Live data from Hacker News

Peter Neumann has died

tuhs.org

21–29 of 29 posts

Re: Peter Neumann has died

#21
post #6

Sometime in the 2000s I started reading the RISKS Digest mailing list[1] from the beginning. I did it for fun - it's an interesting mix of fun anecdotes and lessons learned, and the 80's and early 90's were before my time which I found interesting too. A side effect of reading the mailing list in bulk is that a set of common "stereotypes" of failure (for lack of a better word) start to emerge clearly from the stream…

Another thing to appreciate while reading is that Risks started pre-Web, when the Internet was a much smaller place, so PGN's work on Risks was well-known, and presumably influenced the thinking of a lot of people.

As one example, I bumped into Risks in my teens (I think through Usenet comp.risks), at the internship start of my software engineering career. I now think back to things I said and did back then, and the formative influence of Risks is unmistakable.

Correctness? Safety? Security? Privacy? Societal implications? Responsibility?

The MBA-ification of the Internet came later, but before that, PGN helped educate and guide a generation of Internet-savvy people in the best direction.

Re: Peter Neumann has died

#24
Well, hell. I only new Peter peripherally, but every time I met him he was a wonderful human. I built cryptography libraries in the 90s and Peter was responsible for expanding my thinking about the systems surrounding security controls and (not surprisingly) their associated risks. And he did it with great patience, speaking to me (and everyone else) at a level we could understand, but never patronizing. I would bump into him at a conference one year and he would suggest a direction of study or experiment. At the next conference I saw him at I would report my findings (or send them to the RISKS list) and then there would be another, interesting direction suggested.

There's a Peter-shaped-hole in Sili Valley tech culture.

Re: Peter Neumann has died

#26

Bookmark this link for future reference, it is very relevant in the era of “agentic engineering” https://dl.acm.org/doi/pdf/10.1145/1005937.1005938

Conclusion of the article (Wisdom from 1982):

> There is an old adage (e.g., Zen) to the effect that we become what we perceive. In computer terms, our (human) outputs become identified with our inputs. Computer technology is exceedingly habit forming, and our civilization seems to be becoming more computer-like, in the name of "progress". Many people tend to identify with their computers, while others become more computer-dependent, willingly or unwillingly. In addition, the so-called "factory experience" has an antihuman element to it. Although it could indeed help to reduce repetitiveness, it must also allow a suitable role for creativity. (In the spirit of this paper we note that unbridled attempts at creativity can often be detrimental, resulting in obfuscational terminology that masks an absence of novelty, or the reinvention of suboptimal or intermediate steps that have previously been discarded by others for subtle reasons not perceived by the "reinventor".) Thus, it is incumbent on system designers and system development managers to understand the negative effects of the use of computers, and to attempt to minimize those negative effects. In this way, it should be possible to increase incentives, challenges, and satisfaction, to reduce boredom, burnout, and laziness, and generally to increase the effectiveness of computer developers and users.

Re: Peter Neumann has died

#27
post #21
post #6

Sometime in the 2000s I started reading the RISKS Digest mailing list[1] from the beginning. I did it for fun - it's an interesting mix of fun anecdotes and lessons learned, and the 80's and early 90's were before my time which I found interesting too. A side effect of reading the mailing list in bulk is that a set of common "stereotypes" of failure (for lack of a better word) start to emerge clearly from the stream…

Another thing to appreciate while reading is that Risks started pre-Web, when the Internet was a much smaller place, so PGN's work on Risks was well-known, and presumably influenced the thinking of a lot of people. As one example, I bumped into Risks in my teens (I think through Usenet comp.risks), at the internship start of my software engineering career. I now think back to things I said and did back then, and the…

Same- I slowly stopped reading Risks even though I am still a subscriber (as far as I know).

What's weird was, back then, I thought about geography on the internet even LESS than I do now. It's strange now to realize PGN worked at SRI, just a few blocks from where I'm typing this. And he may have passed away at the hospital my wife's working at right now.

Re: Peter Neumann has died

#28
post #6

Sometime in the 2000s I started reading the RISKS Digest mailing list[1] from the beginning. I did it for fun - it's an interesting mix of fun anecdotes and lessons learned, and the 80's and early 90's were before my time which I found interesting too. A side effect of reading the mailing list in bulk is that a set of common "stereotypes" of failure (for lack of a better word) start to emerge clearly from the stream…

I haven't seen it mentioned here or in the obituaries, but Peter started the RISKS Digest in 1985 partly in response to the Strategic Defense Initiative (SDI, "Star Wars") which proposed a space-based anti-ballistic missile system run autonomously by computers [1]. Another response was the formation of Computer Professionals for Social Responsibilty (CPSR) [2]. Peter was an early member, and many early RISKS submissions were by CPSR members.

Peter's letter to readers about the creation of RISKS in Issue #1.01 [3] mentions SDI and CPSR (it's long, scroll down)

1. https://en.wikipedia.org/wiki/Strategic_Defense_Initiative

2.https://en.wikipedia.org/wiki/Computer_Professionals_for_Soc...

3. https://catless.ncl.ac.uk/Risks/1.01.html

Re: Peter Neumann has died

#29
post #6

Sometime in the 2000s I started reading the RISKS Digest mailing list[1] from the beginning. I did it for fun - it's an interesting mix of fun anecdotes and lessons learned, and the 80's and early 90's were before my time which I found interesting too. A side effect of reading the mailing list in bulk is that a set of common "stereotypes" of failure (for lack of a better word) start to emerge clearly from the stream…

> This is the first issue of a new on-line forum. Its intent is to address issues involving risks to the public in the use of computers. As such, it is necessarily concerned with whether/how critical requirements for human safety, reliability, fault tolerance, security, privacy, integrity, and guaranteed service (among others) can be met (in some cases all at the same time), and how the attempted fulfillment or ignorance of those requirements may imply risks to the public. We will presumably explore both deficiencies in existing systems and techniques for developing better computer systems — as well as the implications of using computer systems in highly critical environments.

^ 1985, 2 years before i was born, on-line still had a dash. Man, what a time that must've been.

Post reply on HN