1
00:00:00,000 --> 00:00:17,240
Welcome back to Quietly Secure.

2
00:00:17,240 --> 00:00:20,760
Over the last few episodes we've covered quite a lot.

3
00:00:20,760 --> 00:00:28,440
We've talked about websites, scams, deepfakes, artificial intelligence, algorithms, digital

4
00:00:28,440 --> 00:00:34,520
reputation and children growing up in an increase in the connected world.

5
00:00:34,520 --> 00:00:40,240
There's a common thread running through all of these subjects and that is trust.

6
00:00:40,240 --> 00:00:45,400
We've learned that technology can help us establish trust but it can also be used to

7
00:00:45,400 --> 00:00:47,120
emit airtip.

8
00:00:47,120 --> 00:00:53,120
We've learned that people can be manipulated, that information can be personalised, even

9
00:00:53,120 --> 00:00:59,440
that AI can produce convincing answers and the things which look real aren't always

10
00:00:59,440 --> 00:01:01,280
what they seem.

11
00:01:01,280 --> 00:01:03,600
So where does this leave us?

12
00:01:03,600 --> 00:01:06,440
Should we stop trusting anything?

13
00:01:06,440 --> 00:01:09,240
Should we assume every email is a scam?

14
00:01:09,240 --> 00:01:11,320
Every photograph is fake?

15
00:01:11,320 --> 00:01:13,920
Every website is dangerous?

16
00:01:13,920 --> 00:01:16,480
Every AI answer is wrong.

17
00:01:16,480 --> 00:01:22,200
Of course not, that would be exhausting and it wouldn't be particularly useful.

18
00:01:22,200 --> 00:01:29,600
Instead I'd like to talk about something more practical, a healthy skepticism.

19
00:01:29,600 --> 00:01:34,920
Skepticism isn't cynicism, these two ideas are often confused.

20
00:01:34,920 --> 00:01:39,320
Synicism says, everything is probably dishonest.

21
00:01:39,320 --> 00:01:45,000
Skepticism says, I'm willing to believe you but I'd like to understand why.

22
00:01:45,000 --> 00:01:47,480
That's a very different mindset.

23
00:01:47,480 --> 00:01:56,000
A cynical person starts from distrust, a skeptical person starts from curiosity and curiosity

24
00:01:56,000 --> 00:01:58,920
is much more useful.

25
00:01:58,920 --> 00:02:03,320
We already use skepticism, think about everyday life.

26
00:02:03,320 --> 00:02:08,640
If somebody tells you they're one the lottery, you might ask a few questions.

27
00:02:08,640 --> 00:02:14,680
If a stranger asks you to hand over your car keys, you'll probably want to know why.

28
00:02:14,680 --> 00:02:21,800
If a shop offers something worth £1,000 for say £10, you might wonder what's going on.

29
00:02:21,800 --> 00:02:24,760
We already know how to be skeptical.

30
00:02:24,760 --> 00:02:30,920
The internet simply makes it harder because information arrives much faster.

31
00:02:30,920 --> 00:02:36,240
We've talked about urgency before but speed creates another problem.

32
00:02:36,240 --> 00:02:39,600
We're exposed to more information than ever.

33
00:02:39,600 --> 00:02:47,440
There's notifications, news, videos, emails, advertisements, AI generated content.

34
00:02:47,440 --> 00:02:53,200
Our brains aren't designed to carefully evaluate thousands of information fragments every

35
00:02:53,200 --> 00:02:54,560
day.

36
00:02:54,560 --> 00:03:01,360
We use shortcuts, sometimes those shortcuts are helpful, sometimes they're not.

37
00:03:01,360 --> 00:03:04,520
Health skepticism gives us another option.

38
00:03:04,520 --> 00:03:09,040
Pause, consider, then decide.

39
00:03:09,040 --> 00:03:13,600
There are three questions, you don't need a complicated framework.

40
00:03:13,600 --> 00:03:17,400
Three questions can go a surprisingly long way.

41
00:03:17,400 --> 00:03:19,160
Who is telling me this?

42
00:03:19,160 --> 00:03:23,360
How do they know and what do they want me to do?

43
00:03:23,360 --> 00:03:25,360
Let's take them one at a time.

44
00:03:25,360 --> 00:03:27,080
Who is telling me this?

45
00:03:27,080 --> 00:03:34,560
Is it somebody I know, a company, an unknown account, a recognised news organisation,

46
00:03:34,560 --> 00:03:38,600
and an anonymous post, the source matters?

47
00:03:38,600 --> 00:03:41,160
Then how do they know?

48
00:03:41,160 --> 00:03:43,480
Are they providing evidence?

49
00:03:43,480 --> 00:03:46,040
Are they repeating somebody else?

50
00:03:46,040 --> 00:03:47,560
Are they guessing?

51
00:03:47,560 --> 00:03:50,480
Is there independent confirmation?

52
00:03:50,480 --> 00:03:54,360
And finally, what do they want me to do?

53
00:03:54,360 --> 00:04:02,480
Click something, buy something, send money, share it, become angry, give them information.

