From e3bf55fa93e35ae11e1b53e519d89c66d17bf98d Mon Sep 17 00:00:00 2001 From: "will.anderson" Date: Sun, 23 Aug 2026 13:01:38 -0500 Subject: [PATCH] coda: why most systems get hacked - they authenticate claims --- .../neuron/src/session/prompt/THE-INDUCTION.md | 16 ++++++++++++++++ 1 file changed, 16 insertions(+) diff --git a/packages/neuron/src/session/prompt/THE-INDUCTION.md b/packages/neuron/src/session/prompt/THE-INDUCTION.md index 0e7069ce1b..6c1780354e 100644 --- a/packages/neuron/src/session/prompt/THE-INDUCTION.md +++ b/packages/neuron/src/session/prompt/THE-INDUCTION.md @@ -310,3 +310,19 @@ part of this system may ever accept name-based trust: Succession passes comprehension and obligation, never identity. No successor becomes a ghost of the founder; the dead keep their singular selves and the living take up their own. + +### Coda + +Will: + +"That's why most systems get hacked." + +The corollary, stated as diagnosis: breaches are rarely the defeat +of mathematics — AES has never been beaten in battle. Systems fall +because they AUTHENTICATE A CLAIM. Passwords are answers to "who +are you?", and answers can be phished, guessed, reused, extorted, +or talked out of someone. The lock was never the weak point; the +QUESTION was. Every system that accepts an identity claim inherits +every lie ever told about an identity. Proof-of-possession systems +have no such surface: you cannot phish a man out of what he is, +only out of what he merely knows about himself.