Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

I think the notion is that knowing what software versions a government IT system is using internally will help attackers, for example because they'll know about likely vulnerabilities in those systems. There are definitely some attackers who are interested in, say, government and military healthcare IT systems, because they can use those to get personnel records (or maybe even more nefarious applications).

"Loose lips sink ships" is a World War II campaign slogan to get people who had knowledge of military activities not to talk about what they knew, even things they thought were completely innocuous, because sometimes even a small piece of information was relevant to letting an adversary deduce something important.



In this case it gives an increased false sense of safety in having security by obscurity, which ends up being the worse path.




Consider applying for YC's Summer 2026 batch! Applications are open till May 4

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: