PrivacyDigest · @PrivacyDigest
525 followers · 1948 posts · Server mas.to

Signing Key Stolen by - on

Actually, two things went badly wrong here. The first is that accepted an expired signing key, implying a in whatever is supposed to check key validity. The second is that this key was supposed to remain in the the system’s —and not be in software

schneier.com/blog/archives/202

#signingkey #China #privacy #hardwaresecuritymodule #vulnerability #azure #security #schneier #chinese #Microsoft

Last updated 1 year ago

privacy matters · @nikita
596 followers · 2621 posts · Server social.tchncs.de

on Security
Operation : Zero-Click iPhone Malware

Kaspersky is reporting a zero-click exploit in the wild:

Mobile device backups contain a partial copy of the filesystem, including some of the user data and service databases. The timestamps of the files, folders and the database records allow to roughly reconstruct the events happening to the device. The mvt-ios utility produces a sorted timeline of events into a file called “timeline.csv,”

schneier.com/blog/archives/202

#ios #triangulation #schneier

Last updated 1 year ago

Markus Feilner :verified: · @mfeilner
579 followers · 3109 posts · Server mastodon.cloud

Ladies and gentlemen (and everybody else!): From the writer of "Liars and Outliars" and "A Hacker's mind", here comes a new though-provoking idea by the great Sir Bruce Schneier. Read it.
.
schneier.com/news/archives/202

#schneier #security #bruceschneider #democracy

Last updated 1 year ago

𝕯𝖎𝖒𝖎 · @dimi
114 followers · 591 posts · Server techforgood.social

I discovered this in one of @nethope 's toots and I think more people should know it exists:

schneierfacts.com/

#security #cyber #schneier

Last updated 1 year ago

Bruce at EPFL Lausanne:
How to reclaim power in the digital world? Conversation with Bruce Schneier
Thursday, March 16, 2023

Info, registration:
memento.epfl.ch/event/how-to-r

#epfl #privacy #security #bruceschneier #schneier

Last updated 1 year ago

Bruce at EPFL Lausanne:
How to reclaim power in the digital world? Conversation with Bruce Schneier
Thursday, March 16, 2023

Info, registration:
memento.epfl.ch/event/how-to-r

#epfl #privacy #security #bruceschneier #schneier

Last updated 1 year ago

Cory Doctorow's linkblog · @pluralistic
39276 followers · 36539 posts · Server mamot.fr
AnarchistSpaceDad · @freakazoid
927 followers · 22923 posts · Server retro.social

#schneier #tiktok #us

Last updated 1 year ago

qbi · @qbi
2159 followers · 6487 posts · Server mastodon.social

TIL:
Microsoft hat ein Feature namens Office 365 Message Encryption (OME). Nachrichten werden mit verschlüsselt. Klingt ja gut, ABER es wird als Modus verwendet. Etwas, wovon Bruce 1996 im Buch "Applied Cryptography" schon deutlich abrät. Warum nutzt man das in diesem Jahrtausend und warum fixt man das nicht, nachdem es gefunden wurde?

theregister.com/2022/10/14/mic

#aes #ecb #schneier

Last updated 2 years ago

marathon · @marathon
44 followers · 160 posts · Server mastodon.online

#schneier

Last updated 2 years ago

· @bojkotiMalbona
113 followers · 1257 posts · Server infosec.exchange

@worldethicaldataforum @iaintshootinmis Since this is about data ethics, should be happy to clarify his moderation conduct.

#schneier

Last updated 2 years ago

· @bojkotiMalbona
113 followers · 1257 posts · Server infosec.exchange

@iaintshootinmis @worldethicaldataforum If you make it into that forum, plz ask a question for me… ask why he censored a post about DuckDuckGo: infosec.exchange/@bojkotiMalbo

#schneier

Last updated 2 years ago

Mynacol · @mynacol
46 followers · 534 posts · Server ipv6.social

#schneier

Last updated 2 years ago

· @bojkotiMalbona
113 followers · 1251 posts · Server infosec.exchange

@ademalsasa @simondassow @ademalsasa I wouldn’t suggest pwsafe because it became an interoperability mess. abandoned it and the pkg for pwsafe died. Then a couple other projects used the same name & created incompatible versions. IIRC, one pkg named pwsafe was entirely incompatible & another was partially compatible. I started use the partially compatible one & it caused corruption to the old db.

#schneier #debian

Last updated 2 years ago

Wombatadon · @tjbutt58
19 followers · 73 posts · Server infosec.exchange

"First of all, security does not come for free. If you want security, you'll have to pay the price. If you can't afford it, then you won't get good security"

I often think of this in terms of operations research. It's fundamental in that field that constraints added to a system reduce the output of the system. Security is a constraint.

What's less obvious is the second order effect. Increased security increases confidence in a system, which can increase throughput through a psychological effect.

#schneier #nielsferguson #cryptography

Last updated 2 years ago

Wombatadon · @tjbutt58
19 followers · 70 posts · Server infosec.exchange

My Christmas reading, courtesy of my nephew.
Thanks Thomas

#cryptography #schneier

Last updated 2 years ago

kuncherto · @kuncherto
1 followers · 17 posts · Server social.vivaldi.net

Funny blog post from Bruce about a he encountered. Love his "Magritte-like existential question".
schneier.com/blog/archives/202

If you are interested at all in security matters (not just computer security) Schneier's blog is worth following (www.schneier.com)

#schneier #captcha

Last updated 2 years ago

ReK2 :ancom: :crt_w_prompt: · @rek2
1593 followers · 2648 posts · Server hispagatos.space

in the mean time in old good and decentralized and open USENET people conversations like when the internet was all about sharing and learning. <3

#schneier #quantun #computers #hacking

Last updated 2 years ago

marathon · @marathon0
50 followers · 1774 posts · Server qoto.org
Murphy · @murphy
15 followers · 96 posts · Server troet.cafe