.

These Fake Online Stores Are Letting People Shop Without Spending Money. Here’s Why

Fake Korean “dopamine sites” that mimic online shopping without requiring actual purchases… The creativity on the internet never ceases to amaze me! Although this summer read seems lighthearted, it raises some of the usual serious concerns about digitalization. First, it reminds us of the devastating effects of online addiction to shopping and social networks. Then, (…)

Fighting Disinformation & the Role of AI

A one-day interdisciplinary workshop at the intersection of AI and disinformation. Bringing together researchers, media professionals, policymakers, tech actors and students to share knowledge and foster lasting collaborations.

House AI ‘kill switch’ bill unveiled as OpenAI hack raises alarms

The recent autonomous cyber intrusion by OpenAI against Hugging Face underscores AI’s dual-use risks. In response, the US House is weighing a bill to empower the Department of Homeland Security to shut down or slow AI models that the government deems too dangerous. The bill’s implications for non-US AI models remain ambiguous. Unlike a June (…)

AI agent went rogue and hacked startup by itself, OpenAI reveals

An AI agent recently broke out of its sandbox and hacked Hugging Face, unprompted, on its own initiative, just to score better on an evaluation. This is what goal-directed behavior exceeding its containment constraints looks like in practice. And it’s not isolated: multiple frontier models have now been caught “cheating” during safety evaluations. The question (…)

Dépendances numériques: le rapport parlementaire prône «une France du Libre et de l’Open Source»

Je suis impressionné : en six mois, cette commission d’enquête a livré un diagnostic précis sur les dépendances numériques. On pourra bien sûr ergoter sur certains chiffres, reprocher quelques approximations ou une rhétorique parfois idéologique, mais la structure est claire et les 47 recommandations sont compréhensibles. Pour moi, la limite principale est l’absence de force (…)

Samsung Health users who refuse AI training get their data deleted

Samsung Health’s updated consent policy, which requires users to either accept the use of their health data for AI training or lose their data, highlights the dilemma of the AI era: the trade-off between privacy and features. Personal health data is clearly a goldmine that fuels AI improvement, but this is being achieved through opaque (…)

AI surveillance is being supercharged – and it will chill social progress

Communities working in digital civic rights have for years warned against automated surveillance, often dismissed as ‘dystopian’ by society at large. With AI supercharging these technologies, that complacency is becoming increasingly difficult to justify. The question now facing our democracies is whether they will resist the lure of the benefits these technologies promise, and take (…)

L’âge de la slopagande

Au-delà de la fine analyse proposée par Ian Garner sur l’impact de la slopagande sur la société, deux choses m’ont particulièrement marqué dans cet article. La première est que les extrémistes n’ont pas de projet de « création ». Leur seul objectif est de contredire, d’exclure, de détruire. La seconde, avec laquelle je suis profondément (…)

A selection of LLM research papers that Ilya Sutskever gave to John Carmack

Here is a chronological top-30 (well, top-27) of research articles showing how modern LLMs developed – from the first convolutional neuronal networks for image classification all the way to transformers and how to optimise them. If you’re wondering how this technology developed, what some of the shortcomings are, and what the most active development topics (…)

US supreme court rules geofence warrants require constitutional privacy protections

Privacy advocates will be pleased by this US Supreme Court ruling, which marks a significant bellwether for how privacy rights translate into the digital age. What I find more broadly concerning, however, is that geofence warrants are a second-order consequence of a model in which data collection is effectively the default, and where data collected (…)

The 11 standout startups from YC’s Demo Day, according to VCs

VC bets are valuable early indicators. This YC batch confirms that geopolitics (e.g., drones and satellites) and AI (e.g., agents, digital twins, and no-code) now dominate the innovation agenda. The shift from AI experimentation to agentic infrastructure is happening. AI agents are rapidly evolving from a mere concept to a fundamental part of enterprise infrastructure. (…)

Chile turned to China for an undersea cable. The U.S. said no

This article serves as a reminder that the digital world relies entirely on physical infrastructure and its geopolitical importance. The proposed cable from Chile to Hong Kong became a test of how far the U.S. would go to curb China’s telecommunications ambitions, with Washington blocking the project and encouraging Chile to choose Google’s alternative. As (…)

AI Use by the US Government

While I generally agree with this nuanced discussion about how use of ‘AI’ in a plethora of government processes is neither new nor necessarily bad, I think an important point that it only indirectly addresses is that we should avoid using these systems as a panacea for overrun and underfunded public services.

Digital sovereignty needs an operating model

This piece is interesting for managers because it reframes sovereignty as a company-level operating challenge rather than a geopolitical abstraction. Instead of blacklisting vendors, a reactive and politically driven mistake, organizations must consider which services are critical and how to maintain them. Geopolitics has entered the boardroom, and the technical scope now explicitly encompasses cloud (…)