Friday, May 14, 2021

What else haven't they told us about?

So much for the 'Walled Garden' keeping Apple users safe. It failed spectacularly and allowed a 128 million device botnet to be created out of compromised iDevices. And worse, because of Apple's lack of transparency, we have no reason to believe something like this hasn't happened before or since.

Regret in the surveillance state

Maybe you should be careful what you search for.

Thursday, May 13, 2021

Maybe I should click on all the things

While it's true that a COVID-themed phishing test is exactly what criminals would do, it's also true that this is exactly how you create disgruntled workers who sabotage operations, either through negligence or malicious action. West Midland Trains needs to learn how to read the room and keep their employees on their side.

Not exactly a clean getaway

Imagine sitting in a plastic box full of dirty diapers and used kitty litter in the blazing sun for half an hour and then still getting caught. It's enough to make one reconsider one's life choices.

Wednesday, May 12, 2021

Well that makes it all better

I have a tough time believing Russians, of all people, wouldn't know the societal consequences of an attack on a pipeline. As if they haven't been on the receiving end before.

Now pull my other leg

Never too young to learn about scammers.

Tuesday, May 11, 2021

Isn't fewer incidents a good thing?

Sometimes I feel like I'm stuck in Groundhog Day, listening to the same ridiculous arguments over and over again without end. Restricting access to dangerous materials makes sense and that doesn't have to mean that defenders can't get their hands on them - the AV research community proved that decades ago.

PCAP Or It Didn't Happen sticker

If you know what a packet capture is then I don't have to tell you how important they can be, but not everyone does know, so go forth and spread the word.

Monday, May 10, 2021

There better not be any ads after that

While paying for Internet service is a technical requirement for using websites, paying for a phone is not - as evidence I point to all the sites I can currently use without a phone. If Google starts requiring a phone in order to log in then I can't see how to continue calling the service free, regardless of whether the money is going to them (although, considering how many phones are Android, it seems likely they're getting their cut).

Defeat handcuffs with this one weird trick

If you handcuff all the crooks, even the one-handed crooks, you're just demonstrating the truth of the saying "A foolish consistency is the hobgoblin of little minds".

Friday, May 7, 2021

We need a webcam cover with a dead man's switch

Can we talk about the usability of webcam covers? I mean, sure they're easy to slide open and closed, but they still rely on human memory in order to reap the privacy benefits from them, and human memory can be quite fallible. 

I thought at one point the problem was that black webcam cover on a black laptop screen bezel was just too inconspicuous to really notice if the cover was closed or not, so bent a big piece of cardboard in an upside down U shape to place over the camera to improve visibility, but I still regularly forget and I'm sure I'm not the only one.

It's been 5 days since I last used my webcam and the cover was still open. The only thing I can't think to try now is to employ the mechanism from a deadfall trap to prop open my cardboard cover and connect that to my wrist with a string.

We all have to share

It's true that most people aren't important enough to warrant their own personal FBI agent. But that doesn't mean the FBI isn't watching, it just means the people watching you are probably watching other people too.

Thursday, May 6, 2021

Don't forget to apply updates

If you've recently gotten yourself a Dell or even if you've had it a while, chances are the software on it is a little bit stale and it might still have this not-so-newly-discovered vulnerable firmware updater on it. You're going to want to do something about that.

Get yourself some guard geese

If this had been just one goose I think the story would have had a very different ending, but not even a gator wants to deal with a whole gaggle of geese. Maybe we should have trained guard geese.

Wednesday, May 5, 2021

So much for "private"

Sometimes I wonder if big tech companies even know the meaning of the word "private". It certainly doesn't seem like Amazon does. With that number of people it's basically impossible to enforce limits on how the data is used (or misused) which in turn means there's no accountability.

No more lying on your resume

Yeah, you definitely want to adopt the "please remain calm" pose when you tell people something like that

Tuesday, May 4, 2021

No funds for you

50 million is a lot, but maybe not enough to drain the police budget. It'd be a shame if crooks kept at it, though.

Think Before You Click shirt

It's always good to remind people to be careful where they click. The bad guys are always looking for new ways to trick people into installing malware.

Monday, May 3, 2021

The Incompetent Revenue Service

The only kind of contract Equifax should be getting is the one where someone pays them lots of money to never touch data again. Here's a million dollars now get the fuck out of business. Obviously that is not the kind of contract the IRS awarded them, much to the IRS' dismay. I don't know what the IRS was expecting. (This may be old news, but still, what WERE they thinking?)

Security doggo has got his eye on you

This looks like the kind of good boy that can keep you safe and secure. Critical eyes, ears at the alert, patiently waiting until something requires his expert attention. And with that shirt on, when people break in they'll know he means business.