ioc.exchange is one of the many independent Mastodon servers you can use to participate in the fediverse.
INDICATORS OF COMPROMISE (IOC) InfoSec Community within the Fediverse. Newbies, experts, gurus - Everyone is Welcome! Instance is supposed to be fast and secure.

Administered by:

Server stats:

1.3K
active users

#legal

90 posts65 participants0 posts today
DarkMatterDark v. Curry County: Revisiting Public Access Under the ADA The Americans with Disabilities Act (ADA) is a landmark piece of legislation in the United States that ensures rights and access for ind...<br><br><a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Legal" target="_blank">#Legal</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Cases" target="_blank">#Cases</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/and" target="_blank">#and</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Precedents" target="_blank">#Precedents</a><br><br><a href="https://know-the-ada.com/dark-v-curry-county-revisiting-public-access-under-the-ada/" rel="nofollow noopener noreferrer" target="_blank">Origin</a> | <a href="https://awakari.com/sub-details.html?id=DarkMatter" rel="nofollow noopener noreferrer" target="_blank">Interest</a> | <a href="https://awakari.com/pub-msg.html?id=ZuHcJfZLE1xJiEujdVwZovKOlvM&amp;interestId=DarkMatter" rel="nofollow noopener noreferrer" target="_blank">Match</a>
mrflash818<p>Judge Rejects Trump’s Attempt to Stop Asylum Claims </p><p><a href="https://mastodon.social/tags/news" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>news</span></a> <a href="https://mastodon.social/tags/legal" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>legal</span></a> </p><p><a href="https://www.nytimes.com/2025/07/02/us/politics/asylum-trump.html" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">nytimes.com/2025/07/02/us/poli</span><span class="invisible">tics/asylum-trump.html</span></a></p>
mrflash818<p>Federal judge blocks Trump administration from ending temporary legal status for many Haitians </p><p><a href="https://mastodon.social/tags/news" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>news</span></a> <a href="https://mastodon.social/tags/legal" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>legal</span></a> <a href="https://mastodon.social/tags/nbc" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>nbc</span></a> </p><p><a href="https://www.nbcnews.com/news/us-news/judge-blocks-trump-ending-tps-haitians-rcna216431" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">nbcnews.com/news/us-news/judge</span><span class="invisible">-blocks-trump-ending-tps-haitians-rcna216431</span></a></p>
MLB News<p>Dodgers Face Federal Civil Rights Charges Over Implementing DEI Hiring Practices <a href="https://www.rawchili.com/mlb/147148/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="">rawchili.com/mlb/147148/</span><span class="invisible"></span></a> <a href="https://channels.im/tags/Baseball" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Baseball</span></a> <a href="https://channels.im/tags/Discriminatory" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Discriminatory</span></a> <a href="https://channels.im/tags/Dodgers" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Dodgers</span></a> <a href="https://channels.im/tags/Group" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Group</span></a> <a href="https://channels.im/tags/La" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>La</span></a> <a href="https://channels.im/tags/LADodgers" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>LADodgers</span></a> <a href="https://channels.im/tags/LADodgers" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>LADodgers</span></a> <a href="https://channels.im/tags/legal" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>legal</span></a> <a href="https://channels.im/tags/LosAngeles" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>LosAngeles</span></a> <a href="https://channels.im/tags/LosAngelesDodgers" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>LosAngelesDodgers</span></a> <a href="https://channels.im/tags/LosAngeles" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>LosAngeles</span></a> <a href="https://channels.im/tags/LosAngelesDodgers" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>LosAngelesDodgers</span></a> <a href="https://channels.im/tags/MLB" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MLB</span></a> <a href="https://channels.im/tags/policies" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>policies</span></a></p>
cloud-nativeAI Spurs More Unicorn Acquisitions As Clio, Grammarly Make M&amp;A Deals In a busy week for unicorns making acquisitions, Canada-based legal software company Clio revealed its plans to acquire Spai...<br><br><a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Artificial" target="_blank">#Artificial</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/intelligence" target="_blank">#intelligence</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Cloud" target="_blank">#Cloud</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/computing" target="_blank">#computing</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/M&amp;A" target="_blank">#M&amp;A</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/AI" target="_blank">#AI</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Legal" target="_blank">#Legal</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/tech" target="_blank">#tech</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/unicorn" target="_blank">#unicorn</a><br><br><a href="https://news.crunchbase.com/ma/unicorn-ai-acquisitions-clio-grammarly/" rel="nofollow noopener noreferrer" target="_blank">Origin</a> | <a href="https://awakari.com/sub-details.html?id=cloud-native" rel="nofollow noopener noreferrer" target="_blank">Interest</a> | <a href="https://awakari.com/pub-msg.html?id=MoAxyYdpvbGYt35ro8aIH3vHB7w&amp;interestId=cloud-native" rel="nofollow noopener noreferrer" target="_blank">Match</a>
AndroidGoogle Ordered to Pay $314M in Cellular Data Class Action The ruling raises new questions about whether big tech’s data collection practices are finally facing real consequences or just more cour...<br><br><a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags//" target="_blank">#/</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/News" target="_blank">#News</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Google" target="_blank">#Google</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Data" target="_blank">#Data</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Privacy" target="_blank">#Privacy</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Legal" target="_blank">#Legal</a><br><br><a href="https://www.techloy.com/google-ordered-to-pay-314m-in-cellular-data-class-action/" rel="nofollow noopener noreferrer" target="_blank">Origin</a> | <a href="https://awakari.com/sub-details.html?id=Android" rel="nofollow noopener noreferrer" target="_blank">Interest</a> | <a href="https://awakari.com/pub-msg.html?id=G3Yi1n62TfZBguJOcqnbmSRRGzY&amp;interestId=Android" rel="nofollow noopener noreferrer" target="_blank">Match</a>
MLB News<p>Legal Group: Dodgers’ DEI Policies Are Discriminatory <a href="https://www.rawchili.com/mlb/146942/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="">rawchili.com/mlb/146942/</span><span class="invisible"></span></a> <a href="https://channels.im/tags/Baseball" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Baseball</span></a> <a href="https://channels.im/tags/Discriminatory" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Discriminatory</span></a> <a href="https://channels.im/tags/Dodgers" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Dodgers</span></a> <a href="https://channels.im/tags/Group" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Group</span></a> <a href="https://channels.im/tags/La" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>La</span></a> <a href="https://channels.im/tags/LADodgers" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>LADodgers</span></a> <a href="https://channels.im/tags/LADodgers" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>LADodgers</span></a> <a href="https://channels.im/tags/legal" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>legal</span></a> <a href="https://channels.im/tags/LosAngeles" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>LosAngeles</span></a> <a href="https://channels.im/tags/LosAngelesDodgers" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>LosAngelesDodgers</span></a> <a href="https://channels.im/tags/LosAngeles" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>LosAngeles</span></a> <a href="https://channels.im/tags/LosAngelesDodgers" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>LosAngelesDodgers</span></a> <a href="https://channels.im/tags/MLB" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>MLB</span></a> <a href="https://channels.im/tags/policies" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>policies</span></a></p>
ResearchBuzz: Firehose<p>The Register: Glasgow City Council online services crippled following cyberattack. “A cyberattack on Glasgow City Council is causing massive disruption with a slew of its digital services unavailable. The local authority has confirmed the attack started on June 19 and attributed it to a supply chain issue involving a third-party contractor’s supplier.”</p><p><a href="https://rbfirehose.com/2025/07/02/the-register-glasgow-city-council-online-services-crippled-following-cyberattack/" class="" rel="nofollow noopener noreferrer" target="_blank">https://rbfirehose.com/2025/07/02/the-register-glasgow-city-council-online-services-crippled-following-cyberattack/</a></p>
ResearchBuzz: Firehose<p>MediaPost: Advertiser Sues Google Over Alleged Failure To Disclose Queries. “The search advertiser PVC Fence Wholesale has sued Google for allegedly failing to disclose specific details regarding search queries that resulted in clicks on paid ads.”</p><p><a href="https://rbfirehose.com/2025/07/02/mediapost-advertiser-sues-google-over-alleged-failure-to-disclose-queries/" class="" rel="nofollow noopener noreferrer" target="_blank">https://rbfirehose.com/2025/07/02/mediapost-advertiser-sues-google-over-alleged-failure-to-disclose-queries/</a></p>
