8 ms·
> Government mandated backdoors in retail software and usage of those backdoors is a more well known or suspected occurrence with the CPC government than, say,
by SCdF 6y ago
> Government mandated backdoors in retail software and usage of those backdoors is a more well known or suspected occurrence with the CPC government than, say, the Canadian government.
So we know (right?) that the US government put backdoors in lots of parts of the backbone of the US internet they had access to that wasn't public knowledge, and that they have data sharing agreements with 5 eyes countries so that, for example, they can use their backdoors to send information about canadian citizens to canadian spy authorities without triggering various laws that would otherwise make that information illegal to obtain, and get the reverse in return.
- anonymousab 6y agoYeah, we do know that. Or a reasonable amount of information as to approximate 'know'. This specific topic is about the possible use of a very real potential backdoor in software that a company wants people to download, though. Five-eyes exploiting infra and pressuring service providers to share info is not as germane to the discussion as the likelihood of the CPC interfering in software that can be argued to be well under their control. Distrusting Google for their cooperation with government spying in no way precludes avoiding or criticizing Riot's software choices due to the risk and known behaviors of China's government.
- SCdF 6y ago> Five-eyes exploiting infra and pressuring service providers to share info is not as germane to the discussion as the likelihood of the CPC interfering in software that can be argued to be well under their control. > Distrusting Google for their cooperation with government spying in no way precludes avoiding or criticizing Riot's software choices due to the risk and known behaviors of China's government. Right, so you're saying here that Five Eyes' ability to hack infra isn't comparable to CPC's ability to put backdoors in software? I.e. that while you acknowledge that infra might be compromised, in terms of a collection of bits executing on your computer you trust that software generated by a US company isn't compromised (or is less likely or whatever) compared to software generated by a Chinese company?