Senator Chides FBI for Weak Advice on Mobile Security


https://friendica.eskimo.com/photo/preview/1024/7841561

Agents with the Federal Bureau of Investigation (FBI) briefed Capitol Hill staff recently on hardening the security of their mobile devices, after a contacts list stolen from the personal phone of the White House Chief of Staff Susie Wiles was reportedly used to fuel a series of text messages and phone calls impersonating her to U.S. lawmakers. But in a letter this week to the FBI, one of the Senate’s most tech-savvy lawmakers says the feds aren’t doing enough to recommend more appropriate security protections that are already built into most consumer mobile devices.

A screenshot of the first page from Sen. Wyden’s letter to FBI Director Kash Patel.

On May 29, The Wall Street Journal reported that federal authorities were investigating a clandestine effort to impersonate Ms. Wiles via text messages and in phone calls that may have used AI to spoof her voice. According to The Journal, Wiles told associates her cellphone contacts were hacked, giving the impersonator access to the private phone numbers of some of the country’s most influential people.

The execution of this phishing and impersonation campaign — whatever its goals may have been — suggested the attackers were financially motivated, and not particularly sophisticated.

“It became clear to some of the lawmakers that the requests were suspicious when the impersonator began asking questions about Trump that Wiles should have known the answers to—and in one case, when the impersonator asked for a cash transfer, some of the people said,” the Journal wrote. “In many cases, the impersonator’s grammar was broken and the messages were more formal than the way Wiles typically communicates, people who have received the messages said. The calls and text messages also didn’t come from Wiles’s phone number.”

Sophisticated or not, the impersonation campaign was soon punctuated by the murder of Minnesota House of Representatives Speaker Emerita Melissa Hortman and her husband, and the shooting of Minnesota State Senator John Hoffman and his wife. So when FBI agents offered in mid-June to brief U.S. Senate staff on mobile threats, more than 140 staffers took them up on that invitation (a remarkably high number considering that no food was offered at the event).

But according to Sen. Ron Wyden (D-Ore.), the advice the FBI provided to Senate staffers was largely limited to remedial tips, such as not clicking on suspicious links or attachments, not using public wifi networks, turning off bluetooth, keeping phone software up to date, and rebooting regularly.

“This is insufficient to protect Senate employees and other high-value targets against foreign spies using advanced cyber tools,” Wyden wrote in a letter sent today to FBI Director Kash Patel. “Well-funded foreign intelligence agencies do not have to rely on phishing messages and malicious attachments to infect unsuspecting victims with spyware. Cyber mercenary companies sell their government customers advanced ‘zero-click’ capabilities to deliver spyware that do not require any action by the victim.”

Wyden stressed that to help counter sophisticated attacks, the FBI should be encouraging lawmakers and their staff to enable anti-spyware defenses that are built into Apple’s iOS and Google’s Android phone software.

These include Apple’s Lockdown Mode, which is designed for users who are worried they may be subject to targeted attacks. Lockdown Mode restricts non-essential iOS features to reduce the device’s overall attack surface. Google Android devices carry a similar feature called Advanced Protection Mode.

Wyden also urged the FBI to update its training to recommend a number of other steps that people can take to make their mobile devices less trackable, including the use of ad blockers to guard against malicious advertisements, disabling ad tracking IDs in mobile devices, and opting out of commercial data brokers (the suspect charged in the Minnesota shootings reportedly used multiple people-search services to find the home addresses of his targets).

The senator’s letter notes that while the FBI has recommended all of the above precautions in various advisories issued over the years, the advice the agency is giving now to the nation’s leaders needs to be more comprehensive, actionable and urgent.

“In spite of the seriousness of the threat, the FBI has yet to provide effective defensive guidance,” Wyden said.

Nicholas Weaver **is a researcher with the **International Computer Science Institute, a nonprofit in Berkeley, Calif. Weaver said Lockdown Mode or Advanced Protection will mitigate many vulnerabilities, and should be the default setting for all members of Congress and their staff.

“Lawmakers are at exceptional risk and need to be exceptionally protected,” Weaver said. “Their computers should be locked down and well administered, etc. And the same applies to staffers.”

Weaver noted that Apple’s Lockdown Mode has a track record of blocking zero-day attacks on iOS applications; in September 2023, Citizen Lab documented how Lockdown Mode foiled a zero-click flaw capable of installing spyware on iOS devices without any interaction from the victim.

Earlier this month, Citizen Lab researchers documented a zero-click attack used to infect the iOS devices of two journalists with Paragon’s Graphite spyware. The vulnerability could be exploited merely by sending the target a booby-trapped media file delivered via iMessage. Apple also recently updated its advisory for the zero-click flaw (CVE-2025-43200), noting that it was mitigated as of iOS 18.3.1, which was released in February 2025.

Apple has not commented on whether CVE-2025-43200 could be exploited on devices with Lockdown Mode turned on. But HelpNetSecurity observed that at the same time Apple addressed CVE-2025-43200 back in February, the company fixed another vulnerability flagged by Citizen Lab researcher Bill Marczak: CVE-2025-24200, which Apple said was used in an extremely sophisticated physical attack against specific targeted individuals that allowed attackers to disable USB Restricted Mode on a locked device.

In other words, the flaw could apparently be exploited only if the attacker had physical access to the targeted vulnerable device. And as the old infosec industry adage goes, if an adversary has physical access to your device, it’s most likely not your device anymore.

I can’t speak to Google’s Advanced Protection Mode personally, because I don’t use Google or Android devices. But I have had Apple’s Lockdown Mode enabled on all of my Apple devices since it was first made available in September 2022. I can only think of a single occasion when one of my apps failed to work properly with Lockdown Mode turned on, and in that case I was able to add a temporary exception for that app in Lockdown Mode’s settings.

My main gripe with Lockdown Mode was captured in a March 2025 column by TechCrunch’s Lorenzo Francheschi-Bicchierai, who wrote about its penchant for periodically sending mystifying notifications that someone has been blocked from contacting you, even though nothing then prevents you from contacting that person directly. This has happened to me at least twice, and in both cases the person in question was already an approved contact, and said they had not attempted to reach out.

Although it would be nice if Apple’s Lockdown Mode sent fewer, less alarming and more informative alerts, the occasional baffling warning message is hardly enough to make me turn it off.
posted by pod_feeder

N. E. Felibata 👽 reshared this.

#Wirtschaft: Ökonomen sehen die Gefahr, dass Investitionen ins #Militär verpuffen: Bei bereits hoher Kapazitätsauslastungen der Rüstungsindustrie und zugleich intransparenten Vergabeverfahren führten höhere Ausgaben in #Verteidigung vor allem zu höheren Preisen. Ein Großteil der öffentlichen Mittel werde daher „in den Taschen der Rüstungskonzerne und deren Eigentümer“ landen, warnen
sie laut „Spiegel“.

Today in Labor History June 30, 1906: United States Congress passes the Meat Inspection Act and Pure Food and Drug Act in response to Upton Sinclair's novel, “The Jungle,” which exposed atrocious sanitary conditions in Chicago meat packing industry. Sinclair intended his book not only to bring attention to the public health threat of the squalid working conditions, but also to the racism faced by Chicago’s largely immigrant meat workers, as well as the corruption of both the politicians and union officials. However, the public was most outraged by the prospect of getting food poisoning from the rotten meat.

#workingclass #LaborHistory #meatpacking #publichealth #thejungle #uptonsinclair #union #corruption #foodsafety #chicago #workplacesafety #immigration #fiction #novel #book #author #writer @bookstadon

kolektiva.social/@MikeDunnAuth…

STFU and stay the fuck out! We have enough terrible rappers in the USA already!
nypost.com/2025/06/30/world-ne…

Desinvestition wegen Genozid: Keine Rente mit Verbrechen jungewelt.de/artikel/503067.de…

Historian William Dalrymple speaking powerfully and brilliantly about how Britain’s colonial legacy created the massive injustice, violence and trauma that Palestinians have endured and continue to endure to this day. We owe them the creation of Palestinian state, but we are doing anything but. #Gaza

youtu.be/kmfgI3vL1VQ?si=0lZ8BW…

NASA announced Monday its latest plans to team up with a streaming service to bring space a little closer to home. Starting this summer, NASA+ live programming will be available on Netflix. Audiences now will have another option to stream rocket launches, astronaut spacewalks, mission coverage, and breathtaking live views of Earth from the International […]

Wie immer ein Vergnügen @pluralistic zuzuhören - insbesondere der Teil über socialmedia/#mastodon / #bluesky ist on point!
(Link startet dort)
youtube.com/watch?v=aULx-29nf-…

Mastering Singapore’s Crystal Wholesale Market


Singapore’s crystal market is thriving, with retailers, collectors, and spiritual enthusiasts fueling demand for premium gemstones used in jewelry, decor, and spiritual practices. Partnering with a meteorite wholesaler Singapore or a trusted crystals supplier provides access to high-quality stones like moldavite crystal at competitive prices, enabling businesses to stand out in this dynamic industry. Success requires leveraging insider strategies to source authentic gems, negotiate favorable deals, and build a strong reputation. This comprehensive guide explores expert techniques to navigate the wholesale crystal market, offering actionable insights to ensure your business excels in Singapore’s vibrant gemstone industry.

1. Moldavite: A Cosmic Gem Explained


For those wondering what moldavite is, this green tektite, formed from a meteorite impact millions of years ago, is celebrated for its cosmic origins, vibrant energy, and spiritual significance. Often misspelled as moldivite or moldovite, moldavite’s unique properties and rarity make it a top choice for collectors, jewelers, and wellness enthusiasts. Sourcing from a wholesale supplier in Singapore ensures you offer authentic moldavite crystal that meets high standards, appealing to customers seeking rare and meaningful gemstones.

A reputable crystals supplier can provide in-depth knowledge about moldavite’s spiritual and aesthetic appeal, enabling you to market it effectively to your audience. By understanding its significance, you can position your business as a leading source for this sought-after stone in Singapore’s competitive market. Suppliers with expertise in moldavite often maintain direct connections to authentic sources, ensuring consistent quality and reliability for your inventory, which is crucial for building customer trust.

2. Tracing Moldavite’s Origins


Understanding where moldavite comes from is critical for verifying authenticity and fostering customer confidence. Moldavite originates primarily from the Czech Republic, where a meteorite strike millions of years ago created its distinctive glassy composition. A trusted natural stone supplier in Singapore will provide detailed documentation to confirm the stone’s origin, ensuring it’s not synthetic or misrepresented, which is essential for maintaining credibility in the market.

This transparency allows you to market moldavite crystal as a premium product with a compelling narrative that resonates with buyers. By partnering with a wholesale supplier in Singapore that prioritizes traceable sourcing, you can cater to discerning customers who value authenticity and quality. This approach not only enhances customer trust but also positions your business as a trusted leader in Singapore’s dynamic crystal industry.

3. Strategic Sourcing for Cost Efficiency


Bulk purchasing is a proven strategy for securing cost-effective deals on high-value stones. Many meteorite wholesalers Singapore offer unadvertised discounts for larger orders, significantly reducing costs for gems like moldavite crystal. By committing to higher volumes, you can negotiate favorable rates with a wholesale supplier in Singapore, ensuring a reliable supply while keeping expenses manageable. This approach is ideal for retailers aiming to maintain robust inventory levels without compromising profitability.

Mastering Singapore’s Crystal Wholesale Market

Another effective tactic is to inquire about unlisted inventory. Top crystal suppliers often hold exclusive or limited-edition stones, such as rare meteorites or high-grade moldavite, that aren’t publicly listed. A reputable meteorite wholesaler Singapore, may provide access to these hidden gems, allowing you to offer distinctive products that set your business apart. In Singapore’s competitive market, offering rare gemstones can attract customers seeking one-of-a-kind pieces, boosting your brand’s appeal and market presence.

