Live data from Hacker News

Ex-Twitter exec blows the whistle, alleging reckless cybersecurity policies

cnn.com

261–270 of 645 posts

Re: Ex-Twitter exec blows the whistle, alleging reckless cybersecurity policies

#262
post #174

Earlier quoted context omitted.

>waiving due diligence rights Pop legal quiz - does "waving due diligence rights" during an acquisition remove the other party's liability for fraud they've committed against the prospective buyer?

Pop legal quiz - define « fraud ». Musk literally tweeted about the « bot problem » on Twitter before the acquisition.

"All multifarious means which human ingenuity can devise, and which are resorted to by one individual to get an advantage over another by false suggestions or suppression of the truth. It includes all surprises, tricks, cunning or dissembling, and any unfair way which another is cheated."

Re: Ex-Twitter exec blows the whistle, alleging reckless cybersecurity policies

#263

Earlier quoted context omitted.

It's Twitter. What possible serious security implications could possibly warrant everyone in Washington getting into a frenzy? All you do is make public comments that have zero value. And if this is indeed serious, where the fuck have we landed?

>> It's Twitter. What possible serious security implications could possibly warrant everyone in Washington getting into a frenzy? Considering how widely used Twitter is, at this point we can comfortably assume that most politicians and political operatives, even high profile ones, must have very sensitive information in their Twitter DM inboxes.

> must have very sensitive information in their Twitter DM inboxes.

I doubt that, and if they really do, they should be either trained or exposed pronto. Twitter is an entertainment platform.

Re: Ex-Twitter exec blows the whistle, alleging reckless cybersecurity policies

#264

I've been hearing about Mudge for decades . It's actually a bit ... heartbreaking ... to see him looking so corporate, but we all age, don't we? I doubt he was fired for being bad at his job. But I'll bet he was fired for getting in people's faces. That was basically his calling card for years . Why is anyone surprised? I guess Twitter thought they could hire the cachet, without hiring the man. I remember an Apple WW…

I don't think your comparison is apt. Mudge isn't some loose cannon. He worked for the US government as a program manager for DARPA from 2010-2013, then for Google from 2013-2020. You think he looks "corporate" now, just look at his government portrait on his Wikipedia page from a decade ago. Point being, Mudge is a very well respected cyber security professional, not some "hippy hacker" from years past. Which makes…

It looks like you're reading several things into GP's comment that he did not write. At least I read it completely differently. I.e. that perhaps Mudge's alleged failure was "not playing ball" regardless of what the particular game might have been in that corporate environment, at that particular time, under/beside those particular execs.

Re: Ex-Twitter exec blows the whistle, alleging reckless cybersecurity policies

#266

Earlier quoted context omitted.

It's Twitter. What possible serious security implications could possibly warrant everyone in Washington getting into a frenzy? All you do is make public comments that have zero value. And if this is indeed serious, where the fuck have we landed?

>> It's Twitter. What possible serious security implications could possibly warrant everyone in Washington getting into a frenzy? Considering how widely used Twitter is, at this point we can comfortably assume that most politicians and political operatives, even high profile ones, must have very sensitive information in their Twitter DM inboxes.

ah ah ah so they trust twitter ? the situation is improving at minus light speed...

Re: Ex-Twitter exec blows the whistle, alleging reckless cybersecurity policies

#267

Earlier quoted context omitted.

FYI Kpop is "very" popular in some segments of American culture that you just might not cross over with. I experience it frequently in the "Team Fight Tactics" ecosystem which is an E-Sport run by Riot Games (of League of Legends fame) that for some reason contains a very large Asian American population (in relation to their % of the population) and all of them frequently stream Kpop to large audiences. The largest s…

what I find peculiar about the kpop crowd is how they seemingly appear out of nowhere and on-demand on in political topics to drown out/cancel people who don't like them or share their values. In Korea a blogger was able to see how BTS fans or "bots" were able to game the music ranking. What's interesting to me is how they seemingly correlate with wumaos as well. I don't have solid evidence but it appears that much o…

Is this not a generic phenomenon though with no specific relation to Kpop? I was involved in campus recruiting a decade ago and remember distinctly all of the deep discussions the students were having about Kony2012 and what they should do about it during the recruiting dinners. How and why these political flash mobs form online doesn't seem well understood and will no doubt spawn dozens to hundreds of papers over the next few decades examining it.

Re: Ex-Twitter exec blows the whistle, alleging reckless cybersecurity policies

#268

Earlier quoted context omitted.

It's Twitter. What possible serious security implications could possibly warrant everyone in Washington getting into a frenzy? All you do is make public comments that have zero value. And if this is indeed serious, where the fuck have we landed?

>> It's Twitter. What possible serious security implications could possibly warrant everyone in Washington getting into a frenzy? Considering how widely used Twitter is, at this point we can comfortably assume that most politicians and political operatives, even high profile ones, must have very sensitive information in their Twitter DM inboxes.

I’d also add the opportunity for provocateurs to cause problems: e.g. inducing vaccine hesitancy (back when the covid vaccines worked, but let’s not focus too much on that).

My feed is still filled with how all of our public service problems must be caused by the 1-2% that were put on unpaid leave for refusing to disclose their vaccination status. I’m sure the 1-2% could help, but the issues are much larger than that.

Re: Ex-Twitter exec blows the whistle, alleging reckless cybersecurity policies

#269

"Twitter has hidden negligent security practices, misled federal regulators about its safety, and failed to properly estimate the number of bots on its platform, according to testimony from the company’s former head of security, the legendary hacker-turned-cybersecurity-expert Peiter “Mudge” Zatko." "Zatko was fired by Twitter in January and claims that this was retaliation for his refusal to stay quiet about the com…

What a bombshell! Maybe Elon Musk's complaints about Twitter have more merit than anyone expected.

Anything Elon or crypto related is still being spammed heavily with giveaway/impersonation bots. Nothing has changed. The spam/bot problem is as bad now as it has ever been, and likely is worse than assumed, because it includes not just obvious spam accounts, but legit accounts that have been taken over by spammers or repurposed for spamming. So there is a % of accounts which are obvious bots and than another % accounts that exhibit bot-like behavior. Given how much time Elon spends on twitter and his first-hand experience with scammers using his name and spamming his comments, I think his assessment is probably more accurate compared to what twitter is claiming.

Re: Ex-Twitter exec blows the whistle, alleging reckless cybersecurity policies

#270

Earlier quoted context omitted.

> Apperantly he started the whistleblowing process before any Musk involvement with twitter. According to his lawyer as reported by someone on Twitter. IIRC, lawyers make statements that guilty clients are innocent all the time. If he was working with Musk help him wiggle out of the Twitter deal, it would fatally undermine the goal for to come out publicly about the relationship. I'm skeptical unless they can provide…

So instead of taking a statement from the lawyer you think it makes more sense to wildly speculate and make things up? The burden of proof falls on the other side now to prove the whistle blowing started after Musk.

A statement from a lawyer saying "this is older" isn't evidence. Until the lawyer shows an example of any form of whistleblowing predating Musk, this is still on them.
Post reply on HN