Перейти к содержимому

CC14: Worst of Cybersecurity Reporting 2025

CactusCon

0:00 / 0:00

CC14: Worst of Cybersecurity Reporting 2025

130 просмотров · 4 недели назад
CactusCon
2,05 тыс. подписчиков
130 просмотров · 4 недели назад
Cybersecurity headlines often turn hypothetical attacks, recycled leaks, and misunderstood technology into risks that sound more immediate than the evidence supports. huertanix and Yael Grauer return for their annual review of security and privacy reporting. They examine 2025 stories about Tor, juice jacking, Signal, password leaks, ESP chips, burner phones, unsubscribe links, and a New York-area SIM farm. The roast also offers practical guidance for reporters, editors, security researchers, and sources who want coverage to reflect real-world risk and technical context. Stories and lessons covered: Why Tor is a protocol and network rather than a platform that controls dark-web content How proof-of-concept juice jacking became broad advice about public charging Signal funding narratives and the difference between metadata and message content Old credential collections presented as a new 16-billion-password breach Physical-access research, undocumented chip functions, and misuse of the term backdoor Threat modeling burner phones, unsubscribe links, SIM farms, and encrypted messaging 00:00 Introduction 01:45 How the annual reporting roast works 02:56 Recurring cybersecurity media tropes 03:17 Misunderstanding Tor and the dark web 06:04 Hypothetical juice-jacking risks 08:47 Signal funding and CIA conspiracy claims 12:10 Repackaging old password leaks as new 13:46 ESP chip functions mistaken for backdoors 14:46 Naming targeted security researchers 15:43 Burner phones, travel phones, and location data 18:19 Fear of email unsubscribe links 20:16 The New York SIM-farm story 25:28 Lessons for journalists and editors 27:16 Lessons for security researchers 27:53 Closing remarks #CactusCon #Cybersecurity #TechJournalism #Privacy #MediaLiteracy