ioc.exchange is one of the many independent Mastodon servers you can use to participate in the fediverse.
INDICATORS OF COMPROMISE (IOC) InfoSec Community within the Fediverse. Newbies, experts, gurus - Everyone is Welcome! Instance is supposed to be fast and secure.

Administered by:

Server stats:

1.6K
active users

#bruceschneier

2 posts2 participants0 posts today
Marcel Waldvogel<p>I very often agree with Bruce Schneier. But not today.</p><p>If I wanted to make a private agreement through a digital trusted third party, why would I need an LLM?</p><p>The examples include comparing salaries. Instead of setting up (and later securely deleting) an LLM, we could just as easily run a function boiling down to<br>`return a &gt; b;`</p><p>No need to involve LLMs with their uncertainty or possibility to do prompt injection.<br><a href="https://waldvogel.family/tags/BruceSchneier" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BruceSchneier</span></a> <a href="https://waldvogel.family/tags/LLM" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>LLM</span></a> <a href="https://waldvogel.family/tags/TTP" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>TTP</span></a> <br><a href="https://www.schneier.com/blog/archives/2025/03/ais-as-trusted-third-parties.html" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">schneier.com/blog/archives/202</span><span class="invisible">5/03/ais-as-trusted-third-parties.html</span></a></p>
Eric the Cerise<p>Interesting post from <a href="https://kolektiva.social/tags/BruceSchneier" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BruceSchneier</span></a> ...</p><p>Thanks to the notorious <a href="https://kolektiva.social/tags/Signal" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Signal</span></a> group chat (and regardless of your opinions about the current Administration), it kind of just became the NSA's job to make sure that Signal – and consumer-grade cellphones – are as close to bulletproof as possible.</p><p><a href="https://www.schneier.com/blog/archives/2025/03/the-signal-chat-leak-and-the-nsa.html" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">schneier.com/blog/archives/202</span><span class="invisible">5/03/the-signal-chat-leak-and-the-nsa.html</span></a></p>
Wisdom in Space<p>Metadata is surveillance.<br> -- Bruce Schneier (Data and Goliath)</p><p>⬆ <a href="https://c.im/tags/Wisdom" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Wisdom</span></a> <a href="https://c.im/tags/Quotes" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Quotes</span></a> <a href="https://c.im/tags/BruceSchneier" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BruceSchneier</span></a> <a href="https://c.im/tags/Data" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Data</span></a> <a href="https://c.im/tags/Surveillance" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Surveillance</span></a></p><p>⬇ <a href="https://c.im/tags/Photography" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Photography</span></a> <a href="https://c.im/tags/Panorama" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Panorama</span></a> <a href="https://c.im/tags/Sunset" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Sunset</span></a> <a href="https://c.im/tags/Florida" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Florida</span></a></p>
stefania maurizi<p>This is the best article on the nefarious request for a <a href="https://mastodon.social/tags/backdoor" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>backdoor</span></a> to <a href="https://mastodon.social/tags/Apple" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Apple</span></a> by the UK government.</p><p>I strongly recommend <a href="https://mastodon.social/tags/BruceSchneier" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BruceSchneier</span></a>'s article:</p><p><a href="https://www.schneier.com/blog/archives/2025/02/an-icloud-backdoor-would-make-our-phones-less-safe.html" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">schneier.com/blog/archives/202</span><span class="invisible">5/02/an-icloud-backdoor-would-make-our-phones-less-safe.html</span></a></p>
PrivacyDigest<p>Nearly 10 Years After Data and Goliath, <a href="https://mas.to/tags/BruceSchneier" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BruceSchneier</span></a> Says: Privacy's Still Screwed - Slashdot <br><a href="https://mas.to/tags/privacy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>privacy</span></a> <a href="https://mas.to/tags/schneier" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>schneier</span></a> </p><p><a href="https://yro.slashdot.org/story/25/02/17/1557220/nearly-10-years-after-data-and-goliath-bruce-schneier-says-privacys-still-screwed?utm_source=rss1.0mainlinkanon&amp;utm_medium=feed" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">yro.slashdot.org/story/25/02/1</span><span class="invisible">7/1557220/nearly-10-years-after-data-and-goliath-bruce-schneier-says-privacys-still-screwed?utm_source=rss1.0mainlinkanon&amp;utm_medium=feed</span></a></p>
Benjamin Carr, Ph.D. 👨🏻‍💻🧬<p><a href="https://hachyderm.io/tags/DOGE" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DOGE</span></a> Is <a href="https://hachyderm.io/tags/Hacking" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Hacking</span></a> <a href="https://hachyderm.io/tags/America" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>America</span></a><br><a href="https://hachyderm.io/tags/US" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>US</span></a> <a href="https://hachyderm.io/tags/government" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>government</span></a> has experienced what may be most consequential <a href="https://hachyderm.io/tags/securitybreach" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>securitybreach</span></a> in its history.<br>By <a href="https://hachyderm.io/tags/BruceSchneier" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BruceSchneier</span></a> and <a href="https://hachyderm.io/tags/DaviOttenheimer" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>DaviOttenheimer</span></a></p><p>The systems that DOGE is accessing are not esoteric pieces of our nation’s infrastructure—they are the sinews of government. It’s as if someone found a way to rob Fort Knox by simply declaring that the new official policy is to fire all the guards and allow unescorted visits to the vault.<br><a href="https://foreignpolicy.com/2025/02/11/doge-cyberattack-united-states-treasury/" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">foreignpolicy.com/2025/02/11/d</span><span class="invisible">oge-cyberattack-united-states-treasury/</span></a><br><a href="https://archive.ph/lSHkJ" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="">archive.ph/lSHkJ</span><span class="invisible"></span></a></p>
OpenSoul ✅<p><span class="h-card" translate="no"><a href="https://mastodon.uno/@quinta" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>quinta</span></a></span> </p><p>E <a href="https://mastodon.social/tags/BruceSchneier" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BruceSchneier</span></a> è uno che soppesa con attenzione le parole, se scrive le cose gravi che scrive, lanciando di fatto un allarme di sicurezza nazionale, penso che ci sia da starlo a sentire</p><p>Purtroppo 😠</p>
Interesting Links<p><strong><a href="https://www.schneier.com/blog/archives/2014/09/fake_cell_phone.html" rel="nofollow noopener noreferrer" target="_blank">Fake Cell Phone Towers</a></strong><br>2014: "We can’t choose a world where the US gets to spy and the Chinese don’t. We get to choose a world where everyone can spy, or a world where no one can spy." <br> And here we are 11 years later with people in governments *still* insisting on trying it. Even after Salt Typhoon. (Also, the “towers” referred to in the title are apparently not physical towers so much as interception devices that mimic a cell tower on the network. It’s imprecise language that has propagated through just about every article on the topic.)</p><p><a href="https://bookmarks.kvibber.com/tagged/celltech" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#celltech</a> <a href="https://bookmarks.kvibber.com/tagged/spying" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#spying</a> <a href="https://bookmarks.kvibber.com/tagged/privacy" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#privacy</a> <a href="https://bookmarks.kvibber.com/tagged/backdoor" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#backdoor</a> <a href="https://bookmarks.kvibber.com/tagged/BruceSchneier" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#BruceSchneier</a></p>
Karl Voit :emacs: :orgmode:<p>Der «Security-Guru» <a href="https://graz.social/tags/BruceSchneier" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BruceSchneier</span></a> schlägt eine radikale Lösung vor: Topmanager sollten ins Gefängnis gehen müssen, wenn sie ihre Firmennetzwerke nicht gegen <a href="https://graz.social/tags/Hackerangriffe" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Hackerangriffe</span></a> schützten, sagt er im Interview.</p><p><a href="https://www.nzz.ch/technologie/der-computer-experte-bruce-schneier-raet-haben-sie-einen-guten-bullshit-detektor-ld.1863481" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">nzz.ch/technologie/der-compute</span><span class="invisible">r-experte-bruce-schneier-raet-haben-sie-einen-guten-bullshit-detektor-ld.1863481</span></a></p><p><a href="https://graz.social/tags/security" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>security</span></a> <a href="https://graz.social/tags/Sicherheit" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Sicherheit</span></a> <a href="https://graz.social/tags/ITSicherheit" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>ITSicherheit</span></a> <a href="https://graz.social/tags/Haftung" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Haftung</span></a> <a href="https://graz.social/tags/Firmen" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>Firmen</span></a></p>
Quoll :liberapay:<p>Sul sito “Schneier on Security” ( <a href="https://www.schneier.com/blog/archives/2024/11/why-italy-sells-so-much-spyware.html" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://www.</span><span class="ellipsis">schneier.com/blog/archives/202</span><span class="invisible">4/11/why-italy-sells-so-much-spyware.html</span></a> ) viene riportato un interessante articolo di Suzanne Smalley in cui viene citato anche il nostro <span class="h-card" translate="no"><a href="https://mastodon.uno/@quinta" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>quinta</span></a></span> </p><p><a href="https://therecord.media/how-italy-became-an-unexpected-spyware-hub" rel="nofollow noopener noreferrer" translate="no" target="_blank"><span class="invisible">https://</span><span class="ellipsis">therecord.media/how-italy-beca</span><span class="invisible">me-an-unexpected-spyware-hub</span></a></p><p>Che dici <span class="h-card" translate="no"><a href="https://mastodon.uno/@quinta" class="u-url mention" rel="nofollow noopener noreferrer" target="_blank">@<span>quinta</span></a></span> , siamo messi così male in Italia rispetto agli altri paesi europei?<br>O è solo venuta fuori la parte di “spioni“ dei pesci piccoli, mentre in realtà la situazione (in Italia e altrove) è pure peggio?</p><p><a href="https://mastodon.uno/tags/BruceSchneier" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>BruceSchneier</span></a> <a href="https://mastodon.uno/tags/SicurezzaInformatica" class="mention hashtag" rel="nofollow noopener noreferrer" target="_blank">#<span>SicurezzaInformatica</span></a></p>