Time to sharpen some wooden stakes

If you look closely at the right hand side it does seem to be bent outwards, which suggests the force came from inside the cemetery. It's also fairly low to the ground, which makes me wonder - is this a pet cemetery?

"Relevant" ads are creepy AF

Presumably they can't actually read your mind. I assume they just correctly recognize that you're similar to people who have expressed the same thoughts you've only ever thought inside your head and are acting on that similarity, but it's still creepy.

A little TOO 'universal'

A lot of things went wrong with Kias and Hyundais to allow them to be stolen as easily as they have been, but one that stands out to me is that there's a receptacle the same size as a USB plug that you can just plug a USB charging cable into and twist like a key to start the engine.

Password policy frustration

The better designed systems will show you the full set of password policies all at once rather than revealing them individually like this. That way the user should be able to create a new password with the fewest number of failed attempts.

What gave it away?

I suppose you don't necessarily have to be a master of operational security to be a flight attendant, but if you're going to call in a bomb threat on the plane your ex-boyfriend is on then a bit of opsec would probably help.

Why we need end-to-end encrypted messaging

I think we can all agree that we'd like to be able to speak privately with the important people in our lives and that some of the things we share would be deeply embarrassing if they were revealed to a wider audience. I'm sure we'd all like to be able to enjoy the freedom to communicate that way, but it's hard to feel that free when we hear about how the authorities are spying on our communications.

Fundamentals First

Yes, there is a novel side-channel attack that involves video recording of power LEDs, and yes I'm sure it's important to protect your smart card readers against such an attack, but I'm also fairly certain most information security departments are still struggling to deal with phishing and ransomware and aren't anywhere near being in a position where dealing with this novel (and frankly low probability) attack is the best use of their resources.

Stolen And Purchased

I'm kind of surprised that SAP's first clue they had a data breach was when they purchased their own hard drive off of Ebay. But if people can just waltz out of their data center with hard drives in their pockets or something then I guess I shouldn't be surprised after all.

That mental image, though

Deterrence is ultimately a mental exercise, it operates on the mind of the people you hope to deter. As such, it's probably a good thing to try things a little off the beaten path because "Danger!" and "Keep Out!" are things people have seen a million times and so are desensitized. This one paints a very evocative mental image, though maybe it sparks a bit too much curiosity.

"Smart" Armour

Of course the person whose phone saved them from a bullet was actually just really, really lucky. Phones aren't bulletproof, and body armour made out of them would cost far more than they'd be worth. Of course if you did do it then you'd probably want the phones to partially overlap each other, like dragon skin body armour, rather than what the guy above was doing.

Sometimes the obvious countermeasures are the easiest ones to forget

Stay out of the water, stay out of the bad part of town, stay out of untrustworthy websites, etc. If you always remember those sorts of obvious things, good for you, but plenty of people need reminders, and some never knew in the first place. So don't just remember for your own sake, remember to share those steps with others as well.

One way to make cookies bite the biscuit

Actually blocking cookies seems to create problems with a surprising number of sites, so using incognito mode or private browsing mode in other browsers to limit the lifetime of the cookies to as long as the browser window is open is the next best thing. Neither stop other forms of tracking, though.

The bear essentials of deterrence

If you can scare away your adversary then your job is done.

Got it, got it, need it, got it

I knew crooks used the MOVEit vulnerability to breach a lot of organizations, but when the number is so high that you start assuming all breaches are the same group, then things start to get a little ridiculous.

Magical "Security"

When your security practices are informed by magical thinking, even children will find a way around your protective measures.

Moving your data into their hands

The MOVEit vulnerability has been exploited far and wide, but this latest one involving the DMV seems particularly far reaching.

Jeepers creepers where'd you get those peepers

If it weren't for the normalization of surveillance we wouldn't get amazingly disturbing images like this one.

Cursed Camouflage

Yes, you can definitely disguise one inappropriate thing as another inappropriate thing, but when people eventually realize what they were staring at they're going to hate themselves.

You've probably never heard of it

Whenever the topic of password managers comes up, people generally promote the one they use, but I never hear anyone promote the one I use. That's fine, it doesn't need to be popular to do it's job, and in fact it might actually be better if it flies under the radar, because then it's a less tempting target for the bad guys.

The most mischievous key on the keyboard

Someone needs to make a keyboard where the entire caps lock key lights up (not just a little light but the whole key) to make it more obvious when this sneaky bastard is messing things up.

I'm in

You shouldn't even need to do this if you're using a password manager, but lots of people don't, so if they can manage this (without reusing passwords) then more power to them.

Calling two scammers at the same time to talk to each other

What's interesting to me is how the scammers drop all pretenses when they think they're the only ones on the line. If you ever wondered if they were aware they were scamming people, now you know.

Who'll be next?

