We tear down some infosec conventional wisdom—there's a lot of bad advice out there.
Information security and privacy suffer from the same phenomenon we see in fighting COVID-19: "I've done my own research" syndrome. Many security and privacy practices are things learned second- or third-hand, based on ancient tomes or stuff we've seen on TV—or they are the result of learning the wrong lessons from a personal experience.
I call these things "cyber folk medicine." And over the past few years, I've found myself trying to undo these habits in friends, family, and random members of the public. Some cyber folkways are harmless or may even provide a small amount of incidental protection. Others give you a false sense of protection while actively weakening your privacy and security. Yet some of these beliefs have become so widespread that they've actually become company policy.
Courtesy of Ars Technica
Article Author: Sean Gallagher