Live data from Hacker News

Stop Saying, ‘We Take Your Privacy and Security Seriously’

techcrunch.com

91–100 of 112 posts

Re: Stop Saying, ‘We Take Your Privacy and Security Seriously’

#91
post #83
post #66

Earlier quoted context omitted.

I'm pretty sure that "verify real users" was about captchas. Solving that problem in general is probably impossible, I grant you that. However, reaching a good-enough solution for a particular site is often doable. In increasing order of strictness and complexity: - Use hidden/visible field shenanigans - Ask questions your audience should be able to answer (chess-captchas, maths-questions, etc.) - Require registratio…

If you can think of it, someone can make a computer automate it.

They can, but unless you're a big and juicy target, they probably won't - because why bother?

Re: Stop Saying, ‘We Take Your Privacy and Security Seriously’

#92
post #9

Earlier quoted context omitted.

Wait, exit points, page views, bounces… Can't you measure these just from the server's log? I don't think you need to track an individual's navigation pattern and store a cookie on their machine to crunch these stats.

An exit point or a bounce is inherently a property of an individual’s navigation pattern.

It is, but you can save just the fact that it happened, without the whole interaction history leading up to it, and without details of who was navigating.

Re: Stop Saying, ‘We Take Your Privacy and Security Seriously’

#93

Earlier quoted context omitted.

The next time you stroll in he'll ask for your cellphone number. For security purposes. If you don't want to provide it now you'll have to tell him that you'll do so another time.

As you start drinking your coffee, a little shutter slides shut across the lid of your coffee cup. It'll only open if you create an account, log in and agree to every sip you take being recorded and measured. Sure, it's possible to prise the lid off manually or use a special shutter-blocker, but you often end up with a broken cup. And coffee shop owners call you a thief and find ways to thwart your blocker.

Any Black Mirror episode writers here?

Re: Stop Saying, ‘We Take Your Privacy and Security Seriously’

#94

This is slightly off topic and relatively minor, but man does it represent the piss poor state of Tech writers and their articles. "I was curious how often this go-to one liner was used. I scraped every reported notification to the California attorney general, a requirement under state law in the event of a breach or security lapse, stitched them together, and converted it into machine-readable text. About one-third…

Why are you attempting to equate tech writers with journalistic integrity. TechCrunch is basically a blog .

Well, regular bloggers have higher standards than journalists because they actually link to their sources. News sites do their damnest to avoid linking or even mentioning things by name if the article isn't explicitly trying to promote them.

Re: Stop Saying, ‘We Take Your Privacy and Security Seriously’

#95
post #89

I must chime in on this subject. To take a community college course, the application online form is asking pretty much every piece of your info, birthday, SSN, family income, ethnicity, future plan, current situation, home address, many personal preference, phone, email, immigration status, marriage status, gender, education background, military background, job experience, you name it. Nearly all of them are mandator…

About 7 years ago, I wanted to take some online classes with a community college to get a few credits I needed at another institution. I enrolled in classes, but then changed my mind and never paid the tuition.

I assumed, like most colleges, I would just be de-enrolled before the semester started. Instead, they kept me in and sold my info to a collection agency!

I never gave them my credit card number or checking account info, but they had my contact info and social security number. They hounded me for months and made all sorts of fancy threats. But luckily they never seemed to be able to add an entry on my credit report. I dropped it because I was hoping that it was just an oversight and didn't want to fight it, but maybe they wouldn't have been able to prove I purchased anything anyway.

I can't believe that if someone knows just your SSN only, they can put you on the hook for massive amounts of debt. I only gave them a temporary address not associated with me, and clicked through an EULA. I honestly assumed that I had not yet committed to going into debt, just by creating an account.

And this is a state-endowed community college.

