transparency

Winsage
August 13, 2026
A vulnerability in Microsoft Defender, named ShieldBreak, has been revealed by security researcher Nightmare Eclipse, allowing malicious actors to gain complete system-level access to a user's device. Microsoft has previously warned against public disclosure of vulnerabilities and suggested potential legal repercussions for researchers who do so outside its protocols. Users of Microsoft Defender are advised to remain vigilant regarding this vulnerability.
AppWizard
August 12, 2026
Snapshot 26.3 Snapshot 8 was launched, allowing realm owners to create and manage up to five Invite Codes for easier player access. The update includes renamed Explorer Maps: Buried Ancient City Map, Buried Mineshaft Map, and Abandoned Camp Map. Gameplay changes include cushions being destroyed only when fully covered by suffocating blocks and new villager trades updating even during transactions. The World Options screen received improvements, including a renamed "Game Mode" button and a new "Personal Game Mode" display. Technical updates include Data Pack version 116.0 and Resource Pack version 96.0, with various bug fixes addressing issues related to entity positions, camera movement, and game mode changes.
AppWizard
August 12, 2026
Saber Interactive's upcoming game, Rideshare "Stimulator," has sparked controversy due to comments from former lead writer Stella Sacco, who claimed she was replaced by ChatGPT during development. Sacco stated that all passenger voices in the game were also AI-generated, raising concerns about transparency in the game's development. She attributed the decision to use AI to higher-ups at Saber, despite her supervisor's support for her involvement. Saber Interactive has denied Sacco's claims but acknowledged the use of AI in the game. The game's Steam page promotes "unique and unpredictable passenger stories," but Sacco's remarks suggest a disconnect between the marketing narrative and the creative process, particularly regarding the lack of disclosure about AI usage.
AppWizard
August 11, 2026
Gaming on Linux is experiencing a resurgence, with projects like Xodus aiming to enable Xbox PC games, including Game Pass titles, on Linux and Mac. Xodus is developed by a team of three, including a contributor from the Heroic Games Launcher. They have made progress in authorization and game downloads and are working on replicating Game Development Kit (GDK) functionality for Xbox services. The project currently uses technologies like Proton, dxvk, or Wine for game performance, focusing on GDK and MSIXVC format games, while older UWP titles are not supported. The Xodus project has a GitHub page and a Discord server for community engagement.
AppWizard
August 5, 2026
Advertising companies provide software development kits (SDKs) for mobile app monetization, which often automatically transmit users' location data to ad systems and location data brokers, raising privacy concerns. Many developers and users may be unaware of this data sharing. When developers allow SDKs to collect location data, it poses risks beyond targeted ads, including potential misuse by agencies like ICE and global surveillance. Location data brokers harvest precise movements of individuals, often without their consent, through mobile applications. Some apps directly collaborate with data brokers, while others leak data through advertising SDKs during real-time bidding (RTB) auctions. An incident in 2025 revealed that many apps unknowingly contributed to a location data broker's database. Developers must understand their SDKs' location-sharing practices to mitigate risks. Advertising SDKs can collect location data automatically once users grant permission, without specific permissions for the SDKs themselves. Precise location data can be collected when apps have location permissions, leading to potential privacy violations. Several SDKs have been identified as collecting location data by default, increasing the risk of unintentional data leaks. The Electronic Frontier Foundation (EFF) found that four advertising SDKs collect users' location data by default when location permissions are granted. InMobi encourages location sharing for higher revenue, while BidMachine updated its documentation after EFF's inquiry, confirming precise location data collection. Verve's SDK also collects location data by default but presents a cautious narrative in its Play Store guidance. Huawei's SDK recommends obtaining location permissions to enhance revenue, with default location sharing occurring if permissions are granted. Location data can be shared without users' knowledge or meaningful consent, complicating informed consent issues. The focus on four SDKs does not imply that others adequately protect location data, as many have faced criticism for similar practices. Studies indicate that SDKs often encourage increased data collection through design and documentation, leading to minimal control for developers over data transmission. The EFF's analysis highlights that advertising SDKs incentivize location data sharing through default settings and unclear documentation. Developers should assess third-party SDKs and disable unnecessary data collection. Regulators must hold developers accountable for unlawful data sharing, while legislators should enact laws to protect location privacy and address online behavioral advertising, which drives data tracking.
AppWizard
August 5, 2026
Recent findings from the Electronic Frontier Foundation (EFF) indicate that many applications on Android phones may unintentionally share users' location data with advertisers without explicit user knowledge. This issue arises from certain Software Development Kits (SDKs) used by app developers, which collect location data by default when users grant permission. The EFF report emphasizes that users likely do not expect their location data to be shared with third parties. Android users can manage their location sharing preferences through the device's Settings by reviewing app permissions or disabling location sharing entirely, though the latter may impact apps that require location access.
AppWizard
August 5, 2026
Recent research from the Electronic Frontier Foundation (EFF) has revealed that millions of Android users' location data are being inadvertently exposed to advertisers through third-party code libraries. This occurs when seemingly harmless applications, like weather services and fitness trackers, integrate third-party SDKs that collect user location information automatically upon permission approval, often without developers' awareness. Data brokers aggregate this location information to create detailed movement profiles sold to advertisers and government agencies. Despite privacy regulations like GDPR and CCPA, enforcement is inconsistent, and developers may claim ignorance regarding data practices they did not implement. Google has improved Android's privacy controls, but visibility into third-party libraries accessing data remains limited. Developers face challenges in auditing third-party code due to resource constraints, leading to a complex landscape where user information traverses multiple entities without clear accountability. Privacy advocates are calling for new technical standards to require SDKs to disclose their data practices.
Search