Alec Muffett
@alecmuffett.bsky.social
đ€ 5113
đ„ 1149
đ 3543
everybody deserves good security.
https://alecmuffett.com/about
I read of social media causing mental health crises & despair re: the meaningless & futility of life. Folk should study Astronomy instead. The Sun one day will bloat & consume the Earth, yet we fritter away our time with trivialities like "power" & "conquest". Do better.
about 4 hours ago
1
6
1
[Europe] voted today to end chat monitoring 1.0. This ends an exception that was used, in particular, by US Big Tech companies to monitor billions of peopleâs private messages without suspicion
https://alecmuffett.com/article/151697
#ChatControl
#EndToEndEncryption
#surveillance
loading . . .
[Europe] voted today to end chat monitoring 1.0. This ends an exception that was used, in particular, by US Big Tech companies to monitor billions of peopleâs private messages without suspicion
The European Parliament has thus formally concluded the legislative process . The Digital Society Association and many individuals had previously contacted the Members of Parliament, appealing to tâŠ
https://alecmuffett.com/article/151697
about 6 hours ago
0
1
1
#AgeVerification
#Apple
add a skeleton here at some point
about 12 hours ago
0
2
0
MEPs block tech firms from scanning for child sexual abuse material | POLITICO
https://alecmuffett.com/article/151666
#ChatControl
#ClientSideScanning
#EndToEndEncryption
#csam
#surveillance
loading . . .
MEPs block tech firms from scanning for child sexual abuse material | POLITICO
âperhaps thereâs a different approach they could try taking, other than surveilling everybodyâs messages?â
https://alecmuffett.com/article/151666
about 12 hours ago
0
2
1
I am very much looking at the Apple Age Verification (AV) approach as the least bad way to do something terrible
https://alecmuffett.com/article/151652
#AgeVerification
#apple
#censorship
loading . . .
I am very much looking at the Apple Age Verification (AV) approach as the least bad way to do something terrible
AV itself is tantamount to Digital Identity, it is illiberal to deploy everywhere and it is misconceived to imagine that it solves social problems The least bad way of getting AV is for people to bâŠ
https://alecmuffett.com/article/151652
about 15 hours ago
2
15
8
Remember that big win on ChatControl a couple of weeks ago? It turns out they didnât like the result and they want to vote on it again, TODAY. Sorry.
https://alecmuffett.com/article/151637
#ChatControl
#EndToEndEncryption
#censorship
#surveillance
loading . . .
Remember that big win on ChatControl a couple of weeks ago? It turns out they didnât like the result and they want to vote on it again, TODAY. Sorry.
The Conservatives (EPP) are attempting to force a new vote TODAY (March 26) seeking to reverse the European Parliamentâs NO on indiscriminate scanning of ALL your private messages, emails andâŠ
https://alecmuffett.com/article/151637
about 16 hours ago
1
9
7
This cybersecurity tweet from @SciTechgovuk / DSIT is getting *brigaded* by people pointing out how the UK Government is actively undermining cybersecurity
https://alecmuffett.com/article/151611
#AgeVerification
#OnlineSafety
#OnlineSafetyAct
#censorship
#dsit
#gchq
#ncsc
#surveillance
loading . . .
This cybersecurity tweet from @SciTechgovuk / DSIT is getting *brigaded* by people pointing out how the UK Government is actively undermining cybersecurity
Examples; remember to check both quotes & replies:
https://alecmuffett.com/article/151611
about 18 hours ago
1
4
2
Human rights chief warns against banning social media for kids | POLITICO
https://alecmuffett.com/article/151370
#HumanRights
#OnlineSafety
#OnlineSafetyAct
#SocialMediaBanned
#censorship
loading . . .
Human rights chief warns against banning social media for kids | POLITICO
It turns out that kids are people too. Whoda thunk it? Via
https://alecmuffett.com/article/151370
1 day ago
0
6
9
âRestricting access to social media presents âissues of human rights, because a child has a right to receive information just like anybody else.ââ
https://alecmuffett.com/article/151359
#CouncilOfEurope
#SocialMediaBan
loading . . .
âRestricting access to social media presents âissues of human rights, because a child has a right to receive information just like anybody else.ââ
Visit the post for more.
https://alecmuffett.com/article/151359
1 day ago
0
5
4
thought for the day: vibe coding of today is the perl programming of 1992.
2 days ago
6
31
4
reposted by
Alec Muffett
PseudoDNA: Identifying Critical Vulnerabilities in Microsoftâs PhotoDNA
https://alecmuffett.com/article/151219
#OnlineSafetyAct
#PhotoDna
#censorship
loading . . .
PseudoDNA: Identifying Critical Vulnerabilities in Microsoftâs PhotoDNA
Researchers from the COSIC group at KU Leuven have uncovered major security weaknesses in PhotoDNA, a technology widely used to detect Child Sexual Abuse Material (CSAM) online. The system is curreâŠ
https://alecmuffett.com/article/151219
3 days ago
0
2
2
Spain: football-match-induced online censorship regularly prevents installation of Postgres on Docker for fear of illicit streaming
https://alecmuffett.com/article/151241
#OnlineSafetyAct
#censorship
#spain
loading . . .
Spain: football-match-induced online censorship regularly prevents installation of Postgres on Docker for fear of illicit streaming
Europe is already a Banana Republic with respect to Internet Regulation, and it appears that Spain is doubly so:
https://alecmuffett.com/article/151241
2 days ago
1
12
7
PseudoDNA: Identifying Critical Vulnerabilities in Microsoftâs PhotoDNA
https://alecmuffett.com/article/151219
#OnlineSafetyAct
#PhotoDna
#censorship
loading . . .
PseudoDNA: Identifying Critical Vulnerabilities in Microsoftâs PhotoDNA
Researchers from the COSIC group at KU Leuven have uncovered major security weaknesses in PhotoDNA, a technology widely used to detect Child Sexual Abuse Material (CSAM) online. The system is curreâŠ
https://alecmuffett.com/article/151219
3 days ago
0
2
2
reposted by
Alec Muffett
Andrea
3 days ago
oh lol it only depends on R+G+B at each pixel and you could construct images that keep that constant and only vary in the orthogonal plane
0
2
1
reposted by
Alec Muffett
Andrea
3 days ago
Paper:
eprint.iacr.org/2026/486
loading . . .
White-Box Attacks on PhotoDNA Perceptual Hash Function
đâđđĄđđ·đđŽ is a widely deployed perceptual hash function used for the detection of illicit content such as Child Sexual Abuse Material (CSAM). This paper presents the first mathematical description of đŽ...
https://eprint.iacr.org/2026/486
3
8
3
reposted by
Alec Muffett
Andrea
3 days ago
Video wrapped in a couple layers of blog/Twitter link is
www.youtube.com/watch?v=KYyD...
; you should always have been pretty damn skeptical of hashes that are collision-free but sensitive to a perceptual distance metric IMO, and quadruply so of Microsoft's "lol, the algorithm is secret" hash
add a skeleton here at some point
1
12
7
reposted by
Alec Muffett
COSIC
4 days ago
Natural collisions in Appleâs
#NeuralHash
and Microsoftâs
#PhotoDNA
show worrying false positives/negatives in widely deployed perceptual hashing. Our findings highlight severe risks for privacy and civil liberties at scale. Watch this short demo: đ„
www.youtube.com/watch?v=KYyD...
loading . . .
Cybersecurity Industry Day 2025 - Your Face Isnât Yours Anymore... (Diane Leblanc-Albarel, COSIC)
YouTube video by COSIC - Computer Security and Industrial Cryptography
https://www.youtube.com/watch?v=KYyDwKLSKgM
1
9
3
reposted by
Alec Muffett
COSIC
4 days ago
New Le Soir piece on COSIC research: we reverseâengineered Microsoftâs secret
#PhotoDNA
and show how
#CSAM
detection can be bypassed or weaponised to falsely flag innocents. Our results challenge the push for largeâscale clientâside scanning.
www.lesoir.be/735999/artic...
[paywall]
loading . . .
Le systĂšme mondial de dĂ©tection dâimages pĂ©dopornographiques en ligne est boiteux
Des chercheurs de la KULeuven ont percĂ© lâalgorithme ultrasecret de PhotoDNA, la technologie de Microsoft utilisĂ©e par toutes les plateformes pour dĂ©busquer les pĂ©docriminels. Quelques secondes suffis...
https://www.lesoir.be/735999/article/2026-03-21/le-systeme-mondial-de-detection-dimages-pedopornographiques-en-ligne-est-boiteux
0
9
6
âNatural collisions in Appleâs NeuralHash & Microsoftâs PhotoDNA show worrying false positives/negatives in widely deployed perceptual hashingâ
https://alecmuffett.com/article/151208
#NeuralHash
#OnlineSafetyAct
#PhotoDna
#censorship
loading . . .
