Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I don't understand how a service can be both secure and centralized. You'd have to give 100% of your trust to a single entity. I'm not pointing fingers, but DDG is a good example of this situation.

If you want greater security, you have to allocate trust amongst many entities. This is a practical Byzantine Fault Tolerance problem (http://techtv.mit.edu/videos/16444-practical-byzantine-fault... ).

My current trust model is primarily made up of my friends and family; not a third party organization online, regardless of how they market it. If I put my trust in them, my security would only be compromised if ((N-1)/3) worked together. (see http://pdos.csail.mit.edu/6.824-2012/papers/castro-practical...) Wouldn't my activity be more secure if it was built upon that?

I'm not proposing any implementations; just food for thought.



Consider applying for YC's Summer 2026 batch! Applications are open till May 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: