Live data from Hacker News

Former NSA chief Keith Alexander has joined Amazon’s board of directors

theverge.com

261–270 of 465 posts

Re: Former NSA chief Keith Alexander has joined Amazon’s board of directors

#262
post #8

> For those keeping score, not only does Amazon own the The Washington Post and oversees the CIA’s Commercial Cloud Enterprise, it now has on its powerful board of directors the most visible figure from the NSA who illegally spied on Americans for the better part of a decade. This sounds tinfoil hat crazy, but here we are. Not so crazy now. Man in a position to have reams of compromising intel on the current presiden…

It’s getting to the point where most people’s mental health would probably benefit from ignoring all this. It’s all very bad and will probably push you into coming up with crazy conspiracy theories.

Re: Former NSA chief Keith Alexander has joined Amazon’s board of directors

#263

Earlier quoted context omitted.

You’d be surprised. We had security that rivaled even the standards required by the banks. Truly crazy high multiple physical key paired with vault and some faraday cage protected offline signing thing — I wasn’t privy to it all just saw bits of it while it was being implemented. Suffice to say it can be done and by going off cloud you get the flexibility to do things like this but... in the end it’s overkill

For every 1 of those crazy high security companies, there’s probably 1000’s that couldn’t secure MongoDB instances.

They could if the spent the $ and recruited experienced people.

Re: Former NSA chief Keith Alexander has joined Amazon’s board of directors

#264

Here in Germany I used to work for a company that swore off Amazon and other US cloud vendors because of things like this: the relationships between them and the government are too tight. They didn’t want German user data being compromised. It could have been FUD to do things on premises or what not but it seemed to make sense at the time and now with this...

Too tight? As in they could be separated? I see - does it just take a different name to make a distinction then?

Re: Former NSA chief Keith Alexander has joined Amazon’s board of directors

#265

Earlier quoted context omitted.

This bullshit game of "which is worse" between the US and China, with both countries constantly moving the goalposts, is just tiring. Yes, China is currently worse. But with children locked up in cages and a massive prison-slavery industry, not to mention crazy NSA spying and so on, you're kidding yourself if you say the US is that far behind. You can say, as a US citizen, that all this stuff doesn't affect you much.…

The difference is that here we have the freedom to criticize and organize against it. One of the presidential candidates wants to tear down all the stuff you pointed out. I can say that the surveillance doesn't affect me because it's almost unheard of for Americans to get arrested with evidence that the NSA collected. The NSA is not a law enforcement agency. In China arresting people based on data from surveillance i…

But the FBI has been trained to hide the source of information, probably because it is illegal in many cases (maybe comes from NSA)... they call it parallel construction but it probably should be called something much worst.

https://en.wikipedia.org/wiki/Parallel_construction

Re: Former NSA chief Keith Alexander has joined Amazon’s board of directors

#268
post #125

Earlier quoted context omitted.

Exactly. I'm constantly surprised how many companies carelessly upload all their internal documents to Google Docs, S3, Dropbox, GitHub, Slack et al. I'd suggest that anything that's not supposed to be public never be uploaded to such services, specially if you are not from the US. The way to go even for small tech companies is self hosting, except maybe for email, due to GMail marking your emails as spam from what I…

My company self hosts everything. They’re so bad at it. Something is always down and we waste so much time with our shorty tooling. We even had this amazing idea that we could implement our own version of GCP from scratch. The result is dismal, we dread using it because it’s very unreliable, and it costs double or triple what GCP costs. We’re not a small company, we have about 1k employees and our business is softwar…

Is there yet an open-source alternative to GCP? Can you buy bare metal and just have your own cloud?

Re: Former NSA chief Keith Alexander has joined Amazon’s board of directors

#269
post #125

Here in Germany I used to work for a company that swore off Amazon and other US cloud vendors because of things like this: the relationships between them and the government are too tight. They didn’t want German user data being compromised. It could have been FUD to do things on premises or what not but it seemed to make sense at the time and now with this...

Exactly. I'm constantly surprised how many companies carelessly upload all their internal documents to Google Docs, S3, Dropbox, GitHub, Slack et al. I'd suggest that anything that's not supposed to be public never be uploaded to such services, specially if you are not from the US. The way to go even for small tech companies is self hosting, except maybe for email, due to GMail marking your emails as spam from what I…

you can encrypt. In face isn't it best practice to encrypt in storage and in transit?

Re: Former NSA chief Keith Alexander has joined Amazon’s board of directors

#270

Earlier quoted context omitted.

My company self hosts everything. They’re so bad at it. Something is always down and we waste so much time with our shorty tooling. We even had this amazing idea that we could implement our own version of GCP from scratch. The result is dismal, we dread using it because it’s very unreliable, and it costs double or triple what GCP costs. We’re not a small company, we have about 1k employees and our business is softwar…

Is there yet an open-source alternative to GCP? Can you buy bare metal and just have your own cloud?

I don’t think so. But knowing my company’s capabilities and proficiency, it was obvious it was never going to work. Would have been much more logical to buy from one of the many local providers who run their own data centers. It doesn’t really matter because in the end the solution is so bad that we try and use GCP anyway whenever we get the chance.
Post reply on HN