logoalt Hacker News

guessmynametoday at 3:02 AM5 repliesview on HN

No, why would you allow automatic updates? It makes no sense. You should audit every update as if each payload could contain malware. It’s a paranoid way to live, but that’s what it takes.

We also need better computer science education in high schools, teaching students how to inspect network packets, verify SSL certificates, and evaluate whether a binary blob might contain malicious code.

People have gotten complacent about the internet, which is why they still get hacked, when it should be the other way around. With everything we’ve learned over the years, why are breaches more common than ever? I don’t understand why people are so careless about online security today, compared to decades ago when we were taught not to share personal information and not to trust anything on the internet.


Replies

drum55today at 3:05 AM

Do you go by the smell of the executable or just general vibes? Nobody has never reviewed even a tiny fraction of the software they run, closed source or open source.

show 1 reply
kemoteptoday at 3:24 AM

So you only run software on an operating system and on hardware that you have personally vetted each line of code for?

velcrovantoday at 4:22 AM

Tell me about your auditing workflow and procedures.

evikstoday at 5:31 AM

You don't understand because you compare a mythical view of the past with the current reality

knowitnone3today at 3:42 AM

[dead]