In risk management, there is an axiom that says you don't implement a control if it costs too much. If the cost of the safeguard exceeds the cost of the asset, it isn't worth it.
But sometimes that principle gets taken in really strange directions.
China has been hacking US companies for years, costing billions in lost secrets and technology. And the US businesses have known about it for some time. But they aren't doing anything about it. Because they are afraid of losing business opportunities in China ...
............
Other posts: https://community.isc2.org/t5/forums/recentpostspage/user-id/1324864413
This message may or may not be governed by the terms of
http://www.noticebored.com/html/cisspforumfaq.html#Friday or
https://blogs.securiteam.com/index.php/archives/1468