Ask HN: What's a security risk you think people should be more aware of?
1–10 of 21 posts
Re: Ask HN: What's a security risk you think people should be more aware of?
#2Re: Ask HN: What's a security risk you think people should be more aware of?
#3I don't think it's really much of a risk because an attacker has to not only go to a physical location and replace the QR code, but they need to make some kind of replacement website that looks genuine to fool someone.
It's actually harder to pull off than a credit card skimmer.
Example: QR codes at a restaurant, I need to put the QR codes on every single menu (how am I going to do that discreetly without visiting the restaurant multiple times?) and then I also have to create a functioning website that mimics the restaurant's website. And then what happens when the customer doesn't get any food when the order via QR code and the server doesn't see any order being placed? Everyone involved would be immediately suspicious.
Re: Ask HN: What's a security risk you think people should be more aware of?
#4Re: Ask HN: What's a security risk you think people should be more aware of?
#5[flagged]
Re: Ask HN: What's a security risk you think people should be more aware of?
#6Re: Ask HN: What's a security risk you think people should be more aware of?
#7Re: Ask HN: What's a security risk you think people should be more aware of?
#8Don’t think too fondly of Verizon’s short retention schedule though, they sell your location to data brokers.
Re: Ask HN: What's a security risk you think people should be more aware of?
#9Yet this is the underlying design that Linux, Windows, MacOS are all based on.
We have ways to default to NO authority, and still make computers just as easy to use, but we don't do it. Because it would require reconfiguring everything, and porting a lot of code to new OSs.
Re: Ask HN: What's a security risk you think people should be more aware of?
#10Boring one, but if you get a work email with bank account details be suspicious. Maybe book a face call before using such details and confirm them.