54
00:04:02,480 --> 00:04:08,320
Sometimes the answer to that final question tells you more than the content itself.

55
00:04:08,320 --> 00:04:11,160
You can't become a professional doubter.

56
00:04:11,160 --> 00:04:17,200
There's a danger here, once you start learning about misinformation, you can become suspicious

57
00:04:17,200 --> 00:04:19,080
of everything.

58
00:04:19,080 --> 00:04:25,280
You see a photograph and wonder whether it's AI, you read news article and assume it's

59
00:04:25,280 --> 00:04:26,680
propaganda.

60
00:04:26,680 --> 00:04:31,280
Someone sends you an email and you immediately assume they're a criminal.

61
00:04:31,280 --> 00:04:37,720
It's not a health skepticism, that's exhaustion, and eventually you'll stop trusting anything.

62
00:04:37,720 --> 00:04:41,760
A functional society requires trust.

63
00:04:41,760 --> 00:04:49,760
We trust hospitals, engineers, banks, public services, and we trust strangers every day.

64
00:04:49,760 --> 00:04:55,840
The goal isn't to eliminate trust, it's to make our trust more thoughtful.

65
00:04:55,840 --> 00:04:56,840
Evidence matters.

66
00:04:56,840 --> 00:05:01,600
One of the best ways to remain grounded is to ask for evidence.

67
00:05:01,600 --> 00:05:04,440
Not endless evidence, just enough.

68
00:05:04,440 --> 00:05:09,480
If someone makes an extraordinary claim, look for confirmation.

69
00:05:09,480 --> 00:05:15,960
If a story appears on one website, see whether other credible independent sources are reporting

70
00:05:15,960 --> 00:05:16,960
it.

71
00:05:16,960 --> 00:05:21,120
If an AI gives you an important answer, check it.

72
00:05:21,120 --> 00:05:27,640
If a financial message arrives unexpectedly, contact the organisation using a method you

73
00:05:27,640 --> 00:05:29,400
already trust.

74
00:05:29,400 --> 00:05:32,080
You don't need to become an investigator.

75
00:05:32,080 --> 00:05:40,400
You just need to avoid making important decisions, based on a single unverified piece of information.

76
00:05:40,400 --> 00:05:42,480
But be careful with your own bias.

77
00:05:42,480 --> 00:05:46,320
There's another uncomfortable part of skepticism.

78
00:05:46,320 --> 00:05:52,280
Sometimes the information we trust the most is the information we want to be true.

79
00:05:52,280 --> 00:05:53,760
We all do this.

80
00:05:53,760 --> 00:05:59,120
If somebody tells us something we already believe, it feels convincing.

81
00:05:59,120 --> 00:06:04,680
If somebody tells us something we disagree with, we're much more likely to question it.

82
00:06:04,680 --> 00:06:06,720
That's human nature.

83
00:06:06,720 --> 00:06:14,680
Healthy skepticism means applying the same standard to information we like as we apply to

84
00:06:14,680 --> 00:06:17,560
information that we dislike.

85
00:06:17,560 --> 00:06:19,880
That's considerably harder.

86
00:06:19,880 --> 00:06:23,840
But it's also considerably more valuable.

87
00:06:23,840 --> 00:06:26,840
But you don't have to know everything.

88
00:06:26,840 --> 00:06:30,360
This is perhaps one of the most important lessons.

89
00:06:30,360 --> 00:06:33,440
You don't need to understand every technology.

90
00:06:33,440 --> 00:06:39,160
You don't need to understand or know every AI model how it works internally.

91
00:06:39,160 --> 00:06:42,240
You don't need to understand cryptography.

92
00:06:42,240 --> 00:06:46,000
You don't need to know how every algorithm operates.

93
00:06:46,000 --> 00:06:51,120
You simply need to recognise that something deserves a little more attention and that's

94
00:06:51,120 --> 00:06:52,120
enough.

95
00:06:52,120 --> 00:06:55,280
Security isn't about knowing everything.

96
00:06:55,280 --> 00:06:58,920
It's about knowing what you don't know enough.

97
00:06:58,920 --> 00:07:03,960
And we're back to something we've mentioned several times this season, the pause.

98
00:07:03,960 --> 00:07:06,840
A scammer wants you to act immediately.

99
00:07:06,840 --> 00:07:09,760
An algorithm wants you to keep scrolling.

100
00:07:09,760 --> 00:07:13,720
A sensational story wants an instant reaction.

101
00:07:13,720 --> 00:07:16,800
A misleading headline wants to click.

102
00:07:16,800 --> 00:07:19,680
AI gives you answers immediately.

103
00:07:19,680 --> 00:07:22,560
But you don't have to respond immediately.

104
00:07:22,560 --> 00:07:27,640
You can pause, think, check, then decide.

105
00:07:27,640 --> 00:07:33,920
That tiny gap between receiving the information and acting on it is one of the most useful forms

106
00:07:33,920 --> 00:07:36,640
of security we have.

