Thursday, January 31, 2019

Another reason to take a dim view of smart bulbs

from here

Smart light bulbs that store your WiFi password are kind of problematic. When you throw it out it still remembers that password and other people may be able to retrieve it. Obviously that isn't ideal, but that's a symptom of a bigger problem. Many (maybe all) smart devices are going to remember your WiFi password and we are introducing them into an established culture of disposable consumerism, where old things are regularly thrown out and replaced with new ones. I freely admit that I never really appreciated the problem of security waste (forget e-waste, now we'll have s-waste) before, but as more and more things become smart, our garbage will contain more and more of our passwords. That's a disturbing attack surface. I don't know if we're really ready for the consequences of the Internet of Disposable Things.

But I thought Macs were safe

found on QuickMeme

The myth that Macs don't get malware has been particularly pernicious, in part because Apple has actively promoted the idea for a long time. You don't want to find this out the hard way but they do actually get malware, there's just less of it going around.

Wednesday, January 30, 2019

Show me the money, Facebook

from here

Everyone seems to be wringing their hands about Facebook paying teens to spy on them and I'm over here wondering how I can get paid for something Facebook is going to do regardless. I mean, if stopping Facebook from spying were on the table, I would definitely choose that, but since it's not, I gotsta get paid.

Ancient Internet Proverb

found on ImgFlip

Tuesday, January 29, 2019

Don't call me, maybe

from here

So apparently there's a bug in Facetime that lets people calling you hear what's going on on your end before you even answer the call. Ooops! Apparently Apple has already temporarily disabled Group Facetime in order to stop people from exploiting this vulnerability while they prepare a fix, but the script kiddies are still going to try it because word of the vulnerability will almost certainly spread farther and faster than word of Apple neutering it.

The history of spamming

found on ImgFlip

If you've ever wondered how a brand of canned meat came to be associated with annoying, repetitive junk mail, look no further than Monty Python.

Monday, January 28, 2019

You'd expect them to be a little more... secure

from here

I know that securities and security aren't the same thing (and that the SEC doesn't actually exchange things), but still, when you have security (or some derivative) in your name, you should try to be a little more secure. Also, of all the governmental agencies that need to be secure, the SEC is pretty high on the list because the data they deal with is clearly quite valuable.

When you don't know your enemy

found on Imgur

I could say that you should know your enemy the way Sun Tzu teaches, but honestly, if you're some lowlife invading homes of old people, by all means skip that lesson and get your teeth knocked in.

Friday, January 25, 2019

Bank-grade security

from here

Although it wasn't a bank, per se, that was fingered in this article, it was definitely a bank (or banks) that outsourced to the offending company. It's still the responsibility of the bank to keep that data safe and secure and clearly they didn't do that.

Why you should never set foot in a meth house


Watch on YouTube

Apparently there are all sorts of creative and very harmful traps to be found in meth houses. This is just one example.