Do these seem like reasonable terms? [1]

  - By Registering for classes at SUNY Broome Community
   College, I acknowledge and agree to:  
   - Pay prompty all charges owned to SUNY Broome Community
   College.
   - Take responsibility for all costs of collecting unpaid 
   charges, including but not limited to collection agency
   fees, attorney fees, and court costs.  
   - Permit SUNY Broome and/or its agents to contact
   me using any method available including but not
   limited to the use of email, text and automated dialer
   systems; also any information furnished to SUNY Broome
   Community Colege may be used to contact me including my
   cell phone number, home number or work number.
(Sorry, don't know how to format a bullet list with long lines)

As soon as you enroll in classes, you're on the hook for $4500 + fees? I could understand maybe not refunding certain fees, but I have never heard of a college that just advances you that much money immediately, and then tries collecting on it.

So some 17 year old could just sign up for classes, without ever confirming anything or giving any payment info, and they are instantly in debt for over $5000?

This was NOT a student loan I signed up for. No entry was made on NSLDS, and the government never got involved. And no pull was made on my credit report. As far as I can tell, they seemed to just be accepting anyone who enters a social security number to sign up for classes, and then selling it directly to a collection agency.

If I ever admitted to the collection agency that I was in debt, maybe that would have been enough for them to actually amend my credit report. It seemed strange that they were willing to talk to me for hours, but I think they were just trying to get enough info out of me and convince me to more explicitly admit that I owed them money.

I imagine that if someone knows your SSN and wanted to harass you, Broome Community College would be very useful for that.

So, yeah, there are some scammers out there you might not expect. And I can see how all of that extra info I gave them could have been used to collect on a very dubious "debt".

I also one time had a Blue Apron sales person at my campus give me a free month of service, with no credit card required. After the first month, this company called me and said they needed me to update my credit card info, but I never gave them a credit card.

After looking into it, it turned out that the salesman had given them a temporary credit card in my name so that he could get the referral fee. Luckily all I got was a free month of meals when he scammed the company. But the one-time email at my vanity domain that I gave the salesman started getting phishing emails. But I'm pretty sure the salesman had permission from the college to solicit to students.

[1]: https://web.archive.org/web/20190221153507/http://www2.sunyb...

Re: Stop Saying, ‘We Take Your Privacy and Security Seriously’

#96

This is slightly off topic and relatively minor, but man does it represent the piss poor state of Tech writers and their articles. "I was curious how often this go-to one liner was used. I scraped every reported notification to the California attorney general, a requirement under state law in the event of a breach or security lapse, stitched them together, and converted it into machine-readable text. About one-third…

I don't know of any journalism source that would do better than what you just quoted. They explained their source and their methodology. If you think they are lying it's not extremely hard to prove it, but why are you assuming they are lying?

If they cared about informing the reader, they would link to the source, so that interested readers could explore the topic further. It's as simple as that.

Re: Stop Saying, ‘We Take Your Privacy and Security Seriously’

#98
post #20

Also stop saying "Before you go further..." we need to share your data with tens of corporations. /s Note to non-EU users: Techcrunch is completely blocking the page with a popup asking me to share my location and behavioral data (for advertising purposes) with a probably very long list of companies (something called "Oath" family). The logos shown are for Yahoo, Aol, Autoblog, Huffpost and Engadget. Nah. I'll skip a…

Just disable 1st-party scripts and 3rd-party scripts in the uBlock Origin popup for techcrunch.com and that modal should not appear anymore. https://prnt.sc/mo26b4

It's the bottom right button to disable all JavaScript on a site. (it took me a while to find).

Re: Stop Saying, ‘We Take Your Privacy and Security Seriously’

#99

Also stop saying "Before you go further..." we need to share your data with tens of corporations. /s Note to non-EU users: Techcrunch is completely blocking the page with a popup asking me to share my location and behavioral data (for advertising purposes) with a probably very long list of companies (something called "Oath" family). The logos shown are for Yahoo, Aol, Autoblog, Huffpost and Engadget. Nah. I'll skip a…

The Oath websites and Medium are on my mental blacklists of sites I simply don’t bother with. The content isn’t good enough to care. It does mean I hit comment threads like this and can’t read the article. Oh well, I’m trying to reduce my internet time anyway.

Outline.com is great if you stumble upon some article you do want to read. Just put in the URL and it’ll strip away everything but the text and images. Here’s an example for the article for this thread: https://outline.com/RThZjn
Post reply on HN