Eleanor Saitta

3.8K Followers
264 Following
7.9K Posts
Thinking about security, failure, change, art, and living. Recruiting barbarians; complicate your narratives. Fractional CISO to startups via Systems Structure Ltd. HEL/NYC/LON
Work Mehttps://structures.systems/our-team
Personal Mehttps://dymaxion.org
the future is here and everything must be destroyed

from my link log —

The SOC2 starting seven.

https://latacora.micro.blog/2020/03/12/the-soc-starting.html

saved 2020-03-13 https://dotat.at/:/Q9FN5.html

https://www.latacora.com/blog/2020/03/12/soc2-starting-seven/

I'm looking forward to seeing Apple get sued into a cinder for this nonsense.
The only political stance that deserves unwavering adherence is the universal application of human rights, requiring opposition to genocide no matter who the victims and aggressors are.

Some questions I have been asked, along with people I know who were targeted and harassed when flying post 9/11

Again, doesn’t mean it’s going to happen to you, but something to consider since you might not be allowed through without cooperating:

Where are you going
Are you traveling with anyone
Who are you going to see at destination
What are you going to do at destination
How much cash did you bring
How much money do you plan on spending
Did you bring gifts for anyone
Did anyone send gifts back with you
Where are you staying (sometimes exact address)
Who are you staying with
How did you book your accommodations (sometimes they request to see receipts)
How will you be traveling while there (car, public transit, etc)
Have you been there before

While some of these are not uncommon for international travel, many of these have been asked while traveling domestically too. On one of my most recent flights, I was asked a lot of these questions very informally. A dude with DHS was pretending to shoot the shit and it almost felt like flirting (but was very transparently questioning me)

Seeing a lot of “how to prepare” type posts for ICE at airports, which is great… but almost every post I’m seeing has said to turn off biometrics (great) and turn your phone off completely while going through security.

As someone who has been given an insanely difficult time at airports the past 3 years, please don’t rely on turning your phone off alone. It might work for some people, but I’m not allowed past security without showing all of my electronics turn on, and they have to remain on until I get through.

I have quite a few posts detailing my experiences. If it’s helpful I can try to dig them up and reshare. I know it won’t be the same for everyone, but what I go through is pretty intense and maybe getting an idea of some of the things they do will help.

Let Me Explain How a State Actor Could Perform a Denial-of-Service Attack on the Entire UK Government in the Wake of Ofcom “Online Safety Act” Client-Side Scanning
https://alecmuffett.com/article/150401
#ClientSideScanning #NationalSecurity #OnlineSafetyAct #PhotoDna #censorship #surveillance
Let Me Explain How a State Actor Could Perform a Denial-of-Service Attack on the Entire UK Government in the Wake of Ofcom “Online Safety Act” Client-Side Scanning

1/ obtain a hash of abuse material that’s both known & banned; if pervasive as claimed this shouldn’t be hard 2/ use algorithms from this paper to create a cat meme with the same ha…

Dropsafe

RE: https://infosec.exchange/@david_chisnall/116160637051672728

the question you should be asking yourself is not “what's the best way to verify the age of every single computer user on earth”

but rather “why the fuck are we trying to verify the age of every single computer user on earth????”

and the answer to that is: fascism
stop. complying.

I'm looking for places where a capability system is exposed to users (not developers) in an understandable, well-designed way in non-experimental systems. Anyone have suggestions?
I'm pleased to share with you the greatest advancement in bottom-sheet technology since the invention of elastic.