TE
科技回声
首页24小时热榜最新最佳问答展示工作
GitHubTwitter
首页

科技回声

基于 Next.js 构建的科技新闻平台,提供全球科技新闻和讨论内容。

GitHubTwitter

首页

首页最新最佳问答展示工作

资源链接

HackerNews API原版 HackerNewsNext.js

© 2025 科技回声. 版权所有。

Scientist banned from revealing codes used to start luxury cars

109 点作者 qwertzlcoatl将近 12 年前

16 条评论

eksith将近 12 年前
He should put it on a t-shirt and call it free speech.<p><a href="http://www.cypherspace.org/adam/shirt/uk-shirt.html" rel="nofollow">http:&#x2F;&#x2F;www.cypherspace.org&#x2F;adam&#x2F;shirt&#x2F;uk-shirt.html</a><p>Or turn some portion of it into a flag?<p><a href="http://en.wikipedia.org/wiki/File:Free-speech-flag.svg" rel="nofollow">http:&#x2F;&#x2F;en.wikipedia.org&#x2F;wiki&#x2F;File:Free-speech-flag.svg</a><p>Maybe he can get Bob Dylan to write a song with the codes and perform it live to a group of hackers. The possibilities are endless when knowledge is arbitrarily outlawed due to an inconvenience for the privileged. Then again, this is the UK where the first amendment doesn&#x27;t apply.
评论 #6147318 未加载
sigkill将近 12 年前
When will people, especially the tech illiterate ever learn that security via obscurity doesn&#x27;t really work when you&#x27;ve got marginal cost of duplication. [Of course, it&#x27;s a bad idea for even tangibles but in the electronic world it&#x27;s a totally <i>broken</i> concept]
评论 #6147087 未加载
评论 #6146978 未加载
anon1385将近 12 年前
Previous discussion: <a href="https://news.ycombinator.com/item?id=6110575" rel="nofollow">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=6110575</a> (88 comments)
iamben将近 12 年前
Any chance this is already being used nefariously? It would explain stories like this: <a href="http://www.today.com/news/police-admit-theyre-stumped-mystery-car-thefts-6C10169993" rel="nofollow">http:&#x2F;&#x2F;www.today.com&#x2F;news&#x2F;police-admit-theyre-stumped-myster...</a><p>(also discussed on HN a month back: <a href="https://news.ycombinator.com/item?id=5826486" rel="nofollow">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=5826486</a>)
评论 #6146989 未加载
northwest将近 12 年前
Well, I guess this decision could not be a better advertisement for the hacker, in case he happens to be a little short on cash:<p>Lots of eyeballs on this and the fact that the exploit stays &quot;monopolized&quot; is poised to drive its price on the market up.
ambrop7将近 12 年前
So how did examining the hardware allow them to unlock <i>any</i> car? Ideally, shouldn&#x27;t each car have its own secret key, and no amount of examination of one car or its ignition key would reveal the secret key of another one?<p>The way I interpret this, the manufacturer has thrown a backdoor into the system, allowing access to anyone who knows the backdoor key - and the researchers have managed to extract the backdoor key.
评论 #6147182 未加载
pnathan将近 12 年前
These sorts of actions are why I firmly believe that anonymous full disclosure is the best way to go for disclosing vulnerabilities.
Houshalter将近 12 年前
I don&#x27;t think this is wrong. Now everyone knows there is a method to break it, why reveal specific details to the public where it can only be used to help steal cars?<p>I think dangerous information in general should be censored, though that is a very dangerous road to go down. But if it was possible to do so without corruption or having good things censored too, then I think it should be done.
umsm将近 12 年前
I see nothing wrong with preventing the publication of the exploits UNTIL they are resolved. If the company responsible for the security system does not want to resolve the security vulnerability, then they should be published.<p>Even though this scientist first discovered the vulnerability, it doesn&#x27;t mean that someone else won&#x27;t do so in the near future.
评论 #6148089 未加载
评论 #6147984 未加载
njharman将近 12 年前
&gt; especially a sophisticated criminal gang<p>Yeah right, like the theorized &quot;sophisticated gang&quot; can&#x27;t break into and steal the paper&#x2F;research. Or, more easily kidnap&#x2F;extort&#x2F;blackmail&#x2F;bribe scientists to give them the info.<p>Criminalizing information means only the criminals will have access to it.
sneak将近 12 年前
How is this not illegal prior restraint?
评论 #6146970 未加载
评论 #6146884 未加载
评论 #6146864 未加载
评论 #6146874 未加载
Fuxy将近 12 年前
Great security by obscurity. Didn&#x27;t we try that before a failed miserable?<p>Then again if they start enforcing it like piracy with ridiculous fines and jail time they best researchers would be criminals.
tomjen3将近 12 年前
So a British judge has placed an injunction against publication <i>in the USA</i>. How does such a conference fall within UK juristriction?
okiejonwilliams将近 12 年前
&quot;The scientists said it had probably used a technique called &quot;chip slicing&quot; which involves analysing a chip under a microscope and taking it to pieces and inferring the algorithm from the arrangement of the microscopic transistors on the chip itself – a process that costs around £50,000.&quot;<p>£50,000?! Good Lord, that&#x27;s a lot of money! All one needs is a microscope and a razor.
评论 #6147701 未加载
philip1209将近 12 年前
Why not publish it with some kind of irrevokable public license and open source the project?
knodi将近 12 年前
leak it.