KellyAnn Romanych (she/her)<p>Via National Immigration Project: "This guide and template motion can be used by pro se respondents in immigration court to request that the immigration judge change their hearing from in-person to virtual via WebEx. This guide and template do not constitute legal advice."</p><p>Guide in English and Espanol </p><p><a href="https://mastodon.social/tags/immigration" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>immigration</span></a> <a href="https://mastodon.social/tags/legal" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>legal</span></a> <a href="https://mastodon.social/tags/USPol" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>USPol</span></a> </p><p><a href="https://nipnlg.org/work/resources/pro-se-guide-motion-change-hearing-webex" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">nipnlg.org/work/resources/pro-</span><span class="invisible">se-guide-motion-change-hearing-webex</span></a></p>
Crypto News<p>Supreme Court Declines Crypto Privacy Case, Upholds IRS Access Without Warrant - The Supreme Court’s refusal to hear a major crypto privacy case leaves intact ruli... - <a href="https://news.bitcoin.com/supreme-court-declines-crypto-privacy-case-upholds-irs-access-without-warrant/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">news.bitcoin.com/supreme-court</span><span class="invisible">-declines-crypto-privacy-case-upholds-irs-access-without-warrant/</span></a> <a href="https://schleuss.online/tags/privacy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>privacy</span></a> <a href="https://schleuss.online/tags/legal" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>legal</span></a> <a href="https://schleuss.online/tags/court" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>court</span></a> <a href="https://schleuss.online/tags/irs" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>irs</span></a></p>
mrflash818<p>Judge blocks Trump effort to dismantle African development agency </p><p><a href="https://mastodon.social/tags/news" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>news</span></a> <a href="https://mastodon.social/tags/legal" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>legal</span></a> <a href="https://mastodon.social/tags/thehill" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>thehill</span></a> </p><p><a href="https://thehill.com/homenews/5380279-judge-blocks-trump-effort-to-dismantle-african-development-agency/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">thehill.com/homenews/5380279-j</span><span class="invisible">udge-blocks-trump-effort-to-dismantle-african-development-agency/</span></a></p>
gtbarry<p>Privacy providers clash over controversial proposals to change Swiss encryption law</p><p>The proposed Swiss law's revision would extend surveillance obligations and require companies to collect information and identification on their users – a move that would significantly impact online privacy. </p><p><a href="https://mastodon.social/tags/Switzerland" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Switzerland</span></a> <a href="https://mastodon.social/tags/privacy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>privacy</span></a> <a href="https://mastodon.social/tags/surveillance" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>surveillance</span></a> <a href="https://mastodon.social/tags/encryption" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>encryption</span></a> <a href="https://mastodon.social/tags/legal" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>legal</span></a> <a href="https://mastodon.social/tags/VPN" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>VPN</span></a> <a href="https://mastodon.social/tags/technology" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>technology</span></a> <a href="https://mastodon.social/tags/tech" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>tech</span></a></p><p><a href="https://www.tomsguide.com/computing/vpns/infomaniak-breaks-rank-and-comes-out-in-support-of-controversial-swiss-encryption-law" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">tomsguide.com/computing/vpns/i</span><span class="invisible">nfomaniak-breaks-rank-and-comes-out-in-support-of-controversial-swiss-encryption-law</span></a></p>
ITSEC News<p>US disrupts North Korean IT worker "laptop farm" scheme in 16 states - The U.S. Department of Justice (DoJ) announced coordinated law enforcement actions agains... <a href="https://www.bleepingcomputer.com/news/security/us-disrupts-north-korean-it-worker-laptop-farm-scheme-in-16-states/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">bleepingcomputer.com/news/secu</span><span class="invisible">rity/us-disrupts-north-korean-it-worker-laptop-farm-scheme-in-16-states/</span></a> <a href="https://schleuss.online/tags/cryptocurrency" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>cryptocurrency</span></a> <a href="https://schleuss.online/tags/security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>security</span></a> <a href="https://schleuss.online/tags/legal" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>legal</span></a></p>
