Hacker News new | ask | show | jobs
by kube-system 428 days ago
Under what law? High security vaults are not legally controlled or prohibited in the US.
1 comments

Which high security vault can the government not gain access to under any circumstances? I expect you'll find decent explosives or a bulldozer will get them in just fine.
So will a hardware backdoor planted by your maid, or a telescopic lens pointed at your screen, or laser microphone on your window, get them into your e2e encrypted chats.
Huh? The encrypted data is at rest and the only person who knew the key is dead. Your plan makes no sense.
Generally the set of people who are relevant in the debate of the balance of privacy rights and criminal prosecution, are living.

Dead people are distinctly immune to prosecution, and generally granted fewer rights.

If you intended to reply to a different thread and accidentally ended up here instead, there is truth to what you say, but it has nothing to do with this one.

As it pertains to this thread, where the sole key holder is dead and took the knowledge with him, how do you anticipate to carry out gaining access to the data using live attacks? There are plenty of reasons why the government wants access to data even where prosecution isn't necessary.

The overlap between data that was never shared and data that is relevant after the person was dead is excruciatingly small.
Is encrypted data at rest belonging to dead people such a problem, that it's worth sacrificing everyone's privacy?
> that it's worth sacrificing everyone's privacy?

Is the appeal to emotion really necessary? Surely we can discuss the facts without devolving into some kind of "But I want that!!!" toddler behaviour?

There was no emotion, only an accurate description of the consequences of the proposed policy.
The issue isn't "gain access to" - it's "gain access to without destroying the contents."

Explosives and bulldozers are likely to harm whatever was motivating the entry in the first place. The vault system can be engineered to ensure this conclusion, as well.

The question specifically asked which one(s) you are talking about, not about your dreams. Which high security value is the government not able to gain access to?

And, sure, if enough perfectly engineered vaults were impeding the government from carrying out the activities it wants to carry out, there would be calls to make building/using such a vault illegal too. In the real world, such vaults, if they exist at all, don't meaningfully get in the way. Thus there is no reason to think about it. We don't create laws on what theoretically might be a problem in some magical imagined world. We only create laws after something is identified as an actual problem.

> The question specifically asked which one you are talking about, not about your dreams. Which one is like that?

After your five ninja edits, it's been hard to keep up:

Glass relocker mechanisms have existed (in reality) on safe doors for decades and will often result in the destruction of contents if triggered and opening is still required.

Governments are normally seeking evidence: a stack of cash or a quantity of bulk substances are substantially harder to rig to destroy (obviating evidence gathering) than documents or data.

> After your five ninja edits, it's been hard to keep up

No need to reply within the first second. Take your time.

In fact, consider taking a lot more time as you still haven't named the specific vault, or set of vaults, that is causing such a big problem for the government. If we don't know what vault it is, even if your description is vague, how would anyone come to think of it as a problem? Laws are not created by some all-knowing deity. It is just people.

That such a vault might be theoretically possible to build is irrelevant.

> as you still haven't named the specific vault

Vaults and safes are boutique products. Glass relockers have been sold for decades - can you not extrapolate that heat and impact might destroy something inside of a highly thermally-conductive container?

HSMs and similar tech have had tamper detection systems for decades with internal battery backups.. these aren't illegal yet. My server cases from 20 years ago had tamper switches for exactly this purpose. How hard is this stuff to engineer?

With physical access, global superpowers can break both vaults and strong encryption.