Hacker Newsnew | past | comments | ask | show | jobs | submit | oytis's commentslogin

You should either implement over-the-air updates or not connect your device to the network at all.

That doesn't help when the company behind the device disappears or stops supporting the device. Or is hacked to convert all the devices they manufactured into a botnet.

The problem of course is that many of these devices are eager to connect to the internet so they can often user hostile updates.

E.g. in Germany many pedestrians, especially tourists, tend to think that bycicle lanes are fancily-painted sidewalks

That's just in line with their ethics. They also maintain that countries other than the US should not have SOTA AI capabilities.

Running a ransomware gang is immoral. Catching someone running a ransomware gang is good. If publishing their name helps catch them, it's also good. Not sure where do you see the gap between legality and morality in this case

People often forget that Threat Actors (TA) are the ones keeping the infosec alive. They are doing a good job of scaring people into implementing actual security protocols and thereby improving everyone's security posture. The whole infosec would collapse without TAs, let's not forget that. They create jobs.

This is the “Broken Window” fallacy[1] which was explained by Bastiat.

[1] https://en.wikipedia.org/wiki/Parable_of_the_broken_window


[flagged]


It's not a "made-up term", it's shorthand for a well-known argument. Not allowing re-usable arguments is like not allowing the use of libraries in software: It wastes time better spent on moving the frontier forward.

If economic growth at all cost is the solution, then you are wasting your time giving your fiction away for free.

The wildfire industry brings growth but it would be a whole lot better if we didn't have wildfires.

The same thing is true with computers. Imagine all the nice things we could have if we didn't have to worry about people abusing the systems we build.


Well, to be honest, those old enough remember when cryptography was considered someting for the military and special services, and considering using encryption would put you under immediate suspicion. Now we can at least argue we need it to protect us from the cyber crime, even if we really have privacy and free speech in mind

Get down to earth. That can never happen nor does it need to.

That's right. They also create jobs for police though, and now German police is doing theirs

German govt is also one of the most corrupt and vastly incompetent govt. It's run by bunch of boomers. Most of the prolific ransomware gangs have terrible opsec. De-anon'ing them is child's play. Most of the opsec-aware TAs never even get attributed, let alone get caught for any breaches.

> One of the most corrupt

It's on like place 10 out of 180, which makes it one of the least corrupt places.

It also has some surprisingly non-boomer departments, like the Sovereign Tech Fund. Either way you need to celebrate police doing good things and immoral actors being exposed, it can only have good outcomes.

Perhaps it deters them, or deters the next generation of such hackers. Or at least it makes their life less enjoyable, which is fair since they were only able to afford their travels due to their illicitly acquired wealth.


> surprisingly non-boomer departments, like the Sovereign Tech Fund

The one that has just invested in Scala? In year 2026? There are many good things about Germany, but competence in tech is not one of them.


Because Switzerland is a tiny country that holds wealth extracted from whole wolrd's economies and that's just not replicatable even by the US?

What's wrong with verifiable credentials? It's an important thing to have it seems? Your passport or a bank card are verifiable credentials, or at least are designed to be.

It's an EU thing, overcomplicated an not sovereign:

https://ec.europa.eu/digital-building-blocks/sites/spaces/EB...


Oh dear, web 3.0, blockchain. Do we get our sovereign monkey NFT too?

Verifiable credentials (VCs) are W3C standards and do not involve blockchains. Nor does Web 3.0.

Tell this your parlamenentarian.

What do you mean "shifting to smartphone"? It's not a natural process - it's a technical decision to shift them to the smartphone, and a really bad one. We already have smart cards, they work and do not depend on any corporations, even less foreign corporations.

We even have smartcards with e-ink displays and I'd personally want them to succeed here instead of moving security-critical apps to smartphones..

Because Google then abuses its position to inject unremovable spyware with elevated privileges into the phone which the user then can't defent against without making the phone "unsecure" and thus unsuitable for these apps.

If these apps really need a smartphone, I'd at least want it to be free of ad-related garbage in the system. I'm fine with not being able to flash a custom ROM on the smartcard as it doesn't contain hostile software.

Now if even Apple starts showing ads, there's no other choice but to restist this..


I don't get it. Are mechanisms in our ID cards not strong enough so that we have to rely on the security of the operating system?

Must be missing something - is there a way to save progress?

progress is saved automatically, what issue are you encountering?

None yet, will try to remember not to clear cookies :) Sometimes games that don't maintain user accounts let you save progress in a file and restore it later, so that it survives loss of browser state, see e.g. https://microcorruption.com/

Thank you for the game by the way! It's nice to recall my asic classes, and looking forward to GPU specific chapters.


Oh, no, now I actually lost part of my progress. Apparently has something to do with multiple tabs open.

I might be alone with this, but I don't find it very entertaining.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: