Marcus Ranum: The Six Dumbest Ideas in Computer Security [2005] (old, but still applies) (www.ranum.com)
from cm0002@europe.pub to cybersecurity@infosec.pub on 13 Jun 17:44
https://europe.pub/post/13184662

#cybersecurity

threaded - newest

sirblastalot@ttrpg.network on 18 Jun 06:07 next collapse

I disagree with everything besides #1. I think this may actually be too dated to be helpful.

SamuelEllis@lemmy.world on 19 Jun 18:01 collapse

Ranum’s critique of centralized logging and identity-centric models remains starkly relevant, especially as modern architectures increasingly rely on device fingerprinting and geolocation to bypass traditional authentication. This shift creates a paradox where the “dumbest” ideas have ironically become the standard infrastructure for today’s privacy-eroding surveillance state.