tag:blogger.com,1999:blog-16750015.post916980177657603389..comments2024-01-24T20:01:37.600-05:00Comments on slight paranoia: Congressmen pushing awful cybersecurity bill fail cybersecurity 101Christopher Soghoianhttp://www.blogger.com/profile/08950937382104783909noreply@blogger.comBlogger6125tag:blogger.com,1999:blog-16750015.post-38078314044786458842012-07-12T03:06:48.042-04:002012-07-12T03:06:48.042-04:00Of course, if you're talking up Internet secur...Of course, if you're talking up Internet security and privacy, you should walk the walk, but I don't think its necessary to use HTTPS on every site.<br /><br />Google, Facebook and even Twitter are important sites because they are the focus of a lot of personal data- searches and messages. But I'm not sure that its that important for all congressmen to have their sites using HTTPS, since those sites aren't used in the same manner.8Anonymousnoreply@blogger.comtag:blogger.com,1999:blog-16750015.post-5878909424057377882012-05-11T17:45:08.353-04:002012-05-11T17:45:08.353-04:00They wouldn't want technical policy advisors w...They wouldn't want technical policy advisors when the NSA is the driver of the legislationadele pacehttp://www.pacelegal.com.aunoreply@blogger.comtag:blogger.com,1999:blog-16750015.post-74737824542449981372012-04-20T06:14:11.322-04:002012-04-20T06:14:11.322-04:00Amusingly, it appears that Rep. Dutch has fixed th...Amusingly, it appears that Rep. Dutch has fixed the HTTPS issue, in that his site now supports it, but screwed it up totally in another direction. <br />HTTP://dutch.house.gov is his site, and HTTPS://dutch.house.gov now points to http://ceic.bradsherman.house.gov/<br />amusing.Anonymousnoreply@blogger.comtag:blogger.com,1999:blog-16750015.post-38372716528934720252012-04-18T16:51:38.938-04:002012-04-18T16:51:38.938-04:00"...lead by example...""...lead by example..."Anonymousnoreply@blogger.comtag:blogger.com,1999:blog-16750015.post-39907965330179872232012-04-18T15:50:10.840-04:002012-04-18T15:50:10.840-04:00I agree with Jess. This is not the best argument a...I agree with Jess. This is not the best argument against a ridiculous piece of legislation.<br /><br /> I notice this url also isn't https. You don't work for congress do you?Anonymousnoreply@blogger.comtag:blogger.com,1999:blog-16750015.post-61398953766178250002012-04-18T12:39:32.710-04:002012-04-18T12:39:32.710-04:00I agree that the bill seems ill-considered. I can&...I agree that the bill seems ill-considered. I can't actually recall hearing about a bill that didn't seem ill-considered. I agree that TLS is a requirement for many applications.<br /><br />It isn't clear to me, however, that publishing political/governmental information for public use is such an application. Are users uploading private data through these sites? Are some portions of the sites off-limits to the public? Could you clearly state why we should expect these sites to be available via https:?Jesssnoreply@blogger.com