Sofia Herrera
banner
sofiaareinaa.bsky.social
Sofia Herrera
@sofiaareinaa.bsky.social
Award Winning Global CISO, CPO, Lawyer (not legal advice) | Author | International Speaker | Dogs, Data Privacy & Data Security | personal account
Spatchcock turkey, the way God intended 😤
November 28, 2025 at 4:55 AM
Reposted by Sofia Herrera
A Washington state trial court has shot down local municipalities’ effort to keep ALPR data secret, making it clear that the public has a right to these records even when the government uses a third-party vendor to conduct surveillance and store personal data. www.eff.org/deeplinks/2...
Washington Court Rules That Data Captured on Flock Safety Cameras Are
A Washington state trial court has shot down local municipalities’ effort to keep automated license plate reader (ALPR) data secret.The Skagit County Superior Court in Washington rejected the attempt
www.eff.org
November 12, 2025 at 11:58 PM
Reposted by Sofia Herrera
Today on Volts: Redwood Materials, the biggest battery recycler in the US, has launched Redwood Energy, which will gather used batteries & hook them up to power banks to serve as grid-scale storage until they're depleted. I talk with the CTO about the logistics & potential of second-life batteries.
Can "second life" EV batteries work as grid-scale energy storage?
Colin Campbell explains how Redwood drains every drop of capacity from used batteries before they are recycled.
www.volts.wtf
October 22, 2025 at 4:21 PM
Happy belated Diwali to all that celebrate. May your path to happiness and success be lit 🪔
October 22, 2025 at 2:11 AM
Reposted by Sofia Herrera
With alt text.

Executive summary: the US killed at least 3 Colombian fishermen who’d put up a distress flag. In Colombian waters
October 19, 2025 at 1:49 PM
Reposted by Sofia Herrera
"SOUTHCOM was concerned about the operations not being lawful," per CNN reporting.

Not surprised.

I served in Pentagon assessing counterterrorism operations. I explain constitutional and international legal problems with these Caribbean strikes.⤵️

youtu.be/DHXz_y6Updg?...
Illegal Caribbean Boat Strikes
YouTube video by Ryan Goodman
youtu.be
October 19, 2025 at 3:43 PM
Happy Cybersecurity Awareness month

www.techradar.com/pro/security...
www.techradar.com
October 4, 2025 at 9:35 PM
In today's version of, build it and it'll be exploited:
Discord said late on Friday that hackers stole users' government-issued IDs (passports and driver's licenses) from one of its customer support databases.

I wrote a few words about the risks of age verification laws, and why collecting people's government IDs is bad for security and privacy.
Discord says users' government IDs used for age checks stolen by hackers
Thanks to age verification laws, expect more data breaches of users' government-issued passports and driver's licenses.
this.weekinsecurity.com
October 4, 2025 at 7:11 PM
Reposted by Sofia Herrera
“The judge or the prosecutor doesn't know which portions were written by the AI and which portions were written by the officer,” EFF’s @MGuariglia.bsky.social told KPBS News. “It interjects a lot of uncertainty — and a lot of deniability for the officer.” www.kpbs.org/news/public...
Chula Vista, police reports and AI: What you need to know
San Diego County's second-largest city is embracing AI tools for policing as California considers new regulations.
www.kpbs.org
October 3, 2025 at 6:56 PM
The law that gave companies a safe harbor for monitoring & sharing cyber threat intel (CISA 2015) has expired. Here’s what the lapse means for oversight, contracts, and data sovereignty →
October 1, 2025 at 6:45 PM
Reposted by Sofia Herrera
While Ring has offered end-to-end video encryption since 2021, it isn’t the default setting so users should look into changing the privacy settings on their security cameras, EFF’s @MGuariglia.bsky.social told WBUR’s Here & Now. www.wbur.org/hereandnow/...
Ring says police partnerships help solve crimes. What does it mean for your privacy?
Since Amazon acquired Ring, the company has waffled on its messaging around crime and fallen under scrutiny for data privacy failings. Recently announced partnerships with police departments and weapons manufacturer Axon signal a renewed focus on using private cameras to fight crime.
www.wbur.org
September 30, 2025 at 9:56 PM
I'll be posting a shareable PowerPoint on next steps tomorrow, Oct 1. I've been advising my clients to look beyond government sharing and into contracts & privacy frameworks (policies, employee notice & consent). We've lost a liability shield that has a huge blast radius in the US cyber community.
Just now: Government funding officially lapses, and with it, a bedrock cybersecurity law that’s been in place the last decade to help facilitate cyber information-sharing between companies and the public sector. Earlier coverage here:
www.nextgov.com/cybersecurit...
Vital cyber data-sharing law appears likely to expire amid looming government shutdown
Law firms are advising clients to prepare for this possibility, although the extent of information sharing that will cease if the law lapses remains unclear.
www.nextgov.com
October 1, 2025 at 4:25 AM
Reposted by Sofia Herrera
En U.S. v. Hunt, tener el “hardware” no autoriza hurgar en los datos: la corte trazó la línea y la búsqueda pasó solo porque hubo orden judicial posterior. www.eff.org/deeplinks/2...
Appeals Court: Abandoned Phones Don’t Equal Abandoned Privacy Rights
The Court of Appeals for the Ninth Circuit, which covers California and most of the Western U.S., just delivered good news for digital privacy: abandoning a phone doesn’t abandon your Fourth
www.eff.org
September 28, 2025 at 5:04 PM
I find this article disingenuous. It's not an Open Source problem (like the article builds the case), but an accuracy and processing problem inherent to *all* LLMs. Transparency in plain language key

