Live data from Hacker News

Why privacy is important, and having “nothing to hide” is irrelevant

robindoherty.com

291–300 of 329 posts

Re: Why privacy is important, and having “nothing to hide” is irrelevant

#291

Earlier quoted context omitted.

Imagine some type of insurance that typically costs 100 USD/month in premiums per person and where the insurance company typically pays out on average 90 USD/month for damages per person. Now, imagine that one insurance company has figured out a way to detect a certain group of people who will only have damages of on average 50 USD/month, which make up about 5% of the potential customers, and detecting which of their…

The insurance industry is fairly heavily regulated (in the US). They can only charge different rates based on specific factors. This means that your entirely imaginary (and therefore entirely unconvincing) scenario will remain entirely imaginary (and unconvincing). Personally, I would prefer if car insurers could price discriminate more based on data. I think this would lower rates for me personally, both in the shor…

> This means that your entirely imaginary (and therefore entirely unconvincing) scenario will remain entirely imaginary (and unconvincing).

Well, that very much depends on how you look at it. It might be imaginary in so far as regulation in the US possibly prevents those consequences, which is great. One might also see it as evidence that collection of personal data has risks--and that regulation might be one way to deal with those risks, at least in some cases. After all, this kind of regulation is in effect a prohibition on collecting certain kinds of personal data, even if the collection in itself is permissible, as companies won't collect data when they can't use it for anything anyway.

> Personally, I would prefer if car insurers could price discriminate more based on data. I think this would lower rates for me personally, both in the short term because I try to cultivate safe driving habits, and in the long term because it would create an incentive for everybody to try to drive more safely.

Are you sure that it would? Remember that for the insurer, it doesn't matter whether they calculate your risk (and thus your premium) correctly, what matters for them is that they aren't worse at calculating risks than the competition (i.e., the competition can't outcompete them on price or cause them to be left with a non-representative sample of their risk model), and that on average, their criteria match reality (i.e., they don't take on risks that are actually larger than they can pay for). Even if you in fact do drive more safely than the average driver (as in: at the end of your live, you will have had fewer/less severe accidents), it might happen that their predictive models group you in a different category, because characteristics of your driving behaviour that they use to categorize you are correlated with high-risk drivers. If insurers don't know how to (economically) measure why your driving behaviour is safe, it doesn't matter whether it actually is.

Also, the incentive can actually be a problem, exactly because risk models employed by ensurers tend to not be an exact representation of reality. If you have an incentive structure that does not align with reality, the incentive can end up promoting harmful behaviour. For example, one obvious proxy for safe driving habits could be lack of sudden decelaration. It's easy to measure, and generally, if you pay attention to traffic and drive with foresight, you usually will not need to brake suddenly as much as a reckless driver. So, it's probably true that both, incentivising people to not brake suddenly would have as one consequence people driving with more foresight, which should reduce accidents, and also that people who don't brake suddenly generally are a lower risk for the ensurer than those who do. However, this proxy can not distinguish whether you brake suddenly because you didn't pay attention--or because someone else didn't pay attention and surprised you. In the latter case, though, the thing to do to avoid an accident might be to brake as hard as you can. But that will be seen by your insurance as risky driving behaviour (which it most of the time is) that comes with a higher premium, so you have created an incentive for the driver to let an avoidable accident happen. Note that the driver in question won't think about this for an hour before deciding what to do, it's a gut reaction that might well be influenced by having internalized "braking hard costs money".

And also: What if you actually are a really good driver but you enjoy braking hard? What if you brake hard just for the fun of it, in situations where it's completely harmless. Is it fair if you have to pay higher premiums for that? Such incentives that work via proxy measurements of the actual risks tend to force adherence to a standard of behaviour. I find the idea frightening that insurance companies might get to dictate "safe behaviour", where the specific behaviour is not actually necessary for safety, it just happens to be easily distinguishable from risky behaviour, so behaving differently costs you money, simply because it's difficult to figure out that your behaviour is not actually risky.

Re: Why privacy is important, and having “nothing to hide” is irrelevant

#292

Earlier quoted context omitted.

That is not what's typically meant by surveillance. Sure, it turns out using centralized web services has helped the government with things such as PRISM, but that doesn't mean we should blame people for those development practices rather than the government. Prior to PRISM, pretty much any reasonable person would assume that the blobs you store in S3 aren't going to be looked at anyone or, worst case, metadata will…

must run their own hardware with their own databases and so on I have hardware in my pocket that is hundreds of times more powerful than the first web servers I every worked on. There is no technological reason why that same hardware couldn't be used. I'd love to have a PAN based around my phone (which is way more local to me that much of the "hardward with their own databases" that I've ever worked on. Federation to…

I'm working on product that federates software deployments to any target cloud using immutable data structures provided by the blockchain. It's called Wisdom.

Re: Why privacy is important, and having “nothing to hide” is irrelevant

#293

Earlier quoted context omitted.

Every time one of millions of developers commits code to a centralized service, they have a hand in exposing individual's data to the surveillance society we live in today. Data exposure can come from being publicly available on the site itself, being obfuscated through aggregation in the service's APIs, leaked through security holes in implementation of said services, risk of theft by hackers looking for high value…

That is not what's typically meant by surveillance. Sure, it turns out using centralized web services has helped the government with things such as PRISM, but that doesn't mean we should blame people for those development practices rather than the government. Prior to PRISM, pretty much any reasonable person would assume that the blobs you store in S3 aren't going to be looked at anyone or, worst case, metadata will…

> It is true that customer data is trusted with a lot of services-of-services nowadays, but do you want to go back to the stone age where the only people who can store anything must run their own hardware with their own databases and so on?

This statement is in conflict with itself logically. It's arguing that diminished trust levels for data are rationalized to achieve a savings in time and cost to run the infrastructure for the application. The conflict comes about when you start assuming the data has acceptable levels of trust requirements for a given customer. The fact is, you can't speak for my trust levels, which is exactly what is being discussed in the link.

I get to say what trust levels I want for my software and data. Not being able to use the software because I can't trust it is an unacceptable proposition, so I challenge our abilities to build something better than what we have today, and do so without rationalizing why we aren't building it.

Re: Why privacy is important, and having “nothing to hide” is irrelevant

#294
OK, so now David Chaum is proposing PrivaTegrity.[0] It's "meant to be both more secure than existing online anonymity systems like Tor or I2P and also more efficient". But it includes a "carefully controlled backdoor that allows anyone doing something 'generally recognized as evil' to have their anonymity and privacy stripped altogether". Just exactly how the bloody hell can a backdoored design be styled as more secure than Tor and I2P?

There's no fool like an old fool, as they say. Sad :(

[0] http://www.wired.com/2016/01/david-chaum-father-of-online-an...

Re: Why privacy is important, and having “nothing to hide” is irrelevant

#295

Earlier quoted context omitted.

That is not what's typically meant by surveillance. Sure, it turns out using centralized web services has helped the government with things such as PRISM, but that doesn't mean we should blame people for those development practices rather than the government. Prior to PRISM, pretty much any reasonable person would assume that the blobs you store in S3 aren't going to be looked at anyone or, worst case, metadata will…

> Prior to PRISM, pretty much any reasonable person would assume that the blobs you store in S3 aren't going to be looked at anyone or, worst case, metadata will be seen by AWS employees for debugging stuff. I beg to differ. Where you concentrate power, you have to expect abuse. > It is true that customer data is trusted with a lot of services-of-services nowadays, but do you want to go back to the stone age where th…

> There isn't anything inherent in running your own hardware that requires that to be a major burden.

Sure there is. Climate control, redundancy/backups, and power consumption/reliability, to name a few, are all concerns that we get to delegate to "the cloud," that are 100% "inherent in running your own hardware."

I applaud your usability argument, but there are most certainly inherent burdens to running your own hardware that don't exist for cloud services.

Re: Why privacy is important, and having “nothing to hide” is irrelevant

#296

Earlier quoted context omitted.

> Prior to PRISM, pretty much any reasonable person would assume that the blobs you store in S3 aren't going to be looked at anyone or, worst case, metadata will be seen by AWS employees for debugging stuff. I beg to differ. Where you concentrate power, you have to expect abuse. > It is true that customer data is trusted with a lot of services-of-services nowadays, but do you want to go back to the stone age where th…

> There isn't anything inherent in running your own hardware that requires that to be a major burden. Sure there is. Climate control, redundancy/backups, and power consumption/reliability, to name a few, are all concerns that we get to delegate to "the cloud," that are 100% "inherent in running your own hardware." I applaud your usability argument, but there are most certainly inherent burdens to running your own har…

> Climate control

A 10 watt server doesn't need climate control.

