Security culture, the Dropbox way
blogs.dropbox.com
Security culture, the Dropbox way
1–10 of 14 posts
Re: Security culture, the Dropbox way
#2Re: Security culture, the Dropbox way
#3a better approach would be implementing a zero-knowledge storage infrastructure, like tarsnap.
Re: Security culture, the Dropbox way
#4Re: Security culture, the Dropbox way
#5a better approach would be implementing a zero-knowledge storage infrastructure, like tarsnap.
which prevents issues like https://techcrunch.com/2011/06/20/dropbox-security-bug-made-...
Re: Security culture, the Dropbox way
#6Re: Security culture, the Dropbox way
#7a better approach would be implementing a zero-knowledge storage infrastructure, like tarsnap.
Re: Security culture, the Dropbox way
#8I'm sure Dropbox takes security seriously and works hard at it but this piece doesn't tell me a lot more than that except in much longer form. You can find/replace 'trust' (and 'security') with 'truck' and come away as informed and potentially slightly more amused.
"... daylong social engineering workshop designed and led by internal experts that immersed them in a hypothetical scenario involving a malicious insider."
"... a hands-on workshop where Dropbox employees researched, crafted, and presented their own phishing schemes."
"... our annual Capture the Flag"
It's interesting the emphasis on social attacks. You only have to get the cryptography right once, but every employee needs to defend against social engineering.
Re: Security culture, the Dropbox way
#9a better approach would be implementing a zero-knowledge storage infrastructure, like tarsnap.
These sorts of hills grow to mountains with the bones of hopeful pedants who die on them. But I think there's still a chance to hold this one. That's not what 'zero knowledge' means, it's a technical term for a different thing.