Would it not be better to give implementors proof-of-concepts of what does work, rather than leave them floundering in the dark?
-
-
The pentester underbelly has a tongue-in-cheek magazine called "Proof of Concept or Get The Fuck Out" - that demand should point both ways.
2 replies 1 retweet 2 likes -
Replying to @AlecMuffett @sweis
We don't really have tools that work to test! A big part of that reason is that tech people have so little idea of what ordinary people do.
3 replies 1 retweet 3 likes -
It is crucial, crucial to understand these folk beliefs, figure out where they come from, understand when they have a basis in tech design+
1 reply 0 retweets 2 likes -
..understand which parts are misinformation (and coming from where), understand which parts are from bad design.. And maybe we can move fwd!
1 reply 0 retweets 1 like -
Ah, this is "everything is shit and if only we did research we could invent a cybervolkswagen which works for everyone and is secure"-ism?
1 reply 0 retweets 0 likes -
Replying to @AlecMuffett @sweis
No it is not. Our designs and security tools *are* mostly unusable, and they also clash with folk beliefs and/or misinformation.
1 reply 0 retweets 0 likes -
No way to dig out of here without a realistic understanding. I have spent years trying to get people to adopt stuff. This is my problem.
1 reply 0 retweets 1 like -
Perhaps we should stop digging, and try filling in the holes, instead?
2 replies 1 retweet 1 like -
Replying to @AlecMuffett @sweis
I speak to tech people a lot, and often they know as little about ordinary people's uses/beliefs as ordinary people know about PGP.
1 reply 0 retweets 1 like
To fill the holes, you need to know where they are. I think this is super helpful. This has been my struggle for years. /end
-
-
All critics of security theatre should try writing security tools once in a while, so they understand the impact of what they're saying.
3 replies 2 retweets 4 likes -
I hope that you can have a go, yourself. Have a nice weekend - mine will involve a text editor, building tools for people to criticise :-)
3 replies 1 retweet 1 like - Show replies
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.