Live data from Hacker News

Adobe To Pay $1M For Data Breach, Bolster Security, North Carolina AG Says

ncdoj.gov

11–20 of 21 posts

Re: Adobe To Pay $1M For Data Breach, Bolster Security, North Carolina AG Says

#12

This data breach nonsense with slaps on the wrist is very easy to fix. Just have the government assign a dollar value to each piece of private information and allow for class action lawsuits for data breaches. For example Social security number $5000 Credit card number $1000 Address $500 Telephone $200 Email $100

There are lots of shady lawyers out there, and this would give them an incentive to pay hackers to increase the size of data breaches.

Re: Adobe To Pay $1M For Data Breach, Bolster Security, North Carolina AG Says

#13

This data breach nonsense with slaps on the wrist is very easy to fix. Just have the government assign a dollar value to each piece of private information and allow for class action lawsuits for data breaches. For example Social security number $5000 Credit card number $1000 Address $500 Telephone $200 Email $100

[deleted]

Re: Adobe To Pay $1M For Data Breach, Bolster Security, North Carolina AG Says

#14
post #12

This data breach nonsense with slaps on the wrist is very easy to fix. Just have the government assign a dollar value to each piece of private information and allow for class action lawsuits for data breaches. For example Social security number $5000 Credit card number $1000 Address $500 Telephone $200 Email $100

There are lots of shady lawyers out there, and this would give them an incentive to pay hackers to increase the size of data breaches.

Indeed. Seems like a cobra effect situation: https://en.wikipedia.org/wiki/Cobra_effect

Re: Adobe To Pay $1M For Data Breach, Bolster Security, North Carolina AG Says

#15

This data breach nonsense with slaps on the wrist is very easy to fix. Just have the government assign a dollar value to each piece of private information and allow for class action lawsuits for data breaches. For example Social security number $5000 Credit card number $1000 Address $500 Telephone $200 Email $100

I have been saying that companies that wish to collect and store private data should be forced to buy "data insurance" for this purpose and to incentive only storing necessary information

Re: Adobe To Pay $1M For Data Breach, Bolster Security, North Carolina AG Says

#16
post #14
post #12

Earlier quoted context omitted.

There are lots of shady lawyers out there, and this would give them an incentive to pay hackers to increase the size of data breaches.

Indeed. Seems like a cobra effect situation: https://en.wikipedia.org/wiki/Cobra_effect

But it wouldn't be a reward. It'd be a fine paid to the government. The only real reason with malicious intent I can see from it is people intentionally hacking companies to bankrupt them or cripple them. But that just means they had weak security anyways

Re: Adobe To Pay $1M For Data Breach, Bolster Security, North Carolina AG Says

#17
The extraterritorial EU General Data Protection Regulation (GDPR) sets fines of up to 4% of global annual revenue for companies not sufficiently protecting the personal data of EU citizens from May 2018 and onwards (with a cap of 20 million EUR).

The requirements for compliance are absolutely non-trivial, so I suggest that startups (and older companies) start designing compliance and privacy into their business processes and systems already today.

Re: Adobe To Pay $1M For Data Breach, Bolster Security, North Carolina AG Says

#18
post #17

The extraterritorial EU General Data Protection Regulation (GDPR) sets fines of up to 4% of global annual revenue for companies not sufficiently protecting the personal data of EU citizens from May 2018 and onwards (with a cap of 20 million EUR). The requirements for compliance are absolutely non-trivial, so I suggest that startups (and older companies) start designing compliance and privacy into their business proce…

EUR20m isn't a cap - the fines are up to EUR20m or 4% of annual worldwide turnover, whichever is higher.

Re: Adobe To Pay $1M For Data Breach, Bolster Security, North Carolina AG Says

#19
> A total of 52,734 North Carolina consumers were affected.

And also 152,989,508 email addresses were leaked, with sufficient information to derive the password in many cases.

I got interested in this at the time and was pretty stunned at how easily I could mine passwords: http://olivernash.org/2014/01/03/dna-of-a-password-disaster/...

Post reply on HN