4. Ensuring Quality and Ethical Standards


Quality assurance is paramount when sourcing crystals, especially for high-demand stones like moldavite. Requesting samples from your crystals supplier allows you to assess clarity, color, and authenticity before committing to large orders, preventing issues with counterfeit or low-quality stones. A trusted natural stone supplier in Singapore will readily provide samples to demonstrate their commitment to quality, ensuring customer satisfaction and protecting your business’s reputation.

Ethical sourcing is increasingly important, as consumers prioritize sustainability and fair practices. A reputable meteorite wholesaler Singapore will adhere to fair trade and sustainable mining standards, providing transparency about their sourcing methods. For moldavite crystal, verifying ethical origins enhances its marketability, appealing to eco-conscious buyers. Aligning with suppliers who uphold these values strengthens your brand’s credibility and appeal in Singapore’s growing crystal market.

5. Building Relationships and Trend Awareness


Forging a strong relationship with your wholesale supplier in Singapore can yield significant long-term benefits. Consistent orders, timely payments, and open communication foster loyalty, often resulting in exclusive perks like early access to new inventory or discounts on moldavite price per gram. Negotiating with suppliers can also secure flexible payment terms, particularly for repeat customers sourcing high-value stones like meteorites or moldavite, enhancing your business’s financial flexibility.

Staying ahead of market trends is critical for maintaining a competitive edge. The demand for moldavite crystal has surged due to its spiritual significance and aesthetic appeal, driven by trends in healing practices, feng shui, and home decor. By monitoring these trends and sourcing trending stones early, you can stock up before prices rise. A proactive meteorite wholesaler Singapore may share insights on emerging trends, helping you position your business as a market leader in Singapore’s vibrant crystal industry.

Success in Singapore’s crystal wholesale market demands strategic sourcing, rigorous quality checks, and strong supplier relationships. By leveraging bulk discounts, ensuring ethical practices, and staying trend-savvy, you can secure premium gemstones at competitive prices. Whether partnering with a meteorite wholesaler Singapore or exploring moldavite price per gram, these strategies will empower your business to thrive. Start applying these insights today to meet the rising demand for authentic crystals in Singapore.

You know what kills me about democrats and liberals. Literally just kills me. RFK (A literal career democrat) gets elected. Says "The country is too fat, taking too many drugs, eating literal plastic, and we need to do something about it!".

And the democrats response was literally hysterical, because WE WANT TO EAT PLASTIC AND TAKE OZYMPIC. HE'S A SCAMMER.

It literally blows my mind. Idk how you can look at a guy who's thing is "maybe we shouldn't be so fat and on drugs" and the response from half the country is just mass hysteria.

One Register to Rule them All: the privacy implications of person-level tracking off-guardian.org/2025/06/30/on…

If written language survives the next six weeks, we’ll be writing about Donald Trump for a thousand years. But whatever else there is to say, the most important thing about Donald Trump, the thing that is obvious from watching him speak for just 14 seconds, is that he is profoundly stupid. Whatever it is that he might be talking about or doing at any given moment, it’s clear that while he has a reptilian instinct for reading and stoking conflict, he has no real idea what’s going on and he doesn’t really care to. Stupid is what he is and where he comes from. It is his mind and his soul. Catholic was what JFK was. Gay was what Harvey Milk was. Stupid is who Donald Trump is.

And that’s what they love most, the Stupid-American voters.

Remember that sentence you heard at the beginning of all this in 2016? “He’s just saying what everybody is thinking.”

But see, not everybody was thinking that Hillary Clinton was an alien, that global warming was a Chinese hoax and that what America needed most of all was a plywood wall stretching from Texas to California. Only the stupid people were. And suddenly, in an instant, the most powerful man on earth was thinking just like them. With his clueless smirk and unstoppable rise, he turned people whose stupidity made them feel like nobody into people who felt like everybody.

