Skip to main content

Infosec community debates changing ‘Black Hat’ terminology

A Google security researcher has chosen to withdraw from speaking at the Black Hat security conference this year and has asked the information security community to stop using the terms “black hat” and “white hat”, as reported by ZDNet. David Kleidermacher, VP of Engineering at Google, said that the terms contribute to racial stereotyping.

“I’ve decided to withdraw from speaking at Black Hat USA 2020,” Kleidermacher wrote on Twitter. “Black hat and white hat are terms that need to change. This has nothing to do with their original meaning… These changes remove harmful associations, promote inclusion, and help us break down walls of unconscious bias.”

Recommended Videos

I’ve decided to withdraw from speaking at Black Hat USA 2020. I’m deeply grateful for the offer to speak, and for the great work the conference has done over the years to protect users through transparency, education, and community building.

— David Kleidermacher (@DaveKSecure) July 3, 2020

Please enable Javascript to view this content

Kleidermacher also referred to the need to update gendered terms like “man-in-the-middle,” a type of cyber attack, to a gender-neutral term like “person-in-the-middle.”

Many in the infosec community pointed out that the terms “black hat” and “white hat” did not originate from references to race, but rather to the tradition in Western movies in which the hero typically wears a white hat and the bad guy wears a black hat. But Kleidermacher anticipated this objection, writing that, “the need for language change has nothing to do with the origins of the term black hat in infosec. Those who focus on that are missing the point. Black hat/white hat and blacklist/whitelist perpetuate harmful associations of black=bad, white=good.”

Although this latest debate was clearly inspired by recent Black Lives Matter campaigning and a broader conversation around racial justice in the U.S. and beyond, this discussion is not new. A similar discussion has been going on for decades over software terms like “master” and “slave,” which are frequently used to describe dependencies in documentation. Programming language Python, for example, removed this terminology from its documentation in 2018.

However, unlike the master/slave example which was broadly agreed over time to be offensive, the black hat/white hat issue has been more contentious. Hackers concerned with racial justice worried on Twitter that there was a “huge danger that we waste the moment shuffling words around instead of changing power systems” and argued for “more than a name change” such as inviting more Black hackers to speak at events, funding scholarships for Black hackers, and paying to train more Black hackers.

https://twitter.com/btanderson72/status/1279507435372371968

Information security analyst Brian Anderson wrote a thread discussing the harm done by careless terminology. He concluded that changing naming conventions without addressing the larger issues affecting minority hackers, such as cost and the predominantly white lineup of speakers at events, was performative. “I’m glad people are actively or thinking of giving up their coveted roles in Black Hat,” he wrote. “That’s great. But. But. Who is being served by this action? What’s the objective? Who benefits? How? That’s the conversation we have to have.”

Georgina Torbet
Georgina has been the space writer at Digital Trends space writer for six years, covering human space exploration, planetary…
Google’s Gemini makes adding events to Calendar easier than ever
Gemini and Gmail apps on the home screen of an Android phone.

In a Workspace Updates blog post, Google announced a new button that adds events to Google Calendar directly from Gmail based on email details. The new button will only be added if Gemini thinks the email describes an event.

When you click the button, a sidebar opens, letting you know that Gemini has added the event. However, it also tells you it couldn't invite attendees yet. It tells you to invite them yourself by modifying the events in Google Calendar. Additionally, Gmail shows you a "Show me what's on my calendar that day" button so you know what else is on your to-do list. When you view the event in Calendar, it says an external source created it.

Read more
Update Firefox now to keep your web browser secure, users warned
Firefox icons

In a Mozilla support document, the company urges users to update Firefox before Friday, March 14, 2025, due to an expiring root certificate, as first reported by Bleeping Computer. Failure to update to the latest browser version will result in disruption and security risks.

Mozilla explained what could happen if users don't update by saying, "On March 14, 2025, a root certificate used to verify signed content and add-ons for various Mozilla projects, including Firefox, will expire. Without updating to Firefox version 128 or higher (or ESR 115.13+ for ESR users, including Windows 7/8/8.1 and macOS 10.12–10.14 users), this expiration may cause significant issues with add-ons, content signing and DRM-protected media playback.

Read more
Huawei teases an exciting device with a rollable, not foldable screen
The Huawei Pura 70 Ultra's logo on the back.

Just what is Huawei up to on March 20? In a teaser posted online, it seems the technology company is going to announce a device with a rollable screen, which expands from one size out into another. Such a device has been seen only as a concept before, but if Huawei is making a big deal out of it before the event, this may be the first time we’re seeing a commercial device which may be on sale soon.

Huawei The New Form - Break the 1610 Imagination | Huawei Pocket 3 Teaser

Read more