Here's something I've been mulling over for a little while after a discussion on whether you could tell in advance if you were likely to have a major security incident... Is it possible to mathematically model infosec? Would it turn out to be a chaotic system - is there extreme sensitivity to changes in initial conditions? Or is it intrinsically stable so that large perturbations are cancelled out over time?
If you could model it would it show a phase change from secure to insecure? And if so, could you tell when the amount of "energy" in the system was about to push it through a phase change?
Or is this a contender for /dev/null?
The CotMan started this very same converstation here but it didn't seem to go anywhere.
If you could model it would it show a phase change from secure to insecure? And if so, could you tell when the amount of "energy" in the system was about to push it through a phase change?
Or is this a contender for /dev/null?

The CotMan started this very same converstation here but it didn't seem to go anywhere.
Comment