
Broken Windows. The IT Privacy and Security Weekly Update for the Week Ending June 17th., 2025
About this episode
EP 247.
... and in this update, Microsoft has updated Windows Hello to require both infrared and color cameras for facial authentication, improving security by addressing a spoofing vulnerability, though it now requires visible lighting. This increases biometric reliability and inconvenience to users in low-light settings. Consider exploring alternative operating systems like Linux for flexible authentication options.
Aim Labs identified and helped patch 'EchoLeak,' a zero-click vulnerability in Microsoft 365 Copilot that risked data exfiltration via malicious emails, highlighting the need for stonking great AI guardrails.
Denmark is shifting from Microsoft Office and Windows to LibreOffice and Linux to enhance digital sovereignty and reduce reliance on foreign technology, driven by security, economic, and geopolitical priorities.
Chinese AI companies are bypassing U.S. chip export controls by processing data in third countries like Malaysia, using suitcases of hard drives to transport AI-training data.
Mattel has teamed up with OpenAI to develop AI-enhanced toys, promising safe, engaging, and age-appropriate experiences, with the first product set to launch later this year.
Apple’s new passkey import/export feature, built on FIDO Alliance standards, enables secure credential transfers across platforms, boosting interoperability while maintaining biometric security.
This advances user convenience and cross-ecosystem flexibility. Now you can adopt passkeys to streamline secure authentication across your devices and platforms.
A data broker owned by major U.S. airlines sold passenger flight data to DHS, prompting privacy concerns as agencies track travel without disclosing data sources.
WhatsApp will begin displaying ads in its Updates section, using limited user data like location for targeting, while preserving end-to-end encryption for chats and messages.
INTERPOL’s Operation Secure dismantled over 20,000 malicious IPs linked to 69 malware variants, arresting 32 suspects and seizing significant data to curb phishing and fraud.
Find the full transcript for this podcast here.
Get every episode summarized
Each time The IT Privacy and Security Weekly Update. publishes, we email you a written briefing from the transcript — the topics, who appeared, and any specific claims, with the ad reads skipped.
Email me new episodesFree for 3 shows. No card needed.
Hosts & guests
No transcript yet
This episode has not been transcribed. Request it and it moves to the front of the queue.
More episodes
More from The IT Privacy and Security Weekly Update.

Episode 286. The Deep Dive. Subliminal Learning with the AI, Security, and Priva...
The IT Privacy and Security Weekly Update.

Subliminal Learning with the AI, Security, and Privacy Weekly Update for the Wee...
The IT Privacy and Security Weekly Update.

Episode 285.5 Deep Dive. Patience and the AI, Privacy, and Security Weekly Updat...
The IT Privacy and Security Weekly Update.

Patience and the AI, Privacy, and Security Weekly Update for the Week Ending Mar...
The IT Privacy and Security Weekly Update.