Live data from Hacker News

WireGuard makes new Windows release following Microsoft signing resolution

lists.zx2c4.com

51–60 of 175 posts

Re: WireGuard makes new Windows release following Microsoft signing resolution

#51

Earlier quoted context omitted.

They are saying that "deliberate attack" or not does not matter and is not worth pointing out. The response is the same so its a worthless point.

whether something is a deliberate attack or not is not worth pointing out? its, like, the only thing worth pointing out. if microsoft is deliberately targeting projects and literally attacking them, that would be huge fucking news. like crazy news. lawsuits galore.

> whether something is a deliberate attack or not is not worth pointing out?

Correct in cases like this we are discussing it as a meaningless distinction.

Re: WireGuard makes new Windows release following Microsoft signing resolution

#52

> The comments that followed were a bit off the rails. There's no conspiracy here from Microsoft. But the Internet discussion wound up catching the attention of Microsoft, and a day later, the account was unblocked, and all was well. I think this is just a case of bureaucratic processes getting a bit out of hand, which Microsoft was able to easily remedy. I don't think there's been any malice or conspiracy or anythin…

All this doesn't matter. What matters is the destructive potential and a breach of trust. CAs have been distrusted for less.

Re: WireGuard makes new Windows release following Microsoft signing resolution

#53

> The comments that followed were a bit off the rails. There's no conspiracy here from Microsoft. But the Internet discussion wound up catching the attention of Microsoft, and a day later, the account was unblocked, and all was well. I think this is just a case of bureaucratic processes getting a bit out of hand, which Microsoft was able to easily remedy. I don't think there's been any malice or conspiracy or anythin…

Society is a bit fatigued of big tech companies making their various accounts essential and then locking people out of them without any due process.

Re: WireGuard makes new Windows release following Microsoft signing resolution

#54

Earlier quoted context omitted.

Apparently it's quite widespread, so I would assume a bug on their side. That's what support seemed to imply at least. We're still blocked at my company for one month+ now.

"so I would assume a bug on their side" Why a "bug".

For something like this, I would generalize a "bug" to encompass both software and human processes. Some decision-maker saw some metrics consistent with spam and enacted a spam-blocking measure. Any decision like this is going to lead to false positives. Maybe they decided "I don't need to confer with anyone", or maybe they did and got the green light even after multiple eyeballs looked at it. I'm not saying that this does any good for Microsoft's already-sullied trust, but mistakes happen and combating spam is a constantly evolving arms race. There's no way any organization is going to get it 100% of the time even after decades of dealing with it.

Re: WireGuard makes new Windows release following Microsoft signing resolution

#55
post #18

LibreOffice, VeraCrypt, WireGuard. 2 questions: Whats next? Is that a pattern?

What has LibreOffice got to do with any of this?

Maybe this from 8 months ago?

https://news.ycombinator.com/item?id=44728369

Re: WireGuard makes new Windows release following Microsoft signing resolution

#56

> The comments that followed were a bit off the rails. There's no conspiracy here from Microsoft. But the Internet discussion wound up catching the attention of Microsoft, and a day later, the account was unblocked, and all was well. I think this is just a case of bureaucratic processes getting a bit out of hand, which Microsoft was able to easily remedy. I don't think there's been any malice or conspiracy or anythin…

Microsoft lost the benefit of the doubt decades ago.

Re: WireGuard makes new Windows release following Microsoft signing resolution

#57
post #18

LibreOffice, VeraCrypt, WireGuard. 2 questions: Whats next? Is that a pattern?

What has LibreOffice got to do with any of this?

MS has a history of fucking up LibreOffice installs.

https://wiki.documentfoundation.org/Faq/General/General_Inst...

Re: WireGuard makes new Windows release following Microsoft signing resolution

#58

Earlier quoted context omitted.

The question is, did they notify the user that the account was blocked, or was it done silently? My money is on the latter, obviously I don’t know, just my guess. Was there a reason? Blocked is semantically harsher, than it has been disabled.

It was done silently. I am one of the affected developers and my software is the open source file system driver WinFsp: https://github.com/winfsp/winfsp

Uncool. Now the question is, how many people, many not reading hn, are actually affected. Seems like a blanket ban of some sort.

Re: WireGuard makes new Windows release following Microsoft signing resolution

#59
post #53

> The comments that followed were a bit off the rails. There's no conspiracy here from Microsoft. But the Internet discussion wound up catching the attention of Microsoft, and a day later, the account was unblocked, and all was well. I think this is just a case of bureaucratic processes getting a bit out of hand, which Microsoft was able to easily remedy. I don't think there's been any malice or conspiracy or anythin…

Society is a bit fatigued of big tech companies making their various accounts essential and then locking people out of them without any due process.

yes, i am in agreement. i tried to be extremely clear in my edit that i think that the whole social media being the only way to get an account back is crazy stupid.

Re: WireGuard makes new Windows release following Microsoft signing resolution

#60

> The comments that followed were a bit off the rails. There's no conspiracy here from Microsoft. But the Internet discussion wound up catching the attention of Microsoft, and a day later, the account was unblocked, and all was well. I think this is just a case of bureaucratic processes getting a bit out of hand, which Microsoft was able to easily remedy. I don't think there's been any malice or conspiracy or anythin…

All this doesn't matter. What matters is the destructive potential and a breach of trust. CAs have been distrusted for less.

>CAs have been distrusted for less.

root programs are super specific about root cause analysis, what actions lead up to distrust, differentiating deliberate maliciousness from systemic incompetence, etc.

its like the exact opposite of "all this doesnt matter".

of course they still look at the outcome (danger to users, etc.), typically as a first step. but they take great care to determine exactly what lead up to a specific outcome.

Post reply on HN