Remix.run Logo
quickthrowman 6 hours ago

I would like to make a wager on this law being ignored the first time Samsung or another chaebol violates it and is facing a fine equal to 10% of revenue. I can almost guarantee it, it’s a high enough fine to turn some low-margin businesses from profitable to unprofitable for the year and there’s no such thing as a secure computer system. The only way to guarantee compliance is to not store any data which isn’t exactly reasonable for some business models.

Retro_Dev 5 hours ago | parent | next [-]

> there’s no such thing as a secure computer system

Where is your source for this? It is entirely possible to make a secure computer system, though it does require effort. The article specifically mentions "up to" 10% and the fines applying to companies leaking data on purpose or through negligence. I doubt the fines will be nearly as high for a company that tries to secure a system (and thus prevents more leaks) rather than a company that does not try to secure a system (assuming that leaks will occur), if the same breach happens.

Computers are deterministic (excluding cases where practically impossible cosmic ray events occur), so while we have the power to ensure system security, we should ensure system security. Heck, even just encrypting consumer information and protecting just the keys to this data would already decrease the effectiveness of many data breaches.

aucisson_masque 4 hours ago | parent | next [-]

> Where is your source for this? It is entirely possible to make a secure computer system

You can’t. You don’t need source for that, just common sense.

Exploits are discovered every day, bugs happen, bad actors.

You can do the best system, shit still happen.

BTW you want a source ? Remember when the freaking CIA data got leaked ? Edward Snowden, ring a bell ?

If the cia couldn’t prevent it, I bet you can’t.

4 hours ago | parent | prev [-]
[deleted]
bigfatkitten 2 hours ago | parent | prev | next [-]

The South Korean privacy regulator is the most diligent that I’ve ever seen in terms of slapping companies with fines when they screw up.

buellerbueller 6 hours ago | parent | prev | next [-]

Maybe those specific business models shouldn't exist, if they consistently risk harm to 3rd parties.

google234123 6 hours ago | parent [-]

You legally have to hold transactions for years yk as a business

josephg 4 hours ago | parent [-]

Then secure your database? This stuff isn’t rocket science. You don’t even have to hold historical transactions online. It’s quite difficult for hackers to access a hard drive sitting in a drawer.

draw_down 6 hours ago | parent | prev | next [-]

[dead]

google234123 6 hours ago | parent | prev [-]

Probably a law targeted at foreign companies

Retro_Dev 5 hours ago | parent [-]

I especially hope this holds true, because I don't want my information being leaked by anyone.