Earlier quoted context omitted.
I am still unsure as to how any of the credit bureaus exist legally at all, I never consented to having all my eggs in those three vulnerable baskets. Why is this my problem all of a sudden? I get that consumer protections in the US are not very strong, but this just seems like a shady cartel in cahoots with the banks/insurance companies. Please tell me I'm grossly misunderstanding something here.
It's a historical fluke. Credit bureaus trace back to agencies that compiled third-party reports on the creditworthiness of business persons. So long as the information collected is accurate (and not defamatory), this type of activity is protected under the first amendment. See the first segment of this episode of the Backstory podcast for a retelling of how these early agencies worked: http://backstoryradio.org/show…
Equifax Faces Multibillion-Dollar Lawsuit Over Hack
331–340 of 670 posts
Re: Equifax Faces Multibillion-Dollar Lawsuit Over Hack
#332Has there been any real discussion about alternatives to the present system? How else could authentication work for opening a bank account?
I imagine that the present system survives (1) because of inertia, and (2) because it doesn't require much infrastructure and so it's relatively cheap.
Maybe the next step is something like putting a chip into driver's licenses and ID cards nationwide?
Re: Equifax Faces Multibillion-Dollar Lawsuit Over Hack
#333How likely is it that Equifax will face any real trouble from this breach? Will this be one of the first cases where security negligence causes real harm to a company? Or will it turn out to be another slap on the wrist?
Slap on the wrist, guaranteed: - potentially every one of the 143M people are going to have some sort of trouble - WORST CASE equifax shuts down, but that doesn't matter. too late. - if everyone was to win a lawsuit for everything equifax is worth, they'd get maybe $100 minus lawyer fees. And worse, now we have a financial system dependent on 2 companies. Making a 3rd isn't an easy matter. ::shrug::
Re: Equifax Faces Multibillion-Dollar Lawsuit Over Hack
#334So let me get this right, this company collects credit information and someone hacked into their web server and stole highly sensitive information about most of the adult american population. Then the executives sold their stock a day before they announced the hack to the public. Besides the troubling fact that you still use social security and credit card numbers as any form of reliable authentication, how aren't th…
Re: Equifax Faces Multibillion-Dollar Lawsuit Over Hack
#335Earlier quoted context omitted.
Sure, in a fantasy land. If you where to hold the management criminally responsible for their lack of investment in IT, security etc you might see increased investment. The very fact that all this data was accessed from their public site is very troubling. What's the chances this is a basic SQL injection issue? What's the chances they didn't invest in security at all?
> If you where (sic) to hold the management criminally responsible for their lack of investment in IT, security etc you might see increased investment. What makes you think lack of investment in IT & security is the main reason they get hacked? Vice versa, NSA has virtually unlimited (let's just say unlimited means tens of billion dollars) budget invested in IT and security. They have the top resources there too. Do…
Re: Equifax Faces Multibillion-Dollar Lawsuit Over Hack
#336Re: Equifax Faces Multibillion-Dollar Lawsuit Over Hack
#337So let me get this right, this company collects credit information and someone hacked into their web server and stole highly sensitive information about most of the adult american population. Then the executives sold their stock a day before they announced the hack to the public. Besides the troubling fact that you still use social security and credit card numbers as any form of reliable authentication, how aren't th…
No amount of governmental regulations can solve the current date breach trends. Even government's own intel agencies got hacked too. No organization is immune to data breaches. It's a matter of time and effort. A lot of us here are engineers and coders. It's our responsibility to design better architecture, security conscious protocols and write securer softwares. And it's up to all of us (regardless which country yo…
If you're really so terrified of the government that you're against security regulations for the website of one of the largest credit card information collectors in America, then you deserved to be hacked too.
Re: Equifax Faces Multibillion-Dollar Lawsuit Over Hack
#338So let me get this right, this company collects credit information and someone hacked into their web server and stole highly sensitive information about most of the adult american population. Then the executives sold their stock a day before they announced the hack to the public. Besides the troubling fact that you still use social security and credit card numbers as any form of reliable authentication, how aren't th…
"Then the executives sold their stock a day before they announced the hack to the public." Selling stock the day before the news makes these guys seem like absolute criminals, but (a) it's not what happened and (b) the soundbyte doesn't represent what is likely the case. The reality: - Breach happened between March - July 2017 - Breach detected July 29th (A Saturday) - Executives sold stock August 1 (A Tuesday) - Bre…
Re: Equifax Faces Multibillion-Dollar Lawsuit Over Hack
#339>In the complaint filed in Portland, Ore., federal court, users alleged Equifax was negligent in failing to protect consumer data, choosing to save money instead of spending on technical safeguards that could have stopped the attack. Doesn't "users" imply that we had a choice in the matter? As if we're Equifax's customers? I feel more like we're victims in this case.
Re: Equifax Faces Multibillion-Dollar Lawsuit Over Hack
#340I looked into credit freezes yesterday. This is really a total scam. You have to _call_ each of the three agencies and pay a fee ($5 to $10) each time. If you need to unfreeze your report to make a legitimate credit application you have to call each of them twice (once to unfreeze and another to freeze) paying fees every time.
Now if you're a paying member (paying a minimum of $15/month to each agency) you can just lock and unlock your credit file on a mobile app (well, three mobile apps and I'm not sure all three support this). It's amazing how convenient things get once they're already extorting you for "credit protection".
This shouldn't even be legal.
Also, if a fraudster defrauds a financial institution with your personally identifiable details, it should be an issue between the agency and the financial institution as you were not a party to this loan. The reporting agency saying you were should be slander.
Financial institutions should be interested in consumers having an easy ability to lock their credit files as it would decrease the number of fraudulent credit applications.
So why can't I have a mobile app (or three) for free that allows me to easily lock and unlock my file or, better yet, to vet every inquiry and approve it or not?