In this week’s #TheLongView:
— @Richi π· Jennings (@RiCHi) December 21, 2021
1⃣ Ruby on @Rails 7.0 is go,
2⃣ #WorkingFromHome is still de rigueur, and
3⃣ @HaveIBeenPwned gets far, far bigger.
At @DevOpsDotCom: https://t.co/hcEzoNdi99
Tuesday, 21 December 2021
Rails 7 FTW | WFH is SOP | 586M Passwords Dumped - DevOps.com
Monday, 20 December 2021
Boston Cops buy Stingray Spy Stuff—Spending Secret Budget - Security Boulevard
Shame about that, because the @ACLU is off to court.
— @Richi π· Jennings (@RiCHi) December 20, 2021
In today’s #SBBlogwatch, we plead the fifth (and the fourth). At @SecurityBlvd: https://t.co/3gIfaiFAw2
Friday, 17 December 2021
NSO Zero-Click Exploit: Turing-Complete CPU in Image File - Security Boulevard
It exploits a parser for #JBIG2—an obsolete file format. In today’s #SBBlogwatch, we wonder what other nasties lurk in unmaintained, legacy #OpenSource code.
— @Richi π· Jennings (@RiCHi) December 17, 2021
At @SecurityBlvd: https://t.co/GojEm4oOSo
Wednesday, 15 December 2021
U.S. Govt. CX EO | Mozilla Revenue | Log4j Latest - DevOps.com
In this week’s #TheLongView:
— @Richi π· Jennings (@RiCHi) December 15, 2021
1⃣ Improving U.S. #government #CX,
2⃣ how much money @Mozilla make, and
3⃣ the latest on the #Log4j / #Log4Shell dΓ©bΓ’cle.
At @DevOpsDotCom: https://t.co/LfQimL14bL
Tuesday, 14 December 2021
Apple AirTag Android App is Absolutely Awful—Tracker Detect Fail - Security Boulevard
Good grief. In today’s #SBBlogwatch, we get lost.
— @Richi π· Jennings (@RiCHi) December 14, 2021
At @SecurityBlvd: https://t.co/YD5Ig76Q8p
Monday, 13 December 2021
Update: Log4Shell RCE Zero-Day—Reactions and Recriminations - Security Boulevard
Next up: Depression and acceptance. In today’s #SBBlogwatch, we wave goodbye to @Java.
— @Richi π· Jennings (@RiCHi) December 13, 2021
At @SecurityBlvd: https://t.co/vKl9vMyGq6
Friday, 10 December 2021
Google Nukes Ad-Blockers—Manifest V3 is Coming - Security Boulevard
Google calls it #ManifestV3. EFF calls it a “conflict of interest.” In today’s #SBBlogwatch, we call it deeply suspicious.
— @Richi π· Jennings (@RiCHi) December 10, 2021
At @SecurityBlvd: https://t.co/8iRJMo74kL
Thursday, 9 December 2021
AWS Outage Outrage | Rusty Linux | ARM Latest - DevOps.com
In this week’s #TheLongView:
— @Richi π· Jennings (@RiCHi) December 9, 2021
1⃣ Amazon Web Services/@AWSCloud falls on its face,
2⃣ #Linux’s move to #Rust takes the next step, and
3⃣ the @FTC stabs another fatal wound in the horrible @Arm/@Nvidia deal.
At @DevOpsDotCom: https://t.co/q6qyvMhqNJ
Tuesday, 7 December 2021
Microsoft Whac-A-Moles Websites of Chinese Hackers APT15 (‘NICKEL’) - Security Boulevard
It’s not the first time we’ve seen @Microsoft try this tactic. In today’s #SBBlogwatch, we wonder if it actually does any good.
— @Richi π· Jennings (@RiCHi) December 7, 2021
At @SecurityBlvd: https://t.co/BV5CKz4W8u
Monday, 6 December 2021
Home Routers are Full of Security Bugs—Patch NOW - Security Boulevard
So, yes, check for #patches—even if your router isn’t one of the ones tested. In today’s #SBBlogwatch, we don’t trust the auto-update feature.
— @Richi π· Jennings (@RiCHi) December 6, 2021
At @SecurityBlvd: https://t.co/7IR8yuccRd
Friday, 3 December 2021
$150M Stolen in ‘Imaginary Money’ Crypto/DeFi Hacks - Security Boulevard
Schadenfreude for those of us who know this craze for #ImaginaryMoney is hilariously dumb.
— @Richi π· Jennings (@RiCHi) December 3, 2021
In today’s #SBBlogwatch, we break out the popcorn. At @SecurityBlvd: https://t.co/PZACAzzF3J #DeFi
Thursday, 2 December 2021
AWS re:Invent Roundup: Private 5G | Graviton3 ARM Chips | DevOps Guru++ - DevOps.com
In this week’s #TheLongView, three things that caught my eye from Amazon Web Services’ #reInvent 2021 conference:
— @Richi π· Jennings (@RiCHi) December 2, 2021
1⃣ #Private5G,
2⃣ #Graviton3 chips, and
3⃣ something called #DevOpsGuru for RDS (yes, really).
