{"id":13364,"date":"2018-09-15T10:45:07","date_gmt":"2018-09-15T18:45:07","guid":{"rendered":"https:\/\/www.palada.net\/index.php\/2018\/09\/15\/news-7131\/"},"modified":"2018-09-15T10:45:07","modified_gmt":"2018-09-15T18:45:07","slug":"news-7131","status":"publish","type":"post","link":"https:\/\/www.palada.net\/index.php\/2018\/09\/15\/news-7131\/","title":{"rendered":"Kid-Focused Apps Track Location, UK Spying, and More Security News This Week"},"content":{"rendered":"<p><img decoding=\"async\" src=\"https:\/\/media.wired.com\/photos\/5b9c16751ab9432d396266ea\/master\/pass\/gametracking-01.jpg\"\/><\/p>\n<p><strong>Credit to Author: Emily Dreyfuss| Date: Sat, 15 Sep 2018 13:00:00 +0000<\/strong><\/p>\n<p><span class=\"lede\">Tesla is in <\/span>the news again this week, but this time it has nothing to do with fires or Twitter or <a href=\"https:\/\/www.wired.com\/story\/elon-musk-weed-toke-tesla\/\">Elon Musk smoking weed<\/a>. Instead, it\u2019s because hackers figured out how to <a href=\"https:\/\/www.wired.com\/story\/hackers-steal-tesla-model-s-seconds-key-fob\/\">steal a Tesla Model S<\/a> by cloning its key fob. WIRED\u2019s resident car-hacking reporter Andy Greenberg broke that news, and explains why the attack might also work on cars from McLaren and Karma.<\/p>\n<p>Lily Hay Newman has the <a href=\"https:\/\/www.wired.com\/story\/british-airways-hack-details\/\">behind-the-scenes story<\/a> on how hackers got past British Airways defenses in August, plus an <a href=\"https:\/\/www.wired.com\/story\/cold-boot-break-pc-encryption\/\">alarming report<\/a> about how a decade-old technique can break the encryption of just about any computer. Yikes.<\/p>\n<p class=\"paywall\">Former US Secretary of Defense Ash Carter <a href=\"https:\/\/www.wired.com\/story\/why-big-tech-and-the-government-need-to-work-together\/\">wrote an op-ed in WIRED<\/a> Friday arguing that big tech and the government have to find a way to work together or everyone will be screwed. And Trump introduced a new executive order aimed at election interference, but we <a href=\"https:\/\/www.wired.com\/story\/trump-executive-order-election-interference-sanctions\/\">explain why it\u2019s more a bandaid<\/a> than a cure.<\/p>\n<p class=\"paywall\">Plenty of other things happened in the security world this week, too. As always, we\u2019ve rounded up all the news we didn\u2019t break or cover in depth this week. Click on the headlines to read the full stories. And stay safe out there.<\/p>\n<p class=\"paywall\">Data tracking is creepy. But data tracking children? Much worse. This week, New Mexico&#x27;s attorney general filed a lawsuit against Tiny Lab, an app developer behind games like <em>Fun Kid Racing<\/em>, as well as advertising companies including Google and Twitter, alleging that they violated children\u2019s privacy laws by tracking and sharing data for users under the age of 13. When <em>New York Times<\/em> reporters looked at other apps aimed at young kids on both Google Android and Apple iOS, they found more examples that potentially violate privacy laws by sending children&#x27;s data to tracking companies. All of this might not surprise you. As the <em>Times<\/em> notes, it&#x27;s also in line with academic research that found thousands of Android games and apps for kids shared their data with outside companies in possible violation of the Children\u2019s Online Privacy and Protection Act.<\/p>\n<p class=\"paywall\">A bipartisan group of senators sent Secretary of State Mike Pompeo a letter this week asking him why on earth the State Department hasn\u2019t instituted basic cybersecurity best practices. According to CNET, the senators are concerned that a recent inspection found only 11 percent of the department&#x27;s required devices have multi-factor authentication enabled. Which is crazy. Nation state hackers all over the world would love to get access to accounts and devices at State. The least American leaders could do to protect the country from prying eyes is follow some <a href=\"https:\/\/www.wired.com\/2017\/12\/digital-security-guide\/\">rudimentary security tips<\/a>.