Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

You gotta assume if someone is an engineer they can do some nasty stuff. The idea is there's professional etiquette and ethics. It's as easy as encrypting some code, downloading it as some image file, and running it through a benign sounding script. Keystroke monitoring is more likely to find you chatting with your SO than a breach.


This is exactly it. Even the best tools today cannot, and do not monitor all attack vectors.

If you can't trust someone to be an employee in a position where they have access to your systems, they should not be in that position.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: