Live data from Hacker News

Internet Archive: Security breach alert

theverge.com

201–210 of 648 posts

Re: Internet Archive: Security breach alert

#202
post #95

“According to their twitter, they’re doing it just to do it. Just because they can. No statement, no idea, no demands.” A special place in Hell…

That's a strange thing to read on Hacker news. Isn't that description the definition of hack value? As in http://www.catb.org/jargon/html/H/hack-value.html Now, it depends what the "it" is referring to here, but so far all I've heard is about an alert() message saying the usernames will be sent to a breach alerting site. If they're doing it just for the heck of it, it's still costing a lot of people a lot of time tha…

Did you miss the part about the DDOS attack?

Re: Internet Archive: Security breach alert

#203

More details here about the data breach. Stolen database contains 31 million records. https://www.bleepingcomputer.com/news/security/internet-arch...

> the Have I Been Pwned data breach notification service created by Troy Hunt, with whom threat actors commonly share stolen data to be added to the service Do they? Why?

If Troy authenticates the data, they can use that as an 'endorsement' when trying to sell it.

Re: Internet Archive: Security breach alert

#204
post #143

Well this should be fun. Now I'll have to dig through my IA account and remember if I donated to them directly via credit card (and if they stored it), or if it was through PayPal.

HaveIbeenpwnd says it was just passwords/usernames/emails, so seemingly not. (My company just got an email from them about the breach and I confirmed I'm in there with a quick search on their website.)

That's what Troy got sent. It's not necessarily all the attacker took.

Re: Internet Archive: Security breach alert

#205

More details here about the data breach. Stolen database contains 31 million records. https://www.bleepingcomputer.com/news/security/internet-arch...

> the Have I Been Pwned data breach notification service created by Troy Hunt, with whom threat actors commonly share stolen data to be added to the service Do they? Why?

Proves they really did hack something. There's other sites where hackers register defacements etc.

Re: Internet Archive: Security breach alert

#206
post #195
post #177

Earlier quoted context omitted.

> How long does an average hard drive last? You'd have to spend that 700k every that many years (plus the extra bits you mentioned). Quite an operation actually You'd have to spend a lot more, because with that many drives, you need redundancy now .

True, that would be an up front cost. At the same time, the IA is still live. This initial expense can be softened by building up redundancy over some years rather than trying to do everything at once

> True, that would be an up front cost. At the same time, the IA is still live. This initial expense can be softened by building up redundancy over some years rather than trying to do everything at once

I think with that many drives, you'd be losing them constantly, and I suppose you wouldn't know which ones until later (assuming you're doing an offline backup, if you aren't you have to factor in power costs).

Re: Internet Archive: Security breach alert

#207

Earlier quoted context omitted.

What if the clown is actually someone hired by one of the many enemies that IA made during the years?

He or she is still a clown. What difference does it make who hired him or her? At an individual level one can always disagree to do things that only destroy value.

reasonable people disagree on whether some things are positive or negative value.

IA is one of the go-to examples for that. is it good to make every book ever written freely downloadable (as they were trying with their library project a while back), or is that bad? you and i might think the answer is obvious. we might even agree on it. but we would occupy a rather different world if even a supermajority agreed on that question, in either direction.

Re: Internet Archive: Security breach alert

#208
post #128

A pulled an old friends website down from Internet Archive. He's moved on the next stage, but I was glad I was able to put his site back up. It'll be a shame if IA goes down permanently, but we need a decentralized solution anyway. Having a single mega organization in charge of our collective heritage isn't a good idea.

I have always thought about this. It would be interesting to have users actually store small amounts of redundant info on a device connected to the internet. Very similarly to what a torrent does but with more peers (more data shards than full copies) and less seeds. And try and keep a huge database for everyone. Obviously open source and it would end up something like tor where they just assist the network with secu…

The main issue that such hosting faces is that it's less efficient and more expensive than just regular centralized servers.

Re: Internet Archive: Security breach alert

#209
post #97

Earlier quoted context omitted.

What weird conspiracy is this? US interests dont involve taking down archive.org

There is no US, there are just a bunch of interest groups. Some interest group definitely wants IA down. I wouldn't be surprised this is a paid attack.

I'd probably believe attribution to either Israel or the MPA with only a little evidence.

(I still haven't forgiven Sony for the album on CD I bought with a rootkit on it...)

Re: Internet Archive: Security breach alert

#210

A pulled an old friends website down from Internet Archive. He's moved on the next stage, but I was glad I was able to put his site back up. It'll be a shame if IA goes down permanently, but we need a decentralized solution anyway. Having a single mega organization in charge of our collective heritage isn't a good idea.

It's called torrent protocol and it doesn't work, no one wants to spend money and bandwidth hosting a god forsaken movie or book that only a handful of people care about.

I see 24 seeders for the entire 72-episode run of the 1991 sitcom "Herman's Head" which was so poorly rated that it's never seen a home media or streaming release, your premise doesn't hold any water at all.
Post reply on HN