TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Exposing 185M+ Indians’ Personal Information and much more

34 点作者 alraj将近 2 年前

3 条评论

ryan29将近 2 年前
&gt; I could’ve also generated as many valid government approved drivers licenses as I wanted to for anyone of my choosing.<p>This is a good example of how identity verification is mostly useless in existing systems like code signing. What value is being added if there’s no guarantee the signer’s identity isn’t fake? We might as well be self-signing at that point and I would argue that signing with a domain based identity (@example.com) is better than identity verification.<p>For example, I want code signed by @example.com, with the GitHub repo at github.com&#x2F;@example.com, and the website at example.com. It’s time to get rid of all the ambiguity and (matching) handle chasing we have to endure to (try to) mitigate that ambiguity. Domain verified identities would be a huge step forward for good actors that want to (optionally) consolidate all their web assets and accounts under a single, matching, verified namespace.
supriyo-biswas将近 2 年前
I&#x27;m pleasantly surprised that Indian government agencies allowed the author to publish this instead of asking for his head to be served on a platter.
villgax将近 2 年前
I remember when MSU, Baroda had also leaked aadhaar&#x2F;income certificate &amp; other PII as a publicly accessible storage bucket. All of which then got scraped into Google images....lol