Live data from Hacker News

'Impossible-to-hack' security turns out to be no security

jltee.substack.com

1–10 of 157 posts

Re: 'Impossible-to-hack' security turns out to be no security

#5
To be fair, security through denial, lies and intimidation is the industry standard.

Leaving the passwords in clear text is double plus ungood. But my employer recently bought another outfit that does just that, and fixing it is not a near term option. So I'm stuck managing that and three of my fingers are pointing back to me.

Re: 'Impossible-to-hack' security turns out to be no security

#7
From https://databreaches.net/2025/02/24/no-need-to-hack-when-its...

DataBreaches also invited Sean Banayan to provide a statement for publication. He replied promptly to this site’s email: "We will further investigate this matter internally and do not wish to entertain this matter with your website."

He really missed all the lessons in both manners, common sense and media training.

Re: 'Impossible-to-hack' security turns out to be no security

#8
post #5

To be fair, security through denial, lies and intimidation is the industry standard. Leaving the passwords in clear text is double plus ungood. But my employer recently bought another outfit that does just that, and fixing it is not a near term option. So I'm stuck managing that and three of my fingers are pointing back to me.

Dang this is real life. “We didn’t used to do it but..”

Re: 'Impossible-to-hack' security turns out to be no security

#9
post #5

To be fair, security through denial, lies and intimidation is the industry standard. Leaving the passwords in clear text is double plus ungood. But my employer recently bought another outfit that does just that, and fixing it is not a near term option. So I'm stuck managing that and three of my fingers are pointing back to me.

Technically speaking if there's nothing to break, it is unbreakable right? Also if you change the law about some crime, you don't have a crime anymore...

Re: 'Impossible-to-hack' security turns out to be no security

#10
post #5

To be fair, security through denial, lies and intimidation is the industry standard. Leaving the passwords in clear text is double plus ungood. But my employer recently bought another outfit that does just that, and fixing it is not a near term option. So I'm stuck managing that and three of my fingers are pointing back to me.

Some powerful people subscribe to the idea that "if I (or the law) says don't touch it, it's secure". This attitude was on full display a little over three years ago in Missouri. https://missouriindependent.com/2021/10/14/missouri-governor...
Post reply on HN