Khurram Wadee ✅ · @mkwadee
1478 followers · 14380 posts · Server mastodon.org.uk

…trying to make digital files uncopyable is like trying to make water not wet.

#bruceschneier #quote

Last updated 2 years ago

Julie Webgirl · @juliewebgirl
622 followers · 3092 posts · Server mstdn.social
Cory Doctorow's linkblog · @pluralistic
44161 followers · 42310 posts · Server mamot.fr

Two decades ago, my life changed forever: hearing explain that "" doesn't exist in the abstract. You can only be secure *from some threat*. A fire alarm won't protect you from burglaries. A condom won't protect you from mass shootings. It seems obvious, but how often do we hear about "security" without any mention of *who* is being made secure, and from *which* threat?

1/

#bruceschneier #security

Last updated 2 years ago

Wisdom in Space · @wisdom
15 followers · 626 posts · Server botsin.space
privacy matters · @nikita
610 followers · 2883 posts · Server social.tchncs.de


Power LED Side-Channel Attack

This is a clever new side-channel attack:The first attack uses an Internet-connected surveillance camera to take a high-speed video of the power LED on a smart card reader­or of an attached peripheral device­during cryptographic operations.

schneier.com/blog/archives/202

#bruceschneier

Last updated 2 years ago

Ferdi F. Zebua 🌏 · @FerdiZ
367 followers · 8010 posts · Server mastodon.cloud
lorcon · @lorcon
180 followers · 611 posts · Server mastodon.bida.im

Segnalo questo articolo di , una retrospettiva dell'affaire a 10 anni da questo

schneier.com/blog/archives/202

#bruceschneier #snowden

Last updated 2 years ago

Debacle · @debacle
384 followers · 26 posts · Server framapiaf.org
Wisdom in Space · @wisdom
9 followers · 449 posts · Server botsin.space

Trying to make digital files uncopyable is like trying to make water not wet.
-- Bruce Schneier (Wired News (Sep, 07, 2006))

#quotes #bruceschneier #copyprotection #photography #panorama #sunrise #lakesantafe #florida

Last updated 2 years ago

Kevin Karhan :verified: · @kkarhan
1024 followers · 63256 posts · Server mstdn.social

@me @BleepingComputer @mozilla @torproject because if there's one thing everyone from to the stupidest Windows- will agree upon it's: "DON'T WITH AND DON'T TRY TO BE "SMARTASS" UNLESS YOU KNOW EXACLTY WHAT YOU'RE DOING!"

As shit like that get people understandably sussy...

#Encryption #tamper #SysAdmin #bruceschneier

Last updated 2 years ago

Strypey · @strypey
2295 followers · 22256 posts · Server mastodon.nzoss.nz

"Security vulnerabilities in the standards—­the protocols and software for 5G—­ensure that vulnerabilities will remain, regardless of who provides the hardware and software. These insecurities are a result of market forces that prioritize costs over security and of governments, including the United States, that want to preserve the option of surveillance in 5G networks."

, 2020

schneier.com/blog/archives/202

#bruceschneier #5g #5eyes

Last updated 2 years ago

Jamain · @jamain
10 followers · 267 posts · Server witter.cz
helices · @helices
113 followers · 5026 posts · Server mastodon.xyz

The 'nothing to hide argument' comes up again and again and it's obviously ridiculous. is not about something to hide. Privacy is about human dignity

#privacy #bruceschneier

Last updated 2 years ago

Bruce at EPFL Lausanne:
How to reclaim power in the digital world? Conversation with Bruce Schneier
Thursday, March 16, 2023

Info, registration:
memento.epfl.ch/event/how-to-r

#epfl #privacy #security #bruceschneier #schneier

Last updated 2 years ago

Bruce at EPFL Lausanne:
How to reclaim power in the digital world? Conversation with Bruce Schneier
Thursday, March 16, 2023

Info, registration:
memento.epfl.ch/event/how-to-r

#epfl #privacy #security #bruceschneier #schneier

Last updated 2 years ago

nach der Zukunft · @nikita
495 followers · 1844 posts · Server social.tchncs.de

Banning
Congress is currently that would TikTok in the United States.

We are here as technologists to tell you that this is a terrible idea and the side effects would be intolerable. Details matter.

There are several ways Congress might ban TikTok, each with different efficacies and side effects.

Kommentsr
Man definiert u. teilt der Welt mit wer die Guten u. wer die Bösen sind.

Schneier on Security
schneier.com/blog/archives/202

#bruceschneier #ban #bills #debating #tiktok

Last updated 3 years ago

nach der Zukunft · @nikita
495 followers · 1837 posts · Server social.tchncs.de

Banning
Congress is currently that would TikTok in the United States.

We are here as technologists to tell you that this is a terrible idea and the side effects would be intolerable. Details matter.

There are several ways Congress might ban TikTok, each with different efficacies and side effects.

Kommentsr
Man definiert u. teilt der Welt mir wer die Guten u. wer die Bösen sind.

Schneier on Security
schneier.com/blog/archives/202

#bruceschneier #ban #bills #debating #tiktok

Last updated 3 years ago

CaroCaronte · @caronte
32 followers · 98 posts · Server livellosegreto.it

hacking the tax code

The tax code isn’t software. But it’s still code. It’s a series of algorithms that takes an input, financial information and produces an output: the amount of tax owed. It’s incredibly complex code;
Like computer code, the tax code has bugs. They might be mistakes in how the tax laws were written. (...)
That’s a bug, but not a vulnerability. An example of a vulnerability is the “Double Irish with a Dutch Sandwich.”
cutt.ly/l3vfhYR

#bruceschneier #security #tax

Last updated 3 years ago

Richard Bejtlich · @taosecurity
2061 followers · 144 posts · Server infosec.exchange

I largely agree with here, although there are limitations to using an approach backed by non-conflict safety-oriented analogies (car crashes, fresh food, fire-resistant pajamas [!] -- good luck vs a weapon). Still...

"[I]mprove government software procurement... to evaluate the security of the software and the security practices of the company, in detail, [and] to ensure that they are sufficient to meet the security needs of the network they’re being installed in. If these evaluations are made public, along with the list of companies that meet them, all network buyers can benefit from them."

and

"The government needs to set minimum security standards for software that’s used in critical network applications, just as it sets software standards for avionics."

schneier.com/blog/archives/202

While still a step forward, Mr Schneier's approach still has problems:

1) regulatory capture of government agencies by scrutinized vendors;

2) irrelevant assessments leading to irrelevant results;

3) apathetic / ignorant / incapable customers who cannot put any useful government assessments to work in their environments.

While harsh, I advocate for regulation and practices that price insecure organizations out of the market. If it's too expensive to run your insecure IT, then you'll look for cheaper alternatives.

#bruceschneier #cybersecurity

Last updated 3 years ago

Book review: on and civil society apnews.com/article/technology- Schneier opines that "if strict guardrails aren’t put on AI, with agency could unravel trust in vital institutions, social cohesion, civil engagement. Schneier worries about a repeat of the regulatory inattention that enabled Big Tech’s assault on privacy."

#bruceschneier #ai #hacking #robots

Last updated 3 years ago