Bonum Certa Men Certa

This Remembrance Sunday We Must Also Remember That Some 'Security Companies' Want More Cyberwar

posted by Roy Schestowitz on Nov 09, 2024

Richard M. Stallman

Remembrance Sunday 2024: Manchester to commemorate our Armed Forces

Remember the young(er) Richard Stallman? Around the time I was born he was working to eliminate computer passwords. No, not breaking into accounts, just making passwords obsolete. His underlying rationale (or his personal motivation) was, passwords would not serve security but ultimately partition computers and keep some people out of necessary access, sometimes for immoral business reasons. The goal was to make hacks like, empty passwords or trivial passwords would let you in, bypassing the demands otherwise imposed by nontechnical bureaucrats.

One can find videos about it. In 1986 he said: "I use my login name as my password." Wikipedia said: "Stallman found a way to decrypt the passwords and sent users messages containing their decoded password, with a suggestion to change it to the empty string (that is, no password) instead, to re-enable anonymous access to the systems. Around 20% of the users followed his advice at the time, although passwords ultimately prevailed. Stallman boasted of the success of his campaign for many years afterward."

Security and access control aren't the same thing, albeit the concepts aren't entirely unrelated. If I let my wife access my computers (and vice versa), for instance, that's possibly an access control problem, but I trust her with my computers, so it's not a security problem and I never lock my screens. It would be futile and self-defeating to lock the screens. It might do more harm than good in case of emergencies. Trust and access control aren't the same concept. In the same vein, we share house keys with other people, sometimes even neighbours who possess "spares". Whether it's Alice and Bob or Roy and Rianne, the idea that people share some accounts isn't an aberration.

Looking at the bigger picture, should we accept the vision of universal back doors as a model of "national security"? That's pretty much what we have right now and therefore the World Wars aren't just kinetic anymore. Hospitals don't need to be bombed or shelled; British hospitals can be destroyed from a distant North Korea without a single ICBM, only Microsoft Windows.

Remembrance Day/Sunday is fast approaching, so I wanted to say a few words, as well as recommend (again) "After Cyberwar" - the latest article by Dr. Andy Farnell, a man whom my wife and I - not to mention Techrights associates - grew fond of because of his writings (he last published here yesterday).

Under the section "Blame games" Andy said: "The same is true for civilians in a war zone. They do not care whose missiles just landed on their farm. Their lot is no better for knowing they were "friendly" ones, or that they were the victim of "necessity" to drive out an enemy."

A few hours ago I said: "We need to reject headlines that say Iran or North Korea or China or Russia compromised some system and instead ask what it was that let them break in. Whose fault was it? Why were holes present? Very often it turns out to have been Microsoft's fault, but the mainstream media stops short of saying that or does not even bother to investigate the real cause (culprit). Headlines that blame Putin and Kim probably attract more clicks and offer political fodder."

The blame game or "attribution" spiel/ritual does not matter much to the so-called "civilians", which in the case of technology means ordinary users who don't dwell in datacentres, deploy code/programs, and write code.

Let's change the attitude we have towards computer security and security journalism. A lot of so-called 'journalism' in this domain is utter trash (example from days ago and another from a few weeks ago). We recently blacklisted some sites that claim to cover security issues because their quality and integrity had been long gone. They'd post obvious lies and peddle "snake-oil" for companies that don't purse security and instead seek to profit from insecurity.

Our goal, overall, should be real security, not ongoing (and prolonged) war. Some companies profit from the cyberwar; hence, their objective is not to end the war.

Other Recent Techrights' Posts

Extortion is a Crime, Even If You're Based in Another Continent and Work for Microsoft
reported to British authorities
 
