“The most amazing achievement of the computer software industry is its continuing cancellation of the steady and staggering gains made by the computer hardware industry.” — Henry Petroski
v/@CodeWisdom
IN CASE YOU MISSED IT:
The EU — in private — amended draft digital identity regulation to create a legally-mandated surveillance backdoor in HTTPS.
Over 300 academics & tech experts TODAY publish an open letter calling on the EU to fix this + follow web standards instead:
Should a browser be forced by law to include a CA in its root store if it does not meet the security standards?
I am one of the 335 scientists that signed an open letter (https://t.co/95P9bWaINr) calling for the EU to reconsider parts of the proposed eIDAS reform. 1/
Key verification system for end users that provides consistency and privacy for users’ name-to-key bindings, without requiring explicit key management by users https://t.co/ZS6c3TnVTE
Apple will let users verify if the person they speak to over iMessages is really the person, or maybe the account is hijacked. Via implementation of COSIK, key transparency/verification cryptographic protocol. Some serious cryptographic engineering here. https://t.co/kVzqXdUn7W
"As a principal engineer, I view it as my role to keep us off the bleeding edge as much as possible. That way, when we really do need to innovate, we have the capacity to do so. And when we don't need to, we can go really freaking fast." – Nicole Tietz
@cirobispo Go moved away from binary-only packages a while ago
I think that's good both from a security perspective as well as allowing the compiler etc. to evolve faster
I used to say that the two biggest sources of tech debt were documentation and testing.
But recently I've seen a blog post by Yevgeniy Brikman of Terraform fame suggesting that there are three main sources of tech debt: he adds automation to that list.…https://t.co/FX843d02P2