Serge Egelman's Avatar

Serge Egelman

@v0max.bsky.social

Scientist. Dir. of Usable Security & Privacy at the International Computer Science Institute (icsi.berkeley.edu). Founder, AppCensus (appcensus.io). All opinions are those of his employer(s), and not his own. https://www.guanotronic.com/~serge/

1,656 Followers  |  859 Following  |  737 Posts  |  Joined: 22.06.2023  |  2.1092

Latest posts by v0max.bsky.social on Bluesky

Yosemite as seen from the top of Lembert Dome.

Yosemite as seen from the top of Lembert Dome.

Yours truly at the top of Lembert Dome in Yosemite.

Yours truly at the top of Lembert Dome in Yosemite.

Yosemite as seen from the top of Lembert Dome.

Yosemite as seen from the top of Lembert Dome.

Deer in the woods.

Deer in the woods.

Just got back from touching some grass!

07.08.2025 20:42 โ€” ๐Ÿ‘ 3    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

This is precisely the argument Meta made in the Flo case: they only release tools for developers, how the developers use those tools are totally beyond Meta's control! ("Guns don't kill people...")

Luckily, the jury saw through that.

07.08.2025 20:06 โ€” ๐Ÿ‘ 3    ๐Ÿ” 1    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Yes, but this isnโ€™t that: ample evidence was presented at trial here showing that Meta was fully aware of the data it was receiving.

03.08.2025 16:38 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

The only choice the developer really makes is to embed the FB tracker. Everything that happens after that is within Metaโ€™s control.

03.08.2025 14:37 โ€” ๐Ÿ‘ 2    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

The point is that (1) Meta was aware it was receiving this data and (2) Meta chose to do nothing about it (because that data is profitable to them).

Meta has the ability to terminate API access to any app violating their ToS. They donโ€™t, because they want the data.

03.08.2025 14:17 โ€” ๐Ÿ‘ 2    ๐Ÿ” 1    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

Thatโ€™s not really true. The whole issue here is that Meta designed the tracker to intentionally collect sensitive data, and despite Metaโ€™s admonishment to developers to not send them sensitive data, Meta knows that many developers are sending them that data, which Meta also happens to profit from.

03.08.2025 14:13 โ€” ๐Ÿ‘ 0    ๐Ÿ” 1    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0
Brisket sitting on my smoker about to be turned into pastrami.

Brisket sitting on my smoker about to be turned into pastrami.

โ€ฆand now with that behind me, itโ€™s time to smoke some pastrami!

01.08.2025 23:10 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0
Preview
Meta violated privacy law, jury says in menstrual data fight The jury got to decide how seriously Big Tech takes privacy, the attorney for a class of Flo users said in closing arguments.

www.courthousenews.com/meta-violate...

01.08.2025 22:36 โ€” ๐Ÿ‘ 45    ๐Ÿ” 14    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

So, umm, in other news, @jengolbeck.bsky.social and I are partially responsible for Meta now being liable for several billion dollars.

01.08.2025 22:00 โ€” ๐Ÿ‘ 118    ๐Ÿ” 10    ๐Ÿ’ฌ 9    ๐Ÿ“Œ 2

...and Flo has now settled, leaving the jury to deliberate only on Meta's culpability under CIPA. Closing arguments are first thing tomorrow!

31.07.2025 17:54 โ€” ๐Ÿ‘ 5    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

39.

31.07.2025 04:43 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

Imagine a fast food chain, while being sued for causing a salmonella outbreak, claiming as their defense that they donโ€™t subscribe to the germ theory of disease.

Have they considered whether their customers will find that explanation satisfying after the trial concludes?

30.07.2025 12:09 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Seriously. Their primary argument is that device identifiersโ€”sent to Meta specifically for the purpose of identifying peopleโ€”are โ€œdeidentified dataโ€ simply because they donโ€™t contain peopleโ€™s names.

30.07.2025 12:02 โ€” ๐Ÿ‘ 3    ๐Ÿ” 1    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

Later this morning Iโ€™m heading across the bridge for week 2 of the Flo Health trial.

It is absolutely wild to me that a company that relies on millions of people to trust it with their health information has settled on a defense of โ€œwe donโ€™t understand what personally-identifiable means.โ€

30.07.2025 11:59 โ€” ๐Ÿ‘ 3    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

The notice of proposed rulemaking is going to be lit.

