To my mind, Ross Anderson was being pragmatic, when he insisted in his text "Security Engineering, 3e" that computer & information security models should more closely reflect underlying human trust relationships, and it could be said that capabilities models let one achieve that more readily, than the constant exercise of trying to close gaps exposed by security models rooted solely in Access Control Lists (ACLs), which amount to a form of fire-fighting; hence the HP Labs paper by Tyler Close, "ACLs Don't", which sadly got an IEEE reject.
Dr. Bruce Simpson
mastodon 4.7.3Cybersecurity & Internet researcher. Timeline:
1994: 1st Internet use: blueboxed onto CompuServe
1997: #phrack denizen; nfsshell'd exam paper
2001: Onsite cybersecurity at JP Morgan.
2003: FreeBSD Security Team; TCP-MD5; mentored pf(4).
2004: International Computer Science Institute fellowship.
2010: CRC Canada uses my MANET stack
2011: Every iPhone IPv6 connection invokes my code.
2016: Awarded PhD in Internet architecture.
Do I wish to join the Cult of the Superficially Viable Artifacts? No.
I'm looking into what it takes to fully Capsicumize a Python process in FreeBSD. It's not just about the file descriptor rights and filesystem visibility. There are distinct dependencies by Python modules on system calls which may not be CAPENABLED. I ground it out on subprocess for a start. Whist Python 3.12 os.execve() (and thus os.exec*()) shims to fexecve() and SHOULD work if $PATH is modified to be relative, there are no such guarantees for the subprocess module.
UK press can opt out of AI overviews, stay in searches
So I switched daily browser this week from the least bad Chromium fork to the least bad Firefox fork, thinking that reduced CPU burst might reduce my exposure to my Acer [heavily patched for security and privacy] Win11 laptop's wonky power management behaviour now the battery has died (replacement on order, must chase up). The thing tends to die shortly after power-on, or if I open a browser, and hibernation doesn't work. It helped a little, not a lot.
Only to find I'd forgotten to migrate an essential uBlock Origin rule that @jef@mastodon.social probably pointed me at: the one which blocks the "Sign in with Google" popup, but for some strange reason (I'm normally using my default UK SOCKS5 proxy for web access), it keeps emitting it in German.
This thing is SO. FRICKEN. COMMON. Why does it keep showing up on sites where I'd least expect to deal with the Advertising Company's surveillance-pilled OAuth2 service?
Sort it out...

