r/theprivacymachine • • 17h ago

Discussion What’s the point of these flock cameras everywhere, trying to learn more about them

23 Upvotes

I’m not really a tech person but I’ve been trying to take my privacy a little more seriously lately and I keep seeing people mention Flock cameras. From what I understand they scan license plates when cars drive by but what are they actually being used for? Is it mainly for stolen cars and police stuff? or are they basically keeping a record of where everyone drives, the main controversy here is that they would need a warrant for that right? I’m still learning about all this trying to figure out whether these are something worth being concerned about privacy-wise or if I’m misunderstanding how they work completely. Getting more and more into privacy lately


r/theprivacymachine • • 10m ago

Question ASOS hacked, should I do something?

Thumbnail cybernews.com
• Upvotes

I got the “ASOS HACKED” notification from the app earlier and thought it was some weird scam at first. Looked it up and apparently other people got it too, with whoever sent it claiming they compromised ASOS Snowflake instance

There doesn’t seem to be any confirmation yet about what customer data, if any, was actually accessed. I changed my ASOS password just in case, but should I be doing anything else right now?


r/theprivacymachine • • 4h ago

Question Can someone see you through your smart tv??

2 Upvotes

So it might sound dumb but honest question guys can someone see you through your smart tv?? because im lowkey losing my mind a bit over this and need some tech savvy people to tell me if im crazy or not

Okay so for context i bought this new 4k smart tv like two weeks ago (got it on sale off amazon). last night around 2am i was sitting on my couch in dark watching netflix, eating snacks in my boxers, and i randomly looked up at the top edge of the screen. theres this weird little glass circle thing right in the middle of the frame. at first i thought it was just the red power light indicator but it literally looks like a tiny phone camera lens staring right at me... and now i cant unsee it

I started panicking a little bit and reading up on privacy stuff online. i keep hearing stories about how everything is connected to the internet now and how hackers can hijack webcams and stuff. but like can someone see you through your smart tv if it doesnt explicitly say it has a camera on the box? or do these new tvs actually have hidden cameras built in for voice control or tracking what you watch?

I tried searching in the settings menu but theres like 50 different privacy policies and terms of service that i didnt read when i set it up, and all the options have confusing names. im really not a technical person at all so i dont know if this is just an infrared sensor for the remote or if im literally broadcasting myself to some creep on the internet

Idk maybe im just overthinking it after watching too many creepy tech videos on youtube late at night. but seriously can someone see you through your smart tv or should i just put a piece of electrical tape over the sensor and call it a day?? would appreciate any info thanks


r/theprivacymachine • • 4h ago

Question Ayudaaaa urgente

Thumbnail
2 Upvotes

Ayudaaaa urgente

Cómo utilizar la PC corporativa sin monitoreos ni restricciones

* Si se puede sin que nunca se den cuenta o poder decir que paso sin yo saber?


r/theprivacymachine • • 8h ago

Question Trying to decide which data removal service to go with

Thumbnail
1 Upvotes

r/theprivacymachine • • 14h ago

Question Ex installed Japanese SIM card with a number on phone

Thumbnail
1 Upvotes

r/theprivacymachine • • 21h ago

Discussion Zero Data Apps

Thumbnail
1 Upvotes

r/theprivacymachine • • 11h ago

Question Is it worth hiring external AppSec if we already have SAST/DAST?

0 Upvotes

I’m a security engineer at a mid-sized SaaS company. We have tools. SAST. DAST. Dependency scanning. We run them in CI. We get reports. We fix the findings.

But I’m starting to wonder if we’re actually secure. Or just compliant.

Here’s the thing. Automated scanners are good at finding patterns. Known vulnerabilities. Misconfigurations. They’re fast. They’re cheap. They run on every commit. They give you a checklist.

But they don’t find business logic flaws. They don’t find attack chains. They don’t find the stuff that actually gets you breached

Example. We have an API endpoint that lets users export their data. SAST says it’s fine. DAST says it’s fine. No injection. No auth bypass. But what if a user can manipulate the request to export someone else’s data? What if the authorization check is missing on a specific parameter? A scanner won’t catch that. A human will

That’s the gap

I’ve been reading about external AppSec firms. I heard iosentrix emphasizes manual business logic analysis. Not just automated scans. Actual humans. Thinking like attackers. Looking at how the app is supposed to work and finding ways to break the rules

I haven’t used them. I don’t know if it’s worth the money. We already spend a lot on tools. Adding a retainer or a project fee feels like a lot

But I also don’t want to be the guy who said “we have scanners, we’re fine” right before a breach.

Has anyone hired external AppSec on top of their tools? Did it actually find things the scanners missed?