Found this cool spiky #caterpillar in southern #Alberta, any one know what it is?
@BackFromTheDud @skinnylatte @minmi
BTW, an interesting POV I learned from Tendayi Bloom, a scholar and editor of the book below (disclosure: of which I am a contributor), is that while #homelessness itself is usually not illegal, the practise of making #natural #human #necessities such as sleeping and excreting waste illegal in public spaces has the same effect as #criminalising being #unhoused.
I am linking the book because there are so many vectors to being treated as non-#citizens that I think it are important to be aware of, even if one is *technically* a citizen, claiming such rights may depend on a number of other systems such as #authenticated #identification to "enjoy" those rights.
Lots of complexity that absolutely could be fixed if policymakers chose to do so.
https://manchesteruniversitypress.co.uk/9781526156419/
#criminalisation
#citizenship
#HumanRights
#dignity
#access
#accessibility
How the Solid Protocol Restores Digital Agency – Source: www.schneier.com https://ciso2ciso.com/how-the-solid-protocol-restores-digital-agency-source-www-schneier-com/ #rssfeedpostgeneratorecho #SchneierOnSecurity #SchneieronSecurity #CyberSecurityNews #identification #Uncategorized #DataBreaches #DataPrivacy #Integrity #privacy
@LukefromDC : it won't be that bad (it will be bad, but in a different way).
ANY website may ask a user to confirm they are 18+ (or whatever age).
There will be a huge amount of AitM (Attacker in the Middle) websites where naive people will be lured to (using fake emails, SMS, chat app messages or falsified QR-codes) and asked to confirm their age.
That AitM website will subsequently obtain a "ticket" (session cookie) from a real "relying party" website (with a potentially very different type of content than the victim is told).
Those "tickets" will be sold (or traded for watching ads and/or paying with privacy).
Reliable authentication requires a trustworthy identity verifier (even if identification is restricted to age+).
@jwildeboer : modern certificates are used for authentication only, not for secure connections.
OTOH, if you have no certainty that your software is communicating with the server you intended, a secure connection to it is pointless - but the connection remains secure.
Using TLS v1.3, the connection is even secured before the server is authenticated (if, after encrypting the connection, the authentication of the server fails, then the client should at least warn the user - if not immediately disconnect).
Yes, I know, these are boring details, but they are misunderstood way too often by people who SHOULD know how this works (I know you do, but please don't simplify things too much).
@adfichter : I'm trying to warn people for such holes.
Published earlier this month: https://www.heise.de/en/news/BSI-and-ANSSI-warn-against-VideoIdent-for-the-EU-digital-wallet-10476045.html (there of course is a German version as well).
It refers to a recent joint publication (in English) by the German BSI and the French ANSSI titled:
"Remote ldentity Proofing for EUDI Wallet Onboarding: Strengthening Assurance Against Evolving Threats"
(EUDI Wallet = European Digital Identity Wallet aka EDIW aka EUDIW).
It's about the risks of VideoIdent (getting bigger every day, see e.g. https://www.theverge.com/report/714402/uk-age-verification-bypass-death-stranding-reddit-discord - not to mention AI).
However, like in their previous publication (PDF: https://www.bsi.bund.de/SharedDocs/Downloads/EN/BSI/Publications/ANSSI-BSI-joint-releases/ANSSI-BSI_joint-release_2023.pdf?__blob=publicationFile&v=3) they ignore one HUGE risk: AitM's (Attacker in the Middle).
The unmentioned gaping security hole here are fake websites, where people are being directed to via falsified emails, SMS, chat app messages and possibly QR-codes.
Step :
————
Victim (contacts AitM site as instructed)
|
| "Please give me my EDIW"
v
AitM site: contacts site below and forwards
|
| "Please give me my EDIW"
v
True EDIW identity verification site
Step :
————
Victim
^
| "Please perform VideoIdent"
|
AitM site: forwards
^
| "Please perform VideoIdent"
|
True EDIW identity verification site
Step :
————
Victim
|
| VideoIdent showing victim
v
AitM site: forwards
|
| VideoIdent showing victim
v
True EDIW identity verification site
Step :
————
Victim
^
| "Something went wrong"
|
AitM site: stores victim's EDIW on their device
^
| EDIW
|
True EDIW identity verification site
The same may happen to people who are tricked into *authenticating* using EDIW on AitM websites.
Never hand over your #identification details to verify your #mastodon #accounts, its a #scam!
How Solid Protocol Restores Digital Agency – Source: www.schneier.com https://ciso2ciso.com/how-solid-protocol-restores-digital-agency-source-www-schneier-com/ #rssfeedpostgeneratorecho #SchneierOnSecurity #SchneieronSecurity #CyberSecurityNews #identification #Uncategorized #DataBreaches #DataPrivacy #privacy
How Solid Protocol Restores Digital Agency https://www.schneier.com/blog/archives/2025/07/how-solid-protocol-restores-digital-agency.html #identification #Uncategorized #databreaches #dataprivacy #privacy
How Solid Protocol Restores Digital Agency
The current state of digital identity is a mess. Your personal information is scattered across hundreds of locations: social media companies, IoT companies, government agencies, websites you have accounts on, and data brokers you’ve never he... https://www.schneier.com/blog/archives/2025/07/how-solid-protocol-restores-digital-agency.html
"Federal immigration agents (#ICE) seeking to detain a Honduran landscaper chased him into a #SouthernCalifornia surgical center and quickly found themselves in a tense #standoff as #clinic #staff demanded to see #identification and a #warrant."
https://apnews.com/article/ice-arrest-california-surgery-center-c827038f1a40227dc05ab1c28b048035
.
