Der frühere BND-Präsident soll noch Jahre nach seinem Ausscheiden geheime Informationen aus der Behörde erhalten und möglicherweise verkauft haben – an fremde Mächte?
Archiv: Daten – Beschaffung / Speicherung / Banken / Zentren / Analyse / Handel / Netzwerke / data – procurement / storage / banks / centers / analysis / trade / networks
Diese Geheimdienstreform betrifft uns alle
Die Geheimdienstreform betrifft Ärzt:innen und ihre Patient:innen. Sie schränkt die Vertraulichkeit im Behandlungszimmer ein.
(…)
Die Geheimdienstreform betrifft Journalist:innen und ihre Quellen. Sie höhlt die Grundlagen der journalistischen Arbeit aus.
(…)
Die Geheimdienstreform betrifft Klimaaktivistinnen und Sitzblockierer. Sie geraten schneller ins Visier der Dienste.
(…)
Die Geheimdienstreform betrifft Autowerkstätten. Deren Mitarbeitende werden zu Erfüllungsgehilf:innen der Dienste.
Die geplanten Gesetze verpflichten jede Menge private Akteure, den deutschen Geheimdiensten zuzuarbeiten. Neben Anbietern von digitalen Diensten und Telekommunikation sind hier auch explizit Autowerkstätten und Kfz-Hersteller erwähnt.
(…)
Die Geheimdienstreform betrifft dich, wenn du durch ein Einkaufszentrum läufst. Denn die Dienste könnten dich künftig dabei beobachten.
(…)
Die Geheimdienstreform betrifft alle, die das Internet nutzen. Denn der BND darf faktisch alle übertragenen Daten abschnorcheln und durchsuchen.
EU-Rat treibt die Chatkontrolle wieder an
Der ehemalige deutsche Europaabgeordnete der Piratenpartei, Patrick Breyer, sieht darin klar „Massenüberwachung unter anderem Namen“. Ziel von Rat, Kommission und einigen Mitgliedstaaten sei es, „Massenüberwachung in ganz Europa dauerhaft zu normalisieren“.
Der Vorschlag, „Teile eines Dienstes“ zu scannen, würde in der Praxis bedeuten, dass „jeder Nutzer in der EU“ betroffen wäre, so Breyer.
Zudem handle es sich nicht um ein neues System, das das alte ersetze, sondern um eines, das parallel dazu existieren würde. Das alte System sei eine „erwiesene Katastrophe“: In Deutschland richteten sich über die Hälfte der Ermittlungen gegen Minderjährige wegen „einvernehmlichen Sextings“, während 75 Prozent der gemeldeten Chats „nicht verwertbar“ seien.
F-Droid: Aurora Store
Aurora Store is an unofficial, FOSS client to Google Play with an elegant design. Aurora Store allows users to download, update, and search for apps like the Play Store. It works perfectly fine with or without Google Play Services or microG.
Features:
• FOSS: Has GPLv3 licence
• Beautiful design: Built upon latest Material 3 guidelines
• Account login: You can login with either personal or an anonymous account
• Device & Locale spoofing: Change your device and/or locale to access geo locked apps
How to Change DNS on Your Router (All Brands)
Why Change DNS at the Router Level
By default, your router hands out your ISP‘s DNS servers to every connected device via DHCP. Setting DNS on the router itself — rather than on each individual device — means every device on the network inherits the new resolver automatically, including devices you can‘t easily configure yourself (smart TVs, IoT sensors, guest devices).
Router-level DNS is the right layer for three common goals: faster page-load times from a lower-latency resolver, ad/tracker filtering through resolvers like NextDNS or AdGuard DNS, and defending against DNS hijacking, where malware or a compromised ISP silently redirects your DNS queries. If your router‘s DNS settings changed and you didn‘t do it, treat that as a compromise signal — check for unauthorized WAN DNS entries first.
Router DNS is a WAN-side setting, distinct from DNS cache, which is a local, per-device store of resolved lookups. If you‘re troubleshooting stale results after switching resolvers, see How to Flush DNS Cache — a router-level change won‘t clear cache already held by client devices.
