3 ms·
It's sort of amazing how there is a flood of replies in this thread from people who would never hesitate to override/bypass the protection by using "the analog
by AStonesThrow 1y ago
It's sort of amazing how there is a flood of replies in this thread from people who would never hesitate to override/bypass the protection by using "the analog hole" or some other workaround.
And this just goes to show you how easily "Shadow IT" can arise in a place of business.
My previous employer subscribed to Google Workspaces, and we used it for Docs and Sheets and Gmail; standard type uses. We also used Slack a lot. Now there were a lot of areas that were clearly off-limits to me as a user. For example, the Google Play Store was completely empty for my account -- I couldn't install any mobile apps at all. This hindered me from creating a separate user on my smartphone just for work.
Also, entire Google properties were off-limits, such as Maps. We didn't need or use those in our work there. There was a lot locked down, but there were a lot of things left open around the edges.
Now I have a "hacker mindset" where if something isn't working, I'll immediately consider it a glitch or bug, and try to work around it. If I can't sign in to something it's probably a "me" problem and I hammer on the door a bit. Basically the last thing on my mind is security restrictions. And for many of us working with computers, there's just the question of the supervisor asking us to get something done, and we go and try to do it, and that's how rogue WAPs show up in corporate networks; that's how backdoors show up on our desktop PCs, etc.
Indeed, many features on Android or Chrome these days are removed due to security trouble. I often realize this after-the-fact, when I think about the implications of using such a feature. Sure, it's a good thing the product is made more secure, but this feature has vanished, usually without adequate explanation, and so my workflow suffers.
https://m.xkcd.com/1172/ https://m.xkcd.com/1172/
So the next time I am tempted to just do a workaround for some glitch I perceive, I'm going to ponder it a little more deeply and consider whether there are security implications.