zlacker

[return to "Remote Attestation is coming back"]
1. alexhs+ne[view] [source] 2022-07-30 00:29:03
>>gjsman+(OP)
The problem isn't the capability of remote attestation. The problem is who's using it, i.e. who's defining what "security" means. As noted above, for a company, "security" often means intentionally inhibiting my freedom, not actually securing anything I care about.

We would benefit from a better public discussion of what "security" encompasses. Else, we risk conflating "what MS wants me to do with my computer" with "preventing hackers from stealing my credit card number".

Imagine a world where you could submit personal information to a company, with the technological assurance that this information would not leave that company... and you could verify this with remote attestation of the software running on that company's servers.

◧◩
2. nonran+qi[view] [source] 2022-07-30 01:16:18
>>alexhs+ne
> The problem is who's using it, who's defining what "security" means?

Ask that question every time you see the word "security" written. There is no such word as bare security.

- security for who?

- security from who?

- security to what ends?

Much of the time security is a closed system, fixed-sum game. My security means your loss of it.

◧◩◪
3. ChadNa+am[view] [source] 2022-07-30 02:07:27
>>nonran+qi
Can you give some examples?
◧◩◪◨
4. Delk+xa1[view] [source] 2022-07-30 13:49:47
>>ChadNa+am
I'm not GP but I'm not sure what you'd need examples for. One meaning of security is similar to that of protection. Protection is directional, so to speak.

A company, an organization or an individual can have security guards, security procedures, etc. Security can protect the organization from objectively malicious threats, but security can also mean protection from any real or perceived threat to someone's interests.

Security can also protect an organization from the leakage of embarrassing or potentially incriminating information. An authoritarian regime has security to prevent it from being challenged. Security guards at an industry might stop activists from getting to the grounds to gather evidence of harm to the environment or people. Indeed, security staff would stop unauthorized people regardless of those people's intentions.

All of those are examples of security even if other people's legitimate interests were in conflict with it.

Security is for someone, and from someone or something.

[go to top]