home.social

#humanfactor — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #humanfactor, aggregated by home.social.

fetched live
  1. All the other kinds of Emacs are inhuman.
    Or unhuman.
    Or both.
    This kind of Emacs, though, is a proud hominid.

    Ha ha only serious.

    #Emacs
    #HumanFactor
    #HumanNature
    #HumanResources

    @screwlisp @glitzersachen

  2. All the other kinds of Emacs are inhuman.
    Or unhuman.
    Or both.
    This kind of Emacs, though, is a proud hominid.

    Ha ha only serious.

    #Emacs
    #HumanFactor
    #HumanNature
    #HumanResources

    @screwlisp @glitzersachen

  3. Shauna Gordon-McKeon (@shauna) joined us at #FOSSBack 2025 with an interesting session under the Human Factor Track on "Relationship Problems in Open Source" ands shared how common open source problems can be viewed through a relational lens.

    Watch the recording: youtube.com/watch?v=IGRPusk1cgc

    #OpenSource #HumanFactor #CommunityBuilding

  4. Shauna Gordon-McKeon (@shauna) joined us at #FOSSBack 2025 with an interesting session under the Human Factor Track on "Relationship Problems in Open Source" ands shared how common open source problems can be viewed through a relational lens.

    Watch the recording: youtube.com/watch?v=IGRPusk1cgc

    #OpenSource #HumanFactor #CommunityBuilding

  5. Exploring roadmap risks: My Jupyter Notebook is a small experiment to see where projects stumble and why some plans won’t finish. It’s all about sparking new ideas—because real progress comes from combining data with human experience.
    #Roadmap #RiskManagement #Experiment #HumanFactor #Juypter #Phyton

    eifel42.dev/post/risk-resilien

  6. The most sophisticated cyber attacks often rely on the simplest human behaviors. 👀 The FBI’s latest flash warning regarding North Korean state-sponsored actors (Kimsuky) using malicious QR codes is a fascinating case study in behavioral engineering. A QR code is essentially a digital question mark in the physical world. It begs to be resolved. We have spent the last few years training ourselves to scan them automatically; for menus, for parking, for connectivity. Attackers are weaponizing this muscle memory. They aren't just exploiting code; they are exploiting our inherent need to know what is on the other side of that scan. In high-stakes environments like academia and think tanks, unchecked curiosity is now a critical vulnerability.

    TL;DR
    🧠 FBI Alert: North Korean group Kimsuky (APT43) is active.
    🎯 Targets: NGOs, academia, and foreign policy experts.
    ⚡ Vector: Malicious QR codes bridging physical and digital gaps.
    🛡️ Defense: Treat an unknown QR code like a discarded USB drive. Do not scan.

    forbes.com/sites/daveywinder/2

    #CyberSecurity #HumanFactor #Infosec #HigherEd #security #privacy #cloud

  7. The most sophisticated cyber attacks often rely on the simplest human behaviors. 👀 The FBI’s latest flash warning regarding North Korean state-sponsored actors (Kimsuky) using malicious QR codes is a fascinating case study in behavioral engineering. A QR code is essentially a digital question mark in the physical world. It begs to be resolved. We have spent the last few years training ourselves to scan them automatically; for menus, for parking, for connectivity. Attackers are weaponizing this muscle memory. They aren't just exploiting code; they are exploiting our inherent need to know what is on the other side of that scan. In high-stakes environments like academia and think tanks, unchecked curiosity is now a critical vulnerability.

    TL;DR
    🧠 FBI Alert: North Korean group Kimsuky (APT43) is active.
    🎯 Targets: NGOs, academia, and foreign policy experts.
    ⚡ Vector: Malicious QR codes bridging physical and digital gaps.
    🛡️ Defense: Treat an unknown QR code like a discarded USB drive. Do not scan.

    forbes.com/sites/daveywinder/2

    #CyberSecurity #HumanFactor #Infosec #HigherEd #security #privacy #cloud

  8. The #USB Type A connector is undoubtedly the most ingenious engineering design, if the success of this design is to be assessed by how much #frustration one electrical engineer can mete out to billions of humans. But if we are to employ the correct measure—#usability—this design must necessarily rank at the bottom.

    As #engineers, we must all exercise a bit of #humility and listen to the #psychologists who are trained in #HumanFactor.

  9. The #USB Type A connector is undoubtedly the most ingenious engineering design, if the success of this design is to be assessed by how much #frustration one electrical engineer can mete out to billions of humans. But if we are to employ the correct measure—#usability—this design must necessarily rank at the bottom.

    As #engineers, we must all exercise a bit of #humility and listen to the #psychologists who are trained in #HumanFactor.

