Author: Andreas

  • Fairy Dust

    Fairy Dust - die der Chaos Computer Club seit 1999 als Logo verwendet.
    Fairy Dust

    Das obligatorische Foto der Rakete “Fairy Dust“, die der Chaos Computer Club seit 1999 als Logo verwendet. Fairy Dust, wie die Rakete seit dem Chaos Communication Camp 2003 liebevoll getauft wurde, ist 7m groß. Damit macht das Modell auch in einer Halle wie der Messe Leipzig einen bleibenden Eindruck. Eine Lichtinstallation wie ihre glitzernde Oberfläche setzen “Fairy Dust” entsprechend in Szene. Neben der Fairy Dust finden sich in dem Umfeld 2 andere Logos. Zum einen der Datenknoten, der das erste offizielle Logo des Club darstellt.

    daily, , , X100F.

  • Twelve Million Phones, One Dataset, Zero Privacy

    Twelve Million Phones, One Dataset, Zero Privacy

    is part one of One nation, tracked, an New York Times investigation series of smart phone information tracking and by Stuart A. Thompson and Charlie Warzel, within their privacy project. The research covers multiple topics, only starting out with an analysis of the potential contained in smartphone tracking information.

    What we learned from the spy in your pocket.

    Twelve Million Phones, One Dataset, Zero Privacy

    The authors analyse a large dataset of location information from New York and Washington, DC, cell phone users. With the analysis, the article debunks myths about data privacy. The key takeaway of the analysis, to my interpretation are:

    Twelve Million Phones - One Mobile Phone User in Munich
    Mobile Phone User – Munich
    1. Data is not anonymous – the authors successfully identified a Senior Defense Department official and his wife. And this was possible during the Women’s March. According to authors, nearly half a million descended on the capital for this event. (Other sources only mention one hundred thousand attendants)
    2. Data is not safe – the authors point out complex relationships of companies in the tracking business. Complexity makes it impossible to ensure ownership. There is no foolproof way for anyone or anywhere in the chain to prevent data from falling into the hands of a foreign security service.
    3. Affected persons cannot consent – the authors criticism seems reasonable. Virtually all companies involved with tracking require user consent. And even cell phones make the geo-tracking feature visible to users. Only barely anyone in the business makes purpose transparent. In other words, no company prominently announce how they package and sell data or insight.

    One Nation, Tracked

    The article is a creepy read, but worth the time spending. The series One Nation, Tracked continues with 6 other parts:

    1. discussing how to Protect Yourself
    2. National Security, which is for the the US in the article.
    3. details on How it works
    4. individual spying in One Neighborhood
    5. Protests is about how this business betrays democracy
    6. And offers Solutions through privacy rights.

    Source: Opinion | Twelve Million Phones, One Dataset, Zero Privacy – The New York Times

  • New Years Resolution

    New Years Resolution
    New Years Resolution

    New Years Resolution: Noch auf alten Schuhen, aber immerhin schon wieder 10km. Eine gute Stunde, ohne Messung. Aber es geht um den Weg, das Ziel ist später im Jahr. Etwas aufzubauen, Kondition zu erwerben, wieder Disziplin zu entwickeln, Regelmäßigkeit zu erreichen, ein Ziel zu haben. Und natürlich um die Gesundheit, den Ausgleich und die Zeit für mich selbst, etwas Abstand von allem anderen zu gewinnen und das Ying und das Yang herzustellen.

    05.01.2020

  • Security Nightmares beim 36C3

    Security Nightmares – Frank und Ron beim 36C3 in Leipzig

    Wie jedes Jahr , jedenfalls seit 1999 während des 19C3 in Berlin, haben Frank und Ron auch dieses Jahr wieder Ihren Vortrag Security Nightmares beim 36C3 zu Sicherheitsbezogenen Vor- und Rückschauen gehalten.

    Frank und Ron zu Security Nightmares 0x14 auf dem #36c3
    Security Nightmares 0x14

    In einer Rückschau auf diesen ersten Vortrag “vor zwanzig Jahren” blicken die beiden auf die Vorhersagen von Damals und die Ereignisse der letzte Jahre zurück und fassen den ganzen Zeitraum der beiden Jahrzehnte damit zusammen, ob man Makros erlauben möchte. Makros waren schon 1999 (Melissa, I love you) wie heute (Emotet) einer der wichtigsten Angriffsvektoren für Malware. Der folgende Rückblick auf die letzten zehn Jahre alleine fällt etwas technischer aus. Trotzdem ruft der Teil einige schöne Ereignisse noch einmal ins Gedächtnis. Darunter z.B. den Aufschrei Deutschlands gegen Streetview, die Debatte um intelligente Stromzähler oder die elektronische Gesundheitskarte. Themen, die auch bis heute nicht vollkommen abgeschlossen sind.

    Ein “Internet-Normalitätsupdate” setzt jüngere und auch noch laufende Angriffe mit bekannten Zahlen in Perspektive.

