Live data from Hacker News

Oracle attempt to hide cybersecurity incident from customers?

doublepulsar.com

1–10 of 136 posts

Re: Oracle attempt to hide cybersecurity incident from customers?

#7
This is honestly wild.

Whether we like it or not security incidents have become such common place in the last several years that if they just admitted to it this entire story would have likely been shrugged off and mostly forgotten about in a couple days but instead it is turning into an entire thing that just seems to be getting deeper and deeper. (Not downplaying the security incident, but that is the unfortunate reality).

Seriously if I can't trust that I am going to actually be told and not lied too when there is a security incident at the bare minimum, why would I chose to work with a company? What is Oracle's end goal here?

Are they somehow really confident that this didn't happen, maybe they don't have the logs to confirm it? Trying to think about how this is anything except them just straight up lying.

I can't remember the last time we saw a company this strongly try to deny that something like this happened. Especially when according to Ars Technica:

> On Friday, when I asked Oracle for comment, a spokesperson asked if they could provide a statement that couldn’t be attributed to Oracle in any way. After I declined, the spokesperson said Oracle would have no comment.

Re: Oracle attempt to hide cybersecurity incident from customers?

#8
There are various state laws that require companies to notify their customers of security breaches, but they lack enforcement/teeth so they're routinely ignored. It'll never happen in our current environment but we really need a federal law that causes violators enough pain that companies will actually bother to follow the law.
Post reply on HN