Live data from Hacker News

Сhecking for leaked data without storing any

medispank.com

21–24 of 24 posts

Re: Сhecking for leaked data without storing any

#21
post #19

Earlier quoted context omitted.

It seems the hackers published only a part of the stolen data. The same situation here: several people on the same card, some are in the leak and some not.

this is so infuriating, i'm going to change all my details, but to what end? Optus, and Medibank have had leaks...so its a matter of time until this happens again - then what? i change my mobile number/email addresses...again?

The best solution is a single government database of details that companies use to validate the personal data once and with the customers' permission. And this database should be protected better that the PM.

Will the government step up, though? I have some doubts.

Re: Сhecking for leaked data without storing any

#22
post #21

Earlier quoted context omitted.

this is so infuriating, i'm going to change all my details, but to what end? Optus, and Medibank have had leaks...so its a matter of time until this happens again - then what? i change my mobile number/email addresses...again?

The best solution is a single government database of details that companies use to validate the personal data once and with the customers' permission. And this database should be protected better that the PM. Will the government step up, though? I have some doubts.

this is being discussed now, i think I saw a news story about it yesterday.

Re: Сhecking for leaked data without storing any

#23
post #21

Earlier quoted context omitted.

The best solution is a single government database of details that companies use to validate the personal data once and with the customers' permission. And this database should be protected better that the PM. Will the government step up, though? I have some doubts.

this is being discussed now, i think I saw a news story about it yesterday.

This would be great. My fear is that the companies will ask for 5-10 years for migrating to this technology.

We will see. I hope I am wrong.

Re: Сhecking for leaked data without storing any

#24
> Interestingly, .NET 6 implementation of the hash table keeps the items in the (rough) order of addition. To prevent potential correlation attempts, the hashed data is sorted before storing, effectively randomising the order of elements.

Can someone please explain how would correlation attacks be executed in this context?

Post reply on HN