4 ms·
You've got to be a real low-life to collect all of that and put it in a database that is not air-gapped.
by blell 7mo ago
You've got to be a real low-life to collect all of that and put it in a database that is not air-gapped.
- xorcist 7mo agoIt's something akin to a service provider in SAML parlance, if we are to believe reporting. How can it be air-gapped? And if we are to believe the hacked company, it is a development environment with test data in it. That remains to be seen, but is a risky thing to lie about. If there is production data in the leak, we will surely know about it.
- UltraSane 7mo agoAt the high end you can use data diodes to isolate critical data.
- lukan 7mo agoIf you need the data, you cannot have it air gapped. And if it is air gapped, it is still easy to make misstakes.
- dns_snek 7mo ago> it is still easy to make misstakes. That's not an excuse though, any system handling data like that should be continuously reviewed and pentested by professionals. Hopefully they can show that this has been done otherwise it's just negligence.
- lukan 7mo agoIt was mainly an explanation, that "airgapping" does not magically provides better security, or is required (or possible) to use at all here.
- dns_snek 7mo agoAnd it's pretty clear to me that they were criticizing storage of sensitive data in a database that isn't properly secured and they simply misused the term "airgapped". The database in question was easily accessible from poorly maintained development infrastructure. > Please respond to the strongest plausible interpretation of what someone says, not a weaker one that's easier to criticize
- fc417fc802 7mo agoImagine if the bank took such a cavalier attitude with the contents of my account.
- jjgreen 7mo ago"misstakes", love it, almost peotic
- dijit 7mo agoThe point of a system like this is specifically that it’s accessible and not air gapped. Being able to validate that a citizen is a citizen and their ID is valid inherently requires the system be accessible
- deleted 7mo ago[deleted]
- fc417fc802 7mo agoIf you can't implement it securely then perhaps such an undertaking wasn't a good idea? In the vast majority of cases I don't see why PII ever needs to be available over the network for remote queries. For the purpose of verification isn't it sufficient to verify hashes or better yet to attest via smartcard?
- dijit 7mo agoYou can, they didn't; big difference.
- fc417fc802 7mo agoBy "can't" I mean "not capable" or "not going to in practice".