Steve Bellovin

4.4K Followers
283 Following
3.5K Posts
I'm an affiliate scholar at Georgetown's Institute for Technology Law and Policy, and a computer science professor emeritus and former affiliate law prof at Columbia University. Author of "Thinking Security". Dinosaur photographer. Not ashamed to say that I’m still masking, because long Covid terrifies me.
Home Pagehttps://www.cs.columbia.edu/~smb/
PronounsHe/Him
Photography-only account@urbandinosaurs
LicenseAll of my photos available via a Creative Commons BY-NC license: http://creativecommons.org/licenses/by-nc/4.0/
you know you've been computering for too long when you can recognise what this is
🎶 Counting the carbs on the New Jersey Turnpike,
We're all going to look for some real food. 🎶
Back to Huntley Meadows Park again today… It was a quiet day, both for people and birds, probably because of the heat (91℉; 33℃). But a wood duck couple was enjoying a swim, and a red-bellied woodpecker scored something tasty to eat. I also visited the owl basket nest, seeing one owlet in the basket and and adult perched on its rim.
#birds #wildlifePhotography #birdsforbecsnan
Two Magicians Warn the Supreme Court About Junk Science

Penn & Teller filed a Supreme Court brief questioning the use of “investigative hypnosis” in a death-penalty case in Texas.

The New York Times
Your push notifications can betray your privacy. Here are the settings you can enable to do something about that: https://www.eff.org/deeplinks/2026/04/how-push-notifications-can-betray-your-privacy-and-what-do-about-it
How Push Notifications Can Betray Your Privacy (and What to Do About It)

A phone’s push notifications can contain a significant amount of information about you, your communications, and what you do throughout the day. And there are myriad ways that law enforcement can access the content or metadata of push notifications. Let’s fix that.

Electronic Frontier Foundation

First blog post for the new job!

Security Should Be the Path of Least Resistance

Security often creates friction that frustrates developers and users, this can actually make systems less secure because when security is difficult, noisy, or just gets int he way, people bypass or ignore the controls.

https://semgrep.dev/blog/2026/security-should-be-the-path-of-least-resistance/

Security Should Be the Path of Least Resistance

Security often creates friction that frustrates developers and users, this can actually make systems less secure because when security is difficult, noisy, or just gets int he way, people bypass or ignore the controls.

Semgrep
In a prayer delivered by US Defense Secretary Hegseth during a Pentagon worship service yesterday, he read the fake Ezekiel 25:17 verse from “Pulp Fiction" that Samuel L. Jackson’s character recited just before he shoots a man to death. https://variety.com/2026/film/news/pete-hegseth-pulp-fiction-fake-bible-verse-prayer-service-1236723446/
Pete Hegseth Quotes 'Pulp Fiction' Fake Bible Verse at Pentagon Prayer Service

Defense Secretary Pete Hegseth meant to invoke holy scripture in discussing the rescue mission of an American fighter pilot stranded in Iran -- but he actually quoted Quentin Tarantino.

Variety
Someone uninstalled VLC player on their Mac.

This viral image of Saturn isn’t real; it’s AI slop

A new image of "Saturn's North Pole" has gone viral.

Too bad it's an AI fake.

Here's what the real things look like, and how you can tell for yourself.
https://bigthink.com/starts-with-a-bang/viral-saturn-real-ai-slop/

‘Von der Leyen Announces the EU’s New Age Verification App Claiming it is “Completely Anonymous” & users “Cannot be Tracked”’ | …the EU is about to have its ‘Clipper’ moment
https://alecmuffett.com/article/156478
#AgeVerification #ZeroKnowledge #clipper #eu #oops #rofl
‘Von der Leyen Announces the EU’s New Age Verification App Claiming it is “Completely Anonymous” & users “Cannot be Tracked”’ | …the EU is about to have its ‘Clipper’ moment

Who is going to be this generation’s Matt Blaze? :-) The Clipper Chip was announced on April 16, 1993. 33 years, less 1 day:

Dropsafe