• JoYo@lemmy.ml
    link
    fedilink
    English
    arrow-up
    4
    arrow-down
    42
    ·
    10 months ago

    that’s why chrome added remote attestation and yall threw a fit

    • ℍ𝕂-𝟞𝟝@sopuli.xyz
      link
      fedilink
      English
      arrow-up
      50
      ·
      10 months ago

      There is no additional security to be gained by a random megacorp that has leaks every other month “attesting” that I can use my things well.

      And Google didn’t add attestation to make sure my bank details are safe, it did it as part of a concerted effort from the industry to make sure I am not able to make my computer work as I want it to work and run code I want it to run. Google does not care about bank fraud as long as it doesn’t affect its stock price.

    • Buddahriffic@lemmy.world
      link
      fedilink
      arrow-up
      6
      ·
      10 months ago

      The complaint isn’t, “banks allow connections from browsers that might be compromised!”

      The complaint is, “banks claim they cannot allow apps to run in scenarios where they can’t determine if anything is compromised but have been perfectly fine doing it and continuing to do it in the case of browsers, so their stated reason sounds like bullshit.”

      Those complaining about Google wanting to add attestation either didn’t want that in the first place, or don’t want the trade-offs required for such a thing to work. Like remote banking requiring using a corporate-approved platform and ad blocking not being as agile.