Hacker News new | ask | show | jobs
by cm2187 2801 days ago
Some complex CPU or encryption bugs is what makes full security hard. But most security breaches are because of people doing stupid things. Unprotected public databases or s3 buckets, sql injections, plain text / easy to guess passwords, out of date software, etc. I am ready to bet that those alone constitute more than 90% of the breaches. And this is the result of mere amateurism. If tech people do not care about security or aren't competent enough to take even the most basic steps, regulation is absolutely the right response.
1 comments

So make banks liable for damages as a result of losses from security breaches. Presumably they already are. That solves the problem.