Worth reading re: all the flaws discussion. Just because they require admin privs doesnt make them not dangerous. Sure they're overhyped as hell, and the release "strategy" was bizarre, but the flaws are real and abusable. Good, well-measured thread.https://twitter.com/dguido/status/973628511515750400 …
The point is that a state level actor already has six other ways to do this. It doesn't matter that you have an extra hole or fix it if your entire design is prone to being full of them. Sure, fixing it is good, but PC secureboot was never secure and fixing this won't make it so.
-
-
Huge:
@Citizenlab catches ISPs invisibly redirecting download requests for popular programs, injecting them with government spyware. Unencrypted web traffic is now provably a critical, in-the-wild vulnerability. 20-30% of top internet sites affected https://citizenlab.ca/2018/03/bad-traffic-sandvines-packetlogic-devices-deploy-government-spyware-turkey-syria/ …
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
-
-
original tweet from snowden..
Thanks. Twitter will use this to make your timeline better. UndoUndo
-
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.