Hacker News new | ask | show | jobs
by ddalex 1022 days ago
The other frightening possibility is that the attack surface targeted by persistent threat actors is so large that a breach becomes certain (the law of large numbers): when you have so many accounts owned that one of them will have the right access rights; when you have so many dumps one of them will have the key; etc ...
2 comments

> the attack surface targeted by persistent threat actors is so large that a breach becomes certain

I thought a good security rule was to reduce the attack surface. But ok, we are talking about ... Microsoft. /s

This is why for certain things the minimum requirement should not be 99% certain or 99.9% certain, but 99.9999% certain.