TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Is Cybersecurity an Unsolvable Problem?

8 点作者 carride将近 2 年前

1 comment

resfirestar将近 2 年前
&gt; The book&#x27;s not trying to make you feel bad, like, &quot;Hey, your password&#x27;s too short.&quot; And I&#x27;m not trying say that we&#x27;re all going to die. The truth is in the middle. For most people, the risks are not big at all. The culture presents to us a picture of hackers which is a sensational caricature: Somebody who is almost completely asocial, maybe has mental illness, maybe is morbidly overweight. There&#x27;s the 400-pound person sitting in their pajamas in their basement in their parents&#x27; house, socially maladapted human beings who are malicious and evil. There have been hackers in the last several decades who&#x27;ve challenged that picture.<p>That&#x27;s all true, though this vision of evil amoral hackers feels at least 10 years out of date, it&#x27;s how Hollywood has historically portrayed it but not what people think about today. The new unhelpful assumption that I often encounter is that cybercrime is so widespread and automated that anyone who isn&#x27;t a security expert has no hope, they&#x27;ve already been hacked. Maybe there&#x27;s a generational difference.<p>&gt;Yes, of course, hacking is a real risk. But the vast majority of hacking, of cybercrime, is financially motivated— to make money. They do not want to break into your computer specifically. They want to break into lots of computers easily to create a botnet or to distribute spam or ransomware. They don&#x27;t really want to spend that much time on you. So for most of us, basic precautions make it just a little bit more expensive to attack you. They&#x27;re more likely to move on to somebody else because these are basically automated tools that are very low-level type of things.<p>I don&#x27;t really like this framing. The advice to make yourself a little harder to attack is good, but &quot;they don&#x27;t really want to spend that much time on you&quot; doesn&#x27;t match the experiences of many actual victims of cybercrime. Being part of a botnet is technically getting hacked, and it&#x27;s very common, but I don&#x27;t think that&#x27;s the kind of hacking the average person considers a risk they&#x27;ll expend effort to avoid. People who have their social media accounts broken into for sextortion are basically automatically targeted, yes, but it gets very personal once the hack happens. Victims of tech-support scams and the like are often faced with someone willing to spend hours or days working to get control of their bank accounts and target them again and again. I think any advice aimed at average people needs to acknowledge the actual threats they face online, not dismiss them with the broad brush of &quot;spam and ransomware&quot;, and show how basic measures make you a more difficult target for these common types of cybercrime.