my 2025 infosec prediction is that asset lists will still be as outdated and incomplete and nonexistent as we saw in 2005.
here are some more... 1/??????
my 2025 infosec prediction is that asset lists will still be as outdated and incomplete and nonexistent as we saw in 2005.
here are some more... 1/??????
3 billion devices will, regrettably, continue to run Java
linux kernel people will yell about rust being a cult and then write code containing 5827417 instances of undefined behaviour while remaining smug about their incredible coding skills and then call it a witch hunt against them when everyone gets fucking owned as a result
Quantum computers will be able to factor a bigger number but it will still be small enough that you could validate the result on a $5 calculator. The tech press will claim it breaks AES.
IBM will announce a blockchain security product
Microsoft will get owned using creds stolen from Recall on one of their staff's systems
(this one is less of a prediction and more of a "please I need this to happen because it would be a gem of pure amusement in an otherwise cold and indifferent world")
someone will try to make a thing that competes with Signal and it will go very badly and soatok will begrudgingly write a blog post about it
UPDATE: just 15 days into 2025 and it came true: http://soatok.blog/2025/01/14/dont-use-session-signal-fork/
also someone will overhype the absolute shit out of a bug that turns out to be a complete nothingburger. I'm gonna guess... something related to USB-C.
on the plus side there will be some funny vulnerability names
Bloomberg will continue to have the same highly accurate and well informed technical reporting as they have displayed in prior years
ransomware groups will continue to absolutely shithouse major companies using really low-hanging techniques and legislators will blather on about doing something about it for another 12 months unless maybe someone says china did it and then racism might get them off their ass and we'll all be deeply disillusioned about it
and also source code access will continue to be denied to assessors despite source assisted tests being vastly greater value for all involved
@gorplop baseball cap saying "women want me, 3 billion java devices fear me"
076萌SNS is a social network, courtesy of 076. It runs on GNU social, version 2.0.2-beta0, available under the GNU Affero General Public License.
All 076萌SNS content and data are available under the Creative Commons Attribution 3.0 license.