@naval Unless you let an AI be the inspector and judge, camera’s everywhere would flood justice systems and police departments.
And it would be a step up to predictive crime prevention as was portrayed in Minority Report.
@levelsio Check out https://t.co/KHdHI8Wqdr for ad blocking and private DNS.
You can even add profiles per device for fine grained blocking (Apple TV, IoT devices, etc…).
New supply chain attack this time for npm axios, the most popular HTTP client library with 300M weekly downloads.
Scanning my system I found a use imported from googleworkspace/cli from a few days ago when I was experimenting with gmail/gcal cli. The installed version (luckily) resolved to an unaffected 1.13.5, but the project dependency is not pinned, meaning that if I did this earlier today the code would have resolved to latest and I'd be pwned.
It's possible to personally defend against these to some extent with local settings e.g. release-age constraints, or containers or etc, but I think ultimately the defaults of package management projects (pip, npm etc) have to change so that a single infection (usually luckily fairly temporary in nature due to security scanning) does not spread through users at random and at scale via unpinned dependencies.
More comprehensive article:
https://t.co/EJAZbqAPIQ
(Device) security should be layered, like onions 🧅.
What would have stopped this easily on any network was a DNS-level block for NRDs (Newly Registered Domains, age <30 days).
We use https://t.co/RnEli81mIx which offers NRD blocking.
However this would not work if it was posting to an IP address or if the domain age was older.
That is why you need multiple layers of defence:
Network level:
- DNS blocking for newly registered domains (NextDNS, Pi-hole with NRD lists)
- Outbound firewall rules: block unexpected egress from dev environments
- Network monitoring/alerting on unusual data uploads
Dependency hygiene:
- Pin exact versions in your lockfile (no >=1.64.0, use ==1.64.0)
- Never auto-update: wait 48-72h before pulling a new release. Most poisoned packages get caught within hours
- Use pip install --no-deps and manage the tree yourself when possible
- Audit your transitive dependencies. You may depend on 5 packages but actually install 200
- Run pip-audit or safety check in CI before deploying
Environment isolation:
- Install and test package updates in disposable VMs/containers with only your project dir mounted, never straight on your main machine
- Use separate credentials per environment. Your dev box should not hold production keys
- Avoid storing long-lived secrets in env vars or dotfiles where any process can read them
Process:
- Subscribe to security advisories for your key dependencies (Snyk, GitHub Dependabot alerts)
- Periodically review if you still need every dependency. The best defence against a poisoned package is not depending on it at all
Still managing visitors with paper logs? 📋
It might seem cheap, but the hidden costs add up fast:
in time, errors, compliance risk, and a less-than-professional first impression.
We created a practical guide to help you build a business case for digital visitor management, complete with ROI formulas, KPIs, and an internal approval checklist.
👉 https://t.co/ry6OjorNVu
Your receptionist's smile is the first impression! 😊
Role in 2026: warm welcomes, security, admin and digital kiosks.
Read our new blog on duties & evolution 👉 https://t.co/cddjTDhjLo
What's your front desk's best "wow" moment?
Hospitality's always been about that human touch: the smile at check-in.
But let's be real: running a physical front desk can eat up time and budget like nothing else.
Curious how it stacks up for your operation?
Read on: https://t.co/OQOmsty6oc
Is your reception leaving a bad first impression 👎 ?
Discover common mistakes organizations make when welcoming guests and how to fix them!
From poor security to paper logbooks, our latest blog breaks it down with practical solutions.
🪛 Learn how to fix these mistakes:
https://t.co/Th3q36Yw0l
Are you overlooking these hidden risks in your manufacturing processes ?
From security breaches to compliance issues, these can pose serious threats ⚠️⚠️⚠️ to your operations !
Discover key insights and actionable solutions in our latest post: https://t.co/GBLh6Ddwr3.
Learn how to safeguard your facility, streamline processes, and ensure compliance.
We would love to hear about your experience and suggestions.
🚨 In emergencies, knowing who's on-site can save lives.
Our new guide explores how Visitor Management Systems boost preparedness with real-time tracking, instant evacuations, and seamless integrations.
Read it here: https://t.co/xqwlGnH4Il
Stay ahead of cyber threats!
🛡️ Check out our 7 actionable tips to protect your business from attacks in 2025.
From employee awareness to strong security policies - discover how you can keep your organization safe.
Read more:
https://t.co/gfNZeHzU05
Vizito has renewed its ISO 27001 certification!
We’re committed to keeping your visitor data secure with top information security standards, all backed by regular audits and robust processes. Trust Vizito for compliant, reliable visitor management.
https://t.co/UPc1Xhjurm
Ensuring the safety of students and staff is paramount in today’s educational landscape, discover how implementing advanced security systems can create a safer learning environment.
Learn more: https://t.co/5droX4CXRL
As the year comes to a close, we want to thank you for being part of our journey. Here’s to making 2025 even better—together!
Wishing you a joyous holiday season filled with happiness and good cheer.
#seasonsgreetings#merrychristmas#happynewyear #2025
Is your company GDPR-proof? 💻✨
Test your knowledge with our quiz and discover whether you're a GDPR expert or if there's still room for improvement 👉 https://t.co/8T8FQZl9ia
#GDPR#dataprotection#businesstips#quiz