Earlier quoted context omitted.
I think you've created a strawman here. It's about risk assessment and ease of implementation. Taping the webcam is easy to do, effective and easy to undo. It protects against a real, not theoretical attack. It has meaningful value. Not using Windows 10 might also have meaningful value and protect against real, not theoretical attacks, but would be difficult to do or undo. I could also point out that you are more lik…
I mean, I think it's a worthwhile comment even granting this. When people are worrying about the computer scare of the moment, they tend not to realize that the threat surface is so massive that they're certainly, inevitably vulnerable somewhere . No security habit short of Ludditism was going to keep people safe from Heartbleed. And it does feel a little on the nose for Comey to be pushing a security 'story' that's…
I work at a public library and occasionally teach computer classes. In one we cover security, but it's infuriatingly difficult. When you're working with people who have trouble with the mouse, or even with basic literacy (I mean reading literacy, not computer), it's hard to explain "attack surfaces" or "the cloud". It usually comes down to:
1. Understand the difference between identity and security. 2. Update your software regularly. 3. Use different passwords for different services and write them down (the number of people who don't know their password because they have email on their phone is... too high). 4. Be aware of who you are giving information to and why. Do they need that information? Is what they are offering worth providing it.
It's hard to cover much more than that.