Live data from Hacker News

Samsung Recent Security Incident

samsung.com

61–70 of 172 posts

Re: Samsung Recent Security Incident

#61

Just got the email from Samsung saying I was part of the breach. At the end of this (extremely long and excuse-ridden) email they inform me that I'm entitled to a free credit check every year from credit reporting agencies. Can't we just fast forward to the part where they send me a $5 check for the class action settlement? They'd save a ton on legal fees.

I got the same. I find it insulting to offer a credit check. If I wanted, I would get 20 credit checks just this year. Credit checks are also (mostly) free. Everyone and their mother offers them. Why would that do me any good for checking? How does it remediate or mitigate the loss I have?

> Everyone and their mother offers them.

I'm pretty sure the US government offers them for free, and anyone else doing it "for free" is only using at a means to collect and sell your personal information. Using some random site like getmemyfreecreditcheck.com or whatever is pretty much asking for your privacy to be violated.

Re: Samsung Recent Security Incident

#62
post #2

Just got this email. I love how they don't even try to pay you off. They just show you where to get your free credit report where if you've already accessed it, you're screwed.

Came here to say this. The least they could have done is provide you with a free credit report, regardless of whether you previously used your freebie.

Re: Samsung Recent Security Incident

#63
post #54
post #48

Earlier quoted context omitted.

I've got a fairly common Gmail address as my primary. I get all kinds of account sign-ups, and also home purchase paperwork and sheriff's office employment offers, from multiple states. I used to feel bad, and spent a couple years trying to get in contact and correct whoever used my email. Now? Fuck em. If you use my email, it's my account. I just deleted "my" Roku account and unsubscribed to the services attached to…

>Now? Fuck em. If you use my email, it's my account. I just deleted "my" Roku account and unsubscribed to the services attached to it (required to delete an account). >Me deleting "your" account is the least-abusive thing I could do if you sign up with my email address. This is illegal, CFAA of 1996. Them signing up with your email is a mistake, you deliberately modifying data that isn't your own because of that is i…

It wouldn’t also fall under CFAA to fraudulently sign up with the wrong email?

Re: Samsung Recent Security Incident

#65

Just here to remind everyone that Samsung televisions take screenshots at regular intervals of what you watch and sends this to be stored with the same level of “security”.

Roku does this too.

> "Roughly twice per second, a Roku TV captures video “snapshots” in 4K resolution. These snapshots are scanned through a database of content and ads, which allows the exposure to be matched to what is airing. For example, if a streamer is watching an NFL football game and sees an ad for a hard seltzer, Roku’s ACR will know that the ad has appeared on the TV being watched at that time. In this way, the content on screen is automatically recognized, as the technology’s name indicates. The data then is paired with user profile data to link the account watching with the content they’re watching." (https://advertising.roku.com/resources/blog/insights-analysi...!)

Re: Samsung Recent Security Incident

#66
post #27

Luckily I gave all fake information to Samsung. Because I expected this to happen.

From a post above: > your device, including MAC address, IP address, log information, device model, hardware model, IMEI number, serial number, subscription information, device settings, connections to other devices, mobile network operator, web browser characteristics, app usage information, sales code, access code, current software version, MNC, subscription information, and randomized, non-persistent and resettabl…

I wonder what kind of information they got out of my TV. Well, obviously at least IP address.

Maybe some viewing habits data. In which case they'll probably conclude I mostly like cartoons about ponies and talking, people rescuing dogs...

Re: Samsung Recent Security Incident

#67
post #54
post #48

Earlier quoted context omitted.

I've got a fairly common Gmail address as my primary. I get all kinds of account sign-ups, and also home purchase paperwork and sheriff's office employment offers, from multiple states. I used to feel bad, and spent a couple years trying to get in contact and correct whoever used my email. Now? Fuck em. If you use my email, it's my account. I just deleted "my" Roku account and unsubscribed to the services attached to…

>Now? Fuck em. If you use my email, it's my account. I just deleted "my" Roku account and unsubscribed to the services attached to it (required to delete an account). >Me deleting "your" account is the least-abusive thing I could do if you sign up with my email address. This is illegal, CFAA of 1996. Them signing up with your email is a mistake, you deliberately modifying data that isn't your own because of that is i…

What is the correct course of action one should take, e.g. if OP now wants to sign up for a Roku account with their own address and now can't?

Re: Samsung Recent Security Incident

#68
post #66

Earlier quoted context omitted.

From a post above: > your device, including MAC address, IP address, log information, device model, hardware model, IMEI number, serial number, subscription information, device settings, connections to other devices, mobile network operator, web browser characteristics, app usage information, sales code, access code, current software version, MNC, subscription information, and randomized, non-persistent and resettabl…

I wonder what kind of information they got out of my TV. Well, obviously at least IP address. Maybe some viewing habits data. In which case they'll probably conclude I mostly like cartoons about ponies and talking, people rescuing dogs...

TV's can probably scan your local network which means at the very minimum getting MAC addresses which can tell you the manufacturer and maybe more, of various devices on your network.

Re: Samsung Recent Security Incident

#69
post #14

Earlier quoted context omitted.

Dont give it to them then,

Yes. But it is becoming increasingly difficult with "smart" or "connected" devices. Sometimes you have to fill forms to access services or agree with EULA's with abusive terms. If you disagree with the terms, you become ostracized because everybody else from your circles accepted those terms and nobody is using your open-source/decentralized/federated network or services. You can't expect common people to be reasonab…

I wonder if the GP is saying that you don't necessarily have to provide your real dob etc. to vendors that coerce you in this manner. I mean, don't you want to imagine a world in which you were born on Feb-29 of some suitable leap year?
Post reply on HN