    Darüber hinaus setzt der Vortrag sich mit Rückschauen in den Themenfeldern E-Gov, Datenreichtum und Crypto (SPD Mitgliederbefragung!), Geschäftsfelder, Crypto, Sport und Bemerkenswertem auseinander, bevor sich Frank und Ron den Stichworten für 2020 widmen. Wenig technisch wagen die beiden eine Prognose zu Berufsfeldern, die die Cyber-Situation hervorbringen könnte. Das reicht von der Cyber-Nachsorge für das Seelenheil Betroffener, über die Cyberfantasy-Geschichtenschamanen, die magiehafte Technologie nachvollziehbar erzählen können, bis zu Verzerrungs-Sucher und IPv6 Exorzisten

    Wie jedes Jahr ein interessanter und unterhaltsamer Vortrag. Auch wenn ich die Lesung nicht selbst hören habe können, lohnt sich die Aufzeichnung auf media.ccc.de nachzusehen.

  • New Year Ordner

    New World Ordner
    New World Ordner

    Neues Jahr, neue Ordner. Samstag genutzt um das Jahr vorzubereiten. Und einen schlechten Wortwitz zu machen.

    04.01.2020

  • (ISC)2 mailed me

    Dear Andreas,

    You have satisfied your Annual Maintenance Fee (AMF) and Continuing Professional Education (CPE) requirements for your CCSP.

    Your CCSP certification has been renewed to a new three-year cycle!

    Happy to be certified again!

  • Isarstausee Tölz

    Bad Tölz, Isarstausee Tölz, und Blomberg
    Bad Tölz und Blomberg

    Bad Tölz and Blomberg, as seen from the Isarstausee Tölz the afternoon of 03.01.2020. daily, X100F

  • Constellation’s 2019 Enterprise Awards

    Constellation Research published and awarded their Enterprise Awards to companies in 2019. R “Ray” Wang mentioned in a brief tweet:

    By The Constellation Research Team Awards Showcase What Was Top Of Mind In Enterprise Technology At The End of The Decade This year the Constellation Research team attended over 270 events, engaged

    Zoho: Winner of the 2019 ConstellationR Enterprise Software Award
    Zoho: Winner of the 2019 ConstellationR Enterprise Software Award

    The awards come in 9 distinct categories, that each comes with a elaborate description why the respective winner deserves the award.

    • BEST ENTERPRISE SOFTWARE STARTUP
    • BEST ENTERPRISE SOFTWARE VENDOR
    • BEST ENTERPRISE SERVICES VENDOR
    • BEST TECH ACQUISITION
    • BEST PARTNERSHIP
    • BEST CEO
    • BEST NEW ENTERPRISE CATEGORY
    • BEST NEW ENTERPRISE SOFTWARE MARKETING OF THE YEAR
    • BIGGEST TECH FLOP OF THE YEAR

    Congrats to all the winners and nominees!

    Source: Inside Constellation’s 2019 Enterprise Awards

  • Metzgerei

    Dekoration im Restaurant „Hamburgerei Zwei“
    Fleischwolf

    Dekoration in der Hamburgerei Zwei in München Haidhausen.

    02.01.2020

  • Hello twenties.

    Self-Reflection

    Social media is a mistake: Let me start the new decade in the Photo category with a video. In the past year I challenged myself and take a picture every day. The project was inspired by an old, fellow student. It sounded easy in first place, turned into a challenge soon and I use to self-reflect upon achievements and new experiences. Taking a photo of something new every day will make you start think about what you did. Sometimes, after a long day in office, it requires plenty of discipline to pay attention to your schedule and environment.

    Instagram

    To measure the result, when starting, I decided to go for Instagram. Get Likes has never been the goal. The level of interaction with the platform and exposure to the crowd I got there gave plenty of insight into how the crowd works. But the service never convinced for many reasons. As stated elsewhere, the experience just re-affirmed my feeling that social media is a mistake.

    The medium is driven by vein and pride, just as Scott Galloway put it, the seven deadly sins. These are not good guidance in first place. And they are by no means compatible with the goals of the project, even though it generated plenty of attention and positive feedback.

    Purpose

    And finally, the company owning Instagram, Facebook, requires to accept a license through their Terms of Service to grant to them a non-exclusive, transferable, sub-licensable, worldwide license to host, use, distribute, modify, run, copy, publicly perform or display, translate, and create derivative works of your content (consistent with your privacy and application settings) for purposes of making the Instagram Service available. While comprehensible the service needs authority over content to offer the service, these purposes are too broad for what I want to achieve. Instagram is driven by users registered and wouldn’t allow the audience I have in mind to consume the photos without registering. Just try scrolling through the page, it will require registration quickly.

    Resolution

    You can end this license anytime by deleting your content or account. Following the Terms of Service, this is the only way to not grant these. And while Instagram offers means to download all content, this still ain’t too easy: all the content over there has meta information, like comments and or locations, that are not straight forward to transfer. Which brings me to one of next years resolutions: not only continue my own project here – to take a photo every day as an act of self-reflection. But also to migrate existing content from Instagram over here.

    Hello twenties: Instagram Err(or?)
    Instagram Error

    And the same is true for other social media. For example, LinkedIn does also leverage such mechanisms. While the above is only an example, I try to put more attention to these models. And this page shall serve as a basis to replace others in the .

    Social media is a mistake. Take back the web and decentralise the next decade.