@hub_compliance · Post #189 · 2024/01/29 10:52
Поздравляем с Международным днём защиты персональных данных! Берегите себя и свои персональные данные. #dataprotection
Hashtags
静态网站悖论 个人网站的两种不同实现方式:一种是复杂的内容管理系统(CMS),另一种是简单的静态 HTML 文件。文章指出,尽管大多数普通用户倾向于使用复杂的解决方案(如 WordPress),但实际上,只有少数专业软件工程师能够选择更简单的静态网站。 via HackerNews 2024 10 09 前两天刚好听朋友说 square space 已经涨到了近乎搞笑的 $25 月费,做不用来盈利的个人博客实在难以 justify。这篇文章中吐槽得很在点子上: normal users are stuck with a bunch of greedy clowns that make them pay for every little thing, all while wasting ungodly amounts of computational power to render what could have been a static website in 99% of cases. 普通用户被困在了一群屁大点功能都要收费的贪婪小丑手里,与此同时浪费着人神共愤额度的算力来渲染 99% 的情况下都可以作为静态的网站。 当然原文中说的“只有少数专业软件工程师才能选择更简单的静态网站”略微夸张并不认同,因为静态站至少是比 self-host 的动态 CMS 少太多维护了。我的 backlog 里也一直躺了篇安利新手用静态站并拉踩 WP 的文,不过网上这种文已经有无数了也还是拦不住前赴后继往各种 CMS 的坑里冲的新手,觉得写了又有什么意义呢就还搁着没写。(当然迟早会像以前反复造的无数轮子一样被废话欲战胜的 but not today) #indieblog#newletter
Hashtags
搜索 #dataprotection
@hub_compliance · Post #189 · 2024/01/29 10:52
Поздравляем с Международным днём защиты персональных данных! Берегите себя и свои персональные данные. #dataprotection
Hashtags
@hub_compliance · Post #530 · 2024/11/13 05:13
Рады сообщить о том, что Compliance Hub и Digital Rights Center Kazakhstan заключили Меморандум о сотрудничестве и взаимодействии в целях реализации совместных инициатив в области комплаенс и защиты персональных данных, в том числе, в образовательной сфере. #compliance#dataprotection
Hashtags
@hub_compliance · Post #249 · 2024/03/07 08:03
Очередная утечка персональных данных https://kapital.kz/finance/123811/proizoshla-utechka-personal-nykh-dannykh-kliyentov-zaimer.html #dpo#dataprotection
Hashtags
@hub_compliance · Post #80 · 2023/10/30 10:24
В случае обнаружения Telegram-ботов, нарушающих конфиденциальность граждан на безопасность персональных данных, МЦРИАП Республики Казахстан просит граждан сообщать об этом напрямую в министерство для предотвращения нарушений прав граждан на защиту персональных данных. https://www.gov.kz/memleket/entities/mdai/press/news/details/644166?lang=ru #dataprotection#dpo
Hashtags
@hub_compliance · Post #68 · 2023/10/20 00:01
19 октября успешно прошел Евразийский конгресс по защите данных (EDPC 2023). DPO крупных компаний рассказывали об опыте построения систем защиты персональных данных. Тема актуальная, доклады чрезвычайно полезные. #privacy#dataprotection
Hashtags
@hub_compliance · Post #541 · 2024/11/19 05:26
Всем привет! Не пропустите вебинар "Текущие вызовы в области комплаенс и ПОД/ФТ", в котором CEO Compliance Hub Тимур Мусин расскажет об основных тенденциях в области комплаенс и ПОД/ФТ. Когда: 22 ноября, 16:00 - 17:30 Формат: Онлайн, Zoom, бесплатно Организатор мероприятия: KOMPRA Ссылка на регистрацию: https://docs.google.com/forms/d/e/1FAIpQLScGbpBXRxErDBEq9VhopBJGIR2r0Miu_RV6hJ-ql5wF9dI9mw/viewform #compliance#amlcft#dataprotection
💻AI Browsers Become Attack Vectors SquareX has flagged growing security risks tied to AI-powered web browsers, according to GovInfoSecurity. These browsers are designed to automate routine online tasks, but doing so requires broad access to users’ personal data. Founder Vivek Ramachandran warned that these systems are “trained to complete tasks, not to be security aware.” This design gap makes it easy for attackers to manipulate AI browsers into executing malicious actions under the guise of legitimate workflow steps. This emerging vulnerability challenges existing cybersecurity assumptions and shifts the weak point from user behavior to automated agents acting on their behalf. #AI#Cybersecurity#DataProtection
Hashtags
