Hacker News new | ask | show | jobs
by lphnull 2895 days ago
I'd prefer a wild-west type of world where certs are decentralized and "blind trust" towards big authorities becomes optional and still there as a reinforcement, but not necessary and definitely not required to communicate securely.

I mean- if there are adversaries out there trying to hack our communications- then we need to let these adversaries try so that we can engage them head on so that their methods become published, public, and thoroughly analyzed by the people in charge of strengthening our protocols.

This approach would be like fracturing the bone to make it stronger- we allow nation state hack us in order to figure out ways to stop and prevent such hacks using open and transparent software alone. Trusting any group of people anywhere "just because they're trust worthy" feels like a variable defining <the contents of its data> as equal to <the contents of its data>. It just doesn't make sense for a variable to trust itself "just because" because then I wonder if something fishy is going on under the hood.

1 comments

That's exactly what you don't want if you can't trust your ISP.