Hacker News new | past | comments | ask | show | jobs | submit login

Remember the guy which created Silk Road. People talked about him in mythical terms, that he probably has the op-sec of God, but afterwards facts pointed to major mistakes, like connecting identities to his real name, and suddenly everybody was like "how can he be so stupid, doing this while being the owner of a $100 mil criminal empire"



It's a classic asymmetry: the defender needs to defend all the time, the hacker just needs to get in once. Ditto op-sec, the hacker needs to keep their identity protected at all times, the security services only need to connect the dots once.


He kept his diary unlocked along with the rest of his operational assets. That's a far cry from one slip.

Was it ever released how they found and imaged his server though?


Yet as far as I remember he leaked his identify long before anyone even knew Silk Road is even a thing. And someone behind this botnet certainly knew what scale it's going to have before they started it.


In my view that's even more damning. Continuing while knowing that you made basic mistakes in the beginning.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: