Culpably deaf

All that work for a private sector organisation who take (wrong) decisions based on false information – or, essentially, dismiss accurate, helpful information that would have steered to other decision alternative(s) – will be fired when the truth of the bad decision comes out.
Which would be helpful if applied to sectors where people’s money is so abjectly abused, too. E.g., like this one. Or this one (in English, some info here, and the whole idea of usefulness of having more and more data is debunked endlessly everywhere (you search)). Or this one, completely debunked here. The list is endless.

All of which points to a serious problem. The trouble with the world is that the stupid are cocksure and the intelligent are full of doubt (Bertrand Russell) AND the stupid (to which, ‘immensely’) seem to be masters at picking the wrong advice. Once ‘immensely’ is indeed added, one recognises the ‘politician’. Playing the role of the Fool (not the Jester), unsurpassibly perfectly.

But how now can we get those stupidestest ideas go to die, sooner rather than later ..?

The fact that an opinion has been widely held is no evidence whatever that it is not utterly absurd; indeed in view of the silliness of the majority of mankind, a widespread belief is more likely to be foolish than sensible (BR again). That’s completely true; moreover, it’s Maverisk’s motto.

Oh, and:

[To defend the Truth; Châteauneuf not the -du-‘ish or so]

The dullness of infosec ..?

And you thought fraud detection was about bank transactions or even counterfeiting physical stuff. Boh-ring, when you read this. Takes it to another level, eh?
Which brings me to an important issue: Are we not still studying and practising infosec from the wrong angle, doing a middle-out sort of development in many directions but starting at a very mundane ‘CIA’ sort of point. Which is of course core, but there is so much to cover that some outside-onto view(point) might be beneficial. We’re in the thick of the fight, and no matter in which direction you go, when you wade through the thicket with your control measures machete, you achieve little – when you then turn around to try to clear some area in another direction, all has grown dense with state-of-the-art arms’ race bush again already.
And yes, of course one can educate, etc. in some form of hierarchical approach, top-down. But that leaves us with many, all too many that float comfortably on the canopy where the view … isn’t that great as one’s very certainly in thick fog of the monsoon rain. And nothing is being directed (ugch) deeper down. Or controlled (?). Just more, most partial world views unconnected and behaving erratically.

The e.g. in this is that link above. A tiny subset of situational scenario. Not solved pervasively, once and for all. Now think about the hugely, vastly, enormously wider scope of ‘all’ of infosec that would need to be covered to a. arrive at sub-universes of control, b. overview.

The latter remains Open.
Me not happy.

Solutions, anyone ..?

Oh, plus:
[Ah! The days when this sort of ‘defence’ was enough to conquer! Alésie of course]

Trust ⊻ Verify

You get that. Since Verify → ¬Trust. When you verify, you engender the loss of trust. And since Trust is a two-way street (either both sides trust each other, or one will loose initial trust and both will end up in distrust), verification leads to distrust all around – linked to individualism and experience [we’re on the slope to less-than-formal-logic semantics here] this will result in fear all around. And Michael Porter’s two books, not to mention Ulrich Beck in his important one. So, if you’d still come across any type that hoots ‘Trust, but verify’, you know you’ve met him.

Since the above is so dense I’ll lighten up a bit with:
Part of the $10 million I spent on gambling, part on booze and part on women. The rest I spent foolishly. (George Raft)

Which is exactly the sort of response we need against the totalitarian bureaucracy (i.e., complete dehumanisation of totalitarian control – which approaches a pleonasm) that the world is sliding into. Where previously, humanity had escapes, like emigrating to lands far far away, but that option is no more. Hopefully, ASI will come in time to not be coopted by the One Superpower but then, two avenues remain: a. ASI itself is worse, and undoes humanity for its stubborn stupidity and malevolence (the latter two being a fact); b. ASI will bring the eternal Elyseum.
Why would it b. ..?
And if it doesn’t arrive in time, a. will prevail since the inner circle will shrink asymptotically which is unsustainable biologically.

Anyway, on this bleak note I’ll leave you with:

[Escape from the bureacrats; you-know-where]

Almost but more than three bodies, still

Which is about this. Which is also about this, and others…
But wait; you’ve been misled, the above link is not about a ‘solution’ – it’s about an expansion of the problem… So, we’ll remain in doubt over the eventual logical possibility of generalisation of any solution to n bodies where n ≥ 3. Leaving the aggregation from (sub)particle physics to the Universe (and, well, how was ‘a bit onwards’ better phrased?), end up in a statistical grey noise chaos.

Too bad. Hence:
[Considerable boringly bland ..? Girona]

Pro tip: Bankers are your doormats

At least, that’s what the Quartz article comes down to, too. At least, if you don’t want to go down with the oh so often recurring banks/bankers’ demise. Indeed all that recognise Yeshua as having had at least something valid to contribute to the world, see/heard/read that the swiping the Temple clean of the money changers, was a demonstration of the ethically very worst being thrown out of civilised society. When, as a family, one would want to stay in touch with one’s rightful place (geographically; name one family that made its fortune in a fully legal and ethical way ..?) in good style, one may better not depend on bankers…
Oh well why am I complaining – we learn from history a. that we don’t learn from history b. that, with the demise of the Afterlife, those left behind (e.g., economically) in their mortal life, have no vindication in the After. Those that do allsorts of things considered (cardinal) sins, are not punished there/then… It may all be a ploy to keep the meek in check. [Pun not even intended; ed.]