At @DevOpsDotCom: https://t.co/zxrm4gd0M1 @AWSCloud #DevOps #5G $AMZN
Monday, 29 November 2021
Crypto Mining Hackers vs. Cloud Computing—Google States the Obvious - Security Boulevard
But let’s look closer. In today’s #SBBlogwatch, we see if there’s a “there” there.
— @Richi π· Jennings (@RiCHi) November 29, 2021
At @SecurityBlvd: https://t.co/jLlki8EdHX
Wednesday, 24 November 2021
WTH? We Wanna WFH | DoD Dual-Sources JWCC | More Nvidia ARM Woes - DevOps.com
In this week’s #TheLongView:
— @Richi π· Jennings (@RiCHi) November 24, 2021
1⃣ Working from home is de rigueur,
2⃣ #JEDI redux (#JWCC), and
3⃣ more about @Nvidia/@Arm.
At @DevOpsDotCom: https://t.co/wOlrfBaOnx
Monday, 22 November 2021
Biggest Single Crypto Theft: Teen Charged with $36M SIM-Swap Heist - Security Boulevard
Get off my lawn, you pesky kids.
— @Richi π· Jennings (@RiCHi) November 22, 2021
In today’s #SBBlogwatch, we vicariously visit #TheElectricCity. At @SecurityBlvd: https://t.co/QiH6ejHbSB
Thursday, 18 November 2021
Nvidia/ARM Wavering | Google Outage Outrage | Backblaze IPO on Fire - DevOps.com
In this week’s #TheLongView:
— @Richi π· Jennings (@RiCHi) November 18, 2021
1⃣@Nvidia’s faltering attempt to buy @Arm,
2⃣@Google’s load balancers go offline, and
3⃣@Backblaze’s newly-IPO’ed stock jumps 60%.
At @DevOpsDotCom: https://t.co/1q7befjy9I
Tuesday, 16 November 2021
Rowhammer Redux: ‘Blacksmith’ Fuzzing—Panic Now? - Security Boulevard
3/3: But is this something to worry about?
— @Richi π· Jennings (@RiCHi) November 16, 2021
In today’s #SBBlogwatch, we dig in and find out. At @SecurityBlvd: https://t.co/rAF5N038dq
Monday, 15 November 2021
FBI Email—‘Threat Actor in Systems’—is Spam - Security Boulevard
There are lessons to be learned. In today’s #SBBlogwatch, we teach them.
— @Richi π· Jennings (@RiCHi) November 15, 2021
At @SecurityBlvd: https://t.co/u1iYtjb8Zd
Friday, 12 November 2021
Who is ‘Andrew’—the US Spy who Hacked Booking.com? - Security Boulevard
Let’s unpick the story. In today’s #SBBlogwatch, we get someone else to make our bed before we lie in it.
— @Richi π· Jennings (@RiCHi) November 12, 2021
At @SecurityBlvd: https://t.co/aA8la0rA4A
Tuesday, 9 November 2021
REvil Perps: Arrests for Some, $10M Bounties on Others - Security Boulevard
So there’s also a #bounty. In today’s #SBBlogwatch, we wonder if the @StateDept’s latest tactic will bear fruit.
— @Richi π· Jennings (@RiCHi) November 9, 2021
At @SecurityBlvd: https://t.co/w6ptdzUn1B
Thursday, 4 November 2021
U.S. Blocks Trade with ‘Legal’ Pegasus Spyware Firm, NSO - Security Boulevard
TIL a new phrase: #TransnationalRepression. In today’s #SBBlogwatch, we work out what it all means.
— @Richi π· Jennings (@RiCHi) November 4, 2021
At @SecurityBlvd: https://t.co/cbQc7JDLs5
Tuesday, 2 November 2021
‘Trojan Source’ Makes Scary Headlines—But it’s Not New - Security Boulevard
But it is worth talking about. In today’s #SBBlogwatch, we do exactly that.
— @Richi π· Jennings (@RiCHi) November 2, 2021
At @SecurityBlvd: https://t.co/JOomNoxUDX
Tuesday, 26 October 2021
New Russian Hacks Revealed—but U.S. Says it’s Microsoft’s Fault - Security Boulevard
Shots fired. In today’s #SBBlogwatch, we search for the truth.
— @Richi π· Jennings (@RiCHi) October 26, 2021
At @SecurityBlvd: https://t.co/IhaOKdXEfW
Monday, 25 October 2021
FTC: ISPs are Spying on You. ISPs: Deal With It. - Security Boulevard
#Privacy is dead. In today’s #SBBlogwatch, we mourn its passing.
— @Richi π· Jennings (@RiCHi) October 25, 2021
At @SecurityBlvd: https://t.co/H1RKjdYNhp
Friday, 22 October 2021
Disable Time Sync NOW—Ugly GPSd Bug Brings Sunday FAILs - Security Boulevard
It’s yet another case of critical #OpenSource code being maintained by a single unpaid volunteer.
— @Richi π· Jennings (@RiCHi) October 22, 2021
In today’s #SBBlogwatch, we batten down the hatches. At @SecurityBlvd: https://t.co/J1q3hzbonQ
Thursday, 21 October 2021
Zuckerberg Accused Personally in Cambridge Analytica Next Shoe - Security Boulevard
Sweat, Zuckerdroid, sweat.
— @Richi π· Jennings (@RiCHi) October 21, 2021
In today’s #SBBlogwatch, we visualize justice. At @SecurityBlvd: https://t.co/xwz98CA079
Tuesday, 19 October 2021
Government Gunning for Cryptocurrency—Uses Ransomware as Pretext - Security Boulevard
Won’t *somebody* think of the children? In today’s #SBBlogwatch, we point at palatable excuses for #regulation. At @SecurityBlvd: https://t.co/LYOt7RsuWX
— @Richi π· Jennings (@RiCHi) October 19, 2021
Friday, 15 October 2021
Missouri FAIL: Gov. Mike Parson says Viewing Web Source is ‘Hacking’ - Security Boulevard
Specifically, section 569.095. But anyone viewing the source of a *public* web page obviously has “reasonable grounds to believe that he has such authorization.”
— @Richi π· Jennings (@RiCHi) October 15, 2021
In today’s #SBBlogwatch, we fact-check sextugenarian politicians. At @SecurityBlvd: https://t.co/MKWSOweuoh
Thursday, 14 October 2021
Apple Says iPhone Users are Stupid - Security Boulevard
And naturally, @Apple’s “evidence” is a bunch of cherrypicked research that doesn’t really prove anything of the sort.
In today’s #SBBlogwatch, we follow the money. At @SecurityBlvd: https://t.co/Z250cbrBVq— @Richi π· Jennings (@RiCHi) October 14, 2021
Tuesday, 12 October 2021
Ex-DoD Security Chief: China is Winning—it’s ‘A Done Deal’ - Security Boulevard
Lauren @LKnausenberger now holds the poisoned chalice.
— @Richi π· Jennings (@RiCHi) October 12, 2021
In today’s #SBBlogwatch, we plan to fail. At @SecurityBlvd: https://t.co/cEy6k7FlBL
Thursday, 7 October 2021
Huge Twitch Breach Leaks eSports ‘Toxic Cesspool’ - Security Boulevard
Get off my lawn. In today’s #SBBlogwatch, we exit the grassed area.
— @Richi π· Jennings (@RiCHi) October 7, 2021
At @SecurityBlvd: https://t.co/3QnYw8Rp8P
Tuesday, 5 October 2021
Syniverse Hack: Billions of Users’ Data Leaks Over Five Years - Security Boulevard
A state sponsored attack? Could be the NSA/GCHQ.
— @Richi π· Jennings (@RiCHi) October 5, 2021
In today’s #SBBlogwatch, we cry me a river. At @SecurityBlvd: https://t.co/ZSklyDAjBy
Thursday, 30 September 2021
‘GriftHorse’ Android Trojan: 10M Victims Lose Millions per Month - Security Boulevard
GriftHorse is, of course, not to be confused with the podcast of the same name.
— @Richi π· Jennings (@RiCHi) September 30, 2021
In today’s #SBBlogwatch, we stare into an equine oral abyss. At @SecurityBlvd: https://t.co/1GWVdJKosy
Wednesday, 29 September 2021
Amazon Astro: ‘Privacy Nightmare’ in R2D2-Cute Package - Security Boulevard
And worry that Amazon Astra integrates with the neighborhood snitchfest that is the Ring doorbell.
— @Richi π· Jennings (@RiCHi) September 29, 2021
In today’s #SBBlogwatch … errm … I, for one, welcome our new #Alexa-enabled overlords. At @SecurityBlvd: https://t.co/Ek1SqMpJug
Monday, 27 September 2021
Extremist Epik Clients Fear Unmasking via 180GB Leak - Security Boulevard
π·@RobMonster (pictured) advises people to “delete any data that does not belong to you.”
— @Richi π· Jennings (@RiCHi) September 27, 2021
In today’s #SBBlogwatch, we question the advice of someone with such weak #DataSecurity. At @SecurityBlvd: https://t.co/en1FJFXoco
Thursday, 23 September 2021
‘Russian’ Ransom Gang Targets Big Agri Co-op—Food Shortages Ahoy? - Security Boulevard
Will it prompt the retaliation @POTUS Biden promised?
— @Richi π· Jennings (@RiCHi) September 23, 2021
In today’s #SBBlogwatch, we head for the hills and grow our own. At @SecurityBlvd: https://t.co/RjWk5uCsXs
Tuesday, 21 September 2021
Breached Alaska Gov Systems Still Down—After 5 MONTHS - Security Boulevard
And systems are still down.
— @Richi π· Jennings (@RiCHi) September 21, 2021
In today’s #SBBlogwatch, we point to the culprit. At @SecurityBlvd: https://t.co/7ohPSmajhn
Friday, 17 September 2021
‘OMIGOD’ Azure Critical Bugfix? Do It Yourself—Because Microsoft Won’t - Security Boulevard
What a mess. In today’s #SBBlogwatch, we put the “mess” into message.