🇳🇱Dutch Regulator Flags Open-Source AI Agents as Security Threat The Autoriteit Persoonsgegevens, the Netherlands’ data protection authority, has warned organizations against using popular open-source AI agents such as OpenClaw due to serious security risks. According to the regulator, many plug-ins built for these agents contain malware capable of triggering data breaches and enabling account takeovers. Cybersecurity professionals characterize these agents as a “Trojan horse”: once granted device access, they can extract login credentials and gain entry to cryptocurrency accounts. The warning reframes open-source AI not as a transparency advantage by default, but as a potential vector for systemic compromise when governance over extensions and permissions is weak. #AIRegulation#DataProtection#Cybersecurity
🇪🇺Meta’s AI Plans Face GDPR Roadblock Meta’s announcement to start using personal data from Facebook and Instagram—including from EU users—for AI training as of May 27 has triggered legal action. The privacy NGO noyb, led by Max Schrems, has sent Meta a Cease and Desist letter, warning that a European class action could follow. At the core of the dispute is Meta’s choice to base this data processing on “legitimate interest” rather than seeking users' informed consent, as required under Article 6 of the GDPR. If noyb proceeds with litigation and the courts agree, Meta could be forced to halt AI training involving EU data and delete existing models trained unlawfully. With the risk of massive collective redress claims looming, this case could set a decisive precedent for how AI development must align with European data protection law. #AI#GDPR#DataProtection
Hashtags
Italian Data Protection Authority Challenges AI-Powered Business Models The Italian Data Protection Authority (DPA) has issued a formal warning to Gedi Group, cautioning against the use of its newspaper archives for AI training under a licensing agreement with OpenAI. The archives reportedly contain sensitive personal data, including judicial records, which the DPA argues cannot be lawfully shared or processed without meeting strict GDPR requirements. The Authority highlights deficiencies in Gedi's legal basis for data sharing, impact assessments, and transparency toward affected individuals. This action could have broader implications, potentially undermining licensing-based AI models across the EU. If data protection laws conflict with proposed solutions like content licensing for generative AI, the industry may face a deadlock. With other EU regulators likely to take note, this could mark the beginning of a regulatory shift that challenges the very foundations of AI-driven innovation. #AI#GDPR#DataProtection
Hashtags
🌐AI Assistants and the Privacy Mandate Var Shankar, founder of the Council on AI Governance, highlights a growing challenge in a new analysis for the OECD: AI assistants accumulate personal data that forms detailed user profiles, raising complex questions of privacy and control. This isn’t about whether the data exists — it already does — but about how it is handled, secured, and regulated. Shankar argues that responsibility should not rest on users deciphering long terms of service. Instead, the onus must shift to policymakers to establish clear, enforceable standards governing the use of such data. #AIgovernance#Privacy#DataProtection #
🌐Researchers claim AI models show signs of tracking data to target users A joint study by researchers in Italy and the U.K. has revealed that 10 widely used AI models collect and transmit user data in ways that may violate data protection law. According to Euronews, the investigation traced how information flowed between the models, servers, and online trackers, uncovering practices that go beyond simple personalization. The findings are significant: AI browsing assistants were shown to capture highly sensitive information, including banking details, tax numbers, academic records, and even medical data. This raises pressing legal and ethical questions about whether AI systems that promise convenience are instead creating systemic risks to privacy and compliance. #AIethics#DataProtection#AIregulation#Privacy