Analogettes

Weekly Wee Ones #6 & #7: Pen Tests and Unhackable Systems are like…

Playing catch up after the Easter holidays, so 2 for 1 on the tweet-size InfoSec analogies today. Starting with a physics themed one:

#7 An Unhackable System is like…


In case you’re not familiar with the science, the Higgs Field is not yet (and may never be) directly detectable.

Higgs’ theory outlined the Standard Law predicted effects of a Higgs Boson and that is what CERN eventually found. Much like an unhackable system, the characteristics of it and potential future implications of it, are far more useful to consider than the thing itself.

Remember this?:

Unhackable Blackphone, err, Hacked

I don’t know of a single security pro who takes kit or software marketed as ‘unhackable’ or ‘100% secure’, seriously. Anything with people involved in the design process and anything that will be used by humanoids, will have vulnerabilities from release day +1. It is also a huge red rag to security researcher and criminal bulls, who will work tirelessly to prove you wrong. Overall an excellent way to bleed perceived value out of potentially ground-breaking innovations.



and here’s the one that fell through motorway connectivity gaps:

#6 Penetration Testing is like…

…and some practical bits to go with:


If you are unfamiliar with embedded tweets, links in them will work and clicking on text will take you to the originals on Twitter.

If you liked them, you can find more here, or full-size InfoSec analogies on The Analogies Project site (a huge range of novel perspectives on security from just about every big name in the security game, plus plenty of folk from other trades). It’s a fab resource.

Want to add to the discussion?

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out / Change )

Twitter picture

You are commenting using your Twitter account. Log Out / Change )

Facebook photo

You are commenting using your Facebook account. Log Out / Change )

Google+ photo

You are commenting using your Google+ account. Log Out / Change )

Connecting to %s