AI Company ‘Cense AI’ Leaks 2.5 Million Medical Records

Secure Thoughts worked with security researcher Jeremiah Fowler to uncover how Cense AI leaked 2.5 million medical records, which included names, insurance records, medical diagnosis notes, and a lot more.

The records were labeled as staging data and we can only speculate that this was a storage repository intended to hold the data temporarily while it is loaded into the AI Bot or Cense’s management system. As soon as I could validate the data, I sent a responsible disclosure notice. Shortly after my notification was sent to Cense I saw that public access to the database was restricted.

1: Burn this company down. 2: Sounds like most of the data are from patients in New York.

Some Developers Use TestFlight as an Unofficial App Store

Writing for Protocol, David Pierce shares stories from developers who use TestFlight as an unofficial App Store.

TestFlight is not an alternative to the App Store, it’s a staging ground on the way there. Developers told me Apple doesn’t review TestFlight apps very intensively, other than to make sure they’re not fundamentally broken or obviously malicious. And if Apple’s already reviewed, say, version 1.0 of your app, they say it won’t even look at 1.0.1. It doesn’t think of TestFlight as a long-term home for apps.

A cool, clever workaround to the App Store’s strict rules.

This ex-Apple ad Manager Created The Ultimate Golf Cart

Brad Payne is a former digital advertising manager for Apple News. Fast Company revealed the story of how he created the Walker Trolley golf cart. You can certainly see the influence of his time at Apple in the story.

Golf cart design became mainly focused on “how tight can I fold it. Put a knob here, another hinge there. Put a racing stripe on it!” Trying to create the smallest folding pushcart is, according to Payne, “a fine goal. A very utilitarian goal. But because of that, the industry kind of converged around a similar design. Everybody kind of copied everyone else.” The starting point for the Walker Trolley, Gibson says, was not how the thing was going to look in the trunk of a car. “Should it fold simply? Yeah, but that shouldn’t drive the design. We want it to present your bag in a beautiful way, using the materials that respect the past.”

Instagram: Please Give Us Your Government ID

Instagram will start asking “suspicious accounts” to verify their identity with a government ID. Instagram claims this will help users understand when accounts are “attempting to mislead their followers” although it’s not clear what kind of behavior the Facebook-owned company thinks is suspicious. One reason is shared: If most of your followers are in a different country than you.

IDs will be stored securely and deleted within 30 days once our review is completed, and won’t be shared on the person’s profile as pseudonymity is still an important part of Instagram.

Tidbits Managing Editor Josh Centers (#7) - BGM Interview

Josh Centers is the managing editor of TidBITS, as well as the author of many Take Control Books: Notes, Home Automation, Apple TV, co-author of Take Control of Preview. He also published Take Control of iOS 13 and iPadOS 13. And he’s recently joined The Prepared as an editor.

In his seventh appearance on the show, Josh explored the new faetures of iOS 14 and what he likes most—as he prepares for his forthcoming Take Control book. The App Libraries feature was at the top of his list. In segment two, Josh and I discussed a major, impressive research article he recently wrote about the often contentious relationship between developers and Apple and its handling of the App Store. We finished with thoughts on a next gen Apple TV 4K.

iPhone Production Begins in India

Indian iPhone production has begun with Wistron looking to hire 10,000 staff, as Apple looks to reduce its reliance on Chinese manufacturing. 9to5 Mac has a nice roundup of the current situation.

India’s importance to Apple as a manufacturing center has grown considerably since the first Foxconn plant back in 2016. The goal at that stage was simply to make older and lower-end iPhone models for local sale. Apple’s primary production capabilities remained firmly centered in China. Things have changed rather dramatically since then. Apple’s increasingly uneasy relationship with China has highlighted the risks of being overly dependent on a single country for the vast majority of production. The substantial tariffs imposed by the Trump administration on Chinese-manufactured products made diversification of manufacturing a much more urgent matter. Apple reportedly responded by asking suppliers to price up the cost of moving 15-30% of production out of China. That seemed an ambitious goal at the time, with one reported failed attempt to manufacture the current flagship models in the country. However, the importance of having iPhone production much more widely dispersed around the globe was underlined when the coronavirus hit China, shutting down iPhone production in the country.

 

Secret Service Purchased ‘Location X’ Product to Track Phones

A Secret Service document reveals the purchase of “Location X” a product that uses location data harvested from apps. The product is from a company called Babel Street. If that name sounds familiar it’s because two employees left the company to form “Anomaly Six” another location tracking company.

“The purpose of this modification is to add 1 licenses [sic] to CLIN 0003 and incorporate the Master Subscription Agreement and Locate X Addendum as attached,” the contract document reads. Motherboard obtained the document through a Freedom of Information Act (FOIA) request.