— @Richi π· Jennings (@RiCHi) September 17, 2021
At @SecurityBlvd: https://t.co/DJtkmiT7oG
Tuesday, 14 September 2021
Apple Security is Garbage—Change My Mind - Security Boulevard
Patch now, obvs.
— @Richi π· Jennings (@RiCHi) September 14, 2021
In today’s #SBBlogwatch, we remember embarrassing quotes. At @SecurityBlvd: https://t.co/em1Cfzw0Cu
Monday, 13 September 2021
Hackers Leak Schoolkids’ Data—ID Theft of Minors Ensues - Security Boulevard
The world has gone to hell in a handbasket.
— @Richi π· Jennings (@RiCHi) September 13, 2021
In today’s #SBBlogwatch, we go off grid and run for the hills. At @SecurityBlvd: https://t.co/nYxgwvOsVA
Thursday, 9 September 2021
Think of the Children: Anti-E2EE Ads Ahoy - Security Boulevard
Say it with me, everyone: Banning math doesn’t stop criminals.
— @Richi π· Jennings (@RiCHi) September 9, 2021
In today’s #SBBlogwatch, we get dΓ©jΓ vu all over again. At @SecurityBlvd: https://t.co/mCMXLve9WA
Tuesday, 7 September 2021
Alexa, OK Google, Siri—Sued for Spying - Security Boulevard
What price #privacy?
— @Richi π· Jennings (@RiCHi) September 7, 2021
In today’s #SBBlogwatch, we throw our toys into a bucket of water. At @SecurityBlvd: https://t.co/2H7YcUHvAG
Thursday, 2 September 2021
Secret Govt. Spy Powers Coming Here—via Australia - Security Boulevard
Jane Fonda knows. So do Angela Merkel and Kim Dotcom.
— @Richi π· Jennings (@RiCHi) September 2, 2021
In today’s #SBBlogwatch, we think of the children. At @SecurityBlvd: https://t.co/LkzViC3Zip
Tuesday, 31 August 2021
Windows 11 Security Scare—MS Nixes Fixes on Older PCs - Security Boulevard
Stand by for #Redmond to walk this one back in an embarrassing climbdown.
— @Richi π· Jennings (@RiCHi) August 31, 2021
In today’s #SBBlogwatch, we hope against hope. At @SecurityBlvd: https://t.co/nM1S4fXw26 $MSFT
Thursday, 26 August 2021
Your ISP is Selling your Data—Despite Swearing Not To - Security Boulevard
It depends on the meaning of the word “is.” In today’s #SBBlogwatch, we ponder semantic chicanery.
— @Richi π· Jennings (@RiCHi) August 26, 2021
At @SecurityBlvd: https://t.co/ZiMdadzQUB
Monday, 23 August 2021
This Mouse Gives you Admin on a Windows PC - Security Boulevard
π± DΓ©jΓ vu? It’s like #PrintNightmare all over again.
— @Richi π· Jennings (@RiCHi) August 23, 2021
In today’s #SBBlogwatch, we point the fingers of blame. At @SecurityBlvd: https://t.co/qWDdlVflaW
Thursday, 19 August 2021
Great Firewall Ready to Unleash ‘Gigantic’ DDoS—so are Other Middleboxes - Security Boulevard
Nation-states would have to fix their firewalls, which ain’t gonna happen. In today’s #SBBlogwatch, this is why we can’t have nice things.
— @Richi π· Jennings (@RiCHi) August 19, 2021
At @SecurityBlvd: https://t.co/7BdlnUcF64
Monday, 16 August 2021
T-Mobile Leaks PII of ‘Every User’ in HUGE 100M+ Breach - Security Boulevard
The data disclosed looks to be enough to steal any user’s identity.
— @Richi π· Jennings (@RiCHi) August 16, 2021
In today’s #SBBlogwatch, we hide under the covers and weep #magenta tears.
At @SecurityBlvd: https://t.co/srycKSRGTQ
Thursday, 12 August 2021
Crypto Hacker Returns Most of Funny Money Stolen from Poly - Security Boulevard
Whoever it is, it’s yet another illustration of #cryptocurrency’s brittleness.
— @Richi π· Jennings (@RiCHi) August 12, 2021
In today’s #SBBlogwatch, we drive over in our Fiat. At @SecurityBlvd: https://t.co/q3BQltWDRY
Monday, 9 August 2021
COVID Anti-Vaxxers Make $$$ from Crowdfunding - Security Boulevard
It would be funny—if the outcomes weren’t so serious.
— @Richi π· Jennings (@RiCHi) August 9, 2021
In today’s #SBBlogwatch, we get really, really angry.
At @SecurityBlvd: https://t.co/qyfO3H4YeT
Thursday, 5 August 2021
SHOCKER: Senate Says Security Sucks—Still - Security Boulevard
A billion taxpayer dollars spent on improving things, but not a lot to show for it.
