Whitney Merrill

Whitney Merrill

@wbm312.bsky.social

I nudge people to care about privacy and security. CPO/DPO. Privacy/infosec lawyer. Hacker. Fighting for privacy, digital civil liberties & the users. Ex @EA @FTC |my views are my own. I used to post on Twitter at @wbm312.

12,017 Followers 378 Following 1,458 Posts Joined Apr 2023
2 days ago
Class Action Alleges That Grammarly Misappropriated the Names of Journalists and Authors Through its “Expert Review” That Lets Users Get Feedback on Writing From Experts — PRF Law Lawsuit alleges that Grammarly violated state privacy laws that protect people from having their names and identities used for commercial purposes without their prior consent Contact : Peter Romer...

Lots of folks asking how to join the class. My lawyers' emails and contact-form here. As well as the complaint if you want to take a look.

prf-law.com/current-case...

704 332 10 36
4 hours ago

I really wonder what the internal discussions about this decision looked like. Where was their legal team? To me either they have 0 power in the company or their risk tolerance is incredibly incredibly high.

34 4 2 1
7 hours ago
Post image

BREAKING--A bipartisan coalition of states will proceed on Monday in our monopolization case against Live Nation for their actions harming consumers and undermining competition. The DOJ's settlement was plainly inadequate and we are now moving ahead without them. Thread 👇

76 17 1 2
2 days ago
Class Action Alleges That Grammarly Misappropriated the Names of Journalists and Authors Through its “Expert Review” That Lets Users Get Feedback on Writing From Experts — PRF Law Lawsuit alleges that Grammarly violated state privacy laws that protect people from having their names and identities used for commercial purposes without their prior consent Contact : Peter Romer...

For all the people saying that Grammarly should be sued over its "expert review" feature, here is the Grammarly class action lawsuit, alleging violation of the right to privacy and the right of publicity: prf-law.com/current-case...

151 54 0 4
1 day ago

That’s not the future. That’s what they’re doing now. So what changed future is he talking about?

1 0 1 0
1 day ago

People don’t want this.

Also we are living the consequences of good information living behind paywalls and bad information continuing to be free, it’s not great.

Why we need to support platforms like Wikipedia.

25 5 2 0
1 day ago

Brought to you by Microsoft Word:

10 1 4 0
1 day ago
Preview
US Lawmakers Move to Kill the FBI’s Warrantless Wiretap Access A bipartisan bill would force the FBI to get a warrant to read Americans’ messages and ban the federal purchase of commercial data on US residents ahead of a critical April deadline.

NEW: A bipartisan group of lawmakers introduced a bill requiring warrants for FBI searches of Americans' communications under FISA, aligning federal law w/ a 2025 ruling that found the practice unconstitutional.

It would also ban the government from buying Americans' private data from data brokers.

818 262 8 21
2 days ago
Preview
Exclusive: Foreign hacker in 2023 compromised Epstein files held by FBI, source and documents show The hack occurred after a server at the Child Exploitation Forensic Lab in the FBI’s New York Field Office was inadvertently left vulnerable by a special agent.

Scoop: Here’s the bonkers story of how a foreign hacker inadvertently (?) broke into an evidence server holding FBI Epstein material in 2023 and then threatened to call in law enforcement when they found it was full of CSAM.
www.reuters.com/world/us/for...

314 145 14 10
2 days ago
V32 › Priyom.org

More, detailed information about the new numbers station sending numbers in Farsi: priyom.org/number-stati...

6 2 0 0
2 days ago
Preview
A Mysterious Signal Transfixes Radio Sleuths -- And Intelligence Experts The mysterious Persian-language transmission began about 12 hours after the start of the US-Israeli bombing campaign against Iran. It was jammed five days later. Is it a coded message for US agents in...

A new numbers station! Popped up 12 hours after the US bombed Iran.

www.rferl.org/a/mystery-nu...

27 10 2 0
2 days ago

I’m familiar. But for separate reasons I’d still never allow MDM on my phone. I don’t ever want my phone collected for litigation purposes. Work should stay on work devices.

I don’t want to establish officially that my phone is used for work.

4 0 3 0
2 days ago
Preview
Cindy Cohn’s “Privacy’s Defender” Describes a 30-Year Career Fighting for a Better Internet Cohn, the outgoing executive director of the Electronic Frontier Foundation, will speak at Powell’s March 13.

"I also think of privacy as a check on power. It’s a way that whoever you are, you have some protection against people who have more power than you," EFF's Cindy Cohn told @wweek.com when discussing her new book, Privacy's Defender. www.wweek.com/arts/books/...

67 25 1 1
2 days ago

Do you trust all employers to set that up correctly?

