3 ms·
Well, that's really the thing: Who bricked it? There's really no question as to whether the current outcome is possible under a licensing agreement. This is wh
by themodelplumber 3y ago
Well, that's really the thing: Who bricked it?
There's really no question as to whether the current outcome is possible under a licensing agreement. This is why random people are asking to see the licensing agreement in question, lol.
Sometimes when there's figurative smoke, there are figurative paragraphs of fire that somebody signed off on in a moment of assumption, excitement, or whatever.
- kerkeslager 3y ago> Well, that's really the thing: Who bricked it? Warning, philosophy ahead. There's a fallacy implicit in your question, which is that anyone can be held responsible for outcomes. The reality is that people are responsible for their actions, not the outcomes of those actions. The confusion here comes from the fact that actions aren't completely divorced from outcomes: you usually take an action because you have a desired outcome in mind. But ultimately, this is at best a percentage game: no matter how much power you give someone they don't completely control outcomes. What this means is that you can't look at an outcome, such as "a bunch of consumer devices got bricked" and decide who to blame for it. You can only look at people's actions, and each of those people is 100% to blame for their own actions. In this case ORQA is 100% to blame for shipping 3rd party code which they hadn't audited, possibly licensed under an agreement they didn't follow and maybe didn't even read, and probably not auditing network calls to discover calls home to check the license. And the contractor is 100% to blame for including bootloader code intended to brick devices, possibly with calls home to check the license, and not communicating effectively the gravity of consequences of not complying with the license, in a manner timely enough to allow ORQA to remediate the problem before it becomes catastrophic. ORQA is 100% responsible for their actions, and the contractor is 100% responsible for their actions. I don't particularly care about the licensing agreement. People who write gotchas into licensing agreements and then exercise those gotchas without ample warning are bad people[1]. I want nothing to do with people who make it easy to make mistakes and then jump on the opportunity to take advantage of me when I inevitably trip up. The flip side of this is that the problem for ORQA goes far deeper than this particular piece of licensed code. It's obvious they can't be trusted to protect the security of their users. This code clearly wasn't audited, not even at a high level, such as seeing what network calls are made--this software has some way to call home to the contractor, since the contractor was able to issue a temporary fix. [1] There's some nuance here about what a "bad person" is: I'm not talking about some sort of universal morality here, and I believe people can change. This is more about what behaviors I want from the people around me, and what behaviors I think society should reward/punish for the greatest benefit to society.
- themodelplumber 3y ago> and not communicating effectively the gravity of consequences of not complying with the license, in a manner timely enough to allow ORQA to remediate the problem Do you see your own argument's fallacy here?
- kerkeslager 3y agoNo I do not, but I'm sure you'll be happy to explain it to me.
- theamk 3y agoWhomever came up with the idea, designed and implemented the code to check the date and disable the boot has bricked it. Sometimes answer is murky: there might be miscommunications or changing requirements or software bugs or evil management.. but in this case the answer is pretty obvious: SWARG came up with the idea, SWARG designed this, SWARG implemented this. (unless you think ORQA itself came with the idea of beicking their own product.. but I seriously doubt this based on their reaction)