Ryan Daws 🤓<p>Proton joins App Store lawsuit against Apple <a href="https://www.developer-tech.com/news/proton-joins-app-store-lawsuit-against-apple/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">developer-tech.com/news/proton</span><span class="invisible">-joins-app-store-lawsuit-against-apple/</span></a> <a href="https://techhub.social/tags/proton" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>proton</span></a> <a href="https://techhub.social/tags/apple" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>apple</span></a> <a href="https://techhub.social/tags/developers" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>developers</span></a> <a href="https://techhub.social/tags/legal" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>legal</span></a> <a href="https://techhub.social/tags/coding" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>coding</span></a> <a href="https://techhub.social/tags/programming" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>programming</span></a> <a href="https://techhub.social/tags/law" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>law</span></a> <a href="https://techhub.social/tags/appstore" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>appstore</span></a> <a href="https://techhub.social/tags/mobile" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>mobile</span></a> <a href="https://techhub.social/tags/ios" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ios</span></a> <a href="https://techhub.social/tags/tech" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>tech</span></a> <a href="https://techhub.social/tags/news" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>news</span></a> <a href="https://techhub.social/tags/technology" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>technology</span></a></p>
Nonilex<p>…To be sure, the <a href="https://masto.ai/tags/SEC" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SEC</span></a> is led by a presidentially appointed chairman who guides the agency's <a href="https://masto.ai/tags/regulatory" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>regulatory</span></a> agenda, making it rare for the agency to depart drastically from White House priorities….</p><p>But the SEC, like other <a href="https://masto.ai/tags/financial" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>financial</span></a> regulators, has long been treated as <a href="https://masto.ai/tags/independent" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>independent</span></a> from the WH — both through <a href="https://masto.ai/tags/legal" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>legal</span></a> protections &amp; decades of norms…. The agency has traditionally limited communications w/the WH over rules to avoid political interference, or the appearance of it.</p><p><a href="https://masto.ai/tags/law" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>law</span></a> <a href="https://masto.ai/tags/fraud" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>fraud</span></a> <a href="https://masto.ai/tags/Trump" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Trump</span></a></p>
LLMsLLMパラダイム時代の「AI+垂直統合型」法律事務所 Legal Agent——ヒューマンインザループで企業法務を変革 #BRMeetup 本稿は BRIDGE と MUFGイノベーショ...<br><br><a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Interview" target="_blank">#Interview</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/JUNCTION" target="_blank">#JUNCTION</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Legal" target="_blank">#Legal</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Agent" target="_blank">#Agent</a><br><br><a href="https://thebridge.jp/2025/06/reinventing-law-firms-with-ai-legal-agent-transforms-corporate-legal-services-through-human-in-the-loop-innovation" rel="nofollow noopener noreferrer" target="_blank">Origin</a> | <a href="https://awakari.com/sub-details.html?id=LLMs" rel="nofollow noopener noreferrer" target="_blank">Interest</a> | <a href="https://awakari.com/pub-msg.html?id=1rZaf6ope59IOFuUOWaueOlvWoy&amp;interestId=LLMs" rel="nofollow noopener noreferrer" target="_blank">Match</a>
LLMsShould We Restrict the Use of AI in Law School? In a prior post for Slaw, I argued that law schools should make AI more central to the curriculum. We should teach how to use AI effectively rather t...<br><br><a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Legal" target="_blank">#Legal</a> <a rel="nofollow noopener noreferrer" class="mention hashtag" href="https://mastodon.social/tags/Technology" target="_blank">#Technology</a><br><br><a href="https://www.slaw.ca/2025/07/01/should-we-restrict-the-use-of-ai-in-law-school/" rel="nofollow noopener noreferrer" target="_blank">Origin</a> | <a href="https://awakari.com/sub-details.html?id=LLMs" rel="nofollow noopener noreferrer" target="_blank">Interest</a> | <a href="https://awakari.com/pub-msg.html?id=FGoYEslYvyPT56Mg94C3hIgCU1A&amp;interestId=LLMs" rel="nofollow noopener noreferrer" target="_blank">Match</a>
