Showing posts with label fake news technology. Show all posts
Showing posts with label fake news technology. Show all posts

Thursday, February 21, 2019

How to Spot and Report Fake News on Social Media

I've written a number of times about fake news including this post on how to recognize fake news on social media. It's an important subject because there's so much of it.

The first rule is to be sure information comes from a trustworthy site. Well-known sites are one thing, but there are many sites today reporting interesting news that individuals may not be personally familiar with. I use a browser extension called NewsGuard. It maintains a list of trusted sites and shows a green check by search results for those sites. Users can submit other sites for consideration. The important caveat is that it evaluates the site, not the individual news item. It is helpful, but certainly not a complete answer. Users still have to be on the alert.

https://www.factcheck.org/2016/12/video-spotting-fake-news/
So here are some resources. FactCheck.org is run by the Annenberg Public Policy Center; the site owner is one of the keys to trustworthiness. It has a video as shown in the graphic. The site's post on the subject is a couple of years old, but all its points are still valid. FactCheck.org is one of the fact checkers working with Facebook to identify false news. I wish them luck, but without a lot of optimism.

It would certainly help if users themselves pointed out suspect content. Here are three sites you might want to consider using:

Facebook:  Users can check the validity of a post before they share it. How often that is helpful depends on the success of Facebook's own attempts to identify fake content. Users can ask Facebook to investigate content. Facebook says users can check the status of their request.

Google: The help page says the user can see fact checks in search results. It also says that the fact checks are conducted by publishers and it sounds as if that means a site fact-checking its own content. That doesn't seem to be the meaning. The fact-checked search results I can find have been checked by one of the established fact checking sites. That means the fact checks are credible but it also means that only s small set of politically-oriented content is included. Try some searches for statements that are frequently presented as fact and see what you find.

The Poynter Institute points out that Google is building a search engine for fact checks. It is still in beta and I doubt if anyone except a journalist is going to get access at present. If it works and is opened to the public it would be a step forward.

YouTube: The site has been adding encyclopedia links to videos that seem to promote conspiracy theories. Slate has an article that explains pros and cons and shows an example. I can't find anything recent on how that's going or whether it plans to add other topics.

That's a short and not very inspiring look at the current status of fact-checking, especially on social media sites. Much remains to be done before users should share with any degree of confidence unless they have other sources to validate social media posts.

If you have any experience using any of these tools and sites, your comments would be welcome.

Stay Safe!

Saturday, January 5, 2019

Five Top Data Threats Consumers Should Watch Out For In 2019

It's not clear that security threats are coming from genuinely new directions in 2019, but it is clear that some of the existing threats are becoming more damaging. Here's a look at 5 powerful and persistent threats, not in order of presumed priority.

Cybersecurity resource site     https://www.stopthinkconnect.org/

- The IoT provides easy access to many smart homes. When did you last buy an appliance, or perhaps even something as simple as a door lock, that wasn't connected to the internet? Most are, and manufacturer security is notoriously weak. Begin by changing the manufacturer-supplied password and continue by reading the instructions to ensure that protection like automatic software updates is in place. It's likely that threats will become ever more sophisticated.

- Mobile threats multiply with emphasis on fake apps. Traditional threats like advertising that delivers malware and phishing attacks--born on the desktop and migrating to mobile--continue to affect millions of consumers. Even more worrisome, because they are so hard to detect, are fake apps. They can be found anywhere, even on the app stores. The malicious apps are removed when identified, but new ones take their places. One security firm suggests three ways to identify fake apps:
  1. Look for the developer name. If it is not the same as the brand, there's something wrong.
  2. Read the reviews and see if they appear legit.
  3. Be suspicious of unreasonable promises--or unreasonable requests like writing a review before you download the app.
It would be good to read the entire post.

- Phishing is now spear phishing. Here's one example, mortgage wire fraud:

home buyers are tricked into wiring closing fees to a rogue party by an email arriving from a trusted mortgage agent. “The hacker breaks into the mortgage lender’s (or title agent’s) computer and takes note of all the upcoming pending deals and their closing dates,” he says. “Then the day before the mortgage agent would normally send out an email telling the client where to send the closing money, the phisher uses the mortgage agent’s computer to beat them to the punch. The unsuspecting client wires the money, which is rarely recovered, and ends up losing the house (unless they can come up with another substantial closing payment, which most can’t do).” 

Spear phishing can be very close to home and very personal. At least 3 employees at Wichita State University responded to a phishing email by supplying their university ID number and lost their entire paychecks, which were diverted and never reached their banks. Individuals should never respond to this kind of request for information and employers have a huge responsibility to educate and remind their employees of the danger.

