Troy Hunt Profile picture
Nov 26 16 tweets 4 min read Read on X
Watching the dismay on my 13 year old daughter’s face as the final 2 weeks of social media access tick down to Dec 10. It’ll be 2028 before she can use Snapchat (and others again). What’s everyone think about this? esafety.gov.au/about-us/indus…Image
This got a lot of traction, it’s like the Twitter of old! So, let me clarify a few things as a parent, cybersecurity guy and industry commentator:
Firstly, recognise that parental decisions around how you raise children is very personal. Diet. Exercise. Religion. Study. Family. And, how they use social media, messaging and devices in general. There are wide-ranging views on all these, obviously.
A very valid argument is that this is the government taking decisions away from parents; shouldn’t it be OUR decision when to give kids access? Taking that right away from parents feels authoritarian, however…
…many parents are ill-equipped to make that decision and without doubt, there are harms associated with social media use and they’re most evident in younger users. These are well-documented and well-understood and don’t need repeating here.
The legislation requires “reasonable” measures by in-scope platforms to identify under 16s that go beyond simply asking for age. Social media companies have HUGE troves or profiling data that will enable them to challenge those who are underage.
That won’t mean that I need to be challenged for age proof, but it will likely mean that my 16 year old son will. So, how will that be done? It will be up to the platforms to implement and it will differ. There are problems with this:
The most obvious is the privacy risk should there be a data breach, which is precisely what happened with Discord last month: theguardian.com/games/2025/oct…
Then there are the issues around those wishing to anonymously use these platforms and, given we’re talking kids, those who may not even be ABLE to prove age. These are both technical and social problems without easy solutions.
That covers the situation we’ll face in 13 days from now and many people are upset about the prospect of kids losing access, but many other people in this thread were upset about kids HAVING access in the first place, so let’s address that:
Social media is not just about online interaction. In both my kids’ cases, Snapchat is also where they coordinate IRL actives with friends. They plan events, meet up in person and share photos and videos. It’s often the conduit for “go outside and play”.
But they’ll just move that elsewhere (iMessage, WhatsApp, etc). They’ll lose the broader access to more distant friends who they follow on Instagram and no longer be part of our Facebook posts (which is apparently “old people social media” 🤷‍♂️), but that’s deferring access.
We made the decision to give our kids social media when they turned 13. To my earlier point, that’s a parental right and particularly in this household with what I do and what they’ve been exposed to their entire lives, in hindsight, that was the right decision.
There are MANY mitigating controls around that access and I’ve written about that in detail in the past: troyhunt.com/sharenting-byo…
Finally, what SHOULD this legislation look like? I would prefer it define controls that social media platforms should implement for 13 to 16 year olds similar to Instagram for teens: help.instagram.com/995996839195964
Screen time, friend connections, public visibility, location sharing, media publishing etc. Give them CONTROLLED access, not no access. As it stands, we’ll see lots of unintended consequences in a couple of weeks time, and the cure may be worse than the disease.

• • •

Missing some Tweet in this thread? You can try to force a refresh
 

Keep Current with Troy Hunt

Troy Hunt Profile picture

Stay in touch and get notified when new unrolls are available from this author!

Read all threads

This Thread may be Removed Anytime!

PDF

Twitter may remove this content at anytime! Save it as PDF for later use!

Try unrolling a thread yourself!

how to unroll video
  1. Follow @ThreadReaderApp to mention us!

  2. From a Twitter thread mention us with a keyword "unroll"
@threadreaderapp unroll

Practice here first or read more on our help page!

More from @troyhunt

Jul 17
Rack upgrade day! Some new @Ubiquiti goodness to consolidate things, pics and details coming… Image
Image
Image
Alright, let’s jump into this and full disclosure: @Ubiquiti has sent me all the bits you’ll see to play with. That’s after I spent a bunch of my hard-earned cash buying their gear and writing about it 9 years ago now, I’ve just been a fan ever since: troyhunt.com/ubiquiti-all-t…
@Ubiquiti What we’ve got here is new 48 port Pro XG switch with 10 GbE, PoE+++ and etherlighting (more on that soon). That’ll replace both the older 24 port USW Pro Max (which was to play with etherlighting) and 48 port USW Pro (because I needed more ports), so I’ll reclaim an RU. Image
Image
Read 12 tweets
Mar 13
Working with @Cloudflare pages is so cool, check out this workflow:
We have an open source repo for @haveibeenpwned's ux-rebuild which is here: github.com/HaveIBeenPwned/
Our front end oompa loompa just submitted a PR in the "privacy-page" branch: github.com/HaveIBeenPwned…
Read 7 tweets
Jan 2
The Pornhub story regarding age verification shows just how hard privacy-preserving identifying verification is. Even when everyone agrees on the sentiment (nobody is saying kids should have access to porn), there’s no consensus on the execution. 404media.co/pornhub-is-now…Image
Image
It took me a few seconds to VPN into Texas and capture these screens. It takes someone in Texas a few seconds to VPN into California and *not* see these screens! It costs a few bucks a month for a good VPN with loads of exit nodes around the world, placing you where you want.
I suspect that factored into Pornhub’s decision - the knowledge that they can satisfy a state law whilst not posing any real barrier to paying customers. If someone is willing to pay for porn, surely they’re willing to pay a lot less for a VPN to access it?
Read 7 tweets
Oct 25, 2024
Was confused whilst doing my live stream just now why there was a sudden spike in DB usage on @haveibeenpwned. Turns out it was related to *dropping* this constraint:
ALTER TABLE [dbo].[Domain] ADD CONSTRAINT [CHK_DomainName_Pattern] CHECK (([dbo].[IsDomainValid]([DomainName])=(1)))
We'd decided a constraint that calls a function on every insert of a new domain was unnecessary; all it did was validate that the string adhered to the correct pattern, but because we controlled the upstream code, we could do that before it even hit the DB.
Read 5 tweets
Oct 9, 2024
Hi folks, yes, I'm aware of this. I've been in communication with the Internet Archive over the last few days re the data breach, didn't know the site was defaced until people started flagging it with me just now. More soon.
Looks like someone compromised a polyfill JS file on a subdomain to inject the alert, but that doesn't explain the root site being down
Looks like a combination of things with the site being DDoS'd as well:
Read 9 tweets
Oct 8, 2024
This was a very uncomfortable breach to process for reasons that should be obvious from @josephfcox's article. Let me add some more "colour" based on what I found:
Ostensibly, the service enables you to create an AI "companion" (which, based on the data, is almost always a "girlfriend"), by describing how you'd like them to appear and behave: Image
Buying a membership upgrades capabilities: Image
Read 21 tweets

Did Thread Reader help you today?

Support us! We are indie developers!


This site is made by just two indie developers on a laptop doing marketing, support and development! Read more about the story.

Become a Premium Member ($3/month or $30/year) and get exclusive features!

Become Premium

Don't want to be a Premium member but still want to support us?

Make a small donation by buying us coffee ($5) or help with server cost ($10)

Donate via Paypal

Or Donate anonymously using crypto!

Ethereum

0xfe58350B80634f60Fa6Dc149a72b4DFbc17D341E copy

Bitcoin

3ATGMxNzCUFzxpMCHL5sWSt4DVtS8UqXpi copy

Thank you for your support!

Follow Us!

:(