âNatural collisions in Appleâs NeuralHash & Microsoftâs PhotoDNA show worrying false positives/negatives in widely deployed perceptual hashingâ
At Facebook 2013-16 it was a discreet secret within parts of the Trust & Safety team that PhotoDNA âhad problems with collisions but we are not allowed to talk about themâ â dâŠ
https://alecmuffett.com/article/151208
3 days ago
1
10
6
Investigation: UK spends millions on VPNs as government weighs ban for children | TechRadar
https://alecmuffett.com/article/151079
#OnlineSafetyAct
#censorship
#surveillance
#vpns
loading . . .
Investigation: UK spends millions on VPNs as government weighs ban for children | TechRadar
âSince the publication of this investigation, the Department for Science, Innovation and Technology (DSIT) published a contract that shows it is spending nearly ÂŁ50,000 on a survey to understâŠ
https://alecmuffett.com/article/151079
3 days ago
0
0
0
reposted by
Alec Muffett
Curiously I wrote an entire primer about this kind of issue; end to end security and at what point & when does it become illiberal to demand that *other people* exclusively use software which meets *your own* personal security specification?
alecmuffett.com/alecm/e2e-pr...
4 days ago
1
2
1
reposted by
Alec Muffett
UK House of Lords seeks ban on Swiss Army Knives that ââŠcould be used to cut peopleâ
https://alecmuffett.com/article/150803
#DualUse
loading . . .
UK House of Lords seeks ban on Swiss Army Knives that ââŠcould be used to cut peopleâ
âWe are not against pen knives in principleâ, says peer, ââŠbut we want manufacturers to take steps to prevent them being used to cause harm.â
https://alecmuffett.com/article/150803
5 days ago
1
10
3
UK House of Lords seeks ban on Swiss Army Knives that ââŠcould be used to cut peopleâ
https://alecmuffett.com/article/150803
#DualUse
loading . . .
UK House of Lords seeks ban on Swiss Army Knives that ââŠcould be used to cut peopleâ
âWe are not against pen knives in principleâ, says peer, ââŠbut we want manufacturers to take steps to prevent them being used to cause harm.â
https://alecmuffett.com/article/150803
5 days ago
1
10
3
reposted by
Alec Muffett
Meh.
alecmuffett.com/article/149384
loading . . .
One Week, Three Stories About Meta, Encryption, & Age Verification, and Why Iâm Not Worried About (This Aspect of) Meta
âMeta ends End-to-End Encryption for Instagram DMs!â âMeta lobbies for Age Verification in App Stores!â âMoxie Marlinspike partners with Meta to build E2EE for AI ChatâŠ
https://alecmuffett.com/article/149384
5 days ago
1
2
2
This is absolute perfection: UBUNTU SECURE BOOT AGE VERIFICATION | Hacker.House
https://alecmuffett.com/article/150554
#AgeVerification
#OnlineSafetyAct
#OpenSource
#censorship
#kosa
#systemd
#ubuntu
loading . . .
This is absolute perfection: UBUNTU SECURE BOOT AGE VERIFICATION | Hacker.House
Perfect commentary on nerds following authoritarianism because it is an interesting intellectual challenge:
https://alecmuffett.com/article/150554
6 days ago
0
28
22
Lawyer mocks Ofcomâs big fine with bigger hamster | RollOnFriday
https://alecmuffett.com/article/150545
#4chan
#RollOnFriday
#censorship
#ofcom
loading . . .
Lawyer mocks Ofcomâs big fine with bigger hamster | RollOnFriday
Apparently RollOnFriday is kind of âSlashdot meets HackerNewsâ for the UK legal community, and they are covering that Ofcom is being hamstered by 4chan. Public ridicule amongst the legaâŠ
https://alecmuffett.com/article/150545
6 days ago
0
1
0
So it appears that the way to get massively retweeted on Mastodon (so to speak) is to get a boost from Charlie Stross. Quite astonishing consequences, reallyâŠ
6 days ago
0
3
0
Ofcom accused of posting misinformation
https://alecmuffett.com/article/150498
#4chan
#OnlineSafetyAct
#censorship
#misinformation
#ofcom
loading . . .