- Artificial Intelligence leading to smarter attacks on a larger scale. What AI can accomplish remains a mystery to many web users because it's highly technical in nature. Look at it this way. AI can help cybercriminals deceive users directly or to trick the technology itself.  I wrote about fake news during CyberMonth and the warnings there are relevant (1, 2 and more).

https://www.bbc.com/news/av/technology-40598465/fake-obama-created-using-ai-tool-to-make-phoney-speeches

Here an example of a totally fake Obama message that could have been aimed at web users. It was produced by researchers and they explain the basics of how they did it. It's easy enough to understand, but harder to actually do. However, the technology is readily available to web users who care enough to find it and learn to use it.

Harder to understand are techniques used to hijack web sites. Here's a brief article about the use of fake fonts to disguise landing pages created for phishing schemes. It's not necessary to understand how it is done to understand there are ways of deceiving users that are hard to identify. The article doesn't say so, but the fake pages should have URLs that are not exactly the same as that of the actual brand. Users need to beware, but they also need to be able to trust brands, and that's getting increasingly hard to do. When in doubt, especially about a followed link, close it and go directly to the brand website. And make a practice of notifying brands when you see something that appears suspicious. How the brand responds is one way of knowing whether to trust it or not.

- Following the implementation of the EU's GDPR in 2018 laws protecting privacy will continue to emerge.  The General Data Protection Regulation is a sweeping reform of European privacy laws, which were already stronger than those in the US. I explained how and why the law applies to US web users in a 2017 post. Users currently see the effects in things like cookie warnings and explicit requests to contact users when they visit a site. See if your state has recently passed a law regarding data privacy on this consumer-oriented site. There are also legal sites that cover the issue.

The focus in the US is on the states because the federal government has moved in the other direction. The repeal of the Net Neutrality law made it possible for ISPs to collect and sell data about the activities of their users. Who knows more about us? Watch for a followup post on this issue soon.

These are five broad categories that cover many types of threats. Customers need to have high expectations of the brands they use in terms of how well the brand protects their data. It really helps for brands to know that their customers are paying attention and even taking actions on the basis of how much they trust the brand.

'Paying attention' is the relevant phrase. Every individual user needs to be alert to attempts to breach their privacy and steal their identity. My new year's resolution is to do all I can to be helpful!

Stay Safe in 2019!

Friday, October 26, 2018

The Future of Fake News

We have seen the future of fake news and it's Artificial Intelligence. MIT Technology Review did a series on AI and disinformation and here's a quote from their newsletter:

The big change: AI now makes it possible for anyone with a decent computer and a few hours to spare to do what only used to be possible at a big-budget movie studio: create believable, but totally fake video footage. Further machine-learning advances will make even more complex deception possible--and make fakery harder to spot.
Deep fakes and politics: Convincing AI enabled face swaps—called deepfakes—that threaten to further blur the line between truth and fiction in politics. “Deepfakes have the potential to derail political discourse,” says Charles Seife, a professor at NYU. “Technology is altering our perception of reality at an alarming rate.”
Easy to fake: Tools for creating these false videos are becoming increasing easy to use. Our own Will Knight easily stitched Ted Cruz's face onto Paul Rudd. As he writes, perhaps the greatest risk is that the technology will further undermine truth and objectivity. It’s not that the truth won’t still be out there—it’s that we might not know it when we see it.
 

            
Here are a couple of videos that illustrate the issues.



The first one allows any klutz to superimpose cool dance moves onto his or her frame. That's fun! And the authors explain how they did it.


This presents an unsettling view of the future. Is there anything that can be done? Or more specifically, can technology rescue us from the danger it has created?

There is a possibility that technology can come to the rescue. Wired describes a Darpa program called MediFor—Media Forensics. Remember, the Defense Advanced Research Programs Agency (DARPA) gave us the initial structure of the internet. The program is a national security effort, so that suggests it is well funded. 


The DARPA effort includes many complex technologies like facial recognition, but the Wired article is easily comprehensible to the layperson. I urge you to read it in its entirety--it has good news as well as bad.

That's a fitting note on which to end my #CyberAware posts. But I'll be following up on many of these topics in the very near future.

I hope you've enjoyed this month of posts and

Stay Safe!

Related Content:
Deep fake of Mark Zuckerberg 

Why I'm Writing A Blog About Personal Data Protection

The subhead states the mission of the blog. I want to make key methods for protecting user data privacy and identify comprehensible to the m...