Terence Eden’s Blog<p><strong>Are Brother's Insecure Printers Illegal in the UK?</strong></p><p><a href="https://shkspr.mobi/blog/2025/07/are-brothers-insecure-printers-illegal-in-the-uk/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">shkspr.mobi/blog/2025/07/are-b</span><span class="invisible">rothers-insecure-printers-illegal-in-the-uk/</span></a></p><p></p><p>Another day, another security disaster! This time, <a href="https://www.theverge.com/news/694877/brother-printers-security-flaw-password-vulnerability" rel="nofollow noopener noreferrer" target="_blank">multiple printers from Brother have an unfixable security flaw</a>. That's bad, obviously, but is it <em>illegally</em> bad0?</p><p>Let's take a look <a href="https://www.cve.org/CVERecord?id=CVE-2024-51978" rel="nofollow noopener noreferrer" target="_blank">at details of the vulnerability</a>:</p><blockquote><p>An unauthenticated attacker who knows the target device's serial number, can generate the default administrator password for the device.</p></blockquote><p>Recently, the UK brought in some laws aimed at strengthening consumer protection - the Product Security and Telecommunications Infrastructure act (PSTI). There's <a href="https://www.ncsc.gov.uk/blog-post/smart-devices-law" rel="nofollow noopener noreferrer" target="_blank">a readable summary on the National Cyber Security Centre's website</a>.</p><p>There are three interesting points to note in that blog post. The first is about passwords:</p><blockquote><p>The law means manufacturers must ensure that all their smart devices meet basic cyber security requirements. Specifically:</p><ol><li>The manufacturer must not supply devices that use default passwords, which can be easily discovered online, and shared.</li></ol></blockquote><p>Secondly, is a question of jurisdiction:</p><blockquote><p>Most smart devices are manufactured outside the UK, but the PSTI act also applies to all organisations importing or retailing products for the UK market. Failure to comply with the act is a criminal offence</p></blockquote><p>Thirdly, what is actually covered:</p><blockquote><p>The law applies to any ‘consumer smart device’ that connects either to the internet, or to a home network (for example by wifi).</p></blockquote><p>Is a WiFi enabled printer a "consumer smart device"? One of the things that techies find confusing is that the law is <em>not</em> code. It usually doesn't enumerate a definitive list of what is and what isn't in scope. It gives a general outline and then allows case-law to develop. This means laws don't need to be updated when someone invents, say, an Internet connected tinfoil dispenser.</p><p>Let's move beyond the consumer-friendly summary and go to the actual law. <a href="https://www.legislation.gov.uk/uksi/2023/1007/schedule/1/made" rel="nofollow noopener noreferrer" target="_blank">The Product Security and Telecommunications Infrastructure (Security Requirements for Relevant Connectable Products) Regulations 2023</a></p><blockquote><ol start="2"><li><p>Passwords must be—</p><p>a. unique per product; or</p><p>b. defined by the user of the product.</p></li><li><p>Passwords which are unique per product must not be—</p><p>a. based on incremental counters;</p><p>b. based on or derived from publicly available information;</p><p>c. based on or derived from unique product identifiers, such as serial numbers, unless this is done using an encryption method, or keyed hashing algorithm, that is accepted as part of good industry practice;</p><p>d. otherwise guessable in a manner unacceptable as part of good industry practice.</p></li></ol></blockquote><p>How does this apply to the printers? Rapid7, who discovered the vulnerability, <a href="https://www.rapid7.com/blog/post/multiple-brother-devices-multiple-vulnerabilities-fixed/" rel="nofollow noopener noreferrer" target="_blank">have this to say about how it works</a>:</p><blockquote><p>[The vulnerability] allows an attacker to leak a serial number via the target's HTTP, HTTPS, and IPP services. However, should an attacker not be able to leverage [the vulnerability], a remote unauthenticated attacker can still discover a target device's serial number via either a PJL or SNMP query</p></blockquote><p>So, yes. The default password <em>is</em> unique but it can be automatically derived from the serial number. That serial number is available to anyone with a network connection to the printer.</p><p>But, do printers fall under the scope of this act?</p><p>The <a href="https://www.legislation.gov.uk/ukpga/2022/46/part/1/enacted#section-4" rel="nofollow noopener noreferrer" target="_blank">Product Security and Telecommunications Infrastructure Act 2022</a> says:</p><blockquote><p>4 Relevant connectable products</p><ol><li><p>In this Part “relevant connectable product” means a product that meets conditions A and B.</p></li><li><p>Condition A is that the product is—</p><p>A. an internet-connectable product, or</p><p>B. a network-connectable product.</p></li><li><p>Condition B is that the product is not an excepted product (see section 6).</p></li></ol></blockquote><p>It goes on to define what Internet-connectable means, along with some other clarifying details. But is there a get-out clause here? Are printers an "excepted product"?