Slashdot

News for nerds, stuff that matters

Apple's iCloud File Sharing Left Ex-Employees With Access to Secret Documents

Apple's practice of mixing employees' work files with personal iCloud accounts reportedly left some former staff with continued access to confidential documents, messages, and even new updates after leaving the company. "The former employees said many Apple files they had been shared on over their careers at the company -- including planning documents for product launch events -- continued to sync to their personal devices through the iCloud storage service after they left Apple," reports The Information. "In some cases, they even received notifications about fresh updates to the documents. Some former employees said they were petrified to delete the files for fear that doing so would attract Apple's attention." MacRumors reports: Apple files get mixed in with employees' accounts because the company encourages them to use their personal Apple Accounts with their work iCloud account. Employees are given a 2TB iCloud plan and are able to merge the storage with their existing Apple Account or create a new account. Since only one primary account can be signed in at a time, most opt to use their existing account to avoid having to carry two iPhones. Apple has a managed folder for workplace files that it revokes access to when an employee leaves, but some internal documents aren't saved there automatically and shared files end up mixed in with personal content. Employees can also retain access to iMessage chats and files shared via the Messages app.

Lingering access to Apple systems is central to Apple's lawsuit against OpenAI. In its filing, Apple alleged that former employee Chang Liu breached Apple's systems using a "rare, previously unknown authentication bug" to download files while he was working at OpenAI. Apple told The Information that the OpenAI lawsuit is unrelated to any files left available on iCloud and that it does not pursue legal claims against former employees who accidentally have Apple documents in their personal iCloud accounts. "This case is about OpenAI employees wrongfully taking Apple's secret and confidential information regarding our unreleased technologies, processes, and products. Nothing in the filing relates to documents shared by, or stored in, iCloud."

Read more of this story at Slashdot.

Microsoft CEO Touts His Own DIY AI Project To Wall Street and His 20 Million Followers

theodp writes: During Microsoft's 2026Q4 earnings call, CEO Microsoft Satya Nadella took time to tout a dashboard he personally created using AI from a Morgan Stanley analyst's PDF research report, which suggested a rosy payback for the so-called MAG7's ('Magnificent 7' companies) massive capital expenditures on AI (to which Nadella later added a "not financial advice" disclaimer). "It would be fun for you, Adam. I think one of your colleagues put out an ROIC [Return on Invested Capital] document. I took that document to Copilot, which is a PDF, and I said, 'Build me a new Power BI dashboard, essentially.' But here is the thing. It built a rich semantic model that went into my Fabric with OneLake that brought all the data in from the external sources. In fact, it was current with all the SEC filings of all the MAG7. And then on top of that, the repo itself is in GitHub, but the artifact is sitting in my Copilot as a site. That, to me, is a classic example of an enterprise-wide workflow. I, as a knowledge worker, could go create a dashboard. The data engineer can go to Fabric and find the artifact. The professional developer can go to the repo and find it in GitHub. And by the way, it's all registered with Agent 365. That's a little bit of what Amy is describing as the coming together of a new way to work, even while at the same time, bringing IT, security and manageability of it."

After Nadella's show-and-tell drew an underwhelming response during the call ("That's very helpful. Thank you." said the Morgan Stanley analyst whose team's work Nadella scraped with AI), Nadella turned to social media with posts on LinkedIn (12M followers) and Twitter/X (8M followers) to make the case for why his DIY project was such a brilliant demonstration of how AI enables governance, controls, security, development, testing, deployment, maintenance, data analysis/modeling, visualization, usability, and value. "Some more detail on the ROIC Intelligence App I built yesterday and mentioned on today's earnings call," Nadella wrote on LinkedIn. "I took the PDF that Brian Nowak at Morgan Stanley put together for Hyperscale ROIC this week and used Copilot code (coming in our new superapp) with a single prompt + skill (/drill-me) to create the plan, then used autopilot in auto to create the full app (with history, lookups, scenarios, what-ifs, etc). And /rubber-duck to test. And the best part is that all the artifacts are in my enterprise environment. My app is in Copilot, my code is in GitHub Enterprise; all my data pipelines/lake/semantic models are in Fabric. And everything is under Agent 365 IT/Sec/FinOps control! So this is not about Tokenmaxxing or vibe coding. Every step of the way the rails are engineered to create value, making everything a long-term reusable asset, with governance/security, and cost controls. This is the full system to drive business value. Disclosures: This is all pulled from public sources, and for illustrative purposes only...not financial advice! :) Here is the app and architecture..."

