Thursday, February 04, 2021

Is failure negligence?

https://www.bespacific.com/website-security-how-to-secure-protect-your-website/

Website Security: How to Secure & Protect Your Website

Law Technology Today: “With around 2 billion websites online in 2020, it’s easy to see why the internet has turned to be a goldmine for malicious actors in recent times. With tons of transactions and valuable information taking place online each day, hackers are always trying to come up with clever hacks to bypass any security measures you may have in place to protect your website. Although small website owners can overlook strict security protocols arguing that they may not have anything valuable on their sites to warrant a cyberattack, it’s important to note that hackers don’t just target large corporate and government websites. Recent statistics indicate that small and medium websites are hacker’s prime target. That is why implementing website security best practices should not be optional for any webmaster. It is mandatory. Website security refers to the steps a website owner undertakes to guard their site against cyber-attacks. It might involve employee training on safety practices or acquiring the right protection tools such as an SSL certificate. Below we look at website security more comprehensively and how you can secure and protect your website…”





Why a sound backup strategy is important.

https://www.databreaches.net/rise-in-ransomware-attacks-mistakenly-causing-data-destruction/

Rise in ransomware attacks mistakenly causing data destruction

Ionut Ilascu reports:

More and more ransomware victims are resisting the extortionists and refuse to pay when they can recover from backups, despite hackers’ threats to leak the data stolen before encryption.
This stance resulted in Q4 of 2020 seeing a significant decline in the average ransom payments compared to the previous quarter, says ransomware remediation firm Coveware.
But a more insidious phenomenon is prefiguring, where data is destroyed in the attack leaving companies no option to recover it, even if they pay the ransom.

Read more on BleepingComputer.





Think through the entire process you are trying to secure.

Nespresso smart cards hacked to provide infinite coffee after someone wasn't too perky about security

Vanhoof cracked the weak encryption and dumped the card's binary.

He then made a coffee purchase to see where the binary data changed, reflecting a credit deduction.

"We are working on the assumption that the value of the card is kept on the card itself rather than on some centralized server," said Vanhoof. "This is a much simpler and cost effective design, requiring less hardware and software to implement, making it a likely choice for anyone developing such a system unaware of the security weaknesses of the Mifare Classic."

Having identified the binary data on the card that changed with a purchase event, Vanhoof was able to alter the three bytes used to store monetary value and write the a value (€167,772.15) back to the card using the nfc-mfclassic tool. That would be a lot of coffee if he was unethical.





Why AI wants to eliminate humans?

https://thehackernews.com/2021/02/why-human-error-is-1-cyber-security.html?utm_source=feedburner&utm_medium=feed&utm_campaign=Feed%3A+TheHackersNews+%28The+Hackers+News+-+Cyber+Security+Blog%29

Why Human Error is #1 Cyber Security Threat to Businesses in 2021

While technical solutions like spam filters and mobile device management systems are important for protecting end-users, with the number of threats and the multitude of systems and communications through which staff performs work, the one unifying risk factor that has to be addressed to improve fundamentally, security is the role of human error.

Access Now: The Complete Security Awareness Guide 2021 [Free eBook]





It’s for your own good!”

https://gizmodo.com/amazon-announces-totally-not-alarming-plan-to-install-s-1846194535

Amazon Announces Totally Not Alarming Plan to Install Surveillance Cameras in Every Delivery Vehicle

Not content to only wield its creepy surveillance infrastructure against warehouse workers and employees considering unionization, Amazon is reportedly gearing up to install perpetually-on cameras inside its fleet of delivery vehicles as well.

A new report from The Information claims that Amazon recently shared the plans in an instructional video sent out to the contractor workers who drive the Amazon-branded delivery vans.

In the video, the company reportedly explains to drivers that the high-tech video cameras will use artificial intelligence to determine when drivers are engaging in risky behavior, and will give out verbal warnings including “Distracted driving,” “No stop detected” and “Please slow down.”





Will this argument cross the border?

https://www.nytimes.com/2021/02/03/technology/clearview-ai-illegal-canada.html

Clearview AI’s Facial Recognition App Called Illegal in Canada

Canadian authorities declared that the company needed citizens’ consent to use their biometric information, and told the firm to delete facial images from its database.

