Today the ERNW Team participated in the Mudiator mud
race in
Mannheim.
This mud run features 25 obstacles over 8 km, you can do either one or two
rounds. Participating for the first time, the ERNW team went for one round (the
Legionnaire distance as opposed to the two round Hercules distance):
Following our idea of open access to knowledge (both about vulnerabilities and
sports 😉 ), here are some hints/lessons learned:
Yesterday I took a long run (actually I did the full distance
here) and usually such exercises are good
opportunities to “reflect on the world in general and the infosec dimension of
it in particular”… at least as long as your blood sugar is still on a level to
support somewhat reasonable brain activity 😉
Anyhow, one of the outcomes of the number of strange mental stages I went
through was the idea of a series of blogposts on architectural or technological
approaches that are widely regarded as “good security practice” but may – when
looked at with a bit more of scrutiny – turn out to be based on what I’d call
“outdated threat models”.