Monday, April 30, 2012

errorism in 3... 2... 1...

found on google image search

not every bad guy is a mastermind, and the ones that aren't tend to undermine the ones who are.

double security

from here (source image)

thanks to dave lewis for tweeting the source picture. those are a pair of RSA security tokens (something you can use in addition to or in place of passwords), by the way. clearly this person has 2 different systems they need access that both use security tokens. imagine if you had to do that for all your online accounts. you'd need a bigger key ring.

Friday, April 27, 2012

i don't always sell my old hard drives..

from here

inspired by this tweet from graham cluley

would you like some internet...?

from here (source image)

those darned pre-checked checkboxes are at it again.careful when you're installing stuff, you might find some little browser window parasite along for the ride.

(i guess paul ferguson was right about there being a secmeme joke in this image. i was also contemplating "i had ur browser window but i eated it" but i've already used the "but i eated it" joke recently)

Thursday, April 26, 2012

if you raise a terror alert...

if you raise a terror alert because a 4 year old girl hugged her grandmother, then you might be a security idiot

(inspiration)

ai had protekshun...

from here

it's not just the anti-virus industry or the security industry in general. everyone who sells protection exaggerates their capabilities.

come to think of it, everyone who sells anything exaggerates how good that thing is. it's part of selling. you'd think we could do a better job of taking security vendor claims with a grain of salt, then.

Wednesday, April 25, 2012

one does not simply install and forget security software

from here

software tools may do the repetitive stuff, but they can't do the entire job and they never will. the user must always be the brains of the operation.

another view of anonymous

found on hijinks ensue

this, i think, captures a perspective that isn't often discussed in security circles. one that is perhaps more prevalent outside of the security community. people are (or were, when this webcomic was fresh) afraid of anonymous. they're afraid to say or do the wrong thing. anonymous seems to have power people don't understand and that makes them scared.

but here's a hint: it's not magical, it's not supernatural, and it's not something that was bestowed upon them. the power anonymous wields is just the power of people. what anonymous does is what any group of sufficiently motivated people can do.

(and yes, i know the image is small enough that it's hard to read the text bubbles. the full sized image is too big to fit here, and you really want to visit the source site for the context anyways because not everyone will remember that old-time episode of the twilight zone)

Tuesday, April 24, 2012

cispacat meme

from cispacat.org

so it appears that someone else got the bright idea of using memes to help raise awareness of something. in this case, it's raising awareness of what is potentially another example of authority run amok (some people are calling CISPA the son of SOPA, or SOPA 2.0).

obviously the site has a lot more pictures than just this one example here.

cyber security guard

found on shin's blog

so that little guy is the future of security - makes you feel safer already, doesn't it?