Oh well part two:
[We learn from this chap that what the … is he doing on the floor of a Catholic cathedral..!?; Siena]

OM als tooltje

Wat ik me bij deze link nou afvraag:

  • Het genoemde risico van concurrentie-pesten / uitschakelen (het Internet vergeet niets, en daar kan heel de rijksoverheid of wie dan ook geheel niets aan doen) is levensgroot, ondanks de minieme en volledig transparante schaamlap van eigen beslissing die bij de betaaldiensten wordt gelegd – die zullen zich zeker (ontkenning diskwalificeert van handelingsbekwaamheid) verschuilen achter het OM. Wat gaat het OM daartegen doen?
  • Zoals in het commentaar bij bovenstaande link; de ‘bewijslast’ is een aanfluiting en treft de kleinere webwinkels veel zwaarder dan de grotere die veel meer middelen hebben om hun ‘onschuld’ (juist daar: quod non!) te ‘bewijzen’ afgezien van hun marktmacht richting betaaldiensten. Drie klachten voor de grotere, drieduizend voor de kleinere wellicht ..?;
  • Als het OM informatie doorgeeft waarvan volslagen duidelijk is dat doorgifte disproportioneel is (hoeveel aangiftes van véél kwalijker zaken werden/worden ook alweer geseponeerd omdat dozijnen ambtenaren gewoon geen zin hebben om hun werk te doen?), zijn zij mede aansprakelijk voor de gevolgen. Gemiste omzet, gederfde levensvreugde (juist bij de kleinere webshops die door de groten aan de kant zullen worden geschoven – dát zijn pas onoirbare praktijken, maar ja die groten hebben de willoze lendepop het OM in hun zak – zal een blokkering wegens de minste aantijging van ongeoorloofd gedrag, hoe onterecht later ook zal blijken, al snel tot volledige sluiting leiden, met alle faillisementskosten en afwikkeling op privévermogens van dien – het leven van de eigenaar zal nooit meer hetzelfde zijn. De aanzet die eerst blokkeren, dan uitzoeken inhoudt, is een regelrechte omkering van de bewijslast, en treft zéér onevenredig veel onschuldigen (valselijk beschuldigd, onevenredige en onherstelbare schade) terwijl de schuldigen gewoon verder zullen shoppen; die hebben de plan-B betaaldiensten allang opgelijnd.
  • Het OM legt dit betreffend onderdeel van haar taak naast zich neer, derhalve dient het evenredig te worden gekort op het budget. Ad infinitsimum. Het OM laat zich willens en wetens als ‘conduit’ misbruiken door de grotere webshops, en verspeelt daarmee haar gezag en rechtsgrond van optreden. Sluiten die tent dus ..?

Het is duidelijk: Als dit wordt doorgezet, failleert het OM zichzelf. Toch ..?
[Van bastion tot ruïne; Cardona]

Arms / race coming to an end ..?

When this is still necessary and (counter)x-measures will continu to be developed, for sure, how will this little nugget of WP29 change things?
Because it has power. That may lead to a throwback. For how long? The harder the throwback, the longer to recover. But the more powerful will be that rebound ..? We’ll see. For now, canvas blockers are still the way forward, so implement them, right?

This post was brought to you as a public service announcement from the sanity of browsing for information security and privacy blog you’re reading.
But seriously, why is there so little analysis of the WP29-on-Profiling stuff ..!? And:

Mash-disappearance ..?

A shortie again: Whatever happened to the idea of ‘mash-ups’..? You know, the slam-together of bits and pieces of ‘other’ apps (-their functionality) to produce your own, with even better service delivery.
Just wanted to know; every now and then one tends to think back to the glorious days of (almost literally) yesteryear, when the newest of the newest trends would change the world and after a, despite the excitement over all the new things, good night’s sleep one tends to find that not much of the earth-moving improvements in human life have materialised. This being one of those things.

So, from all you Developers, I’d like to stand corrected …? And:
[Navigation (tool) at the edge of the known world; Ponta de Sagres]

Ziggo delivers tech cr.p (their own words)

In Dutch… De titel refereert natuurlijk naar de ingeblikte-ham reclame die vertelt dat er dusdanig slecht spul wordt geleverd, dat er een afgestudeerde-oude stijl van een (gezien de benaming kennelijk buitenlandse, Angelsaksische) technische universiteit (en qua studiezwaarte/diepgang liggen die ver vóór op algemene universiteiten) nodig is om basale connectiviteit te realiseren.
Het gaat zelfs zo ver, dat ieder element van die connectiviteit overal in huis wellicht een andere aanpassing of aanvullende oplossing nodig heeft (dát is waarvoor een ingenieur is opgeleid) om de basale dienstverlening te kunnen leveren!

Jawel. “De Ziggo-engineer blijft tot het werkt, overal in huis”.

Terwijl de concurrentie genoeg heeft aan het optioneel aanbieden van een monteur (iemand die monteert zijnde installeert en aansluit) en ziedaar alles werkt.
[Dit is geen goedkeurende audit-opinie over de bewering dat dat laatste ook daadwerkelijk zo is – maar het is wel de insteek en bedoeling…]

Dus… Neem Ziggo, óf iets dat werkt. Niet mijn ervaring (heb ik alleen met andere), maar hun eigen bewering ..!

Nou ja. En:
[Somewhere in France; tend to forget where.]

Maverisk / Étoiles du Nord