Hacker News new | ask | show | jobs
by murphy214 1657 days ago
What is an acceptable signal to noise ratio for a security tool to be useful? clearly some amount of false positives to any real threat ratio causes people to just ignore it completely. Cue me looking at my npm vulnerabilities with I install packages lol.
1 comments

We’re not talking about thermal noise here. Each and every signal has a determinate source. You need to go through each and every one, but doing this effectively often involves paying lots of money to “some nerds” (rather than your own in house supplicants) and that’s where this kind of thing usually falls down.