this post was submitted on 06 May 2026
122 points (96.9% liked)

Privacy

49094 readers
697 users here now

A place to discuss privacy and freedom in the digital world.

Privacy has become a very important issue in modern society, with companies and governments constantly abusing their power, more and more people are waking up to the importance of digital privacy.

In this community everyone is welcome to post links and discuss topics related to privacy.

Some Rules

Related communities

much thanks to @gary_host_laptop for the logo design :)

founded 6 years ago
MODERATORS
 

A security researcher decompiled the White House’s new official app and found some alarming stuff buried in the code, including a hidden GPS tracking pipeline, JavaScript loaded from a random GitHub account, no SSL certificate pinning, and an in-app browser that silently strips cookie consent dialogs and paywalls from every page you visit.

top 6 comments
sorted by: hot top controversial new old
[–] IAmYouButYouDontKnowYet@reddthat.com 26 points 1 month ago (1 children)

None of that is surprising.

[–] Battle_Masker@lemmy.blahaj.zone 8 points 1 month ago

Damn click bait economy making tech journalists have to jebait us for revenue

[–] auntieclokwise@lemmy.world 18 points 1 month ago

And it gets even stranger. Apparently, the app is loading JavaScript from a random person’s GitHub site for YouTube embeds. Yes, you read that right, it’s just loading JavaScript from a random GitHub site. So if that account ever gets compromised, arbitrary code could run inside the app’s WebView.

Somebody has the opportunity to do the most hilarious thing.

[–] twoBrokenThumbs@lemmy.world 12 points 1 month ago

At least they acknowledge that cookie consent does nothing and paywalls are ridiculous.

[–] Lor@mander.xyz 10 points 1 month ago

My shocked face 😶

[–] northernlights@lemmy.today 10 points 1 month ago

I wouldn't have expected any less.