— @Richi π· Jennings (@RiCHi) August 5, 2021
Incompetence, laziness and political infighting are noted by insiders in today’s #SBBlogwatch.
At @SecurityBlvd: https://t.co/P0lPwBhc5W
Tuesday, 3 August 2021
Italian Vaccine Sites Shut Down by Ransomware Thugs - Security Boulevard
#Italy is struggling under its third wave of #COVID19 infections—so this is extremely poor timing.
— @Richi π· Jennings (@RiCHi) August 3, 2021
In today’s #SBBlogwatch, we rise up with righteous indignation. At @SecurityBlvd: https://t.co/3oa2JPbCFN
Friday, 30 July 2021
Estonian Hacker Steals 300,000 Government ID Photos - Security Boulevard
Yeah, we’ve heard that before. About 10 days ago, in fact.
— @Richi π· Jennings (@RiCHi) July 30, 2021
In today’s #SBBlogwatch, oleme mures privaatsuse pΓ€rast. At @SecurityBlvd: https://t.co/mUF7JJB39Z
Monday, 26 July 2021
Anti-Vax Lies Spread on YouTube—Paid for ‘by Russian PR Company’ - Security Boulevard
The motivation is unclear. But in today’s #SBBlogwatch, we’re clear it’s despicable.
— @Richi π· Jennings (@RiCHi) July 26, 2021
At @SecurityBlvd: https://t.co/dBISGRviaZ
Tuesday, 20 July 2021
Apple’s Insecure iPhone Lets NSO Hack Journalists (Again) - Security Boulevard
As usual, #NSO denies everything.
— @Richi π· Jennings (@RiCHi) July 20, 2021
In today’s #SBBlogwatch, we roll our eyes. At @SecurityBlvd: https://t.co/Of5H7jUadB
Friday, 16 July 2021
Stalkers: ‘Ugly Truth’ of Facebook Staff Abusing Private Data - Security Boulevard
>But nothing’s going to change. Zuck’s PR droid gave a vapid statement making this fact completely clear.#DeleteFacebook. In today’s #SBBlogwatch, we wonder what it will take. At @SecurityBlvd: https://t.co/XGmTKS0iSL @HarperCollins @HarperInsider
— @Richi π· Jennings (@RiCHi) July 16, 2021
Thursday, 15 July 2021
Apple Safari Leaks Cookies, so ‘Russia-Backed’ Hackers Attack Targets - Security Boulevard
They’re said to be backed by the #Russian government. In today’s #SBBlogwatch, ΠΌΡ Π±ΠΎΠΈΠΌΡΡ Π³-Π½Π° #ΠΡΡΠΈΠ½Π°.
— @Richi π· Jennings (@RiCHi) July 15, 2021
At @SecurityBlvd: https://t.co/m1IPNe4RKF
Wednesday, 14 July 2021
Finally! Ring Doorbells get End-to-End Encryption, but There’s a Big Catch - Security Boulevard
Is it a #DarkPattern? If it walks and swims and quacks like one, then it probably is.
— @Richi π· Jennings (@RiCHi) July 14, 2021
In today’s #SBBlogwatch, we’ve got a bad feeling about #Ring. At @SecurityBlvd: https://t.co/U0wPPiAZgU
Thursday, 8 July 2021
China ‘Eugenics’ Claim as BGI Hoards Prenatal Test DNA Data - Security Boulevard
While our historic use of #eugenics makes for uncomfortable memories, it’s no reason to turn a blind eye to #China’s alleged actions. In today’s #SB logwatch, we shine a light.
— @Richi π· Jennings (@RiCHi) July 8, 2021
At @SecurityBlvd: https://t.co/711VwAaLrC
Tuesday, 6 July 2021
REvil Makes Monkeys out of Kaseya Customers - Security Boulevard
Things look bad for the #REvil ransomware gang. In today’s #SBBlogwatch, we have little sympathy.
— @Richi π· Jennings (@RiCHi) July 6, 2021
At @SecurityBlvd: https://t.co/8pW26U4nrA
Friday, 2 July 2021
One Medical: Sorry-not-Sorry for Leaking your Personal Info - Security Boulevard
@OneMedical also said “We apologize if,” which is never a good look.
— @Richi π· Jennings (@RiCHi) July 2, 2021
In today’s #SBBlogwatch, we’re unapologetically scathing. At @SecurityBlvd: https://t.co/FAtmzUSoup $ONEM
Thursday, 1 July 2021
LinkedIn Leaks 93% of Users’ Data—Refuses Blame for Breach - Security Boulevard
Instead, countless users get to suffer yet more #spam, #phishing, #IDtheft, #stalking, #doxxing and other nasties. LinkedIn doesn’t care.
— @Richi π· Jennings (@RiCHi) July 1, 2021
In today’s #SBBlogwatch, we’ve had it with this sociopathic company. At @SecurityBlvd: https://t.co/rDmKesNiMt $MSFT
Tuesday, 29 June 2021
SafeDollar Stablecoin not Safe nor Stable: Hack Sends Value to ZERO - Security Boulevard
That caused the #cryptocurrency’s price to drop to $0, while the hacker got away with $250,000.
— @Richi π· Jennings (@RiCHi) June 29, 2021
A naΓ―ve bug, or a malicious insider? In today’s #SBBlogwatch, we prefer Bens.
At @SecurityBlvd: https://t.co/RQzUH0VIHG
Monday, 28 June 2021
Did your WD My Book NAS get Wiped? Put a Brave Face on It - Security Boulevard
But that’s no help to people who’ve lost their data. It’s like saying, “Shut the stable door,” after the horse has bolted. In today’s #SBBlogwatch, we force a simile. [You’re fired—Ed.]
— @Richi π· Jennings (@RiCHi) June 28, 2021
At @SecurityBlvd: https://t.co/HqkZadRHzc
Friday, 25 June 2021
Rust in Linux: Google pays ISRG to pay Miguel Ojeda - TechBeacon
Get off my lawn, with your trendy flavor of the month. In this week’s #SecurityBlogwatch, we look to see if we should believe the hype.
— @Richi π· Jennings (@RiCHi) June 25, 2021
At @TechBeaconCom: https://t.co/zLaBbKe72u
Thursday, 24 June 2021
In Memoriam: John McAfee, 1945–2021. R.I.P. - Security Boulevard
The internet has been remembering #McAfee—mostly fondly. In today’s #SBBlogwatch, we share the love.
— @Richi π· Jennings (@RiCHi) June 24, 2021
At @SecurityBlvd: https://t.co/P1gufIOL1i
Tuesday, 22 June 2021
Ransomware and the Tax Code’s Perverse Incentive - Security Boulevard
There’s no accounting for taste. In today’s #SBBlogwatch, can we smell bacon?
— @Richi π· Jennings (@RiCHi) June 22, 2021
At @SecurityBlvd: https://t.co/iIopXElMnU
Friday, 18 June 2021
Cops Cop Cl0p Ransomware Gang (or Maybe Not?) - Security Boulevard
Still, it’s a start. In today’s #SBBlogwatch, we turn the key (ask your parents). At @SecurityBlvd: https://t.co/JmKKSwtiQb
— @Richi π· Jennings (@RiCHi) June 18, 2021
Thursday, 17 June 2021
Teamsters doesn’t pay ransom. Should you? It’s not rocket science - TechBeacon
So your best bet is to shore up your #security. In this week’s #SecurityBlogwatch, we do our duty as we see fit.
— @Richi π· Jennings (@RiCHi) June 17, 2021
At @TechBeaconCom: https://t.co/gRgHi1biaa
Wednesday, 16 June 2021
Microsoft’s Legal Head: U.S. must Stop Secret Gag Orders - Security Boulevard
I’ve got a solution for the problem, but I’m not allowed to tell you.
— @Richi π· Jennings (@RiCHi) June 16, 2021
In today’s #SBBlogwatch, we keep schtum. At @SecurityBlvd: https://t.co/PpZ1DBG72x
Monday, 14 June 2021
Who, Us? Linux Root Bug Quietly Added 7 Years Ago - Security Boulevard
But how did this happen? In today’s #SBBlogwatch, we unpick the story. At @SecurityBlvd: https://t.co/E3ZMA5EIrB
— @Richi π· Jennings (@RiCHi) June 14, 2021
Friday, 11 June 2021
EA’s Source: It’s in the Game (and in Hackers’ Hands) - Security Boulevard
So what is it? In today’s #SBBlogwatch, we push a secret button sequence to find out.
— @Richi π· Jennings (@RiCHi) June 11, 2021
At @SecurityBlvd: https://t.co/FVPrCOjlyz
Thursday, 10 June 2021
Trojan Shield: FBI punks crims with faux app—and international help - TechBeacon
This is madness. In this week’s #SecurityBlogwatch, this is Sparta. At @TechBeaconCom: https://t.co/TuvcsxXhTh
— @Richi π· Jennings (@RiCHi) June 10, 2021
Wednesday, 9 June 2021
Genius! Apple Bribes Woman over Naked Pic Theft - Security Boulevard
And Apple tried to bury the story, by bribing the victim in a secret settlement under #NDA, according to the court filings.
— @Richi π· Jennings (@RiCHi) June 9, 2021
How hypocritical is that? In today’s #SBBlogwatch, we count the ways. At @SecurityBlvd: https://t.co/eQ4DX9Eso9
Monday, 7 June 2021
Is Apple’s App Store ‘Teeming’ with Scams? - Security Boulevard
Is this simply a spat between the A and the A in #FAANG?
— @Richi π· Jennings (@RiCHi) June 7, 2021
In today’s #SBBlogwatch, we wonder if there’s a There there. At @SecurityBlvd: https://t.co/GufRf1Oo2d
Friday, 4 June 2021
Chrome Fake Reviews: It’s Worse than We Thought - Security Boulevard
Come on, Google, get a grip.
— @Richi π· Jennings (@RiCHi) June 4, 2021
In today’s #SBBlogwatch, we lose trust in la $GOOG. At @SecurityBlvd: https://t.co/SoCUBVMcvV
Thursday, 3 June 2021
Flashcard study apps expose nuclear secrets to all - TechBeacon
Rote learning is bad enough without suffering fallout from information leakage.
