Live data from Hacker News

The 'untouchable hacker god' behind Finland's biggest crime

theguardian.com

51–60 of 183 posts

Re: The 'untouchable hacker god' behind Finland's biggest crime

#51
post #29

Earlier quoted context omitted.

According to this report [1] the appeal was about specific requirements like encryption, and he claimed he had delegated it. So it is clear that it is hard to actually hold people responsible. > The appellate court rejected the prosecution's argument and dismissed all charges. In its unanimous decision, the court stated that neither the GDPR nor the applicable Finnish healthcare legislation required encryption or pse…

No, it’s just that it’s crazy to hold the CEO liable for absolutely everything that can go wrong.

Is it sane to reward them for almost absolutely everything that goes right? Because that's the status quo for this position.

Re: The 'untouchable hacker god' behind Finland's biggest crime

#52

I have seen therapists in the past, but never over video calls, and the notes have been kept on paper. Sometimes in person is much better. This rush to put everything online will destroy everyone's privacy even though privacy is the thing we all need.

This isn't a great solution, but it has helped me forgive myself, maybe it can be a trend in the future: You didn't pick your DNA, you didn't pick your environment. (Determinism in a nutshell)

The bad things that happened to you, and the bad thing you did, should be seen as somewhat outside our control.

I think of my worst google searches (nsfw stuff) and think: "Well, I'm just a chemical reaction."

But then again, I read the book A Billion Wicked Thoughts and found I'm pretty vanilla, we just don't talk about these things out loud.

Maybe my life is tame, but even when I hear from other people, everything seems pretty reasonable.

I know this is an 'after the fact' fix, but its a tool for our toolbox. We could look at people who criticize us as people who are ignorant of Determinism. (But we still need mechanisms to deter bad behavior)

Re: The 'untouchable hacker god' behind Finland's biggest crime

#53

Earlier quoted context omitted.

Funny whenever people complain about the GDPR here they're thinking they would be slapped with a €20Mi fine and that EU team 6 is going to parachute in their office and arrest everyone So they're saying this is not the case?

> So they're saying this is not the case? Yes it was. The company was fined 20M EUR on standard GDPR-basis and went bankrupt (but unlikely due to the fine alone). Please re-read the above discussion.

The GDPR fine was 608k https://www.edpb.europa.eu/news/national-news/2022/administr...

Re: The 'untouchable hacker god' behind Finland's biggest crime

#55
post #29

Earlier quoted context omitted.

According to this report [1] the appeal was about specific requirements like encryption, and he claimed he had delegated it. So it is clear that it is hard to actually hold people responsible. > The appellate court rejected the prosecution's argument and dismissed all charges. In its unanimous decision, the court stated that neither the GDPR nor the applicable Finnish healthcare legislation required encryption or pse…

No, it’s just that it’s crazy to hold the CEO liable for absolutely everything that can go wrong.

But this is not “absolutely everything”. No one is saying CEOs should be accountable for every action of an individual employee.

So if not the CEO, who is accountable when something like this breach happens? The CTO? The PM The DBA? Nobody? Maybe they’ll care developer who wrote the code or botched the configuration should be prosecuted?

CEOs can justify their pay be being accountable for what their company does. They’re the CEO, after all. Maybe they’ll care more when they have some actual skin in the game.

Re: The 'untouchable hacker god' behind Finland's biggest crime

#56
post #33

Earlier quoted context omitted.

>The opsec is shocking If you choose to blindly believe what the prosecution claims, sure.

You're the guy in the article? Could you elaborate and share more of your side of the story?

I am indeed the guy in the article. My side of the story is fairly boring, didn't do crime but got blamed for it anyway by desperate cops. The whole investigation has been bizarre, for example, no-one has ever searched my homes, or even attempted to seize my personal devices.

Should find out within the next couple of months if the appeals court decides to acquit.

Re: The 'untouchable hacker god' behind Finland's biggest crime

#57
post #10

"the patient records database was accessible via the internet; there was no firewall and, perhaps most egregiously, it was secured with a blank password, so anyone could just press enter and open it" There _should_ be a bunch of people in jail for that. Including, but not limited to the CEO. It should also include all the people on the org chart between whoever set that database up and the CEO.

Exactly, was it a burglary when your front door is open, lights on, spotlights on your wall safe, with the keys still inserted?

The CEO should be in prison.

Re: The 'untouchable hacker god' behind Finland's biggest crime

#58
post #8

https://archive.is/7uCnb

The Guardian doesn’t have a paywall

Just because you immediately clicked "yeah sure sell all my data so I don't have to pay" doesn't mean it's not paywalled, please be a little more discerning.

Re: The 'untouchable hacker god' behind Finland's biggest crime

#59
post #55
post #29

Earlier quoted context omitted.

No, it’s just that it’s crazy to hold the CEO liable for absolutely everything that can go wrong.

But this is not “absolutely everything”. No one is saying CEOs should be accountable for every action of an individual employee. So if not the CEO, who is accountable when something like this breach happens? The CTO? The PM The DBA? Nobody? Maybe they’ll care developer who wrote the code or botched the configuration should be prosecuted? CEOs can justify their pay be being accountable for what their company does. The…

When a bridge fails, it is the professional engineer that signed off on that part. If you want someone to sign off on software or IT you will need to pay them quite a lot.

Re: The 'untouchable hacker god' behind Finland's biggest crime

#60
post #10

"the patient records database was accessible via the internet; there was no firewall and, perhaps most egregiously, it was secured with a blank password, so anyone could just press enter and open it" There _should_ be a bunch of people in jail for that. Including, but not limited to the CEO. It should also include all the people on the org chart between whoever set that database up and the CEO.

Exactly, was it a burglary when your front door is open, lights on, spotlights on your wall safe, with the keys still inserted? The CEO should be in prison.

>Exactly, was it a burglary when your front door is open

Legally speaking, yes in every place I've ever lived if all those things are the case it's still a burglary, although the cops may call the victim an idiot.

Post reply on HN