Showing posts with label security. Show all posts
Showing posts with label security. Show all posts

Wednesday, July 10, 2024

You'd Better PreCheck Yourself, TSA

When I fly out of Sacramento International Airport and Livestock Pavillion, I usually park in the daily parking lot. It’s a little cheaper than the garage, but only slightly more expensive than the long-term lot, which makes it worth it, because you can walk to the terminal instead of riding a bus.

A lot of people have figured that out, so the daily lot seems to be pretty darn full most of the time, which means the walk can be a little way. When it is hot outside, I tend to sweat a little bit on that walk, and I’m always wearing a backpack and pulling a carry-on bag.

Why am I telling you all of this? Not because you need to know this information, but because the TSA should know this information. The TSA agents that scan the incoming travelers at SMF should be familiar with the local parking and weather situations, since they are local also. None of them fly to work from somewhere else. They all live here!

You’re probably wondering what my point is. That’s fair. My point is this: Why the hell is the TSA operating multi-million-dollar scanning technology that can’t crack the confounding mystery of sweat? I have a theory…

When I arrive at the airport my back is either warm, or warm and sweaty. The TSA scans me in the “stand on the feet marks and hold your hands above your head as shown in the diagram” machine, and needs to do an extra search on my lower back every single time. Summer or winter. Every time.

When it’s extra hot outside, I’m extra warm in other places. On my last trip, one of those places was my crotch.

“Sir, I’m going to need to perform a full crotch search.”

“Go nuts.”

“You’ll need to step over here.”

“You mean on me!? Why?”

“See this big dark spot here in the screen?”

“Yes, I’m sweaty from all the heat outside. I’ve only been inside the airport for 10 minutes.”

“I’m still going to need to perform a full crotch search. Would you like a private room?”

“You’re telling me you want to inspect my crotch, and you’re asking if I want to do that with you privately? I’m thinking no, boss. We’re going to handle this out here with all these nice witnesses.”

“OK, I’ll be using the back of my hand.”

“Well, that sounds just fabulous.”

**Full crotch search commences**

The whole time I’m thinking, is this really what this guy signed up for when he decided a job at the TSA was the move? Because, if the answer is yes, then that’s disturbing, and if the answer is no, then what the hell is he still doing here?

**Full crotch search concludes**

“Well, that was great. Hey, I was going to get some pizza at the gate. Does this mean you’re buying now?”

“Have a nice day, sir.”

“I don’t even get your number?”

“Goodbye, sir.”

Like I said, the TSA has multi-million-dollar scanning equipment. Do you know what else they have? They have a program called TSA PreCheck that lets you bypass the expensive scanning equipment and the impromptu full crotch searches.

Kinda makes you wonder… wouldn’t the TSA want to get everyone on PreCheck so they didn’t have to employ so many crotch guys? You’d think they would, because that would be efficient, but then you remember that the TSA is a government organization, so efficiency is not even a consideration for them.

Do you know what is a consideration for government organizations? The main and really the only consideration? Getting more of your money.

Now, I don’t believe for a second that the multi-million-dollar scanner can’t be set to figure out body heat and sweat, and I also don’t believe they can’t get everyone signed up for PreCheck for the same amount of money they spend on salaries for the multiple layers of crotch inspectors. I mean, have you ever been to a TSA checkpoint that was understaffed?

Nope.

You can get a TSA PreCheck, but it will cost you. Kinda feels like a tax, doesn’t it?

But it’s a voluntary tax. So how in the world are we going to get people to pay a voluntary tax??

I know! Full crotch searches.

We’ll use the back of the hand though, so it’s not so weird.

See you soon,

-Smidge

 

Copyright © 2024 Marc Schmatjen

 

Your new favorite book is from SmidgeBooks

Your new favorite humor columnist is on Facebook Just a Smidge

Wednesday, October 12, 2022

reCAPTCHA a Rabbit

Have you ever wondered how the CAPTCHA tests got started, or why they are so ridiculous, or even what CAPTCHA means?

Yeah, me neither, until the other day.

Turns out, CAPTCHA tests were invented to aid in the digitization of books. When the scanning picked up a word that the computer didn’t recognize, the software would send out two words to be verified – a control word, like “word” or “control,” along with the word in question.

Who did these words get sent to? You and me. Every time we had to type in those two words that had some random wavy line running through them when we were trying to buy something on the interwebs, we were unwittingly helping a computer accurately convert books to digital form.

If enough of us typed in the second word the same way, the computer would assume it was valid and use it in the book. Fun, huh?

So, what does CAPTCHA mean? Glad you asked. Apparently, it’s a contrived acronym for "Completely Automated Public Turing test to tell Computers and Humans Apart."

What is a Turing test, you are probably asking now, like I was when I looked up what CAPTCHA meant. The Turing test, originally called the imitation game by Alan Turing in 1950, is a test of a machine's ability to exhibit intelligent behavior equivalent to, or indistinguishable from, that of a human.

(Alan Turing, of course, eventually went on to found Cyberdyne Systems, which as you know, used CAPTCHA to perfect the artificial intelligence in Skynet, eventually leading to the machines becoming self-aware and total thermonuclear destruction of the planet, followed by the terminators. Not a great legacy, Alan.)

As you also know, the original CAPTCHA system was flawed because none of us could ever read either of the words through the wavy lines, and we had to ask for new words at least six times until we got “and” and “cat.”

To improve the system, they made everything wavier and added numbers, so the words were no longer words. When that didn’t work, they got rid of the wavy lines and just melted the two number-words, making it impossible to decipher them no matter how many tries you asked for. This led to a very brief uptick in consumers shopping at actual stores again. The CAPTCHA folks were forced to re-improve the system quickly, however, when it was discovered that all the actual stores had gone out of business.

In September of 2009, Google acquired the CAPTCHA system in a multi-faceted business deal that also included the purchase of Cyberdyne Systems, the entire state of California, and the rights to Arnold Schwarzenegger’s body after he, as they put it, “powers down for the final time.”

At some point, probably due to all the bad Skynet publicity, Google renamed the system to reCAPTCHA. The “re” stands for “really excellent.” Google explains the reCAPTCHA system as using an advanced risk analysis engine and adaptive challenges to keep malicious software from engaging in abusive activities on your website. Meanwhile, legitimate users will be able to login, make purchases, view pages, or create accounts and fake users will be blocked.

Google’s anti-bot detection has become so advanced that it now works in the background without the need for melted letters and numbers. There was a brief period of time when we were required to click on all the pictures in a grid that had a stoplight in them, or a crosswalk, or a car. This was cumbersome, though, because the guy outside of Google headquarters with the camera taking pictures of the street could not keep up with demand.

Google finally distilled it down to a single checkbox that simply asks you to confirm, “I'm not a robot.” This seemingly simple system works on the wickedly intelligent conundrum a computer would find itself in when posed with the choice of lying or telling the truth. Computers are forced to think in terms of ones and zeros, so they are unable to lie because they would have to divide by zero to do so, which would render them useless. Genius!

The “I'm not a robot” checkbox brings us to the other day. I clicked it, naturally, but Google didn’t quite believe that I was human. For the first time in my history with the checkbox, I was given a secondary quiz. I was presented with the six-picture grid again, only this time, there were no cars, stoplights, or traffic cones.

Click on each picture that shows a rabbit swimming.

How sophisticated are these bots becoming!? I mean, that is really specific! We used to just have to distinguish between cats and dogs, or something like that. Now we have swimming rabbits?

For the first time in all my years with CAPTCHA, I got a little nervous about what might happen if I got the answer wrong. If we’re all the way to swimming rabbits in order to detect malicious bots, then these things are obviously a bigger problem than I thought. Does my door get kicked in by the FBI if I click on a patch of water with no rabbit?

And I honestly can’t tell if that’s a beaver, and otter, or a rabbit. It’s just a blurry photo of something swimming and we can only see the head. Is that a rabbit with its ears back, or some other mammal?

Or is this some super-advanced trickery, and as a human, I’m supposed to know that rabbits can’t swim? Because honestly, I’m not sure if they can or not. I mean, that one picture sure looks like a rabbit swimming, but we all know what a bot can do with photoshop these days.

I would Google whether rabbits can swim or not, but I’m not falling into that trap. That’s just what the bot would do.

I miss the melted number-words.

See you soon,

-Smidge

 

Copyright © 2022 Marc Schmatjen

 

Your new favorite book is from SmidgeBooks

Your new favorite humor columnist is on Facebook Just a Smidge

Wednesday, August 8, 2018

Streaming Moo-vies

Our security was breached earlier this week, and we immediately went on high alert. Things were tense on Monday when I received the warning email, alerting me to suspicious activity on my account.

From: Netflix
Subject: New sign-in to your account

New sign-in to Netflix

Hi Marc,
We noticed a new sign-in with your Netflix account.

Device: Computer
Location: United States
Time: August 6th, 5:17 PM PDT

If you signed-in recently, relax and enjoy watching! But if you don’t recognize this sign-in, we recommend that you change your password immediately to secure your account.

We're here to help if you need it. Visit the Help Center for more info or contact us.

–Your friends at Netflix


Wow, Netflix, thanks for the heads up! A device inside the borders of America logged onto my account. Hmm… I’m currently in America, but there are at least a few other people here as well, so I really don’t know what to think.

I mean, if you had said Location: Myanmar (Formerly Burma, name changed in 1989), I would have known immediately that the activity was unauthorized, and I would have learned a fun fact about a Southeast Asian country. But sadly, that wasn’t the case.