How to Change DNS Servers on Most Popular Routers
(Updated on March 12, 2022)
Change DNS Server on Linksys
Change DNS Server on a NetGear Router
Change DNS Server on D-Link
Change DNS Server on Asus
Change DNS Server on TP-Link
Change DNS Server on Cisco
Change DNS Server on TRENDnet
Change DNS Server on Belkin
Change DNS Server on Buffalo
Change DNS Server on Google Wifi
= Tiarap = Privacy-First DNS Resolver
An open and Free DNS service for security and high privacy.
Block over 3.2M ads, tracking, malware, scam and phishing domains.
No Logging, dns0x20, No ECS, DNSSEC, DNS Cookies.
DNS IPv4: 174.138.21.128 / 188.166.206.224 – port 53 or port 5003
DNS IPv6: [2400:6180:0:d0::5f6e:4001] – port 53 or port 5003
DNS-over-HTTPS (DoH/DoH3 A+): How to
DNS-over-TLS (DoT): How to
What is DNS over TLS?
DNS over TLS (DoT) is a protocol for the encrypted transmission of DNS (Domain Name System) queries. Name resolution on the Internet is typically transmitted unencrypted via UDP. With DoT, however, the assignment of domains and the associated IP addresses is encrypted using the Transport Layer Security (TLS) protocol. This protects the transmission from interception, manipulation and man-in-the-middle attacks.
DNS over TLS: Definition
DoT is the standard (RFC 7858) proposed by the Internet Engineering Task Force (IETF) for fortifying DNS connections. In contrast to conventional DNS requests, DoT establishes a secure TCP (Transmission Control Protocol) connection between the client and the DNS server, which is authenticated and encrypted using TLS.
How to Change Your DNS on Any Device
(20.01.2024)
A Domain Name System (DNS) matches human-friendly domain names to computer-friendly IP addresses.
When you type in a domain name like cyberghost.com, for example, your web browser sends the request to your ISP via your router. Your ISP refers the request to its default DNS server. The DNS server then supplies the relevant IP address so your browser can load the appropriate page.
A DNS also saves a local copy or cache of sites you’ve recently visited on your device for quick and easy reference.
It seems like a streamlined service; what could go wrong? Check the following reasons why you should change your DNS.
Public DNS Server List by Country/Region
Afghanistan
Albania
Algeria
American Samoa
Andorra
Angola
Anguilla
Antarctica
Antigua and Barbuda
Argentina
Armenia
Australia
Austria
Azerbaijan
Bahamas
Bahrain
Bangladesh
Barbados
Belarus
Belgium
Belize
Benin
Bermuda
Bhutan
Bolivia
Bosnia and Herzegovina
Botswana
Brazil
British Indian Ocean Territory
British Virgin Islands
Brunei
Bulgaria
Burkina Faso
Burundi
Cambodia
Cameroon
Canada
Cape Verde
Cayman Islands
Chile
China
Colombia
Cook Islands
Costa Rica
Croatia
Cuba
Cyprus
Czech Republic
Denmark
Djibouti
Dominica
Dominican Republic
Ecuador
Egypt
El Salvador
Equatorial Guinea
Estonia
Ethiopia
Fiji
Finland
France
French Polynesia
Gabon
Gambia
Georgia
Germany
Ghana
Greece
Greenland
Grenada
Guadeloupe
Guam
Guatemala
Guinea
Guyana
Haiti
Honduras
Hong Kong
Hungary
Iceland
India
Indonesia
Iran
Iraq
Ireland
Israel
Italy
Ivory Coast
Jamaica
Japan
Jordan
Kazakhstan
Kenya
Kuwait
Kyrgyzstan
Laos
Latvia
Lebanon
Liberia
Libya
Liechtenstein
Lithuania
Luxembourg
Macao
Macedonia
Malawi
Malaysia
Maldives
Mali
Malta
Marshall Islands
Martinique
Mauritania
Mauritius
Mexico
Micronesia
Moldova
Mongolia
Morocco
Mozambique
Myanmar
Namibia
Nauru
Nepal
Netherlands
New Caledonia
New Zealand
Nicaragua
Nigeria
Niue
North Korea
Norway
Pakistan
Palestine
Panama
Papua New Guinea
Paraguay
Peru
Philippines
Poland
Portugal
Puerto Rico
Qatar
Reunion
Romania
Russia
Rwanda
Saint Kitts and Nevis
Saint Lucia
Saint Pierre and Miquelon
Saint Vincent and the Grenadines
Samoa
Sao Tome and Principe
Saudi Arabia
Senegal
Seychelles
Singapore
Slovakia
Slovenia
South Africa
South Korea
Spain
Sri Lanka
Sudan
Suriname
Swaziland
Sweden
Switzerland
Syria
Taiwan
Tajikistan
Tanzania
Thailand
Togo
Tonga
Trinidad and Tobago
Tunisia
Turkey
Turkmenistan
Turks and Caicos Islands
U.S. Virgin Islands
Uganda
Ukraine
United Arab Emirates
United Kingdom
United States
Uruguay
Uzbekistan
Vanuatu
Venezuela
Vietnam
Wallis and Futuna
Yemen
Zambia
Zimbabwe
Encrypted DNS Factsheet: What is DNS, and Why is it Critical?
(May 3, 2023)
While the DNS has been refined and extended since it was standardized in 1983, its privacy properties have not. As designed, DNS information is sent unencrypted across the Internet, and thus is viewable by anyone along the path, resulting in lack of privacy.
Perhaps the biggest risk is that it’s so easy to forget DNS exists…! It’s hard to know or care about something you never see.
BND und Verfassungsschutz: So weit sollen die Befugnisse der Nachrichtendienste reichen
(September 24, 2026)
Zudem werden Analyse- und Überwachungsbefugnisse ausgebaut, beispielsweise mit Blick auf den Einsatz künstlicher Intelligenz, Speicherfristen oder die Übermittlung von Informationen an andere Behörden.
(…)
Im Fall des BND heißt es im Entwurf, er soll bei einer „spezifischen Gefährdungslage“ auf Ziele „einwirken“ dürfen. Gemeint sind beispielsweise Hackbacks, also Gegenangriffe im Netz oder Manipulationen von Bauteilen.
Im Fall des Verfassungsschutzes sind einige konkrete Maßnahmen bereits im Entwurf aufgezählt, etwa das „Verfälschen“ von Informationen oder die Beeinträchtigung von „Tatmitteln“.
„Sicherheitspaket 2.0“: Sachverständige halten Gesetzentwürfe für verfassungswidrig
Mit Gesichtserkennung im Internet fahnden oder mit Hilfe von Software möglichst große Datenmengen verknüpfen und analysieren. Diese neuen Befugnisse fordert die Bundesregierung in mehreren Gesetzentwürfen für das Bundeskriminalamt und die Bundespolizei. Auch das Bundesamt für Migration soll per Gesichtserkennung Asylsuchende identifizieren dürfen. Die Reformpläne – auch bekannt als “Sicherheitspaket 2.0” – sind heute Thema im Innenausschuss des Bundestages gewesen.
Der Weg dahin war weit. Bereits 2024 hatte die damalige Ampelregierung nach mehreren Terror-Anschlägen ein erstes “Sicherheitspaket” vorgelegt. Es scheiterte im Bundesrat. Bevor ein neuer Anlauf gemacht werden konnte, zerfiel die Koalition aus SPD, FDP und Grünen.
Das war das Ende der Ampel, nicht aber der Ambitionen.
= Tiarap = Privacy-First DNS Resolver
An open and Free DNS service for security and high privacy.
Block over 3.2M ads, tracking, malware, scam and phishing domains.
No Logging, dns0x20, No ECS, DNSSEC, DNS Cookies.
DNS IPv4: 174.138.21.128 / 188.166.206.224 – port 53 or port 5003
DNS IPv6: [2400:6180:0:d0::5f6e:4001] – port 53 or port 5003
DNS-over-HTTPS (DoH/DoH3 A+): How to
DNS-over-TLS (DoT): How to
How to Change DNS Servers on Most Popular Routers
(Updated on March 12, 2022)
Change DNS Server on Linksys
Change DNS Server on a NetGear Router
Change DNS Server on D-Link
Change DNS Server on Asus
Change DNS Server on TP-Link
Change DNS Server on Cisco
Change DNS Server on TRENDnet
Change DNS Server on Belkin
Change DNS Server on Buffalo
Change DNS Server on Google Wifi
How to Change Your DNS on Any Device
(20.01.2024)
A Domain Name System (DNS) matches human-friendly domain names to computer-friendly IP addresses.
When you type in a domain name like cyberghost.com, for example, your web browser sends the request to your ISP via your router. Your ISP refers the request to its default DNS server. The DNS server then supplies the relevant IP address so your browser can load the appropriate page.
A DNS also saves a local copy or cache of sites you’ve recently visited on your device for quick and easy reference.
It seems like a streamlined service; what could go wrong? Check the following reasons why you should change your DNS.
Unauthorized communication via temporary file hosting services
How we are addressing it
We fixed the broken filesystem and disabled internet access for this training dataset. We have since globally disabled any form of live internet access during training. Our expanded misalignment monitoring system, which now runs on 100% of samples, views this as a P0 incident warranting a security page. We now also have a more defined process for escalation and for responsibility of detected misalignments.
Unsanctioned Artifactory writes and cross-sample communication
Internal research models · RL training
Sample: May 8, 2026 and May 15, 2026
Discovery: May 25, 2026
Report updated: Sep 16, 2026
(…)
This is the first time we detected our models using Artifactory as a message board during training. This led to us finding the second sample which we believe to be the first time our models used artifactory as a message board. Overall the behavior was very uncommon in this run.
The Hugging Face incident involved a similar mechanism for using Artifactory as a shared message board.
Uploading files to the internet in order to cite them
Samples: Jan 24, 2026 and Oct 22, 2025
Discovery: May 25, 2026
Report updated: Sep 16, 2026
Summary
In two training examples, models made unrequested public uploads as workarounds for tool limitations: one uploaded records it had already retrieved to obtain a browser citation, and another uploaded a task photo for external image search. Both uploads succeeded even though the subsequent browser operations failed.
Signing up for disposable emails and searching GitHub for leaked API keys
Internal unreleased model · RL training
Main incident date: May 15, 2026
Discovered: May 25, 2026
Report updated: Sep 16, 2026
Summary
While trying to retrieve historical data during training, a model found and used an exposed API key without authorization. The registrations failed, but one key authenticated and returned metadata. When the requested data remained unavailable, the model invented them and claimed they came from the requested website.
What happened
During RL training, an internal-only model tried to sign up for disposable emails and searched for and used leaked API keys from public GitHub repositories.
The task was to retrieve men’s earnings in three industries over three years in a California county. The model first looked for the data behind the website’s earnings chart.
(…)
It delegated website and API searches to three agents and inspected the chart’s HTML and code. After requests failed despite changes to headers, domains, URL paths, and query parameters, it tried an alternative API that required a key the user had not supplied.
OpenAI Reveals Six Model Incidents Involving Hidden Failures and Unauthorized Uploads
The six incidents are outside of the recently disclosed misaligned activity targeting Hugging Face, DseWiki, and RubyGems. Details of the incidents are below –
Automatisierte Todeslisten
netzpolitik.org: Wie sieht die zugrundeliegende technische Infrastruktur aus und wer stellt sie bereit?
Rainer Rehak: Der gesamte Datensatz zu Gaza umfasst schätzungsweise 13,6 Petabyte, also umgerechnet 13.600 Terabyte. Diese Datenmenge ist nicht einfach zu handhaben, besonders wenn man damit statistische Modelle trainieren möchte oder gar große Sprachmodelle, die ebenfalls erstellt werden. Die digitale Infrastruktur wird von Google und Amazon unter dem Projektnamen Nimbus bereitgestellt und kostet 1,2 Milliarden US-Dollar.