Are there security risks inherent to Open Source AI models? .... 1/3

fortune.com/2025/09/24/l...
LexisNexis exec says it’s ‘a matter of time’ before attorneys lose their licenses over using open-source AI pilots in court | Fortune
AI is rapidly being adopted into law firms across the country, and it’s raising stakes for attorneys and their clients alike.
share.google
September 28, 2025 at 2:55 PM
"To counter the troublesome ambition of such men, Lincoln called on his fellow Americans to renew the framers' values and to embrace the Comstitution and its laws."
- Leadership in Turbulent Times by Doris Kearns Goodwin
September 25, 2025 at 3:06 AM
There is no way nvidia sells chips in China - at least in a meaningful way. Do you think the country that pulled off Operation Shady Rat would open themselves up to potential hardware backdoors from an adversarial country?
August 27, 2025 at 9:57 PM
The Bay Area has such good colombian food 😋
August 20, 2025 at 2:36 AM
AI builders need to ask themselves: do i *need* a MCP server or am I just doing it because someone said it was hot?

Dedicating an entire server to your third party connections may not be the best idea unless you're prepared to do it securely
AI infrastructure also carries cybersecurity risks. MCP servers (AI connectors to data and tools) can become a backdoor and be used to steal company data. Researchers found 492 servers exposed without authentication. www.trendmicro.com/vinfo/us/sec...
August 18, 2025 at 7:22 AM
Is anyone else absolutely heartbroken by the amount of small businesses selling their last supplies and closing?

Coming from a line of small business owners, starting a business is the American dream. Now it's no longer affordable.
August 15, 2025 at 8:30 PM
I thought this was a cup Ramen flavor at first
Tombstone Hulapeño Pizza (2015-2016): A frozen pizza made with a zesty tomato sauce and "real Wisconsin mozzarella", topped with pepperoni, bits of jalapeno pepper, and pineapple chunks.
July 23, 2025 at 5:30 PM
Stay true to yourself, and your value. Don't let anyone try to bury that
July 19, 2025 at 12:33 AM
Reposted by Sofia Herrera
Text analysis of Congressional hearings shows that legislators interrupted Yellen (as Fed Chair) more and interacted with her using more aggressive language than they did with male Fed Chairs. But having a daughter reduces “hostility toward Yellen.” So depressing, completely unsurprising.
July 13, 2025 at 1:35 AM
Famous last words: The code is done, I just need you to push it to GitHub and the changes will reflect automatically

#startup #startuplife
July 11, 2025 at 7:16 PM
camping on the Grand Canyon South Rim to see the sunrise and sunset was a peak bucket list activity ✅️ I'll be back for skydiving 🪂
July 8, 2025 at 5:40 PM
Learning Korean is going well 🤦‍♀️
July 2, 2025 at 3:41 AM