#UniSuper

abc+ | Notícias, esportes, entretenimento e muito + para vocêabcmais.com@web.brid.gy
2025-04-30
ajft [SEC=HAPHAZARD]ajft@aus.social
2024-07-17
Albert S.ssanf01
2024-06-28

L'últim programa/podcast de @entredevyops on expliquen una incidència que va tenir UniSuper amb Google Cloud.

Resumint, no dependre només d'un servidor del núvol per a desar-hi els fitxers.

entredevyops.es/podcasts/podca

2024-06-04

'A key topic where APRA has observed weakness is the use of data backups to protect an entity against data loss'.

#UniSuper

apra.gov.au/security-and-adequ

2024-05-27

Proposed update to the site.

#Google #UniSuper #Cloud

2024-05-24

If you've been following the #UniSuper #GCP #outage, the Incident report is out, and it's a good read - transparent, detailed, clearly outlines scope, actions, impact.

As someone who used to do this stuff for a living, I'm impressed.

cloud.google.com/blog/products

#ITIL #IncidentManagement #ProblemManagement

ajft [SEC=HAPHAZARD]ajft@aus.social
2024-05-23

#unisuper #google writeup
danielcompton.net/google-cloud

Edit to quote my fave. bit: " The press release makes heroic use of the passive voice to obscure the actors:"

For I am CJ :screwattack: :black_sparkling_heart: :screwattack:ForiamCJ@infosec.exchange
2024-05-22

#Google #UniSuper #CloudProviders #Apple #SmartPhone

Basically implementing something like the (Disney owned) "Movies Anywhere service... except not corporate owned and not full of advertising, tracking and invasive analytics.

The same should be true for all digital purchases... Music, Movies, Apps, TV shows, etc.

For I am CJ :screwattack: :black_sparkling_heart: :screwattack:ForiamCJ@infosec.exchange
2024-05-22

#Google #UniSuper #CloudProviders #Apple #SmartPhone

If I buy a Game on Gplay, Google should be capped being paid for 10% of the purchase price w/ the rest withheld until they have registered my purchase w/ an independent (not for profit + advertising free) organization that I can then tie to other digital video game storefronts (example, GOG or Itch), where I can download a DRM-free copy w/o needing Google at all.

For I am CJ :screwattack: :black_sparkling_heart: :screwattack:ForiamCJ@infosec.exchange
2024-05-22

#Google #UniSuper #CloudProviders #Apple #SmartPhone

To phrase that differently, when customers pay to purchase an app or movie, both the storefront provider (Apple, Google, Amazon, etc.) & the seller should have a percentage of the original sale price withheld until both can certify that DRM free data portability has been completed

For I am CJ :screwattack: :black_sparkling_heart: :screwattack:ForiamCJ@infosec.exchange
2024-05-22

#Google #UniSuper #CloudProviders #Apple #SmartPhone

There also needs to be a series of systems in place that guarantees that all data and purchases are portable (in a DRM free format) to another provider.

I.E. I should be able to access purchased books or movies on any platform available in my country. Same with games, services, & other apps.

This portability should absolutely be required w/ a portion of their "app store" payout reserved until DRM free data portability has been ensured

For I am CJ :screwattack: :black_sparkling_heart: :screwattack:ForiamCJ@infosec.exchange
2024-05-22

#Google #UniSuper #CloudProviders #Apple #SmartPhone

World govts need to be working on legislation that;
- prevents service providers from completely locking you out of your accounts/deleting your data
- creates harsh penalties for cloud providers who fail to maintain the 'CIA" for your data
- creates significant penalties for building systems that allow for accounts or account data to easily be stolen by 3rd parties/ attackers

For I am CJ :screwattack: :black_sparkling_heart: :screwattack:ForiamCJ@infosec.exchange
2024-05-22

#Google #UniSuper #CloudProviders #Apple #SmartPhone

You can have 'everything':
- intellectual property/ creative works
- games, media, etc.
- services that you've already paid for
- years worth of pictures, videos, and other memories.
- proof of purchase
- legal agreements w/ other providers
- the ability to complete MFA or account recovery (for other services)
- basically your entire "digital life" stolen and/or deleted on a whim, with no accountability from the provider

For I am CJ :screwattack: :black_sparkling_heart: :screwattack:ForiamCJ@infosec.exchange
2024-05-22

#Google #UniSuper #CloudProviders #Apple #SmartPhone

If you're in the US, SCOTUS has (effectively) perpetually decided in favor of US corporations having an eternal ability to be able to retroactively change Terms of Service/ Terms of Use in their own favor to deny you any accountability, despite the fact that the vast majority of US residents do not possess the capability to read & comprehend thousands of pages of legal docs that these companies generate every year (across services)

For I am CJ :screwattack: :black_sparkling_heart: :screwattack:ForiamCJ@infosec.exchange
2024-05-22

#Google #UniSuper #CloudProviders #Apple #SmartPhone

There are countless stories about people getting wrongfully locked out of Google accounts (forever) for "belated" copyright strikes that are filed against them years after posting something (that almost assuredly counted as fair use) to a YouTube far in the past

Or stories about people getting locked out of their account for (G-rated) pics of their own kids getting swept up in one of Google's filters

For I am CJ :screwattack: :black_sparkling_heart: :screwattack:ForiamCJ@infosec.exchange
2024-05-22

#Google #UniSuper #CloudProviders #Apple

If you own a #SmartPhone (most of us DO), you're absolutely reliant on Google and/or Apple, who can choose to F*** you over through malice , complacency, or incompetence at any time

There are countless stories where people are locked out of their accounts for some vague reason & the most they can do is complain, then start over

This Wired reporter wrote about how "all of his data was destroyed" a few years ago:

wired.com/2012/08/apple-amazon

For I am CJ :screwattack: :black_sparkling_heart: :screwattack:ForiamCJ@infosec.exchange
2024-05-22

#Google recently deleted the entire account (+all data) for #UniSuper the company that manages retirement funds for "all of Australia"

tiny.cc/7ra7yz

Luckily, UniSuper was also sending backups off to another provider, which they (later) restored from

This of course should bring up renewed conversation about being "locked in" to various #CloudProviders who control a significant portion of your life (and associated data).. who could also F*** you over at any time.

deltatux :donor:deltatux@infosec.town
2024-05-20

A major pension fund in Australia had its Google Cloud account inadvertently deleted due to a bug, causing major disruptions as its services and backups were deleted. Thankfully the pension fund had offsite backups.

A good reminder to build redundancies and have backup of backups.

arstechnica.com/gadgets/2024/05/google-cloud-accidentally-nukes-customer-account-causes-two-weeks-of-downtime/

#GoogleCloud #Backups #UniSuper #PensionFund #Australia

2024-05-18

The first rule of cloud disaster recovery is that no matter how many geographies you have, if you’re in a single cloud you have a single point of failure. arstechnica.com/gadgets/2024/0 #unisuper #googlecloud #arstechnica

When reading the various statements in the #unisuper debacle, esp unisuper.com.au/contact-us/out, one comes across

Google Cloud CEO, Thomas Kurian has confirmed that the disruption arose from an unprecedented sequence of events whereby an inadvertent misconfiguration during provisioning of UniSuper’s Private Cloud services ultimately resulted in the deletion of UniSuper’s Private Cloud subscription.

This is an isolated, ‘one-of-a-kind occurrence’ that has never before occurred with any of Google Cloud’s clients globally. This should not have happened. Google Cloud has identified the events that led to this disruption and taken measures to ensure this does not happen again.

This heavily reminds me of this fitting Australian video.

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst