Archr

joined 3 years ago
[–] Archr@lemmy.world 9 points 3 weeks ago

I don't work directly with PLCs but we do have them at my work. The main thing that makes these different from any other devices is that they typically control physical machines. Which means there is a real danger that them becoming compromised could lead to damaged equipment or even death.

Additionally, many PLCs use older OS versions like xp because their software is notoriously out of date (if it's working why rewrite it when that could introduce safety concerns)

This "urgent" message from CISA does not prove that any of these devices are internet accessible just that if they are then they should be removed. If CISA wanted to require this then they would have released a binding operational directive (BOD) or an emergency directive (ED). Both of which are publicly viewable on their site.

[–] Archr@lemmy.world 12 points 1 month ago (1 children)

This whole situation is making me strongly consider bringing a burner phone on my next vacation. That way I can wipe it before going through customs.

[–] Archr@lemmy.world 1 points 1 month ago

If they want to do business in the US then it follows that they would need to follow us law when conducting that business. It is the same reason that valve has to follow California law despite not being headquartered in California.

If that weren't the case then businesses would just move to international waters and claim to only need to follow maritime law.

[–] Archr@lemmy.world 1 points 1 month ago* (last edited 1 month ago) (2 children)

I would highly recommend actually reading the full text of the bill. It is a lot more than what is in the body of the post.

It is not clear to me whether a site would need to be hosted in the US to fall under this law or if they would just need to be accessible in the US.

I would post the definitions but there are 7 titles under this law and 5 of them each have their own definition.

Edit: just to be clear. I hate this law too. ID requirements will kill many platforms or people will use vpns to circumvent.

[–] Archr@lemmy.world 23 points 1 month ago* (last edited 1 month ago)

gofuckyour.self

Sounds pretty funny. Can't wait to see what is hosted there.

I would guess either 50-50 it is a meme site or pron. No in between.

[–] Archr@lemmy.world 1 points 3 months ago (1 children)

Any particular news sites you like or just a general app with music categories selected?

[–] Archr@lemmy.world 1 points 3 months ago (4 children)

How do you discover new artists? That is the main thing keeping me from doing this.

[–] Archr@lemmy.world 0 points 5 months ago (3 children)

Not sure that I would really agree that these are backdoor. Since disabling the vehicle remotely is kinda the express intention of this device. Just a consequence of how they designed them to not be circumvented by the operator.

[–] Archr@lemmy.world 0 points 5 months ago (1 children)

Just want to clarify something about your comment since it feels like you have not had a chance to read the law yet.

(this is in reference to the Cali law but I am told the Colorado one is basically identical). The Cali law does not, in any way, require ID verification, it only requires that a parent attest to the age of their child when setting up an account for them.

This is not my argument for this exact law or any of these laws. I just want to make sure we all understand what we are talking about before going for the pitchforks.

[–] Archr@lemmy.world 0 points 5 months ago (1 children)

Can you provide any sources for these? Maybe a california legislator saying they plan to do this? Or a proposed law? Otherwise it is just the slippery slope fallacy. While that doesn't disprove what you said it does not provide a valid argument for it either.

[–] Archr@lemmy.world 0 points 5 months ago (3 children)

This is just the slippery slope argument.

The California law does not require verification. Only attestation.

view more: next ›