Son bec serait plus petit en hiver ? Oui c’est vrai !
Quand il n’est pas en plumage nuptial, le macareux moine présente un bec plus petit et aussi moins coloré…
Pourquoi cette différence ? Il est probable que la taille et la couleur du bec jouent un rôle dans la séduction, un caractère sexuel secondaire favorisant la reproduction. Mais cette théorie, bien que plausible, reste encore à confirmer par les scientifiques…
#macareux #aquarelle #dessinnaturaliste #ornithologie #arctique #illustration #identification #dessin #oiseau #artiste
There should be #no #secretpolice in #America. Demand action to unmask ICE by adding your name now. #Identification on uniforms must be required. Officers must be unmasked. Tell #Congress to take action to keep us safe! https://act.progressamerica.us/ss/c/u001.qUXRBnqZ7T8nxbpAcIVwoUsWLkUMWlo_0JmZttSlm38tUCuLmzhz49vd39EKcLwBood2dKtfGmsrvq1hzRODmgzbO3KK9xRYYNJekDtkHwo5dsvq7Fa3EKPN5qXTUCF0s9mml7jln84dA_fkY2sxyEK3f9uBrswLWVh12KOn_OlOhUPAgq7Xd-kXERepD-kxWGklaMYGH1yupCakDiNmOIPCEVVdoFAkipY5Sh-UGmV62LdG16ab6XoxoZguNTnRAZZ19BCVLrM_UusjAy-biyugcGolgZjfknLiCFCLVh9Oy4MLVBM74lRoGV2U8YVtF7kI609bYKBDNN3SITzsYRx5Kefc4NbIjwiI3axTd6c0rb1jHaBqIUF0c0leHanaBnwQhIJSRRqIB9FvM0iMpVw8Ttf2MfG0vUkX6CC3DYxQ_wvncVgjFUGR69_ez0X-K7jhyRl1Kagbbyc4dO5z-A/4hy/ZDZYQOlDQlWiNVU7DljM4w/h2/h001.vSNhyNEdhkwyxOEta4yXqZ03L-HUWzjKA3SmV_XhFJA
There should be no #secretpolice in America. Tell Congress and state legislatures to require #identification on #uniforms and #vehicles and ban masks on #ICEagents while conducting neighborhood enforcement actions now. https://click.actionnetwork.org/ss/c/u001.qUXRBnqZ7T8nxbpAcIVwoUsWLkUMWlo_0JmZttSlm38tUCuLmzhz49vd39EKcLwBood2dKtfGmsrvq1hzRODmt0ZNe_J9BeYGEy1r47JcTAx7dtkf6pDgBUUOphO7cc5qsZni9pZxx0pcrAx3S-88H-U2c6P_0nCdEOnwgCBeHM6Bp_p9NRT4EtPSVVaKe-tAtfaR1zg2dsh5iq0V-LLQz2vQgEzM4SWmi89VFkciRafkQgi_WIQINGkSKJsyCeh9O7YTfnDHxGC_oOmEhqhTH2xu3JUGCrBt5uxMsIRL-bIjAok63dhIyUAf9mQs6oao2tmFNv8d2UapOLJy5Hdjq6UEoqkaYCyrHQI5I4A7xBW4rJJUKngw6feDvxeXRf16QqlYXVXJWsQCWLfg32Re-ZcJs7CORj6GIZPvUqDJayhmLbwpeD0KXgJU4VVLz2F815_rH-RkQIYTRrmwqntwydffYel1ugAPh4fJf2l5UXgkyfnktBgH1kNAuGaF-fBbbcuysGV-_q5LD9saks6OLapWB17AB1_eHBYV2qwzaOURy3SCb8ObsSDsMZ7lwEYiBdmYJrrcMoaprcSmsv34sEr3uYKsxukJN4GHLD2h5o/4hu/Xi6kpfMMTBC8FgNzX3_j8A/h0/h001._6IsFo-qKozQgR3hmF5bqptLCBE8JWHIOFckX_x_fqw
@maaikees : the way we look is an important part of how we are (and want to be) recognized by others.
Over the years I became amazed about how the looks of peoples heads differ, and how enormously good people are at recognizing each other.
Changing how you look changes your identity - as others see it.
The #Texas #law requires age verification for any site where more than one-third of the content is sexual material “harmful to minors.” Users must submit digital #identification, a government-issued ID or other forms of proof that they are 18 or older. The law bars the sites from retaining identifying #information, but it does allow them to transfer the #data for
verification purposes.
@aral wrote: "If your friends and family are trying to phish you, you have bigger problems."
Phishing means that an adversary *claiming to be* someone you know (including friends and family) convinces you to click on a link.
The purpose of a certificate, telling a receiver *WHO* (human readable) owns the associated private key (the last resort to distinguish between fake and authentic), now has completely vanished.
As if phishing is not already the nr. 1 problem on the internet.
Note: I'm fine with the idea provided that browsers clearly inform users about the reliability of authenticity (I've read your article, did you read https://infosec.exchange/@ErikvanStraten/113079966331873386 ?)
What is this black and white insect from south west France? Skyjo card for scale. What a beauty