x
Black Bar Banner 1
x

Alert!  New Secured Wallets are installed! new Blog system with AI  power and auto blog curation coming soon  Alert! 

Ads by Markethive - View All
Blogs
The Blog Feed
Write a New Blog Post
Search Blog Status
Most Viewed
Most Recent
Most Shared
Alphabetical
Blog Main Menu
Markethive Blog (default)
All Blogs
My Blog Posts
Friends' Blogs
Blog Categories
All
Advertising
Blockchain & Cryptocurrency
Business Development
Diet & Weight Loss
Environmental
Health and Wellness
History and Culture
Home and Garden
Marketing
Mentoring & Training
Money & Finance
Other
Political
Prayer & Religion
Programming & Technical
Real Estate
Search Engine Optimization
Social Media
Spirituality
Sports & Recreation
Transport
Travel & Events
Website Design
Blogging Tools & Assets
My Blog Info
Members Subscribed to You
Blogs You Are Subscribed To
Website Widget
Wordpress Plugin

Tinder's hack shows the perils of centralization

Posted by Simon Keighley on January 21, 2020 - 4:14am


Tinder’s hack shows the perils of centralization

Tinder's hack shows the perils of centralization

By Will Heasman

Some 70,000 photos were hacked on Tinder. Here’s what can be done to prevent such major data breaches.

In a well-publicized hack, the dating app Tinder was compromised last week. Black hat hackers, apparently hunting for a fresh assortment of catfishing bait, appropriated 70,000 pictures from the app. The breach, which was the first major security incident in Tinder’s history, affected 16,000 users. 

With Tinder’s reputation up in flames, a number of critics have pointed out that this could have been avoided via a decentralized system. 

Tinder's data breach is the latest in a long line of data foul-ups, ranging from Google’s loss of 50 million user’s data in 2018, to last year when Facebook’s unsecured server jeopardized over 400 million user’s phone numbers. For Tinder the key problem was that it held the files in one, centralized location, making it easy for hackers to bag such a big loot. 

 

More centralization, more problems.

"Centralization is the apex of vulnerability. When all of the data is stored in one location, usually all it takes is one ‘key’ to access the files on the server,” said Jeff Kirdeikis, the CEO of Uptrennd—a decentralized social media platform. “We've seen this vulnerability exploited with Equifax, Facebook, Myspace, and even major government agencies. If it's centralized, it's vulnerable, and it likely will get breached." 

It didn’t used to be like this. During the Internet's infancy, nascent applications, such as email, were designed within a distributed model, with no single point of failure. Now, many companies such as Facebook, Google, and Twitter operate on a predominantly centralized architecture. That allows the likes of Facebook to be exposed to a host of attack vectors, including the classic distributed denial of service (DoS/DDoS) assault, where a bad actor overwhelms a server with a flood of traffic, crashing the website. 

Centrally held servers are inherently fragile. In Facebook’s second most infamous scandal, the platform allowed access to over 400 million user phone numbers—all due to unprotected databases. So, other than effective password management, what's the solution?

ecosystem for entrepreneurs

A better way

In Kirdeikis' opinion, there is only one way to combat this central issue: distribute and decentralize data.

Decentralization allows for fractional amounts of data to be stored in multiple locations.

Imagine if a photo were split up into one hundred pieces, and then servers around the world hosted one of those pieces each. If one of those servers was hacked, your photo would not be vulnerable as they would only have a fraction of the information.

"This is similar to if someone found a single shred of a shredded credit card. It would be useless without the rest," Kirdeikis noted.

Sam Pajot-Phipps, Head of Strategy at The Open Application Network, explained to Decrypt how decentralized systems keep data secured: 

“Depending on the type of product and data, leveraging a decentralized data storage protocol can provide consumer applications with increased security through a global network of independent operators that manage and secure the data and with verifiable guarantees as to how the data is stored, accessed and managed.”

 

Not a cure-all for everything

However, decentralization isn't without its faults. These systems frequently oblige more effort from the end-users hands, often requiring the need to install software. For some, the slack that centralized entities take up more than compensate for the issues they present. Moreover, the fragmentation of data over several locations heightens costs and increases complications. 

Pajot-Phipps argues that for a decentralized utopia to come to fruition, education, technology, and ergonomics need to come up to scratch. 

“In a future state where decentralized data protocols support every-day consumer applications we are shifting certain requirements and responsibilities from specific entities to individuals. While this moves us towards a more self-sovereign future it also requires novel technical solutions, education and changes to standard user-experiences.”

Article produced by Will Heasman

https://decrypt.co/17167/tinders-hack-shows-the-perils-of-centralization

 

ecosystem for entrepreneurs