Smashing Security podcast #466: Meta sees everything, Copy Fail, and a deepfake gets hired
Meta’s smart glasses promise privacy “designed for you” – but everything they record was being beamed off to workers in Nairobi to label by hand. When those workers blew the whistle, Meta sacked all 1,108 of them.
Meanwhile, the IT press is in a frenzy over a new Linux bug called “Copy Fail” – complete with logo, dedicated website, and a marketing-friendly name. But is it really the disaster everyone’s making it out to be?
And in our featured interview, Jake Moore of ESET explains how he tricked a company into offering his deepfake clone a job – after a perfectly normal-looking video interview.
All this and more in episode 466 of the “Smashing Security” podcast with cybersecurity expert and keynote speaker Graham Cluley, joined this week by special guest Paul Ducklin.
0:00
0:00
Show full transcript
▼
This transcript was generated automatically, probably contains mistakes, and has not been manually verified.
And yeah, but this, this is the reality. This trillion-dollar industry of AI, the actual truth is there’s an awful lot of people who are having to do this.
Smashing Security, Episode 466. Meta sees everything, copy fail, and a deepfake gets hired with Graham Cluley and special guest Paul Ducklin.
Hello, hello, and welcome to Smashing Security, Episode 466. My name’s Graham Cluley.
This whole cybersecurity business seems to be shutting down. Maybe we’ll have to find ourselves a new job.”
This week on Smashing Security, we’re not going to be talking about how a Brazilian firm that protects businesses from DDoS attacks was found to be helping a botnet that launched massive DDoS attacks.
You’ll hear no discussion of how Microsoft Defender started mistakenly detecting DigiCert root certificates as a Windows Trojan horse.
And we won’t even mention how hackers managed to steal source code from cybersecurity giant Trellix. So, Duck, what are you going to be talking about this week?
And if you’ve been looking at the IT media at all in the last week or two, you will probably have seen the words “copy fail.” And I’m going to be talking about another reason why you should probably steer well clear of Meta’s smart glasses.
All this and much more coming up in this episode of Smashing Security. Well, we’ve got time now to chat about one of the sponsors of this week’s show, Action1.
Now then, if you are a systems administrator managing endpoints every day, you’ve probably postponed patching at least once, not because you forgot, but because you didn’t feel like gambling with uptime.
And thanks to Action 1 for supporting the show. So, Duck, I need to make an apology. Not specifically to you, to the listeners, I think.
Back in February, I had a bit of a rant with James Ball about the smart glasses made by Meta, and I explained how Mark Zuckerberg’s company was planning to turn on facial recognition within the glasses and how it had been reported that there was this secret internal memo inside the company that said—
You know, people who care about privacy and stuff are going to object.” And so they said, “The best thing that we can do is time this to be when there’s some other political chaotic event going on, distracting all those civil liberties people.”
No one will notice.
So there’s another reason, as if that weren’t bad enough, 11 episodes ago, we are back with another alarming story emerging about how these AI smart glasses that are being sold on the high street, and I was in an airport recently, it was in a duty-free store.
They’ve been sold all around the world.
People are going around with these Buddy Holly-style glasses, and of course, these are geeky kind of glasses, but with cameras and a microphone and an AI voice assistant tucked into the frames.
And if you hear what Meta are saying about them, one of the central messages they push out and they want you to remember, and this is the quote they give people, is they are “designed for privacy controlled by you.”
These are spectacles that you wear that record the entire world around you, upload stuff to the cloud even when you forget that this is happening, and that somehow improves your privacy and everybody else’s.
I’m loving to hear how that works, Graham. Do tell.
So two Swedish newspapers, Svenska Dagbladet and Göteborgs-Posten — apologies to anyone Swedish for the mangling I’ve done of your beautiful language — they were working with a freelance journalist in Kenya.
It tells you, right? And you may well ask yourself, who actually sees that footage that you’ve just taken? Who analyzes it?
And the answer is that it’s 1,000-odd people sitting in front of computer screens in Nairobi. In Kenya, there is a firm called— Duck, do you want to fill in the blank?
So, they are the same Sama that Meta hired previously to moderate Facebook posts.
Now, as was well documented, that earlier contract ended in lawsuits and former employees of Sama describing frankly the horror and the psychological trauma that they had to endure from being made to watch what is uploaded to the internet by Facebook users in their Facebook posts.
And they were doing this 10 hours odd a day, not very much money. And Sama later said that they regretted, you know, taking on that work for Facebook.
Their new job was to look at the videos coming out of their smart glasses and label up what was in them so that Meta’s AI could learn the difference between a flowerpot and a traffic cone.
I think normally you have to say, “Hey, Meta,” a bit like, “Hey, Google,” or, “Hey, Siri.” You have to ask them to do something, but maybe there’s an option to have them permanently on.
So they don’t do a sort of biometric nose print to know that they are balanced upon your nozzle. Nothing that.
So you got them recording, you take them off, you put them down somewhere in a coffee shop, and then you wander off to the toilet or to the counter or whatever, they just carry on recording surreptitiously while they’re on the table?
So these employees, as I said, they’re drawing little boxes around things to say, this is a flowerpot, this is a traffic cone, this is a coffee tender, whatever it may be.
And, you know, but this is the reality. Duck, this is the reality. This trillion-dollar industry of AI.
The actual truth is there’s this unglamorous manual labor which is critical to the foundations of it.
You know, there’s an awful lot of people who are having to do this to train the AI, if AI even exists at all, to do these things.
But it pretended to be AI and its behavior was surprisingly AI. So maybe that website had more going for it than you might think.
Because these people had signed NDAs, they were terrified of losing their jobs. And what it turned out was that they weren’t labelling flowerpots and chihuahuas.
As one of them said, they said, “We see everything from living rooms to naked bodies. We see everything.” And what does everything mean? It means everything.
So they said, “We see footage of people on the loo.” Footage of people undressing, footage of people’s bank cards, footage of people watching pornography while wearing the glasses.
But what I hadn’t thought of, which is really obvious when you think about it, is when you get out your credit card to pay for something online.
Yes, you will unavoidably look straight at it. And modern credit cards have the numbers writ large so you can’t get them wrong.
And you say, well, show me what the password is then. Then that password is being beamed through as well, isn’t it? Absolutely.
You’ve just given away all the data that somebody would need to read out the NFC chip.
Shortly afterwards, his wife walked in, started getting changed, and the glasses were still recording. She had no idea. But it’s not just the video footage.
There’s also transcripts of what is being said by people wearing the glasses.
Workers reviewing these conversations, they said they heard chats about crimes and all kinds of what was ominously described as dark things.
Meanwhile, it’s going into the cloud so that some system can record what they said, and someone in Kenya gets to listen to it in case it got the words wrong.
It’s all very above board, says Meta. So the reporters looked at that one by one to see if that was true, and they found that the blurring fails.
According to workers at Sama and former employees at Meta, faces which are meant to be obscured aren’t, particularly in low light, like for instance, a bedroom, or when the camera’s moving quickly, which of course, if you have glasses on your face and you turn your head, your camera is moving quickly.
So the blurring is not reliable. Also, Meta says that it’s only when you choose to share your data.
So these reporters in Sweden, they bought a pair of glasses themselves and they went through the setup and the app asked, would you like to share extra data with Meta to help improve the products?
And they said no. Oh, extra data. Yes, I wondered if that extra data was carrying quite a lot.
