Live data from Hacker News

A Data Leak Exposed the Personal Information of over 3k Ring Users

buzzfeednews.com

91–97 of 97 posts

Re: A Data Leak Exposed the Personal Information of over 3k Ring Users

#91
post #81

Earlier quoted context omitted.

I've recently had a similar problem with Spotify. My account was stolen. In part because I did not have 2FA turned on... because the app doesn't offer it for some reason. And, in part, because whoever logged into my account from a different IP and device supposedly didn't trip any of their security measures. So I was never even told that someone took hold of my account until I tried to get on. It's baffling to me tha…

I'm curious as to how stolen Spotify accounts are monetised? What's the value of them?

https://www.ebay.com/sch/i.html?_&_nkw=spotify+warranty&_sac...

All keylogged/phished/etc.

Re: A Data Leak Exposed the Personal Information of over 3k Ring Users

#92
post #53

Earlier quoted context omitted.

Due to the overwhelmingly high amount of attempted fraud in grey/black market VoIP stuff, it's pretty common for wholesale SIP trunking providers to now alert the account owner whenever the web account control panel is logged into from a new, unknown ISP and/or useragent.

These “boutique” SIP providers (as I call them, Telnyx, Voipo, VoIP.ms etc) could really learn from their larger telecom counterpoints by allowing users to whitelist what IP ranges users can even authenticate from. Heck, even Linode offers this.

Telnyx offers IP whitelisting for inbound and outbound dialing on its platform as well.

https://sip.telnyx.com/

Re: A Data Leak Exposed the Personal Information of over 3k Ring Users

#93
post #53

Earlier quoted context omitted.

These “boutique” SIP providers (as I call them, Telnyx, Voipo, VoIP.ms etc) could really learn from their larger telecom counterpoints by allowing users to whitelist what IP ranges users can even authenticate from. Heck, even Linode offers this.

Telnyx offers IP whitelisting for inbound and outbound dialing on its platform as well. https://sip.telnyx.com/

Correct, though the commenter above and I were referring specifically to user interfaces where sensitive accounting details are stored and configured and would allow access to privileged systems and user controls.

Re: A Data Leak Exposed the Personal Information of over 3k Ring Users

#94
post #79

Earlier quoted context omitted.

Obviously, but the question is why parents would do this.

Probably because they have multiple rooms in their homes.

That doesn’t really answer the question. If technology allows unlimited monitoring of your children where would you draw the line? Do you want to raise people who accept constant surveillance as a fact of life? They’re home, give them their own space.

Re: A Data Leak Exposed the Personal Information of over 3k Ring Users

#95
post #94

Earlier quoted context omitted.

Probably because they have multiple rooms in their homes.

That doesn’t really answer the question. If technology allows unlimited monitoring of your children where would you draw the line? Do you want to raise people who accept constant surveillance as a fact of life? They’re home, give them their own space.

In my own house I have cameras wherever I find them convenient. A playroom is not a bedroom or a bathroom.

Re: A Data Leak Exposed the Personal Information of over 3k Ring Users

#96
post #90
post #85

Earlier quoted context omitted.

If it involves money (paid service, even if the hijacker never gets access to your actual card data and can't make any payments) or private data (name, address, etc.) then it really should.

I agree for the most part about the money part. I would still want the option for them to not allow me to upgrade plans without re-entering my credit card info. But with regards to personal information, that is almost everything I log into. And those companies share your personal info anyway, so it just gives you a false sense of privacy/security.

> it just gives you a false sense of privacy/security

No more that the password already does. 2FA isn't supposed to protect you from the company you already have the data too. And it's not really for the "privacy" of that personal data but for securing it.

Re: A Data Leak Exposed the Personal Information of over 3k Ring Users

#97
post #91
post #81

Earlier quoted context omitted.

I'm curious as to how stolen Spotify accounts are monetised? What's the value of them?

https://www.ebay.com/sch/i.html?_&_nkw=spotify+warranty&_sac... All keylogged/phished/etc.

This is fascinating - the individual prices are so low that they really must be moving a great number to turn a worthwhile profit.
Post reply on HN