iTnews
  • Home
  • News
  • Technology
  • Security

Humans not evolved for IT security

By Iain Thomson
Oct 24 2007 2:44PM
Follow google news

Human beings aren't evolved for security in the modern world, and particularly the IT security world, according to security guru Bruce Schneier.

Humans not evolved for IT security
He told delegates at the 2007 RSA Conference that there is a gap between the reality of security and the emotional feel of security due to the way our brains have evolved. This leads to people making bad choices.

"As a species we got really good at estimating risk in an East African village 100,000 years ago. But in 2007 London? Modern times are harder."

Our brains evolved to deal with the reality of security, but emotional aspects also have a big role, he added. There are a number of such factors that prevent people from making the right security decisions. For instance:

  • Exaggerate uncommon risks – for example, air travel is safer than cars but because car accidents are common they are seen as less risky

  • Unknown risks – The unknown is always scary

  • Personified risk – Osama Bin Laden is scarier than a faceless threat

  • Involuntary risks – We overestimate the risks of situations where we have no control, like natural disasters

  • Risks that could be controlled – The DC sniper caused a few deaths but the response was way out of proportion.


"In the technology industry we like to think we're computers, but we're not even close," he said.

"The brain is still in beta mode, it's got all sorts of patches and workarounds. It's not perfectly created, it's clearly evolved up."

Too often in the industry products appealed to people's emotions rather than addressing business facts and that was hurting the industry.

Add iTnews as your trusted source

Add iTnews As Your Trusted Source Add iTnews As Your Trusted Source
Got a news tip for our journalists? Share it with us anonymously here.
Copyright ©v3.co.uk
Tags:
evolvedforhumansitnotsecurity

Related Articles

  • NAB's SecOps rethink focuses on data expert and dev hires NAB's SecOps rethink focuses on data expert and dev hires
  • Anthropic's Mythos model found vulnerabilities in classified US gov systems Anthropic's Mythos model found vulnerabilities in classified US gov systems
  • OAIC sweep unearths health sites' covert user tracking OAIC sweep unearths health sites' covert user tracking
  • ASD to retire Essential Eight cyber security framework within next two years ASD to retire Essential Eight cyber security framework within next two years
Join our WhatsApp Channel

Partner Content

Scalable AI solutions: secure delivery
Scalable AI solutions: secure delivery
CommBank creates opportunities for technologists to upskill  with frontier AI companies
Partner Content CommBank creates opportunities for technologists to upskill with frontier AI companies
Digital sovereignty is no longer optional - Agentic AI has made it fundamental
Promoted Content Digital sovereignty is no longer optional - Agentic AI has made it fundamental
AI agents are reshaping identity governance, and attackers are already exploiting the gap
Partner Content AI agents are reshaping identity governance, and attackers are already exploiting the gap

Sponsored Whitepapers

Innovate anywhere with HPE and Azure Local
Innovate anywhere with HPE and Azure Local
Cloud Covered Report: New Zealand
Cloud Covered Report: New Zealand
How healthcare organisations can get more value from cloud
How healthcare organisations can get more value from cloud
The governed agent: A new framework for responsible AI at scale
The governed agent: A new framework for responsible AI at scale
Securing Machinery of Government changes
Securing Machinery of Government changes

Events

  • iTnews State of Data & AI Breakfast iTnews State of Data & AI Breakfast
  • Forrester's AI Forum Sydney Forrester's AI Forum Sydney
  • The 2026 iAwards The 2026 iAwards
  • Integrate 2026 Integrate 2026
  • Security Exhibition & Conference Security Exhibition & Conference
Share on Facebook Share on LinkedIn Share on Whatsapp Email A Friend

Most Read Articles

ASD to retire Essential Eight cyber security framework within next two years

ASD to retire Essential Eight cyber security framework within next two years

ASD draws a hard line on developers lacking security skills

ASD draws a hard line on developers lacking security skills

Fake IT worker threat spreads outside tech sector in Australia

Fake IT worker threat spreads outside tech sector in Australia

NAB builds integrated ops hub for threat intelligence

NAB builds integrated ops hub for threat intelligence

techpartner.news logo
Sydney-based AI-cloud waste startup raises $3m
Sydney-based AI-cloud waste startup raises $3m
Brennan uses NiCE to modernise its contact centre
Brennan uses NiCE to modernise its contact centre
Impact Awards: Tecala slashes customer response times for fintech IQumulate
Impact Awards: Tecala slashes customer response times for fintech IQumulate
Interactive introduces private cloud platform
Interactive introduces private cloud platform
Digital61 expands cybersecurity portfolio
Digital61 expands cybersecurity portfolio
All rights reserved. This material may not be published, broadcast, rewritten or redistributed in any form without prior authorisation.
Your use of this website constitutes acceptance of nextmedia's Privacy Policy and Terms & Conditions.