v0max Profile Banner
Serge Egelman (@v0max.bsky.social) Profile
Serge Egelman (@v0max.bsky.social)

@v0max

Followers
3K
Following
7K
Media
554
Statuses
6K

Does his own research. Dir. of Usable Security & Privacy @ICSIatBerkeley. Founder, @AppCensusInc. All opinions are those of his employer(s), and not his own.

Joined January 2009
Don't wanna be here? Send us removal request.
@carmelatroncoso
Carmela Troncoso
2 years
The regulation also says that these keys cant be removed without the authorization of the issuing member state‼️ This means that checks from the community like this awesome work by @v0max and Joel Reardon would be useless if states want to keep their keys:
Tweet card summary image
washingtonpost.com
TrustCor Systems, which vouches for the legitimacy of websites, has connections to contractors for U.S. intelligence agencies and law enforcement, according to security researchers, documents and...
1
3
15
@IelTop
Daniel Woods
2 years
#weis2024 is on an accelerated timeline this year. The Submission deadline is 30 November 2023 Details: https://t.co/kiLtaCipnC
0
11
6
@v0max
Serge Egelman (@v0max.bsky.social)
2 years
If anyone wants an invite to the other site, I gots ‘em!
0
0
0
@hoofnagle
Chris Hoofnagle
2 years
In my various travels, I hear Max Schrems' name invoked as much as the FTC's. Schrems will someday be recognized as one of the most consequential people in privacy. Even if you disagree with him, Schrems shows how a young, entrepreneurial lawyer can change the world
3
15
47
@ryan_hassett
Socially Distant Ryan 🇺🇦
2 years
It's still incredible to me that Uber set up what were obviously illegal taxi operations, called it something else and eventually got virtually every city in North America to roll over, say "okay!" and either tear down taxi regulations or set up two parallel regulatory regimes.
179
502
6K
@0xjet
Juan Tapiador
2 years
Great presentation by @Allan__Lyons right now @USENIXSecurity on our recent work about logging of sensitive information in Android. #usesec23 Paper + slides (and soon the talk) here: https://t.co/SlKRdUACSC /cc @v0max @narseo @jgamba_
0
7
14
@v0max
Serge Egelman (@v0max.bsky.social)
2 years
Pro tip: in CA they’re required to allow you to cancel online (Cal. Bus. & Prof. Code § 17602). Comcast violates this, and so when it happened to me, I documented it and then disputed the credit card charge. They immediately canceled when Amex notified them of the dispute.
@mihaimaruseac
Mihai Maruseac
2 years
Hei, @comcast / @Xfinity can we stop with the dark patterns? I just want to cancel service, I don't care to chat with your agents and your bot is just a loop. Just stop the service already.
0
0
1
@UltraTerm
CYBERGEM 💎✨
2 years
🚨 "We may manually review DMs..." 🚨 This window randomly popped up for me stating that employees will read our DMs for various reasons, including if a government requests access. I already assumed this was the case, but it's nice to know for sure that we have no privacy here.
60
466
1K
@v0max
Serge Egelman (@v0max.bsky.social)
2 years
I’m no marketing wizard, but it seems to me that you might want to make your email pitches a bit more distinguishable from recall notices…
0
0
0
@ccanonne_
Clément Canonne (on Blue🦋Sky)
2 years
Wait, did they REALLY go with \mathbb{X} as their logo? They cannot possibly be THAT lazy?
235
2K
16K
@JohnHolbein1
John B. Holbein
2 years
Lol
6
322
2K
@RobertJBateman
Robert Bateman
2 years
Police used the Meta Pixel tracker to share interactions with a form for witnesses and victims with Facebook. Also told Meta when someone clicked a link to "securely and confidentially report rape or sexual assault". It is utterly bonkers that this is so unsurprising. Just WHY
5
70
110
@maximilianhils
Maximilian Hils
2 years
No, it was not a joke. "Our paying customers need X, when will you fix it?" may not be the best way to introduce yourself to an open source project. #TodayInOpenSource
374
2K
20K
@ShomirWilson
Shomir Wilson
2 years
Thanks @v0max for a distinction about the audiences of privacy policies. Ostensibly they’re for end users, but the actual audience is different: regulators, lawyers, and researchers. #pets23
1
1
5
@v0max
Serge Egelman (@v0max.bsky.social)
2 years
Dam.
1
0
10
@v0max
Serge Egelman (@v0max.bsky.social)
2 years
Getting the luggage to the chalet was another matter (it slightly overshot, and I had to use the AirTag to find it about 10m past).
2
0
2
@v0max
Serge Egelman (@v0max.bsky.social)
2 years
Not a bad view from my balcony!
3
0
26
@BedoyaUSA
Alvaro Bedoya
2 years
Our Chicago and Atlanta @FTC offices are hiring new attorneys. These are among of our most dynamic shops. I urge you to consider applying:
1
15
16
@securing_bits
Securing Bits
2 years
Are you implementing 2FA for your mobile or web app? You need to understand the privacy and security risks associated with various 2FA apps. Today's comic is inspired by a recent paper written by @conorgil, Fuzail Shakir, @Noura_7N, and @v0max. 🧵[1/8] #privacy #cybersecurity
1
4
10
@v0max
Serge Egelman (@v0max.bsky.social)
2 years
👇This. If you’re doing something interesting that requires deep expertise, you don’t need to worry *too* much about randos with money outcompeting you.
0
0
6