  10. The notorious Lazarus Group, along with other North Korean hackers, has evolved their strategy beyond conventional exchange attacks on crypto organizations. Instead of breaking down digital walls, they’re now walking through the front door with fabricated credentials and compelling cover stories.

    #SecurityLand #ThreatHorizon #Cybersecurity #Crypto #Scam #HumanFactor #NorthKorea #CryptoExchange

    Read More: security.land/north-korean-hac

  11. Burnout isn’t just a personal issue—it’s a major security risk. 😓 When teams are overwhelmed, routine patches, training, and access controls get missed, leaving gaps attackers exploit. Old malware thrives where defenses are tired. 🚨 The solution? Focus on consistent basics: patch, configure, test, repeat. 🔄 Real resilience starts with discipline, not just new tools. #CyberSecurity #Burnout #HumanFactor #InfoSec Read more: techradar.com/pro/why-burnout- newz

  12. Burnout isn’t just a personal issue—it’s a major security risk. 😓 When teams are overwhelmed, routine patches, training, and access controls get missed, leaving gaps attackers exploit. Old malware thrives where defenses are tired. 🚨 The solution? Focus on consistent basics: patch, configure, test, repeat. 🔄 Real resilience starts with discipline, not just new tools. #CyberSecurity #Burnout #HumanFactor #InfoSec Read more: techradar.com/pro/why-burnout- newz

  13. @campuscodi The "#FileFix" technique has an nonsensical name, but the design decision by #Microsoft which makes it possible is absolutely ridiculous. It at least makes sense to let the user run an executable from in the "Run" dialog; letting the user run an executable from the Location bar makes no sense. What conceivable use case did some engineer have in mind? Or did they just re-use an API without thinking?

    They implemented a security defect by design, by violating the Principle of Least Astonishment. Microsoft never ceases to amaze.

    en.wikipedia.org/wiki/Principl

    #humanFactor #POLA

  14. @campuscodi The "#FileFix" technique has an nonsensical name, but the design decision by #Microsoft which makes it possible is absolutely ridiculous. It at least makes sense to let the user run an executable from in the "Run" dialog; letting the user run an executable from the Location bar makes no sense. What conceivable use case did some engineer have in mind? Or did they just re-use an API without thinking?

    They implemented a security defect by design, by violating the Principle of Least Astonishment. Microsoft never ceases to amaze.

    en.wikipedia.org/wiki/Principl

    #humanFactor #POLA

  15. Your security is only as strong as your people's will to keep it.

    Educate.
    Endorse.
    Or eliminate.

    Stay silent. Stay secure.

    #CyberSecurity #HumanFactor #SecurityAwareness #InsiderThreat #RiskManagement

  16. Your security is only as strong as your people's will to keep it.

    Educate.
    Endorse.
    Or eliminate.

    Stay silent. Stay secure.

    #CyberSecurity #HumanFactor #SecurityAwareness #InsiderThreat #RiskManagement

  17. As we navigate the ever-evolving landscape of cybersecurity, several key trends are shaping how organizations protect their digital assets. Recent analyses indicate a sharp rise in the adoption of AI-driven security solutions, with companies leveraging machine learning to detect and respond to threats faster than ever before. However, the growing sophistication of cyber attacks means that these technologies must be continually updated and monitored.

    Key takeaways include:

    1. AI and Automation: The integration of AI is not just about defense; its also about predicting potential breaches before they occur. Organizations must invest in training their teams to work alongside these technologies effectively.

    2. Human Element: Despite advancements, human error remains a leading cause of breaches. Fostering a culture of cybersecurity awareness through regular training is crucial.

    3. Supply Chain Vulnerabilities: As businesses become more interconnected, they must assess not only their security but also that of their vendors. Conducting thorough security audits of third-party partners is essential to avoid cascading failures.

    4. Regulatory Compliance: With increasing scrutiny from regulators, companies must stay ahead of compliance requirements, particularly with data protection legislation like GDPR and CCPA.

    To stay ahead, organizations should prioritize a holistic security strategy that includes continuous education, technology integration, and vendor risk management. Are you prepared to adapt to these changes, or do you see potential gaps in your security posture? Lets discuss how we can bolster our defenses in an increasingly complex cyber landscape.

    #CybersecurityTrends #AIinSecurity #HumanFactor #SupplyChainRisk #ComplianceMatters
    Read more: steelefortress.com #OnlineSafety

  18. Over 200 #SecurityAwareness experts from across Europe attended the inaugural #ENISA Cybersecurity Awareness Raising Conference last week in Ljubljana, hosted by the Slovenian National CERT.

