SlideShare a Scribd company logo
1 of 79
Download to read offline
“Fig Leaf Security”
@haroonmeer - 2010
Sunday 17 October 2010
Who am i ?
&
Why this talk?
Sunday 17 October 2010
A chance to meet
our heroes!
Sunday 17 October 2010
like Simple Nomad!
Sunday 17 October 2010
Sunday 17 October 2010
thegnome: we expected
Sunday 17 October 2010
thegnome: we got
Sunday 17 October 2010
Sunday 17 October 2010
Sunday 17 October 2010
this is my rant..
Sunday 17 October 2010
•The infosec industry
• ZA infosec research
Sunday 17 October 2010
InfoSec: We Suck
Sunday 17 October 2010
and it’s our fault
Sunday 17 October 2010
No ?
Sunday 17 October 2010
Bet on your
architecture?
Sunday 17 October 2010
Write code for a
living?
Sunday 17 October 2010
So we build secure networks,
but can’t protect our most prized user
and we write code,
that we know cant stand up to security
testing?
Sunday 17 October 2010
but nobody can
write secure code
Sunday 17 October 2010
Right?
Sunday 17 October 2010
Wrong!
Sunday 17 October 2010
<Brief Digression>
(sub-rant)
Sunday 17 October 2010
Do you know these
men?
Sunday 17 October 2010
we hero worship
the wrong guys..
Sunday 17 October 2010
</Brief Digression>
(sub-rant)
Sunday 17 October 2010
but nobody can
write secure code
Sunday 17 October 2010
ok. not
(secure and usable)
Sunday 17 October 2010
Really?
Sunday 17 October 2010
sendmail vs qmail ?
djbdns vs bind ?
Sunday 17 October 2010
So why did we
think otherwise?
Sunday 17 October 2010
Charlatans
Sunday 17 October 2010
fig leaves!
Sunday 17 October 2010
Application Testing..
Sunday 17 October 2010
“Halting Problem!”
Sunday 17 October 2010
“patching is a
hard” problem
Sunday 17 October 2010
“patching is a
hard” problem
Sunday 17 October 2010
Management don’t
buy in!
Sunday 17 October 2010
Management don’t
buy in!
Sunday 17 October 2010
AV’s and V’s
Sunday 17 October 2010
Why the double
standard?
Sunday 17 October 2010
We (seem to) only
fight the fights
we can (kinda) win
Sunday 17 October 2010
aka: “buying what
ppl are selling”
Sunday 17 October 2010
hiding behind our
fig leaves..
Sunday 17 October 2010
Sunday 17 October 2010
“You & Your
Research”
http://www.cs.virgina.edu/~robins/YouAndYourResearch.html
Sunday 17 October 2010
Sunday 17 October 2010
So why don’t we do
more?
Sunday 17 October 2010
it’s hard..
Sunday 17 October 2010
easy to start..
(ideas are cheap)
Sunday 17 October 2010
Sunday 17 October 2010
Sunday 17 October 2010
Research Fig
Leaves
Sunday 17 October 2010
Research Fig
Leaves
Sunday 17 October 2010
XXX is lame
Sunday 17 October 2010
XXX is lame
Sunday 17 October 2010
Academic
masturbation!
Sunday 17 October 2010
Academic
masturbation!
Sunday 17 October 2010
“doesn’t impress
me”
Stephan Fry:Advice to a younger self.
Sunday 17 October 2010
“doesn’t impress
me”
Stephan Fry:Advice to a younger self.
Sunday 17 October 2010
Distraction
Sunday 17 October 2010
http://www.acceleratingfuture.com/
michael/blog/images/Amusing-
Ourselves-To-Death.jpgText
Sunday 17 October 2010
http://www.acceleratingfuture.com/
michael/blog/images/Amusing-
Ourselves-To-Death.jpgText
Sunday 17 October 2010
http://www.acceleratingfuture.com/
michael/blog/images/Amusing-
Ourselves-To-Death.jpgText
Sunday 17 October 2010
Sunday 17 October 2010
Sunday 17 October 2010
Sunday 17 October 2010
“Amusing ourselves to Death”
Sunday 17 October 2010
“Amusing ourselves to Death”
Sunday 17 October 2010
Sunday 17 October 2010
Sunday 17 October 2010
Sunday 17 October 2010
No Interesting
Problems..
Sunday 17 October 2010
No Interesting
Problems..
Sunday 17 October 2010
“Work on stuff that
matters”
“New Threats to
Privacy”
Sunday 17 October 2010
There are important
battles to fight..
Sunday 17 October 2010
“Don’t just be the
guy who tweeted
about it”
Sunday 17 October 2010
Don’t just fight
the fights we can
(kinda)win
Sunday 17 October 2010
Fight the fights
that need fighting
Sunday 17 October 2010
We need to produce
more than we
consume..
Sunday 17 October 2010
We need you
haroon@thinkst.com
@haroonmeer
Sunday 17 October 2010

