Live data from Hacker News

CVE program faces swift end after DHS fails to renew contract [updated]

csoonline.com

341–350 of 1001 posts

Re: CVE program faces swift end after DHS fails to renew contract [updated]

#341

CVE was anti-American woke. No, more seriously, just like with shutting down NOAA services, it seems the goal is to: 1. cut services (we saved taxpayer money!!) 2. at some point later: oh, we actually need those services 3. pay to provide the service (see! we don't need to pay gov employees!!) (fine print: the vendor costs 2-3x the original cost). But by then no one is looking at the spending numbers anymore. Slick m…

And here lies the problem. Even from a libertarian perspective DOGE is counterproductive because maintaining a system is much more cost effective than starting it anew. Especially when you cut something recklessly, figure out in month that you need back that capability right now and have very little leverage to negotiate with private providers. When you look at the last cutting effort in the Clinton administration th…

Heeeeey but he runs Tesla like this and it's an hyper-valued company!!!1! He cannot be wrong, he is a genius!!

Re: CVE program faces swift end after DHS fails to renew contract [updated]

#342
post #75

Earlier quoted context omitted.

> I wonder what level of compartmentalisation inside DHS means they didn't see this as having sufficient downsides? This was not a carefully-weighed decision based on a cost-benefit analysis. This was a political order, consistent with the administration's policy of "cut everything, recklessly, indiscriminately."

Destroy, destroy, destroy. Promise to rebuild but don't. Take it all.

Did they promise to rebuild?

If I'm giving them the benefit of the doubt (which I hate), it's a shotgun approach; cut things relentlessly and see what falls apart. Chaos engineering applied to a country and / or the world.

Re: CVE program faces swift end after DHS fails to renew contract [updated]

#343

I'm trying to steelman but I really can't think of a non- nefarious justification for this

Reduce government spending; since it's not actually a government organization (as far as I can tell, I never looked into it before), other organizations can fund it. How much goes into this organization a year anyway? I'm seeing a Mitre corporation that does lots of other stuff too that has a revenue of 2.2 billion a year.

Multi-trillion-dollar companies benefit from and contribute to this system, surely they can spare 0.01% of their revenue to this bit of critical infrastruture?

Re: CVE program faces swift end after DHS fails to renew contract [updated]

#344

To the "I wish HN would stay out of politics" crew. You can stay out of politics, but politics will always come and find you.

"You can stay out of politics, but politics will always come and find you."

No, it's just recognising that it is silly to talk about politics, as certain views are just downvoted.

Re: CVE program faces swift end after DHS fails to renew contract [updated]

#345
post #331
post #295

Earlier quoted context omitted.

This would be hilarious. That would be a good thumb in the eye to the current administration who complained long and loud about how Obama let ICANN leave US possession. Just imagine the campaign commercials in 2026, >The POTUS transferred our cyber defenses to the EU Ouch

Well, that's kind of the point? The current administration doesn't care about cyber defense, any less than it cares about protecting the environment, protecting consumers, having top-notch universities and research, foreign aid etc. etc. Actually, it takes pride in not caring about all of these things.

Not to mention the administration aren't going to be held accountable for, or actually be impacted by, the harms that come for their actions.

Re: CVE program faces swift end after DHS fails to renew contract [updated]

#348

Earlier quoted context omitted.

>>They thought they voted for something different Like what exactly? I mean the guy ran on cutting the budget by 2 trillion. In his last term he gave tax breaks yo the rich. Where did they think the cuts were coming from? He ran very hard on raising tarrifs. Which demonstrably raise prices (thats literally their goal.) But now people claim "I didn't vote for this." In truth they voted for him because he was the Repub…

> In truth they voted for him because he was the Republican on offer and they're die-hard Republican. The Republican party has made no secret of its agenda for decades. This is actually simply not true. The Republican party before the Tea Party looked nothing at all like this. Trump won the presidency last year riding a wave of distinctly not-your-typical-Republican lower class voters. As he rose the old guard Republ…

You are ignoring that trump rode to power explicitly by enabling the shittest of Republicans that already exist. To try and let republicans off the hook for supporting him, especially a 2nd time? Is hilarious

Re: CVE program faces swift end after DHS fails to renew contract [updated]

#349

I don't see why this should be publicly funded, so I don't really see an issue with this. The industry benefits from having a CVE database, so the industry should fund it.

No, "the industry" is all of us alive in the 21st century who depend on software to make material decisions and to be resilient to attacks and tampering. We were all funding it, and now surely we will see some big tech company now assume responsibility from the federal government (please god don't let it be Oracle...)

so "all" should pay, not only US taxpayers.
Post reply on HN