DISQUS

DISQUS Hello! The Technology Liberation Front is using DISQUS, a powerful comment system, to manage its comments. Learn more.

Community Page

The Technology Liberation Front

The Technology Liberation Front is the tech policy blog dedicated to keeping politicians' hands off the 'net and everything else related to technology.
Jump to original thread »
Author

Amateurs Study Cryptography; Professionals Study Economics

Started by TLF · 10 months ago

What a delightful chapter title in Adam Shostack’s and Andrew Stewart’s new book, The New School of Information Security. Adam is a guy I’ve known for a lot of years now – somehow. He always seems to pop up in the places I go – both physically %2 ... Continue reading »

3 comments

  • The authors revel in the breach data that has been made available to them thanks to disclosure laws like California’s SB 1386. A libertarian purist must quibble with mandated disclosure when common law can drive consumer protection more elegantly. But good data is good data, and the happenstance of its availability in the breach area is welcome.

    That's hardly a happenstance-the law is doing what it was intended to do. The correct term for that is: Good Design.
  • Interesting point, e_f, but what was SB 1386 intended to do, and how well has it achieved that goal? Please point to any evidence you can muster for either question.
  • Thanks for the great review Jim!

    To the point being discussed in the comments, my understanding of 1386 (and this is explicit in the preamble of the law) is that it was intended to allow people at risk of identity theft to protect themselves. The transparency it delivers is an unexpected consequence. As I'm sure readers of this blog are aware, designing such a mechanism is quite tricky, and anticipating all of the consequences is even harder.

Add New Comment

Returning? Login