More Related Content

Viewers also liked

Cv paola aliaga 21
Cv paola aliaga 21Cv paola aliaga 21
Cv paola aliaga 21Paola Aliaga
 
2010 za con_georg-christian_pranschke
2010 za con_georg-christian_pranschke2010 za con_georg-christian_pranschke
2010 za con_georg-christian_pranschkeJohan Klerk
 
Arts railway station tv exp
Arts railway station tv expArts railway station tv exp
Arts railway station tv expMezbah Uddin
 
2010 za con_ivan_burke
2010 za con_ivan_burke2010 za con_ivan_burke
2010 za con_ivan_burkeJohan Klerk
 
2010 za con_roelof_temmingh
2010 za con_roelof_temmingh2010 za con_roelof_temmingh
2010 za con_roelof_temminghJohan Klerk
 
2010 za con_barry_irwin
2010 za con_barry_irwin2010 za con_barry_irwin
2010 za con_barry_irwinJohan Klerk
 
2010 za con_stephen_kreusch
2010 za con_stephen_kreusch2010 za con_stephen_kreusch
2010 za con_stephen_kreuschJohan Klerk
 
Training management
Training managementTraining management
Training managementMezbah Uddin
 

Viewers also liked (8)

Cv paola aliaga 21
Cv paola aliaga 21Cv paola aliaga 21
Cv paola aliaga 21
 
2010 za con_georg-christian_pranschke
2010 za con_georg-christian_pranschke2010 za con_georg-christian_pranschke
2010 za con_georg-christian_pranschke
 
Arts railway station tv exp
Arts railway station tv expArts railway station tv exp
Arts railway station tv exp
 
2010 za con_ivan_burke
2010 za con_ivan_burke2010 za con_ivan_burke
2010 za con_ivan_burke
 
2010 za con_roelof_temmingh
2010 za con_roelof_temmingh2010 za con_roelof_temmingh
2010 za con_roelof_temmingh
 
2010 za con_barry_irwin
2010 za con_barry_irwin2010 za con_barry_irwin
2010 za con_barry_irwin
 
2010 za con_stephen_kreusch
2010 za con_stephen_kreusch2010 za con_stephen_kreusch
2010 za con_stephen_kreusch
 
Training management
Training managementTraining management
Training management
 

Similar to 2010 za con_haroon_meer

Metaphwoar promotion
Metaphwoar promotionMetaphwoar promotion
Metaphwoar promotionAndy Whitlock
 
Creative Commons: What Every Educator Needs to Know
Creative Commons: What Every Educator Needs to KnowCreative Commons: What Every Educator Needs to Know
Creative Commons: What Every Educator Needs to KnowRodd Lucier
 
Scareware Traversing the World via Ireland
Scareware Traversing the World via IrelandScareware Traversing the World via Ireland
Scareware Traversing the World via IrelandMark Hillick
 
Melvin Vivas' talk at Phil. Tech Startups Meetup
Melvin Vivas' talk at Phil. Tech Startups MeetupMelvin Vivas' talk at Phil. Tech Startups Meetup
Melvin Vivas' talk at Phil. Tech Startups MeetupMelvin Dave Vivas
 
Learning to Love: Crash Course in Emotional Design - Paris Web 2013
Learning to Love: Crash Course in Emotional Design - Paris Web 2013Learning to Love: Crash Course in Emotional Design - Paris Web 2013
Learning to Love: Crash Course in Emotional Design - Paris Web 2013Mariusz Cieśla
 
The Nametag Guy's Presentation from Blog World 2010
The Nametag Guy's Presentation from Blog World 2010The Nametag Guy's Presentation from Blog World 2010
The Nametag Guy's Presentation from Blog World 2010Nametag Scott Ginsberg
 
Snowflake in music
Snowflake in musicSnowflake in music
Snowflake in musicErik Duval
 
Fachhochschule Potsdam, November 2010
Fachhochschule Potsdam, November 2010Fachhochschule Potsdam, November 2010
Fachhochschule Potsdam, November 2010Edial Dekker
 
Human APIs - expanding the mobile web or are robots coming to JavaScript?
Human APIs - expanding the mobile web or are robots coming to JavaScript? Human APIs - expanding the mobile web or are robots coming to JavaScript?
Human APIs - expanding the mobile web or are robots coming to JavaScript? Nikolai Onken
 
IE9 для разработчиков
IE9 для разработчиковIE9 для разработчиков
IE9 для разработчиковYuriy Artyukh
 
Ram social media seminar
Ram social media seminarRam social media seminar
Ram social media seminarJess Sloss
 
Personal branding - The power of you
Personal branding - The power of youPersonal branding - The power of you
Personal branding - The power of youibrand mk
 
Social Media for Branding
Social Media for BrandingSocial Media for Branding
Social Media for BrandingHeidi Miller
 
Deciphering the Interoperable Web
Deciphering the Interoperable WebDeciphering the Interoperable Web
Deciphering the Interoperable WebMichael Bleigh
 
Sf telephony meetup-asteriskscf-1210
Sf telephony meetup-asteriskscf-1210Sf telephony meetup-asteriskscf-1210
Sf telephony meetup-asteriskscf-1210Jason Goecke
 
Social Media and Scholarly Communication
Social Media and Scholarly CommunicationSocial Media and Scholarly Communication
Social Media and Scholarly CommunicationCrossref
 
Social media kana summit ss
Social media kana summit ssSocial media kana summit ss
Social media kana summit ssAnne Wood
 

Similar to 2010 za con_haroon_meer (20)

Metaphwoar promotion
Metaphwoar promotionMetaphwoar promotion
Metaphwoar promotion
 
Creative Commons: What Every Educator Needs to Know
Creative Commons: What Every Educator Needs to KnowCreative Commons: What Every Educator Needs to Know
Creative Commons: What Every Educator Needs to Know
 
Scareware Traversing the World via Ireland
Scareware Traversing the World via IrelandScareware Traversing the World via Ireland
Scareware Traversing the World via Ireland
 
How to be a better designer
How to be a better designerHow to be a better designer
How to be a better designer
 
Metaphwoar! 2011
Metaphwoar! 2011 Metaphwoar! 2011
Metaphwoar! 2011
 
Melvin Vivas' talk at Phil. Tech Startups Meetup
Melvin Vivas' talk at Phil. Tech Startups MeetupMelvin Vivas' talk at Phil. Tech Startups Meetup
Melvin Vivas' talk at Phil. Tech Startups Meetup
 
Learning to Love: Crash Course in Emotional Design - Paris Web 2013
Learning to Love: Crash Course in Emotional Design - Paris Web 2013Learning to Love: Crash Course in Emotional Design - Paris Web 2013
Learning to Love: Crash Course in Emotional Design - Paris Web 2013
 
The Nametag Guy's Presentation from Blog World 2010
The Nametag Guy's Presentation from Blog World 2010The Nametag Guy's Presentation from Blog World 2010
The Nametag Guy's Presentation from Blog World 2010
 
Snowflake in music
Snowflake in musicSnowflake in music
Snowflake in music
 
Fachhochschule Potsdam, November 2010
Fachhochschule Potsdam, November 2010Fachhochschule Potsdam, November 2010
Fachhochschule Potsdam, November 2010
 
Human APIs - expanding the mobile web or are robots coming to JavaScript?
Human APIs - expanding the mobile web or are robots coming to JavaScript? Human APIs - expanding the mobile web or are robots coming to JavaScript?
Human APIs - expanding the mobile web or are robots coming to JavaScript?
 
IE9 для разработчиков
IE9 для разработчиковIE9 для разработчиков
IE9 для разработчиков
 
Ram social media seminar
Ram social media seminarRam social media seminar
Ram social media seminar
 
Personal branding - The power of you
Personal branding - The power of youPersonal branding - The power of you
Personal branding - The power of you
 
Social Media for Branding
Social Media for BrandingSocial Media for Branding
Social Media for Branding
 
Deciphering the Interoperable Web
Deciphering the Interoperable WebDeciphering the Interoperable Web
Deciphering the Interoperable Web
 
Sf telephony meetup-asteriskscf-1210
Sf telephony meetup-asteriskscf-1210Sf telephony meetup-asteriskscf-1210
Sf telephony meetup-asteriskscf-1210
 
SMO and SEO for SEM
SMO and SEO for SEMSMO and SEO for SEM
SMO and SEO for SEM
 
Social Media and Scholarly Communication
Social Media and Scholarly CommunicationSocial Media and Scholarly Communication
Social Media and Scholarly Communication
 
Social media kana summit ss
Social media kana summit ssSocial media kana summit ss
Social media kana summit ss
 

2010 za con_haroon_meer