Not unexpectedly, the accompanying screenshot of a splash page for the BI app and a buzzword-laden complicated architecture diagram drew universal praise from LinkedIn fans, but also a few barbs from less-than-impressed commenters on Nadella's Twitter/X post, some of whom suggested Nadella's project might even represent a jump-the-shark moment for AI mania. "That he doesn't see whats wrong with saying 'My app is in Copilot, my code is in GitHub Enterprise; all my data pipelines/lake/semantic models are in Fabric' is exactly why MS is failing at AI,'" replied @PassingPixels on X/Twitter. "Dude is having to run 5 different systems to emulate babies first vibe code." @zigmund_ignatov added, "Why do we call glorified slide show an app?" @Mathupiriyan quipped, "Looks like Copilot just turned a PDF into a profit crystal ball." Unimpressed, @Markusndnb remarked, "So you created a web page using tons of proprietary MS tools." And @FishyAccounting called on Nadella to show-his-work, saying "Post the prompt or it didn't happen." (btw, Microsoft President Brad Smith similarly declined to provide the prompt for his own self-described amazing AI DIY reporting project that he touted at Microsoft's Shareholder Meeting last December).

So, does Nadella's self-promoted AI reworking of someone else's PDF research report strike you as an amazing example of everything that's good about AI, or does it conjure up memories of The Emperor's New Clothes?

Read more of this story at Slashdot.

Samsung Bans Smart TV Apps That Share Users' Internet Connections

An anonymous reader quotes a report from TechCrunch: Several popular Samsung smart TV apps contain code that share the owner's internet connection with strangers, potentially putting millions of Samsung smart TVs at risk of hijacking, according to new security research published on Monday. Some of these apps claim to have been installed on hundreds of millions of smart TVs in people's homes, per the app developers. At least one of the smart TV apps was a simple Pac-Man game that Samsung had endorsed and prominently featured in its "Editor's Choice" section on customers' TV screens. These apps contain software that funnels outsiders' web traffic through ordinary home and office internet connections, known as residential proxy networks (or "resproxies"), which are increasingly being linked to cybercrime. When opened, apps with resproxy code can turn the smart TV into an always-on tunnel for outsiders to funnel their web traffic through, known as an exit node -- even when the app is no longer open.

The security research by Norwegian cybersecurity company Mnemonic describes a perfect storm of problems that allows low-quality apps to proliferate across Samsung's app store, containing code that puts users at risk of having their internet connections tapped by a rogue app. Many of these apps are bare-bone shells, made from only a few lines of code, and are designed solely to load content from another website, such as a game. While such smart TV apps load content from another server, any review of these apps sees only the few lines of code within, and not necessarily the content itself. "What was reviewed is not necessarily what is running," wrote Harrison Sand, an offensive security consultant at Mnemonic.

After TechCrunch contacted Samsung with a request for comment about the research, the electronics giant said in an emailed statement that it was banning apps that share their users' internet connections, and will remove apps that contain the functionality. "We have already restricted new app registrations that incorporate such proxy functionalities on our Smart TV platform," said a Samsung spokesperson. "We are currently implementing strict platform-wide developer policies explicitly banning residential proxy SDKs, and we are working to identify and remove all apps currently available in our store that contain these components." LG also recently announced plans to suspend apps containing ResProxy software after a security firm found that roughly 42% of apps in its TV app store allowed unknown third parties to route internet traffic through users' televisions without their knowledge.

Read more of this story at Slashdot.

As Reddit Stock Falls, CEO Questions Value of Google's AI Overviews

Reddit CEO Steve Huffman criticized Google's AI Overviews for summarizing publishers' content without delivering the traffic benefits of traditional search, arguing that users increasingly value Reddit's human perspectives and firsthand experiences. Ars Technica reports: First, there was a letter to investors (PDF), wherein Huffman spun his narrative about Reddit's value proposition and general strategic direction amid the proliferation of AI tools. He wrote: "As the internet becomes flooded with synthetic content, people are craving real human perspective. We are the antidote to an automated web. AI compresses the internet into summaries. Reddit delivers the opposite: deep discussions, passionate debates, and lived experiences. People don't want a summary of Reddit; they want Reddit."

The letter also said: "As AI makes information more abundant, the challenge is no longer finding content -- it's finding context, personal opinion, and first-hand accounts. Everything online feels flat, polished, generated, or sponsored, so consumers are overwhelmed and increasingly skeptical. We've never had more information, but we've never trusted it less."

And then, in comments around the earnings report, he added: "What we see is, 10 blue links has driven tremendous value and growth to the broader ecosystem... from where we sit, AI Overviews has yet to make a similar level of positive impact, and I think that's consistent across the broader landscape, right? As businesses, publishers, retailers, we're still looking for that win-win." Reddit shares nevertheless fell more than 20 percent as investors worried that unstable Google referrals could undermine its growth, even after a strong earnings report.

Read more of this story at Slashdot.

Can French nukes protect Europe if Donald Trump walks away?

Europeans are keen on nuclear collaboration with Emmanuel Macron. What if Marine Le Pen becomes president?


Formula 1 News

Formula 1® - The Official F1® Website

5 Winners and 5 Losers from the 2026 season so far

F1.com's Lawrence Barretto picks his winners and losers from the 2026 season so far.

Wel.nl

Minder lezen, Meer weten.

Brandt dit lampje op je telefoon? Dan luistert of kijkt een app stiekem met je mee

Veel mensen hebben weleens het gevoel dat hun telefoon meeluistert. Je praat over een nieuwe auto of een vakantie en kort daarna verschijnen precies daar advertenties van. Of dat toeval is of niet, één ding kun je wél controleren: welke app op dat moment toegang heeft tot je camera of microfoon.

Zowel iPhones als Android-toestellen laten dat tegenwoordig duidelijk zien met een klein gekleurd bolletje boven in het scherm.

Dit betekenen de gekleurde puntjes

Zie je rechtsboven ineens een stipje verschijnen? Dan gebruikt een app op dat moment gevoelige functies van je telefoon.

  • Oranje stip (iPhone): de microfoon is actief.
  • Groene stip (iPhone): de camera wordt gebruikt.
  • Groene stip (Android): een app gebruikt de camera, de microfoon of allebei.

Bij een videogesprek of het opnemen van een spraakbericht is dat volkomen normaal. Verschijnt het icoontje terwijl je alleen een spelletje speelt of een nieuwsartikel leest, dan is het verstandig om uit te zoeken welke app verantwoordelijk is.

Veeg daarvoor vanaf de bovenkant van het scherm naar beneden om het bedieningspaneel te openen. Daar zie je welke app als laatste de camera of microfoon heeft gebruikt. Zo kun je snel controleren of dat logisch is of dat een app toegang heeft die eigenlijk niet nodig is.

Controleer je toestemming

Veel apps vragen bij de installatie toestemming voor de camera of microfoon. Die toestemming blijft vaak actief totdat je hem zelf weer intrekt.

Op een iPhone vind je deze instellingen via Instellingen > Privacy en beveiliging. Android-gebruikers kunnen terecht bij Instellingen > Privacy of Beveiliging en privacy, afhankelijk van het toestel.

Loop de lijst eens door en vraag jezelf af: heeft deze app deze toestemming echt nodig? Een berichtenapp of videobel-app wel, maar een rekenmachine, zaklamp of eenvoudige game meestal niet.

Privacy-experts adviseren om apps alleen toegang te geven tot functies die noodzakelijk zijn. Twijfel je? Kies dan voor 'Alleen tijdens gebruik van de app' of trek de toestemming helemaal in. Zo houd je zelf de controle over wat apps op je smartphone mogen zien en horen.

Bron: Panorama


Sargasso

Hopeloos Genuanceerd

Closing Time | Katzenjammer

Dan maak je ergens een melige opmerking over kattengejank en denk je daarna: “Dat was toch een bandnaam?” Katzenjammer. Wie voor zo’n bandnaam kiest gelooft ofwel vanaf het begin niet dat het ooit iets kan worden, of heeft juist genoeg zelfvertrouwen om te denken er wel mee weg te komen. Bij deze Noorse multi-instrumentalistes zal het tweede het geval zijn geweest. En terecht.

Overigens schijnt Katzenjammer ook het Duitse woord te zijn voor een kater, op de ochtend na een nacht van overvloedig drankgebruik. Deze muziek heeft dan toch meer de sfeer van wat er aan de Katzenjammer voorafgaat.

Ook al gemakkelijk per post thuisbezorgd: drugs

drugsnl busje

Het gaat goed met drugs in ons land en het gaat steeds beter met de drugsdistributie in ons land. Zoveel beter zelfs dat het helemaal niet meer moeilijk is om drugs te bestellen omdat het zo makkelijk is: "Drugs stromen via doodnormale post Nederland binnen" kopt De Telegraaf dan ook. Op de hoek van de straat een zakje roessnoep bij de dealer meegrissen is er niet meer bij, want u kunt het gewoon geheel verzorgd en netjes verpakt laten afleveren in uw brievenbus door uw favoriete pakketbezorger (vraag is wel: hoelang nog?). Van marihuana tot meth en van ketamine tot speedpillen, het komt net zo makkelijk tot u als slechte fastfood kip, de zompige friet van Snackbar Akyol, de döner van Kebabzaak Hans-Jan en al die Temutroep die uw vrouw bestelt. En het mooiste is nog dat de douane alle pijlen richt op het sigaretje, heeft u ondertussen allang uw neus volgestopt (met watten of zo hè)! Enfin, zin om iets te bestellen nu.

VK: Voorpagina

Volkskrant.nl biedt het laatste nieuws, opinie en achtergronden

Zelensky’s stoelendans gaat verder: Oekraïense VS-ambassadeur vertrekt