Hacker News new | ask | show | jobs
by ndsipa_pomu 22 days ago
The question is whether the defender takes reasonable defensive measures or not.

The problem is that without having some kind of enforcement, businesses will decide that it is cheaper to not worry at all about security and thus their customers will have their data leaked/shared etc.

There's a world of difference between a company that puts effort into security and one that doesn't.