Security Leftovers
-
Security pro says unlikely ChatGPT can be used to build professional ransomware [Ed: Refuting Microsoft propaganda and paid-for media PR for its plagiarism engine]
A senior IT security practitioner has played down the chances of AI tool ChatGPT being used to develop professional ransomware right now, even though there have been reports that the tool has been used to build basic malware.
-
[remark] Passwords in deployment or development scripts? -- Volution Notes
Questions (without definitive answers) about how to securely manage secrets in scripts and development environments?
-
Rubenerd: Do you log out of sites?
I suspect modern sites consider it unusual behaviour to log out, or not have their cookies. If you run your browser in private mode, or use security extensions that periodically clear your cookies, or are using VPNs for certain tasks, you know what Iâm talking about.
Thereâs a security case for notifying people when a login is occurring in an environment the service doesnât recognise, but I wish there was a bit of basic intelligence behind this heuristic. If this person appears to come from a different environment every time, then that behavior is normal for that account.
-
Episode 358 - Furby vs Alexa – Open Source Security
Josh and Kurt talk about the Furby source code going public. This is an opportunity to discuss whatâs changed in our attitude in devices that record our audio? Our devices today are vastly more powerful and dangerous than a Furby, what does your risk appetite look like?