    Our Communications Manager Rosanna Norman @RosannaCrama attended the conference and shared her notes and key takeaways: connect.geant.org/2024/12/03/b

    #CyberSecurity #HumanFactor #CyberSecurityAwareness

  19. Over 200 #SecurityAwareness experts from across Europe attended the inaugural #ENISA Cybersecurity Awareness Raising Conference last week in Ljubljana, hosted by the Slovenian National CERT.

    Our Communications Manager Rosanna Norman @RosannaCrama attended the conference and shared her notes and key takeaways: connect.geant.org/2024/12/03/b

    #CyberSecurity #HumanFactor #CyberSecurityAwareness

  20. We often hear that the #HumanFactor is the weakest link in the #security chain, but as cyber attacks continue to evolve, so too do our protective measures and #SecurityAwareness

    According to Enrico Venuto, CISO at Politecnico di Torino, humans are beginning to serve as the most acute and sensitive sentinels against cyber attacks: connect.geant.org/2024/10/28/t

    "The human brain is the most resilient link in the chain and the first line of defence in #cybersecurity"

    #CyberSecMonth #CSM24 #ECSM #PoliTo

  21. We often hear that the #HumanFactor is the weakest link in the #security chain, but as cyber attacks continue to evolve, so too do our protective measures and #SecurityAwareness

    According to Enrico Venuto, CISO at Politecnico di Torino, humans are beginning to serve as the most acute and sensitive sentinels against cyber attacks: connect.geant.org/2024/10/28/t

    "The human brain is the most resilient link in the chain and the first line of defence in #cybersecurity"

    #CyberSecMonth #CSM24 #ECSM #PoliTo

  22. @hardingar That might actually be a good idea for a #SecurityAwareness RPG. We are already imagining MFA based on something you are (not anymore)... We will suggest it to the #HumanFactor team for next year's campaign 😉

  23. @hardingar That might actually be a good idea for a #SecurityAwareness RPG. We are already imagining MFA based on something you are (not anymore)... We will suggest it to the #HumanFactor team for next year's campaign 😉

  24. The closing plenary of the GÉANT #SecurityDays welcomes on stage Daniel Stach, broadcaster & journalist CzechTV, with his presentation: "Lies are (not) everywhere!".

    Alf Moens, GÉANT: "What a brilliant way to close GÉANT's first #Cybersecurity conference. Collaboration at all levels & across national borders, the importance of sharing experience & expertise and the relevance of the #humanfactor are undoubtedly some of the most discussed and key takeaways of #Security Days 2024."

  25. The closing plenary of the GÉANT #SecurityDays welcomes on stage Daniel Stach, broadcaster & journalist CzechTV, with his presentation: "Lies are (not) everywhere!".

    Alf Moens, GÉANT: "What a brilliant way to close GÉANT's first #Cybersecurity conference. Collaboration at all levels & across national borders, the importance of sharing experience & expertise and the relevance of the #humanfactor are undoubtedly some of the most discussed and key takeaways of #Security Days 2024."

  26. National Research and Education Networks (#NRENs) agree that the ‘human factor’ is a key element of #CyberSecurity, according to a survey conducted within the GÉANT GN5-1 project.

    Read about the survey's main findings and next steps: connect.geant.org/2024/01/19/n

    The report with all results of the survey is now also available for download: resources.geant.org/wp-content

    #SecurityAwareness #HumanFactor #Security #Research #Education

  27. National Research and Education Networks (#NRENs) agree that the ‘human factor’ is a key element of #CyberSecurity, according to a survey conducted within the GÉANT GN5-1 project.

    Read about the survey's main findings and next steps: connect.geant.org/2024/01/19/n

    The report with all results of the survey is now also available for download: resources.geant.org/wp-content

    #SecurityAwareness #HumanFactor #Security #Research #Education

  28. Nederlandse leger treft Chinese spionnen aan op zijn computers – hoe zijn die daar gekomen? - @volkskrant
    volkskrant.nl/binnenland/neder

    'Alle gebruikers van het Fortinet-VPN kregen het advies om als de wiedeweerga te patchen, een softwarepleister van de fabrikant te plakken, die de boel weer afsluit.
    Dat laatste heeft defensie verzuimd.'

    Die 'humans' ook.. Altijd hetzelfde... 😉

    #Hacken #Virussen #HumanFactor

  29. Nederlandse leger treft Chinese spionnen aan op zijn computers – hoe zijn die daar gekomen? - @volkskrant
    volkskrant.nl/binnenland/neder

    'Alle gebruikers van het Fortinet-VPN kregen het advies om als de wiedeweerga te patchen, een softwarepleister van de fabrikant te plakken, die de boel weer afsluit.
    Dat laatste heeft defensie verzuimd.'

    Die 'humans' ook.. Altijd hetzelfde... 😉

    #Hacken #Virussen #HumanFactor