29.07.2025 03:50 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Apropos, jury trial in SF kicks off tomorrow against Flo Health (and Meta) for sharing this type of data with advertisers.

20.07.2025 18:41 โ€” ๐Ÿ‘ 24    ๐Ÿ” 7    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 2

it isnโ€™t hyperbole, donald trump has pardoned more child sex offenders than any president in american history

18.07.2025 18:35 โ€” ๐Ÿ‘ 3355    ๐Ÿ” 1178    ๐Ÿ’ฌ 43    ๐Ÿ“Œ 18

Privacy Act says what?

18.07.2025 21:59 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Someone needs to goad these guys into writing a paper, submitting it for review, and then publicly posting the reviews.

16.07.2025 07:20 โ€” ๐Ÿ‘ 4    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 1
AI is a tool (sorry!) that people who are bad at their jobs will use badly and that people who are good at their jobs will maybe, possibly find some uses for. People who are terrible at their jobs (many executives), will tell their employees that they โ€œneedโ€ to use AI, that their jobs depend on it, that they must become more productive, and that becoming an AI-first company is the strategy that will save them from the old failed strategy, which itself was the new strategy after other failed business models.

The only journalism business strategy that works, and that will ever work in a sustainable way, is if you create something of value that people (human beings, not bots) want to read or watch or listen to, and that they cannot find anywhere else.

AI is a tool (sorry!) that people who are bad at their jobs will use badly and that people who are good at their jobs will maybe, possibly find some uses for. People who are terrible at their jobs (many executives), will tell their employees that they โ€œneedโ€ to use AI, that their jobs depend on it, that they must become more productive, and that becoming an AI-first company is the strategy that will save them from the old failed strategy, which itself was the new strategy after other failed business models. The only journalism business strategy that works, and that will ever work in a sustainable way, is if you create something of value that people (human beings, not bots) want to read or watch or listen to, and that they cannot find anywhere else.

This is very good.

www.404media.co/the-medias-p...

14.07.2025 17:37 โ€” ๐Ÿ‘ 5815    ๐Ÿ” 1480    ๐Ÿ’ฌ 56    ๐Ÿ“Œ 58

โ€ฆup until the point that the scientists realize that theyโ€™re doing marketing and not science, and then flee.

But that happens long after next quarterโ€™s earnings report!

13.07.2025 17:57 โ€” ๐Ÿ‘ 2    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Napoleon Dynamite.

05.07.2025 21:00 โ€” ๐Ÿ‘ 3    ๐Ÿ” 1    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 2

I was reminded of this article, which explains why no one ever dies on planes:

archive.ph/lqVkd

05.07.2025 17:14 โ€” ๐Ÿ‘ 0    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Also, why is he still hanging around the department? He was denied tenure years ago:
www.mcsweeneys.net/articles/bac...

(The sad truth is that he's probably been turned into an adjunct.)

02.07.2025 20:45 โ€” ๐Ÿ‘ 3    ๐Ÿ” 1    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0
Preview
a man with a beard is driving a car with his arm out the window . Alt: The Dude from The Big Lebowski

Also obligatory...

27.06.2025 03:29 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Movie youโ€™ve watched more than 6 times (hard mode, no SW, ST, or LOTR)

27.06.2025 03:26 โ€” ๐Ÿ‘ 2    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

Uhh, which sites? Sites available to California consumers have needed them under CalOPPA since 2004.

26.06.2025 18:44 โ€” ๐Ÿ‘ 3    ๐Ÿ” 0    ๐Ÿ’ฌ 1    ๐Ÿ“Œ 0

Itโ€™s not really just Muskโ€™s unreality, though: the myth of massive government waste has been used by conservatives for my entire lifetime as a manufactured excuse to cut basic services (usually for the poor).

26.06.2025 03:45 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Reason #537 why I no longer subscribe!

26.06.2025 03:28 โ€” ๐Ÿ‘ 3    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

Ok, fine, you forced me into it: I just bought the hardcover version :)

26.06.2025 03:03 โ€” ๐Ÿ‘ 1    ๐Ÿ” 0    ๐Ÿ’ฌ 0    ๐Ÿ“Œ 0

@v0max is following 20 prominent accounts