That’s why he’ll never lose them. Because it was never about what he did or didn’t do. All that stuff is very confusing and the Stupid-American community isn’t interested in the details. They love him for who he is, which is one of them, and because he shows them every day that Stupid-Americans can reach the social mountaintop.


reddit.com/r/thebulwark/commen…

I've had terrible tooth pain this past week from a new bridge & taking lots of OTC pain meds. Teeth grinding during sleep is powerful & it's stressing the teeth under it, seen on X-ray. Mouth guards are too hard no matter what kind. So, what I did was place the corner of my nice, puffy comforter on the bridge side to soften the blow as I slept, also a soft baby towel & damn if it's not working. I will talk to my dentist about making a tooth pillow until teeth & inflammation settle down, lol.

EFF STATEMENT ON THE CONFIRMATION BY THE UNITED KINGDOM THAT THE DENIAL OF CIC JULIUS MALEMA’S VISA APPLICATION WAS POLITICALLY MOTIVATED 2 effonline.org/eff-statement-on…

Anyone know about Dolores Cahill..... I heard about her in 2020/21 but haven't heard from her since.... looks like she is back again.

“They Can Fake Ebola”: Dr. Dolores Cahill’s Explosive Claim About Nanotech, Radiation & Bio-Psyops
Could future “Ebola outbreaks” actually be engineered neurological attacks disguised as viral pandemics?

"Molecular Biologist Dolores Cahill says that between metallic nanoparticles in the COVID injections and "micro bursting" of "radiation" in cities, Ebola outbreaks can be faked by causing brain hemorrhages and "mini strokes."

x.com/SenseReceptor/status/193…

This "SenseReceptor" account is also very interesting.... 🤔
x.com/SenseReceptor

LIVE: Israel bombards Gaza City after ordering Palestinians to flee | Israel-Palestine conflict News | Al Jazeera
aljazeera.com/news/liveblog/20…

- Photos: Aftermath of an Israeli strike on a coffee shop in Gaza
- US revokes visas for Bob Vylan over Glastonbury chants
- Israel won’t care about criticism of GHF
- Israel admits soldiers shot dead Palestinians at aid distribution sites
- WATCH: UK court rejects bid to halt transfer of F-35 parts to Israel

#Palestine #Gaza #Israel
@palestine

Sozan reshared this.

A leaked email has reportedly shown the Palestine Solidarity Campaign (PSC) calling on its branches not to show public support for Palestine Action. It is despite the group’s public support for Palestine Action, and it’s organising of a demo for them.

This comes as the British state – in cahoots with the pro-Israel lobby – seeks to proscribe the group, smearing their non-violent ethical stand as terrorism.

thecanary.co/trending/2025/06/…

🕎 🇵🇸 ☮️
#Gaza #Palestine
#Press #News

Demo of Castopod and Mastodon with Web Monetization support (FOSDEM 2025)


Demo of Castopod ActivityPub support and demo of Mastodon tip jar using Web Monetization

As the social networking landscape evolves, marked by moments of mass migration between platforms—often triggered by political or cultural shifts—open-source ecosystems have a unique opportunity to make a difference. While the values of "libre" and open source resonate strongly within the developer and advocacy communities, broader user adoption is often driven by features and usability rather than philosophical alignment. This is why fairness and sustainability are critical elements in building a future-proof social web.

In this talk, we will focus on the practical implementation of fair monetization within the fediverse. We will demonstrate how Web Monetization allows creators to receive tips from their audience, either proportionally to the time spent consuming content or through one-time contributions.

More importantly, we will show how this is implemented in code, leveraging Castopod (an open-source, fediverse-connected podcast hosting platform) in three different ways: HTML, RSS, and Activity Streams.

Additionally, we’ll present a live demo showcasing cross-platform tipping on another fediverse platform. This demonstration will provide a detailed look at the technical foundation, illustrating how developers can implement and extend these capabilities in their own projects.

Now is the time for open-source developers to seize the moment as users seek alternatives to centralized platforms. We invite projects to integrate and extend these functionalities. Together, we can create a vibrant, sustainable, and open fediverse for everyone.