<\/p>\n<p class=\"paywall\">A proposed law in the European Union would require social media platforms and tech companies to remove terror propaganda from their sites within one hour of it being reported to them. If they failed to do so, the companies would face fines up to 4 percent of their worldwide revenue, according to the <em>Wall Street Journal<\/em>. That would be, uh, a lot: for Alphabet, $4.43 billion; Facebook, $1.63 billion. EU member states still need to sign off, as does the parliament. In the meantime, social networks like Facebook and YouTube are working to improve their moderation systems. Last May, Facebook <a href=\"https:\/\/newsroom.fb.com\/news\/2018\/05\/enforcement-numbers\/\" target=\"_blank\">reported<\/a> that in Q1 of 2018, nearly 100 percent of the terror-related content it removed had been flagged by the company before users reported it.<\/p>\n<p class=\"paywall\">Last month, the <a href=\"https:\/\/www.apnews.com\/828aefab64d4411bac257a07c1af0ecb\/AP-Exclusive:-Google-tracks-your-movements,-like-it-or-not\" target=\"_blank\">Associated Press reported<\/a> that Google was still tracking you even after you turned off location tracking in Google Maps or on your Android device. (<a href=\"https:\/\/www.wired.com\/story\/google-location-tracking-turn-off\/\">We explained how<\/a> to go about actually turning it off.) People were outraged and felt misled. Now the Arizona attorney general is investigating the matter, according to the <em>Washington Post<\/em>.<\/p>\n<p class=\"paywall\">The European Court of Human Rights ruled on Thursday that the UK\u2019s mass surveillance practices violated human rights law. Those practices came to light in 2013, when Edward Snowden revealed that intelligence agencies in the UK were collecting social media, messages, and phone calls, including people not under suspicion for any crimes. The court found that the program violated the right to privacy, according to Gizmodo, due to &quot;insufficient oversight.&quot;<\/p>\n<p class=\"related-cne-video-component__dek\">WIRED&#39;s Lauren Goode takes a first look at Apple&#39;s three new phones &#8212; the XS, the XS Max, and the XR.<\/p>\n<p><a href=\"https:\/\/www.wired.com\/story\/location-tracking-apps-target-kids\" target=\"bwo\" >https:\/\/www.wired.com\/category\/security\/feed\/<\/a><\/p>\n","protected":false},"excerpt":{"rendered":"<p><img decoding=\"async\" src=\"https:\/\/media.wired.com\/photos\/5b9c16751ab9432d396266ea\/master\/pass\/gametracking-01.jpg\"\/><\/p>\n<p><strong>Credit to Author: Emily Dreyfuss| Date: Sat, 15 Sep 2018 13:00:00 +0000<\/strong><\/p>\n<p>In security news this week, some apps for children may violate privacy laws, State Department devices might be less secure than your Instagram account, and more.<\/p>\n","protected":false},"author":4,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":{"colormag_page_container_layout":"default_layout","colormag_page_sidebar_layout":"default_layout","footnotes":""},"categories":[10378,10607],"tags":[714],"class_list":["post-13364","post","type-post","status-publish","format-standard","hentry","category-security","category-wired","tag-security"],"_links":{"self":[{"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/13364","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/users\/4"}],"replies":[{"embeddable":true,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/comments?post=13364"}],"version-history":[{"count":0,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/posts\/13364\/revisions"}],"wp:attachment":[{"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/media?parent=13364"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/categories?post=13364"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.palada.net\/index.php\/wp-json\/wp\/v2\/tags?post=13364"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}