Pages

Showing posts with label privacy. Show all posts
Showing posts with label privacy. Show all posts

14 March 2016

Cybersecurity Vendor Error Message: Taking Heat in UC Campus Big Data Surveillance Dispute?

Screenshot from Fidelis XPS web page 
The handling of a cybersecurity appliance manufactured by Fidelis is at the center of a dispute between University of California cybersec experts and UC administrators working to contain recent breaches. 

Whether by design or by accident, the vendor's web page describing the particular model involved is throwing this inelegant error.

SNIP According to a Univ of California faculty expert, . . .'These appliances, depending on how they are configured, can be privacy doomsday machines.'"

Full packet inspection = #BigData threatening #privacy | @academeblog @FidelisCyber #governance #standards http://bit.ly/1pj87IB @bigdatastandards #computersecurity #cybersecurity

14 July 2015

Trust in 911 Information Provider Undermined by Expired Certificate

Smart911 SSL Credential Expired
The local town of North Hempstead NY has campaigned over the past year to have its citizens register with a commercial service, Smart911. Smart911 connects additional personal information about households with local 911 services so that alternate means of communication, identification and other services can be enabled. During Superstorm Sandy, the need for a service like this was clearer -- even though some will choose to keep such information personal.

Unfortunately, using the service this week resulted in the standard expired SSL certificate warning -- which less browser-savvy users (as well as OWASP users) will interpret as meaning the site is not safe. This is unfortunate given the sort of service involved, and the amount of personal information requested by the contractor.