Edition

This is a permanent edition. It carries the briefing exactly as published on this date and does not change.

Meta Reverses Course on Instagram Encryption, Raising Privacy Concerns

Meta has unexpectedly halted its planned end to end encryption rollout for Instagram Direct Messages, opting instead for plaintext communication. This decision represents a significant backtrack on previous commitments to enhance user privacy and has drawn immediate scrutiny from privacy advocates. The move affects millions of users globally who were expecting improved security for their private conversations. This policy shift could have widespread implications for data protection standards across Meta's platforms.

Today's question

If a DPIA indicates high residual risk that cannot be mitigated, the controller must:

  1. Proceed with the processing regardless, as required under the breach notification provisions, as specified in the applicable regulatory provisions
  2. Abandon the processing entirely in all cases, as required under the breach notification provisions
  3. Consult the supervisory authority under Article 36 (prior consultation) before beginning the processing, as required by the applicable legal framework
  4. Notify all affected data subjects before processing, following established incident response procedures

Answer this question on the site

Worth knowing

  1. Hackers Exploit Google Ads and AI Chats to Distribute Mac Malware

    Threat actors are increasingly leveraging legitimate platforms like Google Ads and AI chatbot services such as Claude.ai to distribute sophisticated malware targeting Mac users. This new tactic involves tricking users into downloading malicious software by impersonating trusted applications or services. The exploitation of AI platforms for malware distribution represents an evolving threat landscape.

  2. NVIDIA Confirms GeForce NOW Data Breach Affecting Armenian Users

    NVIDIA has confirmed a data breach impacting users of its GeForce NOW cloud gaming service, specifically affecting those in Armenia. While specific details about the nature and extent of the compromised data are still emerging, any breach of personal information can lead to significant privacy risks for affected individuals. The incident highlights the continuous need for robust security measures in online service providers.

  3. Poland and US Face Breaches of Water Treatment Plants by Hackers

    Poland has reported that its water treatment plants have been breached by hackers, with the United States facing similar threats to its critical infrastructure. These cyberattacks on essential services represent a severe risk to public health and safety, as well as national security. The incidents underscore the vulnerability of critical infrastructure to sophisticated cyber threats and the potential for widespread disruption.

Compiled that morning from regulator, court and authority sources. Primary sources are linked on every story.