Welcome to DU!
The truly grassroots left-of-center political community where regular people, not algorithms, drive the discussions and set the standards.
Join the community:
Create a free account
Support DU (and get rid of ads!):
Become a Star Member
Latest Breaking News
Editorials & Other Articles
General Discussion
The DU Lounge
All Forums
Issue Forums
Culture Forums
Alliance Forums
Region Forums
Support Forums
Help & Search
General Discussion
Related: Editorials & Other Articles, Issue Forums, Alliance Forums, Region ForumsDigital Threat Modeling Under Authoritarianism -- Bruce Schneier - Lawfare
https://www.lawfaremedia.org/article/digital-threat-modeling-under-authoritarianismAuthoritarian threats, coupled with ongoing corporate surveillance, demand that we rethink how we use digital technologies.
Bruce Schneier is an internationally renowned security technologist, called a security guru by the Economist. He is the New York Times best-selling author of 14 books including Click Here to Kill Everybodyas well as hundreds of articles, essays and academic papers.
A good analysis of our current situation and some recommendations on how we, as individuals, can try to preserve our privacy and security.
Todays world requires us to make complex and nuanced decisions about our digital security. Evaluating when to use a secure messaging app like Signal or WhatsApp, which passwords to store on your smartphone, or what to share on social media requires us to assess risks and make judgments accordingly. Arriving at any conclusion is an exercise in threat modeling.
In security, threat modeling is the process of determining what security measures make sense in your particular situation. Its a way to think about potential risks, possible defenses, and the costs of both. Its how experts avoid being distracted by irrelevant risks or overburdened by undue costs.
We threat model all the time. We might decide to walk down one street instead of another, or use an internet VPN when browsing dubious sites. Perhaps we understand the risks in detail, but more likely we are relying on intuition or some trusted authority. But in the U.S. and elsewhere, the average persons threat model is changingspecifically involving how we protect our personal information. Previously, most concern centered on corporate surveillance; companies like Google and Facebook engaging in digital surveillance to maximize their profit. Increasingly, however, many people are worried about government surveillance and how the government could weaponize personal data.
Since the beginning of this year, the Trump administrations actions in this area have raised alarm bells: The Department of Government Efficiency (DOGE) took data from federal agencies, Palantir combined disparate streams of government data into a single system, and Immigration and Customs Enforcement (ICE) used social media posts as a reason to deny someone entry into the U.S.
These threats, and others posed by a techno-authoritarian regime, are vastly different from those presented by a corporate monopolistic regimeand different yet again in a society where both are working together. Contending with these new threats requires a different approach to personal digital devices, cloud services, social media, and data in general.
. . .
In security, threat modeling is the process of determining what security measures make sense in your particular situation. Its a way to think about potential risks, possible defenses, and the costs of both. Its how experts avoid being distracted by irrelevant risks or overburdened by undue costs.
We threat model all the time. We might decide to walk down one street instead of another, or use an internet VPN when browsing dubious sites. Perhaps we understand the risks in detail, but more likely we are relying on intuition or some trusted authority. But in the U.S. and elsewhere, the average persons threat model is changingspecifically involving how we protect our personal information. Previously, most concern centered on corporate surveillance; companies like Google and Facebook engaging in digital surveillance to maximize their profit. Increasingly, however, many people are worried about government surveillance and how the government could weaponize personal data.
Since the beginning of this year, the Trump administrations actions in this area have raised alarm bells: The Department of Government Efficiency (DOGE) took data from federal agencies, Palantir combined disparate streams of government data into a single system, and Immigration and Customs Enforcement (ICE) used social media posts as a reason to deny someone entry into the U.S.
These threats, and others posed by a techno-authoritarian regime, are vastly different from those presented by a corporate monopolistic regimeand different yet again in a society where both are working together. Contending with these new threats requires a different approach to personal digital devices, cloud services, social media, and data in general.
. . .
2 replies
= new reply since forum marked as read
Highlight:
NoneDon't highlight anything
5 newestHighlight 5 most recent replies

Digital Threat Modeling Under Authoritarianism -- Bruce Schneier - Lawfare (Original Post)
erronis
Monday
OP
I've been saying this for a while, people need to be careful because AI makes it so the government can target millions of people at once. Imagine they use AI to identify liberals and then announce liberals are terrorists and no longer eligible for Social Security or Medicare benefits? They'd sell it as the "Save Social Security initiative!"
erronis
(21,400 posts)2. Yup. And so what if a few hundreds of thousands are harmed in the AI hallucinations?
It won't matter to the bosses and there'll be no way to try and get redress (courts anyone?).