— @Richi π· Jennings (@RiCHi) June 3, 2021
In this week’s #SecurityBlogwatch, we file our cards away securely. At @TechBeaconCom: https://t.co/G8sYXIr93U
Wednesday, 2 June 2021
Dunhammer: NSA Blamed for Danish Spying on Euro Pols - Security Boulevard
What should we tell Horatio? In today’s #SBBlogwatch, Marcellus criticizes incestuous relationships. At @SecurityBlvd: https://t.co/wMRcqfCr2A
— @Richi π· Jennings (@RiCHi) June 2, 2021
Friday, 28 May 2021
Grandchild of Rowhammer: ‘Half-Double’ Tactic Flips Farther Bits - Security Boulevard
This new variant, which the team dubbed #HalfDouble, presents a “substantial challenge.” In today’s #SBBlogwatch, we double down, with no half measures. At @SecurityBlvd: https://t.co/6WJoLvrN81
— @Richi π· Jennings (@RiCHi) May 28, 2021
Thursday, 27 May 2021
DevOps failures cast cloudy shadows over countless apps - TechBeacon
And it’s not just an #Android problem. In this week’s #SecurityBlogwatch, we go back to school.
— @Richi π· Jennings (@RiCHi) May 27, 2021
At @TechBeaconCom: https://t.co/HtIzqDmzRn
Monday, 24 May 2021
Ransomware Gang Frees Irish Medical Data—but Leak Threat Remains - Security Boulevard
But they’re still warning they’ll leak private health records unless they get their money.
— @Richi π· Jennings (@RiCHi) May 24, 2021
In today’s #SBBlogwatch, we ponder ways to control this scourge. At @SecurityBlvd: https://t.co/nXfhcNr1IY
Thursday, 20 May 2021
Fake Chrome Extensions: Google Asleep at the Switch - Security Boulevard
And @Firefox won’t save you, either. In today’s #SBBlogwatch, we burn the whole thing down. At @SecurityBlvd: https://t.co/mAmrDc5rq5
— @Richi π· Jennings (@RiCHi) May 20, 2021
AXA’s ransomware gambit comes back to bite - TechBeacon
Malheureusement, the timing isn’t quite as neat as the narrative suggests. In this week’s #SecurityBlogwatch, we never let the facts get in the way of a good story. At @TechBeaconCom: https://t.co/f48imsGUjL
— @Richi π· Jennings (@RiCHi) May 20, 2021
Monday, 17 May 2021
DarkSide Ransomware Gang Struck Down — but by Whom? - Security Boulevard
This sounds like a job for friar William of Ockham and his famous razor.
— @Richi π· Jennings (@RiCHi) May 17, 2021
In today’s #SBBlogwatch, we look east. At @SecurityBlvd: https://t.co/X4aViMBW63
Thursday, 13 May 2021
AXA axes ransomware insurance. Who’s next? - TechBeacon
As the #French say, /pour encourager les autres/. And, yes, it might well encourage other insurers to get serious about this knotty problem.
— @Richi π· Jennings (@RiCHi) May 13, 2021
In this week’s #SecurityBlogwatch, we’re careful with that AXA, Eugene. At @TechBeaconCom: https://t.co/5xFlrCRVrl
Wednesday, 12 May 2021
Rail Firm Staff Fail ‘Bonus’ Phishing Test, Chaos Ensues - Security Boulevard
What a kick in the teeth for staff who’ve been putting their health on the line since early 2020. OTOH, phishing exercises are an established part of staff #infosec … errm … training. In today’s #SBBlogwatch, we’re deeply conflicted. At @SecurityBlvd: https://t.co/0kxSnG6mU0
— @Richi π· Jennings (@RiCHi) May 12, 2021
Monday, 10 May 2021
Colonial Pipeline FAIL: Ransomware Gang Threatens Gas Supplies - Security Boulevard
Prepare for inflated gas prices, long lines at the pumps and canceled flights.
— @Richi π· Jennings (@RiCHi) May 10, 2021
In today’s #SBBlogwatch, we angrily buy a used Nissan Leaf. At @SecurityBlvd: https://t.co/ZddHFEf1dL
Friday, 7 May 2021
Very Many Qualcomm Phone Chips Hiding Very Nasty Vulnerability - Security Boulevard
Good luck getting a patch for an old phone. In today’s #SBBlogwatch, we check the insurance for an “accidental” fall onto concrete.
— @Richi π· Jennings (@RiCHi) May 7, 2021
At @SecurityBlvd: https://t.co/kTGWsQ0J1a
Thursday, 6 May 2021
Log this: iOS and macOS zero-day patches roll; Apple devs under fire - TechBeacon
“Doesn’t play well with others,” is the damning report card. In this week’s #SecurityBlogwatch, Apple gets a failing grade.
