Hidding information is not a way to stay secure

The other day I found how someona just says:

“We won’t give you this information, because if we do you will have to know how to bypass it”

And THIS is the real error, you try to hide something you know doesn’t exists, but try to scare the others with a bland argument.

Why I am sure after this there is no way to be secure ?

Because if your security depends on hiding information, then you have no security, information always leaks sooner or later.

Big companies like Nintendo or Famitsu cannot evade Leaks, why would you?

Hey, I’m not saying “it’s useless for Coca-Cola to keep it’s formula secret” because while part of that is true, they usually change bits of the formula quite frecuently, so analyzing today the formula may yield a different result.

While hiding information is actually something you should do (unless you don’t mind, after all, so many people share so many things on their Facebook profile to all the world…) battlantly screaming: “We are secure, we won’t tell you why” is a way to actually prove than you are not secure anymore, if your security method depends ON BEING HIDDEN, then it’s not secure, secure methods are the ones than everybody can and will know how they works, technologies like SSL/TLS or encryption algorithms are actually open for that same reason. And that is why AES is a really bad encryption method.

You know, even after don’t saying anything, people actually encounter how “DEADCAFE” (wich is a number in hexadecimal, in other words: 3735931646 in decimal) was the magic number all along…

Here is the last Rant of today, while they are maker related (In a way you may not understand too much, but they are) They are not resources, just information…