Slopwatch: LinuxTechLab, Planet Ubuntu, Anti-Linux FUD, and Microsoft SPAM
It's not easy to altogether avoid take articles these days
Gemini Links 06/06/2025: "MBA Tear" and Slop ('AI') as Plagiarism
Links for the day
Links 06/06/2025: "Convicted Felon and MElon Trade Insults" and Europe Snubbed by US Again
Links for the day
Links 06/06/2025: Microsoft XBox Bracing For More Mass Layoffs, Climate Disaster, Fake 'Money' Tokens From US President
Links for the day
Gemini Links 06/06/2025: Vanishing Cultures and MElon Implosion
Links for the day
We're in 6/6 Now, Almost Halfway in 2025
2025 was probably the best year for us
South Americans Are Saying Goodbye to Microsoft
We're hardly even "Cherry-Picking" or conveniently singling out one South American nation
Abuse Inside the Polish Patent Office (UPRP) - Part III: Data Protection Failures, Just Like at the European Patent Office (EPO)
Just less than a decade ago we showed that the EPO had illegally shared staff data with third parties
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Thursday, June 05, 2025
IRC logs for Thursday, June 05, 2025
Pushing Microsoft's Proprietary Trash/Trap as "Open" and "Linux" (Windows is 'Linux' Now?)
Maybe it's time to just stop saying "FOSS". The people who use that term are promoting Microsoft.
Slopwatch: Comparing Linux to Vermin, Attacking BSD With LLM Slop, and Helping Microsoft Demonise Linux/OpenBSD/SSH Over Weak User Passwords
Microsoft must be laughing its arse off, seeing how a bunch of Serial Sloppers (no skills, no comprehension, no integrity, no creativity) and slopfarms use Microsoft LLM to flood the Web with anti-Linux FUD
Links 05/06/2025: US Poised for Another $2.4 Trillion to Debt, Cops Want GAFAM Kill Switches
Links for the day
Links 05/06/2025: First US Spacewalk 60 Years Ago, GNU Octave 10.2.0 is Out
Links for the day
Scandinavia Saying Goodbye to Microsoft
The Danes have had enough of Microsoft
GNU/Linux Measured at 6% in Bangladesh, According to statCounter
Windows isn't growing, it's going away
Nat Friedman Had Left Microsoft GitHub Exactly One Week Before Matthew Garrett Sent His First SLAPP (Which Was an Empty Threat, He Was Abusing the Legal System of Another Continent to Terrorise Critics Who Had Just Unearthed Major Microsoft Scandals)
And it was likely talked about by his lawyers around the exact same time Nat Friedman was packing up
Gemini Links 05/06/2025: Loop Earplugs Review and ANS Forth
Links for the day
Armenian Adoption of GNU/Linux
Russian influence in Armenian must be worrying to Microsoft
Abuse Inside the Polish Patent Office (UPRP) - Part II: Turning a Once-Respected Patent Office Into a Circus and Laughing Stock
It's not legal, but administrators who don't care about the law and don't fear the law would just go ahead and turn things to junk
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Wednesday, June 04, 2025
IRC logs for Wednesday, June 04, 2025
Slopwatch: Mindless Slop Pieces, Fake Images and Text, Linux FUD on the Cheap
spewed out by Microsoft-controlled LLMs
Links 04/06/2025: Workers' Strikes, Sudan Exodus
Links for the day
Links 04/06/2025: Linux Foundation PR Spam and Lee Jae-myung Wins Election
Links for the day
Gemini Links 04/06/2025: Future Leaders of the World and Platforming Jordan Peterson
Links for the day
Links 04/06/2025: WSL Backfiring on Microsoft and "Disney, Microsoft Announce Massive Layoffs"
Links for the day
Our Case is a Very Easy Win, the SLAPPs From Microsofters Were a Grave Error, and Censoring Information Won't Work (It'll Only Ever Backfire)
Censoring is what people do when they lose the argument
Say the Truth, the Rest Will Follow
There's no guarantee that writing the truth will result in an audience (or readership), but over time - in the long run - people generally gravitate towards what they know or feel to be crude truth, not just what's comforting (albeit false or self-deluding, usually groupthink dictated from above)
How to Expose High-Level Corruption Without Getting in (Too Much) Trouble
Democracy depends on free press and freedom of the press depends on being able to safely publish (and keep available) material that bad people don't want to be known to anybody
In-Depth EPO Coverage at Techrights Turns Eleven
11 years is a very long time
Windows Measured Below 10% in Afghanistan, GNU/Linux Gaining a Lot
about 80% are Android (Linux) users, compared to only about 10% for Windows
Poland's Political Predicament and Social Control Media
Democracy and fake "tech" don't mix well; the latter tends to interfere with the former and that's why we get more "Putins" out there
EPO: Taking Away From the Staff to Give More to the Rich
The Central Staff Committee (CSC) wrote to EPO staff earlier this week
Over at Tux Machines...
GNU/Linux news for the past day
IRC Proceedings: Tuesday, June 03, 2025
IRC logs for Tuesday, June 03, 2025
Abuse Inside the Polish Patent Office (UPRP) - Part I: It's a Lot Like the EPO
we can commence a series soon
Gemini Links 04/06/2025: Inescapable Questions and Quitting All "Oligarch Tech"
Links for the day