[tor-talk] WSJ- Google- Sonic Mr. Applebaum

Julian Yon julian at yon.org.uk
Tue Oct 11 11:48:53 UTC 2011


On 11/10/11 09:07, Eugen Leitl wrote:
>> At one point or another they just apply rubberhose crypto thus don't
>> make it too difficult.
> Why do you bother breathing? You'll die, anyway.

I think you missed the point Jeroen was making there. If Mallory
*really* wants to compromise your server, there will be a level of
security beyond which a gun to your children's heads is the most
cost-effective attack. In most people's threat models, they'd rather
take their chances with compromised data than with their kids' lives. In
such a model, making the server too secure can itself be a risk.


Julian

-- 
3072D/D2DE707D Julian Yon (2011 General Use) <pgp.2011 at jry.me>

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 294 bytes
Desc: OpenPGP digital signature
URL: <http://lists.torproject.org/pipermail/tor-talk/attachments/20111011/f9162194/attachment.pgp>


More information about the tor-talk mailing list