> redundancy

Is mostly a matter of software.

> backups

Is also mostly a matter of software. With some simple peering mechanism, you can store backups on your friends' servers (and they on yours). Though a standardized pure backup storage API for cloud storage of encrypted backups at one (or more) of a multitude of providers might be a useful option to have.

> power consumption

Is a matter of plugging a plug into a socket in the wall.

> reliability

Is also mostly a matter of software.

Now, I am not saying that running your own datacenter is no work, but running a server or two for your personal needs or for the needs of a small company should be possible to make almost a no-brainer.

There is no technical reason why you shouldn't be able to buy a bunch of off-the-shelf mini-servers for a hundred bucks or so a piece that you can peer by connecting them with an ethernet or USB cable or whatever might be appropriate and that you then connect to the internet wherever you like and that automatically replicate their data among each other and allow easy installation of additional services via a web interface, with automatic software upgrades, and allow you to rebuild the state of a broken server by connecting a new one and clicking on a few buttons in the web interface ... well, there are many ways to solve the details, but my point is: cloud providers also don't employ one admin per machine, but rather automate the management of their machines to make things efficient--there isn't really any reason why much of the same automation strategies (which are mostly software, after all) shouldn't be usable on decentralized servers in people's homes.

Re: Why privacy is important, and having “nothing to hide” is irrelevant

#297

Earlier quoted context omitted.

How do bathroom doors fit into this? In your utopia, if you ask me a question, do I have to answer honestly? That people would always want to answer honestly is not a satisfying answer.

I can't seem to reply to your last comment. So I'll answer here. I don't favor coercion, so nobody is going to be forced to say or do anything. Refusing to answer would be like refusing to help someone who request your help. Considering that answering the question is relatively inexpensive, you really don't have a reason not to do so. Unless you're hiding something, which will make people think of you as selfish. I w…

I don't really see much support for radical transparency here. You are saying it will be great because it's great. You need arguments that are convincing to someone who thinks you are starting from nonsense.

If it helps, I tend to be frank/blunt to an uncomfortable extent. I sort of try not to because people find it off-putting, but I also sometimes don't notice I'm doing it. So it's not like I am in opposition to what you are saying, but I don't necessary see that it would be so great.

(re being able to reply, there's a speed bump built into the site, if you click the time stamp through to the individual comment page you can always reply there)

Re: Why privacy is important, and having “nothing to hide” is irrelevant

#298

Earlier quoted context omitted.

I believe it is a flaw of the human personality that makes us want to hide information and eventually lie about it. Who said anything about lying being a part of a desire for privacy? I don't care if Google or the government knows that I'm searching "[insert embarassing keywords for you here] Would you care if a prospective insurer knows you're (hypothetically) searching for "atrial fibrillation management" or "opiat…

Recognize the real source of the problem. Like you said, someone trying to get information about the topics you mentioned could simply be doing this out of curiosity. Now person A from the government says you are X. However you are not X, you are Y. Think again, what is the actual problem? The actual problem is not the data which is 100% correct. The actual problem is people's prejudices and assumptions. This is what…

I forget the term for this, but you've poisoned the discussion by leading it to a dead end with an impossible goal: ridding humanity of prejudice and assumption. Since that isn't remotely possible, we might as well throw our hands up in the air. And forget about data, it's not at fault here.

Like you, Snowden's freedom of speech line never impacted me... until I read this article. It suddenly hit me. The reason I was missing his point is because I was framing it in terms of what's in it for me rather than looking at it as what's in it for us. Someone who doesn't care about freedom of speech doesn't care because he doesn't see what's in it for him. But I doubt you'd argue the benefits of the first amendment.

Similarly, privacy is very important. You might not care (even though you really do), but defending privacy is about ensuring security. Privacy is important for all of us, just like freedom of speech is.