</p><blockquote><p>In this Part “excepted product” means a product of a description specified in regulations made by the Secretary of State.</p></blockquote><p>OK, let's look at <a href="https://www.legislation.gov.uk/uksi/2023/1007/schedule/3" rel="nofollow noopener noreferrer" target="_blank">the regulations</a>. I've expanded out the relevant bit:</p><blockquote><p>Schedule 3 Excepted connectable products</p><ol start="5"><li><p>Computers</p><ol><li><p>Products are excepted under this paragraph if they are computers which are—</p><p>a. desktop computers;</p><p>b. laptop computers;</p><p>c. tablet computers which do not have the capability to connect to cellular networks.</p></li></ol></li></ol></blockquote><p>Nope! The Brother printers don't appear to be exempt1. What's <a href="https://www.legislation.gov.uk/ukpga/2022/46/part/1/enacted#section-38" rel="nofollow noopener noreferrer" target="_blank">the <em>maximum</em> penalty</a> Brother could be subject to?</p><p>The greater of £10 million or 4% of worldwide <em>revenue</em>.</p><p>Ouch!</p><p>Of course, much like GDPR fines, these are headline grabbing numbers. The prosaic reality is that <a href="https://www.gov.uk/government/publications/safety-and-standards-enforcement-enforcement-policy" rel="nofollow noopener noreferrer" target="_blank">the enforcement policy is much more likely to suggest remedial steps</a>. Only the most flagrant transgressors are likely to be punished harshly2.</p><p>So, to recap. The law says an Internet-connected device (including printers) must have a password which is not "based on or derived from publicly available information". As I understand it, having a serial-number based password is OK <em>as long as you don't publicise the serial number</em>. I expect that if it were printed on a sticker that would be fine. But because the serial can be discovered remotely, it fails at this point.</p><p>In Brother's (slight) defence, unless the user has specifically connected the printer to the Internet this is only a local vulnerability. Someone on the same network would be able to monkey around with the printer but, similarly, they could plug in a USB cable for some illicit printing or break it with a hammer. Any damage is confined to the LAN.</p><p>Should users change default passwords? Yes. But manufacturers have a legal duty to ensure that people who don't are still protected.</p> <ol start="0"><li><p>I'm not a lawyer. This is not legal advice. This is just my interpretation of what's going on. If in doubt, consult someone qualified.&nbsp;↩︎</p></li><li><p>With thanks to m'learned colleague <a href="https://decoded.legal/blog/2023/10/new-rules-for-people-making-importing-or-distributing-internet-connected-or-connectable-products-part-1/" rel="nofollow noopener noreferrer" target="_blank">Neil Brown who came to much the same conclusion</a>&nbsp;↩︎</p></li><li><p>You can <a href="https://www.gov.uk/government/publications/opss-enforcement-actions" rel="nofollow noopener noreferrer" target="_blank">see the actions they've previously taken</a>. Because PSTI is so new, there aren't any actions against insecure IoT devices - so we'll have to wait and see how they choose to proceed.&nbsp;↩︎</p></li></ol> <p></p><p><a rel="nofollow noopener noreferrer" class="hashtag u-tag u-category" href="https://shkspr.mobi/blog/tag/cybersecurity/" target="_blank">#CyberSecurity</a> <a rel="nofollow noopener noreferrer" class="hashtag u-tag u-category" href="https://shkspr.mobi/blog/tag/iot/" target="_blank">#IoT</a> <a rel="nofollow noopener noreferrer" class="hashtag u-tag u-category" href="https://shkspr.mobi/blog/tag/law/" target="_blank">#law</a> <a rel="nofollow noopener noreferrer" class="hashtag u-tag u-category" href="https://shkspr.mobi/blog/tag/legal/" target="_blank">#legal</a> <a rel="nofollow noopener noreferrer" class="hashtag u-tag u-category" href="https://shkspr.mobi/blog/tag/legislation/" target="_blank">#Legislation</a></p>
Terence Eden<p>🆕 blog! “Are Brother's Insecure Printers Illegal in the UK?”</p><p>Another day, another security disaster! This time, multiple printers from Brother have an unfixable security flaw. That's bad, obviously, but is it illegally bad?</p><p>Let's take a look at details of the vulnerability:</p><p>An unauthenticated attacker who knows the target device's serial…</p><p>👀 Read more: <a href="https://shkspr.mobi/blog/2025/07/are-brothers-insecure-printers-illegal-in-the-uk/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">shkspr.mobi/blog/2025/07/are-b</span><span class="invisible">rothers-insecure-printers-illegal-in-the-uk/</span></a><br>⸻<br><a href="https://mastodon.social/tags/CyberSecurity" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>CyberSecurity</span></a> <a href="https://mastodon.social/tags/IoT" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>IoT</span></a> <a href="https://mastodon.social/tags/law" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>law</span></a> <a href="https://mastodon.social/tags/legal" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>legal</span></a> <a href="https://mastodon.social/tags/Legislation" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Legislation</span></a></p>