2 0 1 0
2 days ago

Ha! I swear I didn’t see your post! Great minds for sure!

2 0 1 0
2 days ago
Preview
Iran-Backed Hackers Claim Wiper Attack on Medtech Firm Stryker A hacktivist group with links to Iran's intelligence agencies is claiming responsibility for a data-wiping attack against Stryker, a global medical technology company based in Michigan. News reports o...

Reason #37482 why you should NEVER let your employer put MDM on your personal device and you should instead opt for a second work phone.

krebsonsecurity.com/2026/03/iran...

25 7 2 3
3 days ago

Including people who work at orgs dedicated to filing lawsuits seems like a bad risk call, imnsho

4 3 0 0
3 days ago
Preview
DHS Ousts CBP Privacy Officers Who Questioned ‘Illegal’ Orders Department of Homeland Security leaders removed top privacy officers who objected to mislabeling government records to block their public release, WIRED has learned.

Scoop: DHS ousted multiple privacy officers at CBP after they questioned orders to purposely mislabel records about government surveillance to prevent their release under FOIA.

3,058 1,789 47 90
4 days ago
Preview
Congress must prevent AI surveillance. The Anthropic feud proves it | Ashley Gorski and Patrick Toomey The company’s clash with the Pentagon is a fight over the future of American privacy

The Pentagon is demanding AI companies allow them to use their products to mass surveil Americans.

Congress must step in and take action now.

418 178 10 6
4 days ago

If there’s anyone who follows me doing consumer protection (FTC or state). Here’s a lead: autorenwal practices of Coterie. Definitely deceptive!

5 0 0 0
5 days ago

It is true that Proton is located in Switzerland and responded to a legal request from the Swiss authorities. But it is also true that most people do not know what an MLAT is and there is a widespread misunderstanding that using Proton will protect your account from US govt requests.

407 122 16 5
5 days ago

*dead father. You don’t have heirs until you die.

8 0 1 0
1 week ago
Preview
From Ukraine to Iran, Hacking Security Cameras Is Now Part of War’s ‘Playbook’ New research shows hundreds of attempts by apparent Iranian state hackers to hijack consumer-grade cameras, timed to missile and drone strikes. Israel, Russia, and Ukraine have also adopted this trick...

Hacking internet-connected civilian security cameras for recon has become a standard operating procedure of modern warfare. First for Russia and Ukraine, now for Israel and Iran.

Your insecure internet-of-things surveillance system is now their targeting system.

www.wired.com/story/from-u...

203 111 3 10
1 week ago
Preview
Meta Workers Say They're Seeing Disturbing Things Through Users' Smart Glasses Meta contractors in Kenya told two Swedish newspapers that they're being told to review highly sensitive footage recorded by smart glasses.

Most of the footage should never leave the user’s device. But of course the worst company doesn’t do privacy.

Meta Workers Say They’re Seeing Disturbing Things Through Users’ Smart Glasses
futurism.com/artificial-i...

87 42 6 18
1 week ago

Also if you work in sales at a company, do not call me. Email, fine.

18 1 0 0
1 week ago

No matter how many times I tell zoominfo to not sell my personal data, they continue to sell it to companies.

I am so frustrated with their non compliance with California law.

31 1 1 1
1 week ago
Preview
Security and Privacy Analysis of Tile's Location Tracking Protocol We conduct the first comprehensive security analysis of Tile, the second most popular crowd-sourced location-tracking service behind Apple's AirTags. We identify several exploitable vulnerabilities an...

When we talk about the problems with Bluetooth-enabled physical trackers, we usually talk about AirTags, but let us save some rage for Tile, powered by this paper discussing Tile's privacy, security, and accountability problems: arxiv.org/abs/2510.003...

92 32 5 1
1 week ago
Preview
Computer Terminal Replica Inspired By 70s Hardware Hackaday Article

Computer Terminal Replica Inspired By 70s Hardware

82 8 4 0
1 week ago
Preview
Data Broker Breaches Fueled Nearly $21 Billion in Identity-Theft Losses A report copublished by WIRED sparked a probe into opt-out pages hidden by data brokers. Now congressional Democrats say breaches tied to the industry have cost people tens of billions of dollars.

Data Broker Breaches Fueled Nearly $21 Billion in Identity-Theft Losses

www.wired.com/story/data-b...

7 6 0 0
2 weeks ago
Preview
Anthropic Drops Flagship Safety Pledge In an abrupt shift, the company may release future AI models without ironclad safety guarantees

In the end, ethics and safety standards are no match for the promise of potential $$$ and profits… time.com/7380854/excl...

17 2 0 1