Sources:
- Castopod source code
- Web Monetization JSON-LD context for Activity Streams
- Mastodon draft pull request

Demo servers:
- Castopod test server: monetizationdemo.castopod.org/…
- Mastodon test server: demo.interledger.social/
- Mastodon test server user: demo.interledger.social/@WebMo…

This entry was edited (1 month ago)

Horrific Massacres as Israeli Airstrikes Pound Gaza Shelters and Hospitals


By Palestine Chronicle Staff At least 71 Palestinians were killed in one day as Israel bombs schools, hospitals, and aid centers sheltering displaced civilians. At least 21 Palestinians—mostly women and children—were killed, and 30 [...]

The post Horrific Massacres as Israeli Airstrikes Pound Gaza Shelters and Hospitals appeared first on Palestine Chronicle.

Ayer estuve en la finca de La Caperuza, en Bustarviejo. ¡Qué genial!
Nos enseñaron un poco como funciona esto del pastoreo, ordeñamos a una cabra y estuvimos un rato amplio entre el rebaño. Después fuimos a su factoría a que nos enseñaran cómo elaboraban sus quesos y yo aproveché para comprar cositas. Y es que, aparte de los quesos, hacen de intermediarios para otros productores de la región (venden cervezas La Bailandera, vinos de El Molar, mieles de la Alcarria, aceites de Alcalá y de la zona de Las Vegas, garbanzos de Daganzo…), pero también venden carne. Tanto carne de ternera, como lechal y cabrito. Aunque esto de las carnes es más puntual, sí que tienen un sistema de aviso para clientes interesados.
¡Os recomiendo que paséis a echarles una visita!
This entry was edited (1 month ago)
in reply to Nowhere Girl

"If Harris won, we'd be at brunch right now" is such a lazy, privileged attitude.

She would have bombed Iran, too. Probably sooner. She would still be funding genocide. She would be pursuing harsher immigration enforcement. She would be attacking pro-Palestinian protesters. She would probably deport people based on political speech. She would shrug off SCOTUS attacks on trans rights. She would continue handing cops and the military billions.

But mimosas, I guess.

Maps of the corporate and the free networks


Part of the series of Fediverse propaganda meant for use for anybody who wants to convince the mainstream to move away from Facebook, Instagram, X or Tiktok.

The two previous pages were erased somehow. So I am going through the text again. They will be up again soon.

Made with Krita - as always creative commons - as always free culture - much more of that here:

https://friendica.eskimo.com/photo/preview/1024/7841153

#art #comics #cc #creative-commons #fediverse #freeculture

nadloriot reshared this.

Yo de la Comunidad de #Madrid no me pelearía con gente que generalmente mide dos por dos y sabe usar hachas, pero está claro que la 'hubris' lleva a la temeridad

#bomberos🧑🏻‍🚒 #emergencias #política #España🇪🇸 #noticias

elpais.com/espana/madrid/2025-…

O programa do governo de transferência de renda para os miseráveis tem custo de cerca de R$ 160 bilhões e beneficia cerca de 54 milhões de pessoas.

Já os benefícios e renúncias fiscais para os ricos somam cerca de R$ 800 bilhões. Os mais ricos conseguem deduzir integralmente gastos de saúde no Imposto de Renda.

isideload.com/?q=https%3A%2F%2…

This entry was edited (1 month ago)

Proletarian Rage reshared this.

in reply to PersonalEscrito

Sim, mas esse discurso só se sustenta por que é consenso a necessidade de austeridade. Não há quem contraponha esse discurso.
Meu ponto é que existe um erro de quem é contra esses ataques [e o texto do Sakamoto segue essa linha] culpar apenas congresso, agora mesmo estava vendo uma nota da Anfip reclamando da reforma administrativa como sendo do congresso, sendo que não falta matérias na Agência Brasil chamando a necessidade de uma reforma administrativa, aí o congresso piora um pouco o projeto do governo e estabelece-se uma dicotomia como se um lado estivesse defendendo o povo enquanto o outro ataca. Aconteceu exatamente isso com o arcabouço, era um cocô quando saiu do governo, congresso cuspiu em cima e a culpa ficou com o congresso, o governo vítima.

agenciabrasil.ebc.com.br/econo…