Ofcom accused of posting misinformation
Visit the post for more.
https://alecmuffett.com/article/150498
6 days ago
0
0
0
reposted by
Alec Muffett
Ilya Farber
6 days ago
Useful perspective, from one of the very few people I would trust to say âcalm down, this $megacorp privacy change may not actually be so bad.â The point about app stores as âattestation 1.0â is especially well-taken. (1/3)
add a skeleton here at some point
1
2
2
All you would need to do is send one small cat meme to key politicians via diverse routes like SMS and WhatsApp and Email, and then Apple & Google would do the rest for you:
add a skeleton here at some point
7 days ago
0
5
2
Let Me Explain How a State Actor Could Perform a Denial-of-Service Attack on the Entire UK Government in the Wake of Ofcom âOnline Safety Actâ Client-Side Scanning
https://alecmuffett.com/article/150401
loading . . .
Let Me Explain How a State Actor Could Perform a Denial-of-Service Attack on the Entire UK Government in the Wake of Ofcom âOnline Safety Actâ Client-Side Scanning
1/ obtain a hash of abuse material thatâs both known & banned; if pervasive as claimed this shouldnât be hard 2/ use algorithms from this paper to create a cat meme with the same haâŠ
https://alecmuffett.com/article/150401
7 days ago
1
9
4
If you read one thing about encryption today, this should be it, although my upcoming post just after 10:00 a.m. is also a banger.
add a skeleton here at some point
7 days ago
0
1
1
One Week, Three Stories About Meta, Encryption, & Age Verification, and Why Iâm Not Worried About (This Aspect of) Meta
https://alecmuffett.com/article/149384
#AgeVerification
#EndToEndEncryption
#instagram
#meta
loading . . .
One Week, Three Stories About Meta, Encryption, & Age Verification, and Why Iâm Not Worried About (This Aspect of) Meta
âMeta ends End-to-End Encryption for Instagram DMs!â âMeta lobbies for Age Verification in App Stores!â âMoxie Marlinspike partners with Meta to build E2EE for AI ChatâŠ
https://alecmuffett.com/article/149384
7 days ago
0
1
2
Ofcom persist in pretending that 4chan are trading in the UK, rather than accepting that Britons are visiting a foreign website
https://alecmuffett.com/article/150156
#4chan
#OnlineSafetyAct
#censorship
#ofcom
#surveillance
loading . . .
Ofcom persist in pretending that 4chan are trading in the UK, rather than accepting that Britons are visiting a foreign website
Regulate the Britons, not the foreign websites: â4Chan responds to ÂŁ520,000 Ofcom fine with AI picture of hamsterâ âCompanies â wherever theyâre based â are not allowed to sâŠ
https://alecmuffett.com/article/150156
7 days ago
0
3
2
reposted by
Alec Muffett
#VastyDeep
bsky.app/profile/ofco...
add a skeleton here at some point
8 days ago
0
4
2
I suspect that Ofcom only ever accept that it is âhighly effective age assuranceâ if somebody gets paid, ideally repeatedly | Apple permit âaccount ageâ as a means of age verification
https://alecmuffett.com/article/150045
#AgeVerification
#ofcom
loading . . .
I suspect that Ofcom only ever accept that it is âhighly effective age assuranceâ if somebody gets paid, ideally repeatedly | Apple permit âaccount ageâ as a means of age verification
This will be fun to watch, because the age verification lobby community are equal parts not rational and commercially minded; also the mere passing of the arrow of time does nothing to fund the UK âŠ
https://alecmuffett.com/article/150045
8 days ago
0
2
1
reposted by
Alec Muffett
Prufrax
9 days ago
As ever, meta have no vision or direction for horizon worlds. This week they are trying to compete with Roblox or something, instead of VRChat, so the vr parts aren't necessary right now.
0
2
1
reposted by
Alec Muffett
Owen Bennett
9 days ago
Via
@alecmuffett.bsky.social
This development is going to get *a lot* of attention as online safety policy interest turns to AI chatbots. 'Moxie Marlinspike, of Signal fame, announces partnership with Meta to bring end-to-end encryption to Meta AI Chat'
alecmuffett.com/article/149867
loading . . .
Moxie Marlinspike, of Signal fame, announces partnership with Meta to bring end-to-end encryption to Meta AI Chat
This is going to cause a safety regulatory meltdown: Quote: Confer is built so that nobody has access to your conversations but you (not even me!) ⊠Ten years ago, I worked with Meta to integrate tâŠ
https://alecmuffett.com/article/149867
0
2
4
Meta is shutting down its VR metaverse on June 15th | The Verge | âŠBUT WONâT SOMEONE PLEASE THINK OF THE REGULATORS?
https://alecmuffett.com/article/149862
#metaverse
#regulation
loading . . .
Meta is shutting down its VR metaverse on June 15th | The Verge | âŠBUT WONâT SOMEONE PLEASE THINK OF THE REGULATORS?
All of those regulators, poised to strike, waiting their moment to regulate virtual reality, and⊠*poof* itâs gone.
https://alecmuffett.com/article/149862
9 days ago
1
5
1
Moxie Marlinspike, of Signal fame, announces partnership with Meta to bring end-to-end encryption to Meta AI Chat
https://alecmuffett.com/article/149867
#EndToEndEncryption
#ai
#encryption
#llm
#privacy
loading . . .
Moxie Marlinspike, of Signal fame, announces partnership with Meta to bring end-to-end encryption to Meta AI Chat
This is going to cause a safety regulatory meltdown: Quote: Confer is built so that nobody has access to your conversations but you (not even me!) ⊠Ten years ago, I worked with Meta to integrate tâŠ
https://alecmuffett.com/article/149867
9 days ago
0
6
0
There is an entire genre of tricking AI customer service bots into doing work; but few are pointing out the obviousâŠ
https://alecmuffett.com/article/149128
#ClientSideScanning
#OnlineSafety
#ai
#censorship
#surveillance
loading . . .
There is an entire genre of tricking AI customer service bots into doing work; but few are pointing out the obviousâŠ
âŠthat this is how all censorship circumvention works, and that content scanning will inevitably fail in the face of focused ingenuity.
https://alecmuffett.com/article/149128
14 days ago
0
5
2
Lloyds, Bank of Scotland and Halifax apps showing customers other usersâ transactions | BBC News
https://alecmuffett.com/article/149070
#dns
#hbos
loading . . .
Lloyds, Bank of Scotland and Halifax apps showing customers other usersâ transactions | BBC News
Was it DNS?
https://alecmuffett.com/article/149070
15 days ago
0
4
3
#ADHD
+
#Algorithms
Life Hack: set up a WhatsApp or Signal chat with only yourself, for Notes. Set 90 day expiry to stop clutter. Share 'TODO' items with that chat: gives you a 90-day window to review & act, plus sharing = algorithmic boost signal for similar content.
15 days ago
1
3
1
reposted by
Alec Muffett
It's hard to express how utterly maddening it is that the #LibDems, rather than actively defending our right to private internet usage, entirely abstained from voting on the #SocialMediaBan
https://votes.parliament.uk/votes/commons/division/2270#notrecorded
#LibDems
17 days ago
2
15
6
Rarely have I been so happy to be wrong: the Amendment 92 voted-in in block is not the same Amendment 92 as discussed (
https://bills.parliament.uk/bills/3909/stages/20215/amendments/10027478
) in the Lords. Different numbering schemes.
17 days ago
2
6
3
It's hard to express how utterly maddening it is that the #LibDems, rather than actively defending our right to private internet usage, entirely abstained from voting on the #SocialMediaBan
https://votes.parliament.uk/votes/commons/division/2270#notrecorded
#LibDems
17 days ago
2
15
6
A New Jerusalem
https://alecmuffett.com/article/148779
#AgeVerification
#SocialMediaBan
#censorship
#surveillance
loading . . .
A New Jerusalem
For the moment, sanity holds, but for how long? And did the towers of watching glassRise on Englandâs mountains green?And did the silent, sleepless eyesSurvey each field and lane unseen? And was thâŠ
https://alecmuffett.com/article/148779
17 days ago
0
2
1
Today: laundry, cleaning, & debating digital policy futures with my locally-hosted Qwen 35B instance. It's more fair, informed, & articulate than many activists & pundits. The pace feels like old-school email or 1980s BBS messaging. Secure, too, & free.
18 days ago
1
1
0
I have a 2018-era MacMini with 64Gb of RAM + negligible GPU, running a 35 billion parameter model and Iâm getting 4 tokens per second out of it; tell me again how we arenât going to be running AIs locall[âŠ]
https://alecmuffett.com/article/148512
#ai
#llm
#qwen
loading . . .
I have a 2018-era MacMini with 64Gb of RAM + negligible GPU, running a 35 billion parameter model and Iâm getting 4 tokens per second out of it; tell me again how we arenât going to be running AIs locally at home?
Models are simply fuzzy compressions of all of the pages in the internet & elsewhere, starting with Wikipedia. Back in the 1980s and 1990s, JPEGs were exotic, took ages to create and they lookeâŠ
https://alecmuffett.com/article/148512
20 days ago
3
6
0
I've just been adapting my blog's social media feed to post short messages to all platforms. I've named the resulting script 'rwall'. Bonus points if you know why without looking. :-)
20 days ago
3
6
1
Load more
feeds!
log in