As for what the actual problem is, the problem for the most part is ignorance and a failure to quench it. We need more privacy / cyber-security advocates who can educate people on why they ought to care. It's like teaching people why it's important to lock their doors at night or why they should put their letters into envelopes instead of just using post cards. It's why my mom had to drill into my brain the importance of not giving out my social security number willy nilly. Are you so liberal with your SSN? You don't care about privacy, so would it bother you if Facebook or Google asked for it. After all, they just want to make sure you are who you say you are.

Things aren't obvious to us until they're obvious, and then it feels like common sense. DUH, lock your door! DUH, encrypt your messages!

Re: Why privacy is important, and having “nothing to hide” is irrelevant

#299

Wishing privacy on the internet is like wishing no turmoil while shagging during a massive religious events of paranoid gunned puritans. If privacy is such a problem for some it is not a technological problem, it is a political problem. If so, people concerned should make their revolution in an appropriate place: the real world, and let internet stay a public media. PS noticed another fun topic there are blacklisted…

> Wishing privacy on the internet is like wishing no turmoil while shagging during a massive religious events of paranoid gunned puritans. Why do you think that? > If privacy is such a problem for some it is not a technological problem, it is a political problem. Why do you think that? > If so, people concerned should make their revolution in an appropriate place: the real world, and let internet stay a public media.…

Because main manufacturers of equipment are also from paranoid puritans country ? (Huawey, Cisco, juniper, alcatel, nortel, ericson ...) And that it make MITM easy for agencies since government heavily subsidise telecoms maybe? ($$ for a backdoor)

And since Internet is globally like a very fast Gutenberg press, it has the same property as printed paper: privacy is not a problem of the media, but of the institutions/organizations trying to control it. It is controled by law or force. Law/force comes from/is backed by government, so if you don't have privacy then complain to your government for his actions (or lack of).

Sum up: privacy is not an internet problem (media). It is a problem between the citizens and their governments (use of media).

Had you opened a good history book you should know it. And also in the same books you should discover that the concern for privacy has already existed before internet : the more governments are authoritative the more they both tend to love secrecy for themselves and hate public debate for the others and want to control media.

Control of media by the government do not always align with the public's best interests. DMCA, patents, IP laws, "censorship for the protection of the kids" ? Does it ring a bell? Google who wants you to read only sites that have nice ads so they filter out as non relevant some information.

Want to overthrow your government in the shadow? commit a crime? Sext your gf? I don't care about these usage and consider them accessory. They divert people from real problems like accessing the information vehicled by the media.

By the way, they make very nice tinfoil hats nowadays. There are successful crowdfundings for it.

Ho, and internet is the real world? Ah ah ah.

As much as "war and peace" is the real world.

Re: Why privacy is important, and having “nothing to hide” is irrelevant

#300
post #277

Earlier quoted context omitted.

I'm of a similar (although not identical) opinion to miguelrochefort. The short answer is... if you imagine a utopia, do you imagine lots of secrets or lots of openness and acceptance? The reality is that I came to this conclusion through a long process but I'm pretty tired. The process definitely considered whether the 'private' version of the world was even possible. I don't think it is. Surveillance will happen. B…

How do bathroom doors fit into this? In your utopia, if you ask me a question, do I have to answer honestly? That people would always want to answer honestly is not a satisfying answer.

Bathroom doors are great. Let's not confound surveillance of interactions and privacy in the extreme sense.

Bathroom doors allow you to interact with yourself with some level of privacy. People know you're in there. They know for how long. They know if there are extreme sounds or scents. If you misuse the plumbing or other bathroom features there is clear evidence of this. In rare circumstances, the bathroom door can be kicked down while someone is using the bathroom.

The most common result of such information is "are you ok darling?".

Bathroom behaviours are interesting because they provide a real case study on the impact of acceptance on privacy. On a first date, where you're not presenting the real version of yourself, you don't want the other party on the date to know anything about the events while you're in the bathroom. Over time, if the relationship progresses, the secrecy around these events changes. The reason for this secrecy changing, I believe, is trust/acceptance. Over time you know that if the other person learns more about the bathroom events, it will not change how they perceive you. If you're in such a relationship, it also doesn't mean you wont use a bathroom door, and it doesn't mean you don't want your partner to use one.

Hopefully that analogy makes sense. Most privacy advocates have a list of 'secrets' they fear will be used against them. I think we're more likely to see a world where this fear is addressed through improved respect of differences, compared to a world where suddenly surveillance is effectively impossible.

Post reply on HN