The idea of profiles is to stop this behaviour and other behaviours through isolation. Along with other practices makes up a privacy-in-depth (layered) approach. It doesn't solve everything.
For example if you are in the same house sharing an internet connection, it is possible to say "at least one outstation in this house (IP) are interested in 'x' and therefore I should target everyone in that house because people who live together are interested in similar things". Even if you isolate, you could still teach a data hoarding company like meta you like something simply by them by necessity needing your IP to communicate.
Some people try to say 'I've got a VPS with a VPN to communicate all traffic through' but that doesn't add any privacy, your exposed VPS with its IP is an IP only for you and still all collected information about you would be able to be thumbprinted to that IP across many services (eg instagram whatsapp and Facebook). A public VPN provider in this case adds a layer of obfuscation since you can change your IP rapidly and it's an IP that's shared with other unrelated users. Which is exactly why many services like reddit are banning access from them under the guise of "oh training data leaks from VPN, and we want to sell it" bs.
Anyway it's a tough world out there to be private. I'm at an age where after 10 years without Facebook and I never had instagram, everyone knows I'm contactable via sms. It's not secure, it's barely private, but I don't really "chat" except at the pub. So that's where they ask me to visit. Lol.
So one logical reason they even bother calling placements is because if both yuki and Max took replacements and upgrades that both would drop them to the back, who would really be at the back?
On a different point, a bad PU maker can't even be replaced until 2026. They're locked into their makers by the FIA until then. So they can't really change off redbull to say Ferrari until after next season.
Imo let him start from the back, no big deal. We'll get a good comparison of how well yuki in the vcarb can get through the field, if at all, compared to perez who will probably put himself out in q1 and attempt yet another recovery drive.
I keep asking the pets for their owners secrets but they don't tell me? I've tried pats, compliments and treats? Am I doing it wrong? How are you getting them to tell you about their owners?
I checked too, it's not a valid public DNS record, so then the question is, does Oktas internal DNS resolve this. Even if it does, how does okta even sit in this? Are they the identity provider for Twitter? Surely even if it's identity, it's got nothing to do with content moderation? So many questions.
A software shouldn't use passwords for tls, just like before you use submit your bank password your network connection to the site has been validated and encrypted by the public key your client is using to talk to the bank server, and the bank private key to decrypt it.
The rest of the hygiene is still up for grabs for sure, IT security is built on layers. Even if one is broken it shouldn't lead to a failure overall. If it does, go add more layers.
To answer about something like a WiFi pineapple: those man in the middle attacks are thwarted by TLS. The moment an invalid certificate is offered, since the man in the middle should and can not know the private key (something that isn't used as whimsically as a password, and is validated by a trusted root authority).
If an attacker has a private key, your systems already have failed. You should immediately revoke it. You publish your revokation. Invalidating it. But even that would be egregious. You've already let someone into the vault, they already have the crown jewels. The POS system doesn't even need to be accessed.
So no matter what, the WiFi is irrelevant in a setup.
Being suspicious because of it though, I could understand. It's not a smoking gun, but you'd maybe look deeper out if suspicion.
Note I'm not security operations, I'm solutions and systems administrations. A Sec Ops would probably agree more with you than I do.
I consider things from a Swiss cheese model, and rely on 4+ layers of protection against most understood threat vendors. A failure of any one is minor non-compliance in my mind, a deep priority 3. Into the queue, but there's no rush. And given a public WiFi is basically the same as a compromised WiFi, or a 5g carrier network, a POS solution should be built with strengths to handle that by default. And then security layered on top (mfa, conditional access policies, PKI/TLS, Mdm, endpoint health policies, TPM and validation++++)
Transport layer security should mean this shouldn't matter. A good POS shouldn't rely on a secure network, the security should already be built in cyptographically at the network session layer. Anything else would still have the same risk vector, just a lower chance of happening.
In fact many POS systems happily just take a 4g/5g sim card because it doesn't matter what network they're on.
I knew a Datacenter that had hundreds of ps3s for rendering fluid simulation and other such things that at the time were absolutely cutting edge tech. I believe F1 and some early 3d pixar stuff was rendered on those farms. But like all things, technology marched on. fpgpas and cuda have taken that space.
Cell definitely was heavily used by specialist/nichr industry though.
I wonder if I can find you some link to explain it better than the rumours I heard from staff that used to work in those datacentres.
Hate to break it to you, but most IT Managers don't care about crowdstrike: they're forced to choose some kind of EDR to complete audits. But yes things like crowdstrike, huntress, sentinelone, even Microsoft Defender all run on Linux too.
Well, what I really wonder is if because the kernel can include it, if this will make an install more agnostic. Like literally pull my disk out of a gaming nvidia machine, and plug it into my AMD machine with full working graphics. If so this is good for me since I use a usb-c nvme ssd for my os to boot from on my work and home machines and laptops for when I'm not worrying. All three currently have nvidia cards and this works ok. I have some games to chill and take a break. My works core OS for work MDM etc unmodified. I like it that way.
I realise this is not a terribly useful case, but I could see it for graphically optimised VM migrations too not that I have many. Less work in transitioning gives greater flexibility.
Fundamentally what the alternative is, is to propose that you remain the sole owner of your privacy at the cost of sharing with advertisers that you have, say, 6 generic topics you're interested in. Like motorsports. It, with the millions or billions of others looking. The ad tracking currently knows everything about everyone and then works out if motorsports is an effective ad for you individually based on their profile of you.
For me, I'm fine with the current system. For my family though, they're just using phones and tablets with their default browser, blissfully unaware that there's no privacy. Then their data gets leaked out.
I know it's an extreme kind of case, but domestic abuse victims are always my thought when you think of a counter to "well I've got nothing to hide". Those people if they're unsure about privacy, will err on the side of caution. They stay trapped.
In conclusion, I'd rather move the needle forward for those who are at risk. Those who installing anti-tracking plugins would put at further risk. Where installing odd browsers make them a target. We can find perfection later. Make the Web safer now.
Plenty of people could justifiably take the opposite stance. But even just for my grandparents, they shouldn't be tracked the way they are. They're prime candidates for scams, and giving away privacy is one data leak away from a successful scam.
Ah you're thinking I'm reading your other comments to other people.
BTW HIPAA is for providers for their patients information handling. Once it's in the person's hands, it's no longer under HIPPA and it no longer applies. If you decide to put your private medical information on a commercial advertisement board on a highway, and it's not breaking laws to do with acceptable adcertisement (eg gore or smut) you'll be able to do that to.
Basically theres no expectation for a individual person to adhere to HIPPA for their own personal information storage and it doesn't apply.
My assumption with your lawyer comment, is this was a insurance or otherwise medical malpractice lawyer who might collect this information for their client cases, since without having client/patient requirements, HIPPA is irrelevant.
The moment a lawyer saves their medical records in a way that unintentionally and without their consent uploads them to OneDrive, they have a pretty solid case to charge Microsoft for a HIPAA violation
You should be, if you're in a work computer with privileged documents, controlling it with an appropriate level of care. No matter Linux or Windows. If you're using home and defaults, you've failed no matter what.
However I've got no sympathy for even a small business to use IT without someone configuring their system in a way that controls this. A lawyer of all people know that knowledge is worth something.
This will be able to do cross site (apps) information collection within other sites (apps) in this profile. The way this works is one of many, and complicated so: https://blog.mozilla.org/en/products/firefox/cross-site-tracking-lets-unpack-that/
The idea of profiles is to stop this behaviour and other behaviours through isolation. Along with other practices makes up a privacy-in-depth (layered) approach. It doesn't solve everything.
For example if you are in the same house sharing an internet connection, it is possible to say "at least one outstation in this house (IP) are interested in 'x' and therefore I should target everyone in that house because people who live together are interested in similar things". Even if you isolate, you could still teach a data hoarding company like meta you like something simply by them by necessity needing your IP to communicate.
Some people try to say 'I've got a VPS with a VPN to communicate all traffic through' but that doesn't add any privacy, your exposed VPS with its IP is an IP only for you and still all collected information about you would be able to be thumbprinted to that IP across many services (eg instagram whatsapp and Facebook). A public VPN provider in this case adds a layer of obfuscation since you can change your IP rapidly and it's an IP that's shared with other unrelated users. Which is exactly why many services like reddit are banning access from them under the guise of "oh training data leaks from VPN, and we want to sell it" bs.
Anyway it's a tough world out there to be private. I'm at an age where after 10 years without Facebook and I never had instagram, everyone knows I'm contactable via sms. It's not secure, it's barely private, but I don't really "chat" except at the pub. So that's where they ask me to visit. Lol.