Live data from Hacker News

Ex-Twitter exec blows the whistle, alleging reckless cybersecurity policies

cnn.com

371–380 of 645 posts

Re: Ex-Twitter exec blows the whistle, alleging reckless cybersecurity policies

#371

Earlier quoted context omitted.

I don't remember conservatives threatening Twitter to censor "dangerous" views or "misinformation" or telling who to ban.

[flagged]

You are making a false comparison. They refused to write a particular message, not to not serve the customer a cake.

Re: Ex-Twitter exec blows the whistle, alleging reckless cybersecurity policies

#372

Millenials and GenZ may have no idea who Mudge is. I, however, almost lost my first job out of college at a bank because I ran l0phtcrack against our Windows NT 4 server to see if it could crack passwords. I showed my boss, and he pulled me aside into another room and tore my head off for irresponsibly running this tool against a production server. He said I could have been fired if this got out, but he covered my as…

Ah yes, Lopht Heavy Industries. Indispensable tools at the time.

It's a 0, not an 'o'.

Re: Ex-Twitter exec blows the whistle, alleging reckless cybersecurity policies

#373

Earlier quoted context omitted.

[flagged]

Bigger example: Donald Trump called Net Neutrality "Obamacare for the Internet", back when the bug-bear was Comcast rather than FAANG.

Ending the enforcement of Net Neutrality was not about censoring content or subjects.

Re: Ex-Twitter exec blows the whistle, alleging reckless cybersecurity policies

#374
post #362
post #353

Earlier quoted context omitted.

You don’t understand the value of reputation.

I don't think you understand what it means to burn all bridges. He is literally unhireable right now in any corporate context. You are naive if you believe he is doing this out of some hacker ethos.

You talk like part of the problem.

Re: Ex-Twitter exec blows the whistle, alleging reckless cybersecurity policies

#375

When is mudge going to audit tesla/spacex for "non-compliant kernels", "encryption at rest", etc, etc? Everyone in this shameful industry knows that literally any company in the US would get shredded in such a vigorous audit and the silliest part is that twitter is a fucking shitposting platform that doesn't have my SSN or financial data so equating it to equifax in any way is absolutely laughable.

Please speak for yourself.

Re: Ex-Twitter exec blows the whistle, alleging reckless cybersecurity policies

#376
post #319

Earlier quoted context omitted.

I don't because I'm not seeing an organization that will hold them accountable. - This Congress is ill-equipped to understand tech, much less hold it accountable. As long as the people are happy, Congress is happy. - Lord knows the people are ill-equipped to get how bad this is. They already watched this company allow a rogue employee to shut off the account of the President of the United States (before they chose to…

> My recommendation is to shed Twitter as a user. I never understood why tech people have such a strange enamor towards Twitter. Can’t be an industry power dev without it. Can’t start a company without it. Having a healthy Twitter following is often more important than having actual users—even to investors. Twitter is digital hype. I agree. It’s time to replace Twitter. The only question is what exactly is it that an…

Main problem is that journalists uses Twitter, as long as they are there Twitter will remain the most relevant political forum. It is mandatory for most journalist jobs to be active on Twitter, and since all the journalists are there anyone who wants publicity will also post on Twitter.

Re: Ex-Twitter exec blows the whistle, alleging reckless cybersecurity policies

#377

I think it's a pretty open secret that Twitter is a fairly broken company. It's no surprise that their security practices are bad, because all their practices are bad. It's also very difficult to view this in isolation when you have the timeline of (1): Fired in January, nothing happens. (2) Musk makes offer for twitter then reneges. (3) Months before the lawsuit gets decided re-emerges with accusations. What happene…

[deleted]

Re: Ex-Twitter exec blows the whistle, alleging reckless cybersecurity policies

#378

Honestly, can you really trust anything about major social media sites any more? Has Twitter ever been in the news for properly making even a thousand people successful from scratch really ever in the product's life? They have pipelines of exploitation for everyone that gets "discovered" into contractual nightmare deals, they require tons of free labor and costly hurdles just to become notable and visible on the plat…

[deleted]

Re: Ex-Twitter exec blows the whistle, alleging reckless cybersecurity policies

#379

Earlier quoted context omitted.

If it impacts politics then it is one more reason not to be regulated by politicians.

Government regulation spans further than just rules engineered by a few politicians, it can be publicly voted upon, and it can dictate minimum standards that are upheld across private business for everyone's safety, which in this case is highly warranted. It's the best chance we have to stop this horrible trend. Companies have shown repeatedly that they are not trust-worthy nor responsible enough to self regulate.

> Government regulation spans further than just rules engineered by a few politicians, it can be publicly voted upon

You're making a distinction without making a difference. Regulating public forums for their content outside of illegal content has never been not abused. The UK is learning this the hard way with the police "checking the thinking" of netizens.

If you think companies are bad, then imagine politicians. I can switch off to another social media but I can't switch out to another state.

Re: Ex-Twitter exec blows the whistle, alleging reckless cybersecurity policies

#380
post #36

Eh, you could take out Twitter and insert many other company names and it'll still hold true. And those companies hold so much more sensitive data about you than Twitter. I know of insurance companies that have help desk employees with domain admin access. And all crippling ransomware attacks take advantage lax permissions. This is rampant. How is this a story?

[deleted]
Post reply on HN