
2 days
Also software… I would love to have regulations that make it clear that the root of trust on all devices need to start by the owner of the device, not by the vendor… That would allow the end users to repair the software on their devices… Replacing it with whatever else they want. Next would be to provide hardware documentation to the owners to program their own devices… I don’t expect that to happen, but I can dream.
I disagree. For any actual security, the owner of the secrets is the only one that can be trusted. It is their secrets. Their own interest to keep them save.
Any company or government is a shifting entity, maybe now they are trustworthy, but maybe in some years they aren’t.
Owners are the only stabile point, because it is their data. They should be able to transfer the trust to a company or government to handle security, but they also need to be able to take away that trust and access, and either handle it themselves or transfer that trust to some other entity.
It is not okay for companies or government to hold the data of individuals hostage… That is not security, that is a business strategy.