A hospital in Illinois is closing it's doors (in part) because of a ransomware attack that took them offline for weeks and prevented them from submitting insurance claims, which means they couldn't make money. I'm sure the crooks responsible aren't losing any sleep over the new medical desert they've created and the deaths that will probably result when people having medical emergencies can't hold on for the now half hour it will take to get to the next closest emergency room. And because they aren't losing any sleep over it, they're probably not going to do anything to avoid doing it again.

Bring your own privacy

I'm of two minds, here. On the one hand, being able to bring your own privacy out and about could be useful for a whole range of applications, but on the other hand, some of those applications probably shouldn't be done out in public. 

Also, it occurs to me that not being able to see what you're doing could make things problematic unless you're good at doing things by feel.

Should have used triangulation to find it

The Operation Triangulation malware is far from the first malware for the iPhone, but the fact that we've reached the point that we can no longer wait for Apple to take care of such things themselves must really be eating at the old-school Apple fanbois. 

We're still stuck in a position that anti-malware apps can't scan the iPhone directly, though. That's going to make detection much less likely since few are going to go through the aggravation of making a backup so they can scan that.

Choose your email provider wisely

So apparently the settlement checks from the class action lawsuit against Yahoo! are finally going out, and it sounds like they're not quite the pittance I was expecting, although they're not as big as I would have hoped for either.

And what a view it is

Imagine hating privacy... I could stop there, but imagine hating privacy so much that you do this to a space that is already notorious for not being private enough. It seems alien, but this clearly took extra effort above and beyond just erecting normal bathroom stalls.

Make some room for other things

There's a life hack that says you should get things out of your head by writing them down so you no longer have to waste energy worrying about forgetting them, but when that comes to passwords you might want to take a little extra care and not simply write them in a notebook.

He won't suspect a thing

I could see hiding packages from porch pirates, but hiding them from an occupant represents a much different threat model. In the event that you really need to hide packages from your husband, it might be better to use a strategy that focuses on you retrieving them before your husband has a chance to become aware of them rather than hoping the delivery person finds a good hiding spot that you can find but your husband can't. 

Suddenly privacy is the least of my worries

Isn't it funny how one small mistake can completely subvert a security control. 

Is there a good reason for bathroom stalls to lock from the outside? Maybe, but I wouldn't want to risk getting trapped in the crapper.

Never underestimate your adversary

I'm not calling capybaras the enemy, but if you're trying to keep them in an enclosure and they're working against you then adversary definitely seems like the appropriate classification

Privacy? What's that?

Ring is in some serious trouble over it's abject failure to protect the privacy of it's customers from it's own employees and others, but the thing that stood out to me wasn't that there was an employee abusing his/her access to the video feeds, but rather the mere fact that there were video feeds coming from people's bedrooms and bathrooms. I don't know about you but I wouldn't want people peeping on me while I poop.

It's not just you, nobody likes updates

Leaving aside what I think is an uncontroversial take about applying system updates, I can't help but notice that this is eerily similar to this one I made in January of this year. The caption on the distracted boyfriend is literally the only difference and it makes me wonder if making memes more personal would also make them more relatable and thus by extension more successful. Perhaps there was a perception that by addressing all computer users I was punching down, which violates the humour principle that I generally try to follow of not punching down. I didn't think of it as a punch at all, in this case, but perhaps I misjudged. It's definitely something for me to keep in mind. 

Which is the real one?

Presumably one of those doors is an actual entrance and the rest are just decoys, but you'll have to figure out which is which before you can try breaking in.

Low Profile Fail

Learning that a bunch of drugs were seized with Nazi flags on them really only brings to mind one question: Who the fuck is putting Nazi flags on things in 2023? You've got to be living under a really big rock to think people in the outside world are just going to let that slide. You could put the Nazi flag on peanut butter and it's still going to draw suspicion.

Authorized Pets Only

Having seen how difficult face recognition can be in humans, I don't have a lot of faith in this application either. Among all the other problems, have fun enrolling your pets when they're soaking wet, because that's what they're going to look like when they want in in a hurry.

As if you need more reasons to hate going to the dentist

A dental health insurance company was breached and ransomed, but because they didn't pay, the data got leaked. I suppose if the crooks are going to ransom a company over it's data a health insurance company seems like a pretty good bet. They've got lots of money and I don't think they can arbitrarily pass on the additional cost to their customers.

Somehow it's both more and less private than its modern counterparts

It's more private because your privates have more cover, but simultaneously far more public because it's not hidden away in a public restroom somewhere. I'm not how I would feel if faced with the prospect of using something like this.

No honour among thieves

Of all the databases to leak on your hacking forum, one that exposes you and/or your own forum's users seems like one that would be considered off limits, but apparently the ExposeForums admin who leaked the RaidForums user database didn't feel the same way. If they wanted to just notify the members that their data had been breached there were other, more privacy-preserving ways they could have done it than to post the database where all could see it and misuse it.

Cutting edge security

Something no one really wants to talk about is the fact that most biometric authentication is just one knife accident away from being token-based authentication.