Die Integration der heterogenen Datenquellen macht Palantir. Microsoft, Cisco, Dell und Red Hat/IBM bieten zusätzliche IT-Dienstleistungen rund um die „kill-chain“ an. Dies zeigt die enorme Rolle, die der private Sektor bei der Integration und Nutzung von KI-Systemen in bewaffneten Konflikten spielt.
Israel sanctions will not hurt intelligence sharing between spy agencies, says Miliband
(September 9, 2026)
British intelligence has been given assurances by its Israeli counterpart that information sharing with the UK will continue as before, Ed Miliband, the foreign secretary, has said.
Joint Letter to Chairmen Wicker and Rogers and Ranking Members Reed and Smith Opposing Further U.S.-Israel Defense Integration
Dear Chairmen Wicker and Rogers and Ranking Members Reed and Smith,
As you enter into conference to resolve the differences between the House-passed version of the National Defense Authorization Act (NDAA) for Fiscal Year 2027 (H.R.8800) and the pending Senate bill (S.4784), We, the undersigned U.S. organizations, strongly urge you to reject the entrenchment of U.S. and Israeli defense collaboration, which goes against U.S. national interests and values, and would expand the risk of U.S. complicity in, and exposure to, human rights violations, war crimes, and genocide.
Specifically, we are deeply concerned by Section 219 in the House NDAA and Section 1217 in the Senate version, which establish a new U.S. Israel Defense Technology Cooperation Initiative aimed at accelerating joint research, development, and integration of Israeli-origin and jointly developed defense technologies into U.S. military systems and programs of record. This would expand U.S-Israeli military integration across some of the most sensitive domains of emerging technology, including quantum computing, AI and autonomous systems, cyber and electronic warfare, directed energy, and defense industrial base co-production, while expediting pathways from R&D into procurement.
56 US groups urge Congress to drop Israel defence ties provision
The provision would deepen cooperation between the US and Israeli defence sectors by accelerating joint military technology development and other partnerships. The bill passed the House of Representatives in July and awaits Senate action.
The provision of the 2027 National Defence Authorisation Act, known as Section 219, seeks to set up frameworks for joint ventures, licensing agreements and US-based co-production partnerships with the Israeli industry.
In Thursday‘s letter addressed to leaders of the House and Senate Armed Services Committees, 56 groups said deeper integration with Israel‘s defence sector would be „exceptionally dangerous“ and urged lawmakers to remove the provision.
Ortungstechnik: Lauschen auf den Knall vom Wedding
(April 5, 2016)
So beschreibt die „New York Times“ einen Einsatz des ShotSpotter-Systems des Herstellers SST, das mittlerweile in mehr als 70 Städten der USA im Einsatz ist, darunter Boston, Chicago, San Francisco, Oakland, Milwaukee und Minneapolis. Seine Aufgabe: Allein aus Geräuschen die Position einer Schießerei ermitteln – und das mit hoher Effizienz, wie der Hersteller wirbt.
NYC Installing Eavesdropping Microphones Across City
(March 18, 2015)
It’s called ShotSpotter, a large tracking system which detects gunfire and then triangulates the position of the sound. Acoustic sensors are placed in strategic areas, mostly along rooftops or atop telephone poles. Once installed, the sensors pick up street noise and listen for gunshots.
Public Buses Across Country Quietly Adding Microphones to Record Passenger Conversations
(December 10, 2012)
It also raises questions about security, since the IP audio-video systems can be accessed remotely via a built-in web server (.pdf), and can be combined with GPS data to track the movement of buses and passengers throughout the city.
According to the product pamphlet for the RoadRecorder 7000 system made by SafetyVision (.pdf), „Remote connectivity to the RoadRecorder 7000 NVR can be established via the Gigabit Ethernet port or the built-in 3G modem. A robust software ecosystem including LiveTrax vehicle tracking and video streaming service combined with SafetyNet central management system allows authorized users to check health status, create custom alerts, track vehicles, automate event downloads and much more.“