… “What Clearview does is mass surveillance, and it is illegal,” Commissioner Daniel Therrien said at a news conference. He forcefully denounced the company as putting all of society “continually in a police lineup.” Though the Canadian government does not have legal authority to enforce photo removal, the position — the strongest one an individual country has taken against the company — was clear: “This is completely unacceptable.”

Mr. Therrien, along with three regional privacy commissioners in Canada, began an investigation into Clearview a year ago, after the article on the company was published. Privacy laws in Canada require getting people’s consent to use their personal data, giving the government grounds to pursue an inquiry. Authorities in Australia and the United Kingdom are jointly pursuing an inquiry of their own.

According to the commissioners’ report, Clearview said that it did not need consent from Canadians to use facial biometric information, because that information came from photos that were on the public internet. There is an exception in the privacy law for publicly available information. The commission disagreed.

Information collected from public websites, such as social media or professional profiles, and then used for an unrelated purpose, does not fall under the ‘publicly available’ exception,” according to the report. The commissioners objected to the images being used in a way that the posters of the photos hadn’t intended and in a way that could “create the risk of significant harm to those individuals.”

Clearview AI said that it planned to challenge the determination in court. “Clearview AI only collects public information from the Internet which is explicitly permitted,” Doug Mitchell, a lawyer for Clearview AI, said in a statement. “Clearview AI is a search engine that collects public data just as much larger companies do, including Google, which is permitted to operate in Canada.”





Perspective. How good is deepfake?

https://thenextweb.com/neural/2021/02/03/watch-singer-uses-deepfake-ai-to-transform-into-bowie-trump-and-zuckerberg/

Watch: Singer uses Deepfake AI to transform into Bowie, Trump, and Zuckerberg

Musician Steven Wilson has released a creepy Deepfake music video for his new single “Self.”

The prog rocker used the deep learning technique to swap faces with a range of celebrities — while holding on to his hair.

The full choir includes Donald Trump, Brad Pitt, Mark Zuckerberg, and David Bowie, the sole deceased member.

Some of the Deepfakes are more convincing than others. While Wilson’s hairstyle looks good on Brad Pitt (like everything else), Hillary Clinton struggles to pull off his stubble. [I don’t recognize half of the faces. Bob]





What’s next. A web the machines understand.

https://www.makeuseof.com/what-is-web-3-0-and-how-will-it-help-you/

What Is Web 3.0 and How Will It Help You?

Tim Berners-Lee, the creator of the World Wide Web, describes Web 3.0 as “read-write-execute.” It is a version of the Web that gives users the power to create and execute their own tools and software, rather than depending on other people for software.

Web 3.0, while still in its infancy, promises to make open, trustless, and permissionless networks possible. It consists of several elements that could serve as the building blocks for its success: edge computing, decentralized data networks, 3D graphics, and artificial intelligence.

The current structure of the internet is based on folksonomy, a method by which data and digital content are organized using tags and labels added by users to identify content.

Web pages are linked, and data shared between websites largely dependent on crowd knowledge for their content. With Web 3.0, machines can recognize a wider range of data sets to categorize the content. This makes it easier to engage users with more useful content.





Is Disney overprotecting kids or are they concerned about adult protests. Do movies influence kids more than mom & pop?

https://www.makeuseof.com/why-has-disney-plus-removed-films-for-kids/

Why Has Disney+ Removed Some Films From Kids' Profiles?

These movies contain several racist undertones and stereotypical representations of minorities such as Native Americans, East Asians, and African Americans.





Still not a PowerPoint fan, but sometimes you have to help your students…

https://www.bespacific.com/10-best-sites-for-free-google-slides-themes-powerpoint-templates/

10 Best Sites For Free Google Slides Themes & PowerPoint Templates

Hongkiat: “Your presentation cannot be perfect without the help of a companion set of beautiful, engaging, and informative slides. With the help of templates, you get a solid foundation for creating the perfect slides for your next presentation. Whether you use Google Slides or PowerPoint (online or offline), there is a ready-made presentation theme or template. In this write-up, I have compiled a list of 50+ places to download Google Slides themes and/or PowerPoint templates for creating your best presentation. I am going to discuss the best 10 websites in detail and list the others for you…”



No comments: