Live data from Hacker News

Ring LLC home security company ransomed by ALPHV ransomware

web.archive.org

21–30 of 124 posts

Re: Ring LLC home security company ransomed by ALPHV ransomware

#21
post #18
post #15

Earlier quoted context omitted.

This. It would have been (relatively) easy for Ring to encrypt the video data so that they themselves can't access it. Obviously I don't wish it upon the individuals that use these cameras but I would probably smirk if data gets leaked and Amazon gets sued into the ground.

E2E encryption is supported with Ring. You have to enable it yourself. Only discovered this a few weeks ago and immediately enabled it [1] This doesn't protect your PII data though. This is not a good situation at all. [1] https://support.ring.com/hc/en-us/articles/360054941511-Unde...

There are also some pretty extreme feature downgrades to enabling it. Main ones for me if I was a customer would be

Limited notifications,.loss of timeline feature, inaccessible on desktop and other non-mobile platform

Re: Ring LLC home security company ransomed by ALPHV ransomware

#22

This should be interesting. Also, thanks for not making me visit twitter. Edit: because twitter doesn't load on this particular device I use for HN. Basically the browser is too old. There is no "hate" ... ffs

[flagged]

Twitter used to be controlled by the blue tribe. Now it’s been bought by a (perceived) member of the red tribe. It’s a simple as that.

People feel the need to signal their tribal affiliation and attack those from other tribes. Been part of human behaviour since humans began.

Re: Ring LLC home security company ransomed by ALPHV ransomware

#23
post #12

I've said it before and I'll say it again: - Companies should suffer massive fines / damages / criminal charges when they leak the personal data of millions of customers. - I think EULAs are a ridiculous run-around the law. They should be non-enforceable. Its far from perfect, but case law is pretty clear that people and companies are liable for damages due to foreseeable harm that they cause. (Except EULAs dodge thi…

Yes. Also, this time it's a consumer grade surveillance, but the same goes for security cams in prisons or nuclear facilities: hoarding information (sensitive or not) does not translate 1:1 to increasing security. This should be obvious, still we feel more, not less, safe with our house surveilled with technology.

Re: Ring LLC home security company ransomed by ALPHV ransomware

#24

This should be interesting. Also, thanks for not making me visit twitter. Edit: because twitter doesn't load on this particular device I use for HN. Basically the browser is too old. There is no "hate" ... ffs

[flagged]

You are getting downvoted for "lol".

Re: Ring LLC home security company ransomed by ALPHV ransomware

#26
post #12

I've said it before and I'll say it again: - Companies should suffer massive fines / damages / criminal charges when they leak the personal data of millions of customers. - I think EULAs are a ridiculous run-around the law. They should be non-enforceable. Its far from perfect, but case law is pretty clear that people and companies are liable for damages due to foreseeable harm that they cause. (Except EULAs dodge thi…

Apart from leaks harming the privacy of customers, paying ransoms does social harm by providing an income and incentive to criminals.

I found leaked details of Royal Mail's negotiations with their attackers fascinating [0].

I'm not sure it's practical to outlaw the payment of ransoms, but it should at least be heavily taxed (say, 100%). Naively, I would expect this to cut by half the amount that can be extorted through ransomware attacks, making countries that implement such a tax less attractive targets.

[0] https://www.theguardian.com/business/2023/feb/15/under-no-ci...

Re: Ring LLC home security company ransomed by ALPHV ransomware

#28
post #22

Earlier quoted context omitted.

[flagged]

Twitter used to be controlled by the blue tribe. Now it’s been bought by a (perceived) member of the red tribe. It’s a simple as that. People feel the need to signal their tribal affiliation and attack those from other tribes. Been part of human behaviour since humans began.

[flagged]

Re: Ring LLC home security company ransomed by ALPHV ransomware

#29
post #18

Earlier quoted context omitted.

E2E encryption is supported with Ring. You have to enable it yourself. Only discovered this a few weeks ago and immediately enabled it [1] This doesn't protect your PII data though. This is not a good situation at all. [1] https://support.ring.com/hc/en-us/articles/360054941511-Unde...

There are also some pretty extreme feature downgrades to enabling it. Main ones for me if I was a customer would be Limited notifications,.loss of timeline feature, inaccessible on desktop and other non-mobile platform

Definitely some tradeoffs there. I recall going back and forth in my head "I'm paranoid, I don't need to enable this" to "what if there was a breach..".

and well.. here we are.

Post reply on HN