107
00:07:36,640 --> 00:07:38,800
And it doesn't require an app.

108
00:07:38,800 --> 00:07:40,520
Or a subscription.

109
00:07:40,520 --> 00:07:42,400
Or a security product.

110
00:07:42,400 --> 00:07:45,960
It simply requires a moment.

111
00:07:45,960 --> 00:07:48,240
Trust but thoughtfully.

112
00:07:48,240 --> 00:07:52,760
Trust the best way to think about all this is not trust nobody.

113
00:07:52,760 --> 00:07:55,120
It's trust thoughtfully.

114
00:07:55,120 --> 00:07:57,800
Trust people you've got reason to trust.

115
00:07:57,800 --> 00:08:00,880
Trust systems that have earned your trust.

116
00:08:00,880 --> 00:08:04,120
Trust information where the evidence supports it.

117
00:08:04,120 --> 00:08:06,920
But remain comfortable asking questions.

118
00:08:06,920 --> 00:08:11,720
And if something changes your mind, that's okay too.

119
00:08:11,720 --> 00:08:15,720
Changing your mind when the evidence changes isn't weakness.

120
00:08:15,720 --> 00:08:19,920
It's one of the strongest forms of critical thinking that we have.

121
00:08:19,920 --> 00:08:24,200
And this brings us back to the philosophy behind this podcast.

122
00:08:24,200 --> 00:08:27,160
Being secure doesn't mean being frightened.

123
00:08:27,160 --> 00:08:30,880
It doesn't mean assuming everyone is trying to deceive you.

124
00:08:30,880 --> 00:08:35,920
It doesn't mean turning off every device and disappearing from the internet.

125
00:08:35,920 --> 00:08:41,000
It means understanding enough to make sensible decisions.

126
00:08:41,000 --> 00:08:46,600
Because when something feels unusual, check when something is important.

127
00:08:46,600 --> 00:08:50,080
Question when something seems too good to be true.

128
00:08:50,080 --> 00:08:57,920
And perhaps most importantly, don't let somebody else's urgency become your emergency.

129
00:08:57,920 --> 00:09:02,480
So perhaps skepticism isn't about becoming cynical.

130
00:09:02,480 --> 00:09:06,720
It's not about assuming that everything we see online is fake.

131
00:09:06,720 --> 00:09:09,920
And it's certainly not about believing nothing.

132
00:09:09,920 --> 00:09:12,760
It's about learning to pause.

133
00:09:12,760 --> 00:09:14,440
To ask questions.

134
00:09:14,440 --> 00:09:18,600
To recognize when something doesn't quite make sense.

135
00:09:18,600 --> 00:09:23,760
Because the technology around us is becoming remarkably good at creating things that look

136
00:09:23,760 --> 00:09:24,760
real.

137
00:09:24,760 --> 00:09:31,360
Images, videos, voices, messages, even entire conversations.

138
00:09:31,360 --> 00:09:36,360
And that means one of the most important skills we can develop isn't knowing how to spot

139
00:09:36,360 --> 00:09:38,240
every fake.

140
00:09:38,240 --> 00:09:43,160
It's knowing when we should stop and ask for more evidence.

141
00:09:43,160 --> 00:09:46,760
But there's another question hiding underneath all of this.

142
00:09:46,760 --> 00:09:52,800
If technology can create a convincing version of almost anyone, then how do we know who

143
00:09:52,800 --> 00:09:55,160
we're actually dealing with?

144
00:09:55,160 --> 00:10:00,240
How do we prove the person behind the screen is really who they're clear to be and perhaps

145
00:10:00,240 --> 00:10:02,200
even more importantly?

146
00:10:02,200 --> 00:10:06,040
How do we prove that we really ourselves?

147
00:10:06,040 --> 00:10:07,840
That's where we're going next.

148
00:10:07,840 --> 00:10:14,160
In the next episode of Quietly Secure, we're going to look at identity in an AI world,

149
00:10:14,160 --> 00:10:18,160
passwords, biometrics, digital identity.

150
00:10:18,160 --> 00:10:22,480
And the increase in the complicated questions of proving who you are.

151
00:10:22,480 --> 00:10:29,040
In a world where technology can potentially reproduce your fears, your voice, and even your

152
00:10:29,040 --> 00:10:30,560
behaviour.

153
00:10:30,560 --> 00:10:36,360
Because perhaps the next generation of digital skepticism won't just be about asking,

154
00:10:36,360 --> 00:10:37,360
is this real?

155
00:10:37,360 --> 00:10:41,840
It might be about asking, are you really you?

156
00:10:41,840 --> 00:10:45,880
Remember, not everything that looks real is real.

157
00:10:45,880 --> 00:10:53,200
Sometimes the safest thing you can do is simply stop and ask, how do I know?

158
00:10:53,200 --> 00:10:59,680
Until next time, stay curious, stay calm, and as always, stay Quietly Secure.

159
00:10:59,680 --> 00:11:09,680
[MUSIC]

160
00:11:09,680 --> 00:11:19,680
[BLANK_AUDIO]