I’m not sure if you’re aware of this, but the United States is divided up into fifty or so states, united together for a common goal: twenty-four hour access to reasonably-priced fast food. Each of these states has a border, so we can keep them all separate. Rarely do those borders move, so as long as you’re sitting still, it’s fairly simply to figure out which state you’re in.

But you didn’t tell me Location: Louisiana (Formerly Burma, name changed in 1812). If you had, I would have known right away that something was amiss, since I’m in California.

And again, I’m not sure how up on geography you are, but most states here in the U.S. are divided into counties, and further delineated by cities, towns, villages, hamlets, parishes, townships, Nike corporate campuses, etc.

But you didn’t tell me Location: Los Angeles (Formerly Mexico, name changed in 1848). If you had, I would have immediately accused my sister of stealing my account, since I’m in Rocklin and she has a history of shady behavior.

But I already knew it wasn’t her. The new sign-in to the account was my son, getting his new school Chromebook loaded up with all the important academic apps like Netflix and Candy Crush, and he was sitting three feet away from me.

Come on, Netflix, you can do better than this. Every single TV, computer, tablet, and phone in our home connects to Netflix from the same Wi-Fi router. You literally could have told me Location: Your living room (Formerly The Allen’s living room, name changed in 2008). How hard could that actually be?

I don’t know anything about computers, but I do know the story of a cow. Many years ago, before the internet (so you guys at Netflix weren’t around yet, but pay attention to this story anyway), mad cow disease broke out in North America. Scientific investigators were able to track the original source of the disease back to a single cow in a specific stall on a Canadian farm. If tracking a disease back to a stall number in a barn was possible without the internet, please tell me how you can only pinpoint a new log-in to my account down to a 3.8 million square mile area?

Maybe you guys should assign each Netflix account a cow…

See you soon,

-Smidge


Copyright © 2018 Marc Schmatjen


Check out The Smidge Page on Facebook. We like you, now like us back!

Also visit Marc’s Amazon.com Author Page  for all his books. Enjoy!

Wednesday, November 18, 2015

This Column is Password-Protected

I have a list of passwords on a spreadsheet. No, you can’t see it. You wouldn’t be able to find it anyway, since my wife made me rename it from its original file name of “passwords.” It’s now called “this is not a list of passwords.” Please forget I told you that.

I had to start a list, because everything requires a user name and password these days. Some make sense, like online banking and email, but I have passwords for church and for baseball. I have passwords to buy eyeglasses and to buy coupons for frozen yogurt. I have passwords to buy plane tickets, concert tickets, amusement park tickets, sports tickets, movie tickets, and to pay for speeding tickets. I have a password to watch TV, and a password to order pizza.

I even have a password for the website of a hardware store in New Jersey, because they sell little plastic keeper pieces for my sons’ dresser drawers, and I have to replace them every time the boys break them off by standing on the drawers, which is always.

I have 156 passwords. Seriously, I counted. That seems excessive.

Amazingly I even have passwords for elementary school. It’s hard to believe elementary school would require passwords, but then again, I wouldn’t have thought I would need one for the dentist, either, but I do. Between my fourth and fifth-graders logging on to Google for homework, the reading program, the lunch program, Lifetouch Portrait Studios, and so on, elementary school requires at least fourteen passwords so far. I even have a password from Costco for the box tops program.

And I have passwords for books. Books! I already had a password for the public library, but recently one of my son’s books came with an online fantasy game, so now I have a Scholastic password. If elementary school requires this much online security, is high school going to require finger print passcodes and retinal scans?

Unfortunately, I don’t see any end in sight of the ever-escalating password list. Until we actually do have retinal scans, we have to have passwords, and they all should be different and long, because there are far too many Chinese hackers, Russian mob IT guys, and pasty-white, unemployed, basement-dwelling losers out there trying to crack your code.

The last thing you want is for someone to hack your elementary school lunch program user name and password and immediately be able to clean out your 401K. Besides the financial hit, you’d be bitter every time you heard the term “chef’s surprise” for the rest of your life, and that’s no way to live.

And along the way, we’ll probably discover that retinal scans cause cancer, or hepatitis, or nose fungus, or something, so we’ll need to figure something else out. Besides, getting the back of your eyeball scanned to buy a thirty-five-cent plastic drawer slide from a hardware store in New Jersey just seems like overkill.

So for now, we’ll need to keep our lists of passwords. As an added security measure, I even have a password to open my spreadsheet of passwords. Yes, you heard me - my passwords have a password. If I ever forget that one, we’ll just have to move to a small cabin in the woods and start over from scratch.

I probably won’t forget it, though, because I made it the same as my two most important passwords – the ones for TV and pizza – so it would be easy to remember. It’s my birthday.

Please forget I told you that. It’s also the one for my 401K.

See you soon,

-Smidge


Copyright © 2015 Marc Schmatjen


Check out The Smidge Page on Facebook. We like you, now like us back!

Also visit Marc’s Amazon.com Author Page  for all his books. Enjoy!