TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

PRISM is not the problem

10 点作者 mzahir将近 12 年前

1 comment

einhverfr将近 12 年前
I agree but only to a point. I actually have a piece on my blog I will be submitting here today which discusses the idea of a PKI for the current threat model (resourceful organized crme and secret government surveillance. I have an idea for how to build a PKI to help combat these and laid my ideas out there.<p>But what is relevant for this discussion is that one of the goals has to be to increase the effort of a security compromise and reduce the value of one. Nothing is going to stop a government official spearphishing a target with an appropriate warrant, but if you can force the issue to that level of attack, and if you can make sure that the endpoints and only the endpoints are where compromises are vulnerable to sustained secret attacks, then maybe we have a chance. (It also means it is a lot easier to serve a warrant on the related computers rather than evesdropping silently in the middle.)