Showing posts with label bad time. Show all posts
Showing posts with label bad time. Show all posts

Wednesday, April 19, 2023

For Rent-A-Cop caliber bad guys

from here and here

It takes a special sort of stupid to fall for RentAHitman.com, and even more so if you're looking for employment there. I think maybe, instead of renting out their services, they should have tried renting out the space between their ears.

Monday, February 27, 2023

Key In Absentia

from here and here

If Kia and Hyundai can put an end to the Kia Challenge with a software update, the question I have is why didn't they do it sooner? You know, before people died.

Friday, January 6, 2023

It's a tracking device that also happens to make phone calls

from here and here

Do Russians not watch the same movies and TV shows that we do? Tracking a cell phone is child's play for the authorities, so I find myself wondering what was going through their heads when Russian soldiers gave away their position by using their cell phones. Perhaps the answer is "nothing"

Tuesday, May 31, 2022

Bitcoin can't unfry a hard drive

from here and here

While it's true that some ransomware operators have incorporated blackmail into their business model so that simply restoring from backups is no longer sufficient to resolve the incident, many if not most victims still seem to be unwilling or unable to recover from backups. It's as if they think ransomware is all they need to worry about and they can simply pay the ransom to get their data back, as if that's just the cost of doing business. 

That cryptocurrency won't uncrush a laptop, it won't unflood an office, it won't stop a fire, or any of the other sorts of disasters that really would benefit from backups. Backups are still the best way to get your data back.

Wednesday, May 11, 2022

Are you here for tourism or terrorism?

from here and here

Can you guess where the (presumably) infrequent flyer came from? Why do I presume they're an infrequent flyer? Because you'd have to be to think you could take an explosive on a plane in this day and age.

Wednesday, April 6, 2022

Better hope they forget their passwords

from here and here

If your company is in the technology industry, you should certainly know better than to allow people to retain access to your systems when they're no longer employed by your company, and even more so if your company deals with banking or other financial services.

Wednesday, February 9, 2022

Let's review the tape

from here

Surveillance cameras are usually not hidden. Any thief worth their salt should be able to spot them and realize that they'd be captured on film (and later in person by police) if they tried steal from a business equipped with such cameras. Stealing from a business that MAKES them takes a special kind of stupid.

Thursday, January 27, 2022

Putting people on ice for a rent-a-wreck price

from here

You have to wonder about anyone willing to use a rent-a-hitman when rent-a-cops are such a derided group. Considering people fall for some of the dumbest scams imaginable, however, I suppose I really shouldn't be surprised that people do in fact fall for RentAHitman.com 

Wednesday, November 3, 2021

Time to put the NRA on the Pew Pew map

from here

Pretty sure a rifle isn't going to stop ransomware, so the NRA was unprepared to fend off a ransomware attack. Maybe the NRA should branch out and form the National 2 Factor Association to help keep the ransomware operators out of their system next time.

Tuesday, October 5, 2021

Single Point Of Faceb^H^H^H^H^H Failure

from here

I think it's safe to say that when even the doors are affected by your networking mishap, it's time to rethink having everything go through the same servers.

Wednesday, June 23, 2021

How smart is that thermostat now?

from here

ERCOT would like you to know that the electricity supply would be doing just fine if people didn't use it so much. But since they do, ERCOT convinced their customers to give the company the ability to adjust people's smart thermostats and of course they're going to do it when people are most in need of cooling.

Friday, June 11, 2021

Situational Awareness Fail

from here

It's probably a good idea to watch where you're going even if you're not a criminal on the run.

Wednesday, May 26, 2021

When is a bum rap not a bum rap?

from here

Sometimes I think people would be better off if they left their mobile phones at home. When you're committing a crime seems like one of those times. Barring that, set a passcode on it so that it can't be unlocked with your ass.

Thursday, May 13, 2021

Maybe I should click on all the things

from here

While it's true that a COVID-themed phishing test is exactly what criminals would do, it's also true that this is exactly how you create disgruntled workers who sabotage operations, either through negligence or malicious action. West Midland Trains needs to learn how to read the room and keep their employees on their side.

Tuesday, April 13, 2021

Everyone wants to be wanted, but not like that

from here

If you're going to try to hide your real identity by giving out a fake one, you might want to invest some time and effort into making sure you use a name that doesn't invite closer scrutiny

Thursday, April 8, 2021

How not to avoid domain squatting

from here

The UK Cyber Security Council were lucky their preferred domain got snatched up by someone who was seemingly nice. It could have easily been much worse, like someone who wanted to serve malware to anyone who visited. 

Make sure you own the domain BEFORE you tell the world about it or there's a pretty good chance someone else will grab it first and try to screw you and your audience over.

Monday, February 15, 2021

Sharing isn't caring when it comes to passwords

from here

If I had to guess what the one key failure in the recent water treatment plant intrusion was, it would be that there was just one password shared by everyone. It wasn't the out of date operating system that let them remotely access the system, nor the lack of a firewall. There was and is a legitimate need to be able to monitor and control the system remotely and by all indications the perpetrator simply logged in with the same password as a legitimate user, which means it could be an actual employee or ex-employee, but the shared password makes it difficult to determine who and also difficult to revoke access when people leave because you have to inform everyone of the new shared password.

Tuesday, February 2, 2021

Garbage people in, garbage persona out

from here

Computer scientists have done it again. Another artificially intelligent racist. Apparently not enough people learned the lesson of Tay. You can't train an AI on unchecked input from arbitrary people on the Internet and expect to wind up with something worthwhile. The assholes among them will do everything they can to spoil it.

I know input validation is probably not the right terminology for the AI context, but in the broader sense the chatbot is a program and malicious input is malicious input.

Friday, January 8, 2021

When your OpSec is as bad as your legal advice

from here

You'd think that a lawyer would know not to take part in something as obviously illegal as a violent insurrection at the Capitol building. You'd further think that a lawyer would have the good sense not to post evidence of such illegal activity on social media for the world (and your employer) to see. Apparently in at least one case you'd be wrong.

Tuesday, October 27, 2020

So much for having the best people

from here

 I kinda think someone needs to keep a closer eye on the tweeter-in-chief's cyber-security issues. If someone is trying to report something, that shouldn't fall on deaf ears for an entire presidential term.