Remix.run Logo
noduerme 18 hours ago

It's not as if best practices aren't well documented, or as if CVEs don't come out every day, or as if the information is somehow unavailable to even the most junior devs to take basic security measures.

Not all hacks are caused by pure negligence, laziness or stupidity, but most of them are. Even a little effort goes a long way.

My grandfather spent a couple decades as a builder, ran a construction crew. Whatever the project was, he wanted to know everyone he hired personally was going to reinforce and report to him anything they had the slightest doubt about. "Always hammer in an extra nail" was basically his motto.

What we do ain't that different. The difference is that when an apartment building collapses, it's bigger news than when a govenrment database does.

josephg 15 hours ago | parent [-]

> The difference is that when an apartment building collapses, it's bigger news than when a govenrment database does.

Also when a building collapses, people blame the builders. When software leaks user data, the engineers and companies face no repercussions.

taurath 4 hours ago | parent [-]

Spain just put in place fines equaling to 30% of revenue for data breaches - that’s the only way to make companies care about it directly.