Quote:
Originally Posted by
Deal
I would not expect sophistication in such a new unregulated market. It didn't even spawn from a legitimate business. We have banks using much less sophisticated technology. Your expectations are too high. The world is full of idiots.
I dont believe we have banks using less sophisticated technology than them, elaborate on this? Beyond the crypto angle, this seems to be hobbiest level. Banks are PCI DSS compliant, and then some, that requires NIST established (iirc) minimums that are accepted as suitable industry-wide.
Changing a c-name in DNS and pointing to a landing page isnt sophisticated.
Adhering to the most basic tenets of disaster recovery and having a cold backup site? Not sophisticated, and profoundly negligent for an e-commerce site.
The list is endless.
I'll tell you something tho.. you want to know the _one_ scenario where an e-commerce site goes legit dark?
An intrusion.