Categories
-
Recent Posts
- Why Cybersecurity Needs More Public Accountability: Deadlines, Documents, and Claims You Can Verify
- How Supply Chain Attacks Exploit Trust in Open Source
- Why Security Researchers Face Legal Risks for Doing Good Work
- The Case for Open Security Audits of Government Systems
- How to Evaluate Your Personal Threat Model
Author Archives: Loretta George
Why Hiding Isn’t Security — And What Actually Is
What We Really Mean by “Security by Obscurity” Say “security by obscurity” in a room full of engineers and you’ll get groans. Everyone knows it’s bad practice. Yet it keeps sneaking back in, usually wearing a nicer label. The idea … Continue reading
Posted in General
Comments Off on Why Hiding Isn’t Security — And What Actually Is
The Hidden Trap: Why Obscurity Is Not a Security Strategy
There’s a quiet, persistent belief that creeps through organizations of every size—from scrappy startups to sprawling legacy enterprises. It goes something like this: if we just keep our systems secret enough, if we don’t tell anyone how our authentication works, … Continue reading
Posted in General
Comments Off on The Hidden Trap: Why Obscurity Is Not a Security Strategy
The Hidden Danger of Security by Obscurity: Why Secrecy Fails Every Time
There’s a quiet, stubborn myth that keeps resurfacing in cybersecurity circles—the idea that if you just keep your system’s guts secret, nobody can crack it. It feels like common sense. A thief can’t pick a lock they don’t know exists, … Continue reading
Posted in General
Comments Off on The Hidden Danger of Security by Obscurity: Why Secrecy Fails Every Time
The Hidden Danger of Security by Obscurity: Why It Fails and What to Do Instead
The Quiet Lie We Tell Ourselves There is a quiet, persistent lie that circulates in development teams, IT departments, and even among seasoned security professionals. It goes something like this: “If no one knows how our system works, no one … Continue reading
Posted in General
Comments Off on The Hidden Danger of Security by Obscurity: Why It Fails and What to Do Instead
The Illusion of Hidden Security: Why Obscurity Fails Every Time
You’ve probably done it yourself. Moved the admin login to a weird URL, swapped SSH onto some random high port, or leaned on a homegrown encryption trick nobody’s cracked yet. It feels clever—like hiding a spare key inside a fake … Continue reading
Posted in General
Comments Off on The Illusion of Hidden Security: Why Obscurity Fails Every Time
The Problem With Security by Obscurity: Why Hiding Isn’t Protecting
There’s a stubborn myth that keeps resurfacing in information security: if you just keep the details of your system secret, you’ll be safe. It’s a tempting shortcut. Instead of building layered defenses, you simply hide the blueprints, obscure the code, … Continue reading
Posted in General
Comments Off on The Problem With Security by Obscurity: Why Hiding Isn’t Protecting