back

by ValdikSS·1y ago·view on hn ↗
Software exploits won't stab you with the knife: most probably you won't see any difference and have no idea that your phone is hacked.

That's why for vulnerable/high-benefit target groups better be safe than sorry.

However you're right, the whole industry is driven by fear, and basically no news agency write clear and concise vulnerability reports for the regular Joe.

1 comments
> That's why for vulnerable/high-benefit target groups better be safe than sorry.

Yes, but let's be practical. I'm not one of these people, in all likelihood you're not a high ranking member of government either. The attacks we are vulnerable to are wide-sweeping well-known vulnerabilities that are trivially exploitable, untargeted, in a browser or in user installed software. These exist, but we can learn about them and know if we are vulnerable, then make the judgment for if it's within our risk tolerance & risk appetite.

Security is not an absolute. It must be informed by the real-world threat landscape, then modulated by individual risk on a case-by-case basis. Too many "security people" preach well-intentioned but incomplete advice.

The officially registered company in my country sells feature phones with build-in trojans for years, and I can't make the government agencies do anything about that, or the shops to remove at least a known-trojaned models from the retail stock.
That is a shame. Why must people be so terrible