Earlier quoted context omitted.
Looks well qualified to run the coding bootcamp in her prison.
Only facing up to 5 years apparently. I wonder if that will change over time. Considering her hack is worse than what Aaron Swartz hacked (not PII) I cant believe she only gets 5 years.
Capital One Says Breach Hit 100M Individuals in U.S
251–260 of 319 posts
Re: Capital One Says Breach Hit 100M Individuals in U.S
#252Earlier quoted context omitted.
Given that Ms. Thompson is transgender [0], it's likely a lot was stacked against her emotionally. 40% of trans-identifying individuals to attempt suicide [1]. This is a disappointing omission from the reporting and the road that lies ahead for Ms. Thomson in the hands of the federal prison system is surely horrifying. [0] https://twitter.com/0xA3A97B6C/status/1152518528907354112 [1] https://transequality.org/sites/d…
I wonder if it could be an effective legal defense for her, akin to plot of Soderbergh Side Effects (2013). "not guilty by reason of insanity" due to hormonal treatment, there are precedents https://www.charlotteobserver.com/news/local/crime/article64... https://ps.psychiatryonline.org/doi/full/10.1176/appi.ps.53.... https://www.mercurynews.com/2012/08/21/man-acquitted-after-a...
Re: Capital One Says Breach Hit 100M Individuals in U.S
#253Earlier quoted context omitted.
https://gist.github.com/paigeadelethompson Not much is left.
Her gitlab account shows it was updated just few hours ago. How is this possible? https://gitlab.com/netcrave
Re: Capital One Says Breach Hit 100M Individuals in U.S
#254Earlier quoted context omitted.
I'd rather see the hammer applied to the companies that allow the data to be stolen.
From what I read in the complaint, it wasn't as blatantly bone headed as other breaches. Seemed to be an IAM permission issue related to AWS WAF. This argument is constantly made on HN and it is analogous to; you left your back door open at your house, and instead of arresting and prosecuting the robber, we are going to arrest you. Sure, I made a mistake and left my back door open, but that doesn't give the robber th…
Re: Capital One Says Breach Hit 100M Individuals in U.S
#255Earlier quoted context omitted.
It's a wild ride. Who hacks in via Tor and then posts the data to a GitLab account under their own name?
Could be a frame job, remorse, freakout, or some kind of dissociative or other personality disorder.
Re: Capital One Says Breach Hit 100M Individuals in U.S
#256If I came across an s3 bucket with my credit application details and I could delete it, I would probably do it and then report to their security team. It’s MY data security they’re being casual with. It occurs to me now that if I did that it would likely be a crime because of the harm to the company. The irony.
In the UK this would definitely open you up to the Computer Misuse act, and I imagine the police would have something to say to you about evidence tampering too.
Re: Capital One Says Breach Hit 100M Individuals in U.S
#257Earlier quoted context omitted.
Actually looks like she worked for Amazon on S3. So there might have been some insider knowledge. From the complaint below, and googling her name you can find her resume I won't link it here, but here's a screenshot of a snippet: https://i.imgur.com/NezWVKw.png
Looks well qualified to run the coding bootcamp in her prison.
Re: Capital One Says Breach Hit 100M Individuals in U.S
#258Earlier quoted context omitted.
So much evidence of mental illness there (see also Facebook). I hope this person gets help, but given their claim to also be in the country illegally (Tuvalu), who knows. I was ready to think this person was being set up by someone who didn't like her, given how exposed she was to being identified, but the Twitter and FB posts strongly suggest a vulnerable person making poor decisions instead.
Given that Ms. Thompson is transgender [0], it's likely a lot was stacked against her emotionally. 40% of trans-identifying individuals to attempt suicide [1]. This is a disappointing omission from the reporting and the road that lies ahead for Ms. Thomson in the hands of the federal prison system is surely horrifying. [0] https://twitter.com/0xA3A97B6C/status/1152518528907354112 [1] https://transequality.org/sites/d…
Re: Capital One Says Breach Hit 100M Individuals in U.S
#259Re: Capital One Says Breach Hit 100M Individuals in U.S
#260If I came across an s3 bucket with my credit application details and I could delete it, I would probably do it and then report to their security team. It’s MY data security they’re being casual with. It occurs to me now that if I did that it would likely be a crime because of the harm to the company. The irony.
> and I could delete it, I would probably do it In the UK this would definitely open you up to the Computer Misuse act, and I imagine the police would have something to say to you about evidence tampering too.