Every fiat corporation will give you some speech about how they "take security seriously".

And it's not like they don't care at all. They would prefer to avoid the headaches that come with a data breach.

But the reality is this - when costs need to be cut, #cybersecurity staffing and spend are one of the first things on the table. It's a pure cost center. Some folks in the industry are smart and have done everything they can to make security a competitive advantage, but it will never be a true revenue driver for 99% of businesses.

Companies also have obligations to obtain your sensitive data, because of #KYC and #AML laws. And while you're scraping very sensitive data, the incentive is to just get everything you can! Maybe it will pay off some day...

This is yet another reason I am so fascinated by Bitcoin and Nostr. The idea of being able to transact on the internet in a private way is massive. Shipping these features will do more to "solve" cybersecurity than anything else.

The easiest way to secure sensitive data is to never obtain in the first place!

Reply to this note

Please Login to reply.

Discussion

This.

People talk about "trust" wrt to custodians, but that misses the point. You don't have to "trust" them beyond trusting that they won't actively rob you. But you do have to _hope_ that they don't get hacked/fuck up. Every computer is a vulnerability. Either you are going to be attacked, or your billion dollar custodian is. No amount of "trust" can do anything about that.

You are a less juicy target with a smaller attack surface.