Steven Murdoch
@steven
Professor of Security Engineering; Head of UCL Information Security Research Group @sec.cs.ucl.ac.uk; Director Open Rights Group. 🐘 🐦 @sjmurdoch 🌍
And a demo of what the dataset makes possible: an interactive chronology of 347 dated events, plotting UCL’s decisions against national restrictions and its own case curve, each with a verbatim quote from the source it came from. sjmurdoch.github.io/uclcovid-tim...
I spoke to @smaurizi.bsky.social for a @computerweekly.bsky.social article on smartphone security, particularly how @grapheneos.org can protect journalists’ data. www.computerweekly.com/feature/Jour...
I spoke to The Guardian about Anthropic’s call for mechanisms to slow the development of frontier AI capabilities. www.theguardian.com/technology/2...
Claude Opus 4.7 is out, and I’ve been interfacing it with the National Rail Live Departure Boards API. I leave you with a poem inspired by the current departures from St Pancras station.
AI-based scam checkers are gaining popularity but I would be cautious in following their advice unless the company is willing to stand behind it. For example, Metro Bank makes bold claims but the fine print absolves them of any responsibility for errors. www.metrobankonline.co.uk/ways-to-bank...
Along with Sir Peter Fraser, I'll be speaking at the Inner Temple on the reliability of electronic evidence. The event is open to the public, so if you're interested in the topic, you can join in person or online. www.innertemple.org.uk/events/?id=E...
Interestingly, the EU proposal introduces liability for “electronic communications service providers”. The banking industry has been lobbying for years to get (primarily) Facebook to cover the cost of reimbursements. There’s no UK proposal for this (so far).
Previously the EU reimbursement only applied when the criminal impersonates the bank, but now it’s been expanded to any type of impersonation.
If you want to take the direct route to your gates and avoid the crowded shopping area, you’ll be charged £10 per person for the privilege.
At Stansted Airport, notorious for an unpleasant experience (long queues, too few seats, routes forcing passengers through shops, …) someone decided that the real problem is the signs saying “Wait for gate” and should instead be “Relax”.
I’m pleased the article managed to include one of the more subtle points – better security features aren’t always better for fraud victims.
Personally, I'm pleased to see this development. Competition and consumer choice is a powerful mechanism for change, when it is informed by good data. By the way, what’s going on with Dzing Finance – 19% of payments received are fraudulent! /ends
Statistics on authorized push payment from the PSR are interesting in their own right but also breaks new ground in that they differentiate between banks’ security. The banking industry has published good aggregate statistics but pushed hard against separating it per bank. 🧵 1/3