— @Richi π· Jennings (@RiCHi) May 6, 2021
At @TechBeaconCom: https://t.co/A8JTrT3gKr
Monday, 3 May 2021
Specter of Spectre is Back, in New Micro-Op Cache Vuln - Security Boulevard
There’s a lot to worry about in #BranchPrediction. In today’s #SBBlogwatch, we think happy thoughts. At @SecurityBlvd: https://t.co/kpaL8pTMal
— @Richi π· Jennings (@RiCHi) May 3, 2021
Thursday, 29 April 2021
With iOS 14.5, Apple shifts peeping apps fight to the OS - TechBeacon
And #iOS 14.5 is part of the reason. In this week’s #SecurityBlogwatch, we finally cut through the fish-eye lens of tear-stained eyes. [You’re fired—Ed.]
— @Richi π· Jennings (@RiCHi) April 29, 2021
At @TechBeaconCom: https://t.co/VOiZz68lK9
Monday, 26 April 2021
U.S. DoD has World’s Largest Honeypot: 6% of Internet Space - Security Boulevard
But he doesn’t look very military. Perhaps he’s in the Navy? In today’s #SBBlogwatch at @SecurityBlvd, we can sail the 0x07000000/8 seas. [You’re fired—Ed.]https://t.co/87KT89G8P1
— @Richi π· Jennings (@RiCHi) April 26, 2021
Friday, 23 April 2021
China Silently Hacked Gov’t and Defense for a Year or More - Security Boulevard
Evidence shows the hackers breaking in 10 MONTHS ago, with indications that they’ve been around for some time before that.
— @Richi π· Jennings (@RiCHi) April 23, 2021
In today’s #SBBlogwatch at @SecurityBlvd, we can see where this is going: https://t.co/amquujOF7l
Thursday, 22 April 2021
Google FLoC is a flop? Not so fast - TechBeacon
But #privacy wonks hate it. And so do most other #browser makers.
— @Richi π· Jennings (@RiCHi) April 22, 2021
In this week’s #SecurityBlogwatch at @TechBeaconCom, we munch on a tasty lettuce leaf: https://t.co/kFMC648LEv
Tuesday, 20 April 2021
Wait, What? Nvidia/ARM Sale on Hold—for Security Reasons - Security Boulevard
Yes, but is there really a #security question? Or is that a convenient excuse to slam on the brakes?
— @Richi π· Jennings (@RiCHi) April 20, 2021
In today’s #SBBlogwatch at @SecurityBlvd, we avoid weak jokes about fish and chips: https://t.co/Z1z3NuApnm
Thursday, 15 April 2021
STOP: Opt out of phone numbers as authentication tokens - TechBeacon
Watch out—these things come in threes. In this week’s #SecurityBlogwatch at @TechBeaconCom, we got the 411 (ask your parents): https://t.co/XUcOlw8rer
— @Richi π· Jennings (@RiCHi) April 15, 2021
Wednesday, 14 April 2021
YT$AW: FBI Cleans Up Exchange Servers, NSA Tips Microsoft 4 More Bugs - Security Boulevard
“We’re from the government, and we’re here to help.” In today’s #SBBlogwatch at @SecurityBlvd, we’re careful what we wish for: https://t.co/0Oh8fWXdLe
— @Richi π· Jennings (@RiCHi) April 14, 2021
Monday, 12 April 2021
Son of Stuxnet? Iran Nuke Site Hacked ‘by Israel’ (Again) - Security Boulevard
But something doesn’t add up. In today’s #SBBlogwatch at @SecurityBlvd, we can’t stand rocking when I’m in here: https://t.co/ZAX79I2d8P
— @Richi π· Jennings (@RiCHi) April 12, 2021
Thursday, 8 April 2021
Facebook Sucks: Huge 500M-User Breach ‘Is Your Fault’ - Security Boulevard
This is bad. I can’t watch. But I can’t *not* watch. In today’s #SBBlogwatch at @SecurityBlvd, we break out the jumbo bag of popcorn: https://t.co/k36bF45QZy
— @Richi π· Jennings (@RiCHi) April 8, 2021
Cryptominers flooding GitHub—and other cloudy dev services - TechBeacon
So there isn’t much an owner can do—other than disable the #GitHubActions feature.
— @Richi π· Jennings (@RiCHi) April 8, 2021
In this week’s #SecurityBlogwatch at @TechBeaconCom, we watch @GitHubSecurity play Whac-A-Mole: https://t.co/6LeTpyvr40
Monday, 5 April 2021
Apple Fiddles While App Store Burns: $1M Bitcoin Scam FAIL - Security Boulevard
Are you serious? Deadly. In today’s #SBBlogwatch at @SecurityBlvd, we learn valuable lessons: https://t.co/6GDEr2mOH7
— @Richi π· Jennings (@RiCHi) April 5, 2021
Thursday, 1 April 2021
Ubiquiti Accused of Lying to Help Stock Price - Security Boulevard
Oh what a tangled web … was allegedly woven. In today’s #SBBlogwatch at @SecurityBlvd, we #2FA our @LastPass: https://t.co/BZ5h9v3BEZ
— @Richi π· Jennings (@RiCHi) April 1, 2021