Live data from Hacker News

Hackers had a live feed of every ID verification company scanned for over a year

techdirt.com

21–30 of 263 posts

Re: Hackers had a live feed of every ID verification company scanned for over a year

#21
post #14

Funny was just testing the pilot of the Irish Government Digital Wallet. Definitely seems like the way forward if we're intent on doing identity verification. I'd rather the government mediate this than a bunch of random 3rd parties.

But usually gov't will outsource to random 3rd parties, no?

Re: Hackers had a live feed of every ID verification company scanned for over a year

#22
post #14

Funny was just testing the pilot of the Irish Government Digital Wallet. Definitely seems like the way forward if we're intent on doing identity verification. I'd rather the government mediate this than a bunch of random 3rd parties.

As a citizen under the France Passoire[1] and in an increasingly fascist chauvinist nationalist drifting in the geopolitical landscape, I wouldn’t be that found of delegating too much of these responsibilities to some centralized governmental institutions.

Note that’s this is not here some rant against any governmental power, just that in context, large private group use them as puppets and shrink their budget which of course impact quality of deliveries (not shaming the people who do the hard job without the relevant means). And while more distributed governmental topologies would have their own caveats, at least it would less likely offer opportunities for single point of failure.

[1] https://francepassoire.com/

Re: Hackers had a live feed of every ID verification company scanned for over a year

#23
post #17
post #15

Earlier quoted context omitted.

Am I missing something? What do you mean the DMV makes tens of millions of dollars a year selling data to itself?

The DMV sells the data you give to the DMV. The DMV does not sell the data you give to the DMV to the DMV.

your positional encoding vector seems a bit off :D

Re: Hackers had a live feed of every ID verification company scanned for over a year

#24
post #20

Earlier quoted context omitted.

That was sarcasm.

Are you sure? It’s really hard to differentiate nowadays

> Are you sure? It’s really hard to differentiate nowadays

Case in point; I can't tell if you're being sarcastic or not! :D

Re: Hackers had a live feed of every ID verification company scanned for over a year

#25
post #14

Funny was just testing the pilot of the Irish Government Digital Wallet. Definitely seems like the way forward if we're intent on doing identity verification. I'd rather the government mediate this than a bunch of random 3rd parties.

But usually gov't will outsource to random 3rd parties, no?

probably gov will outsource to 3rd party for gov to build system to track and manage ID. Sometimes though also to manage, as in Denmark's MitID mainly managed by NETS under government set rules.

Re: Hackers had a live feed of every ID verification company scanned for over a year

#26
post #5

This is a sacrifice we just have to be willing to make as a society if we want to project kids from the horror of using the internet

All the kids will be safe now they're logging into porn sites as Pete Hegseth.

Only after they've had their mandatory scrotum inspection and testosterone check to join the military at age 18.

Re: Hackers had a live feed of every ID verification company scanned for over a year

#27
No worries! Governments who used this company are taking responsibility and now have a plan to, at the very least, replace all IDs they forced people to expose and to make sure the old ones are unusable!

That's a sarcastic joke. It's how governments demand private companies react, but ...

Re: Hackers had a live feed of every ID verification company scanned for over a year

#28
post #2

Brian Krebs' article is, in my opinion, a much better read for this story[0]. [0] https://krebsonsecurity.com/2026/09/fbi-probes-service-selli...

(2 days ago, 276 comments) https://news.ycombinator.com/item?id=49529621

It also dropped off the front page, pretty quickly, despite getting a lot of upvotes and comments. I was surprised by that, as this is exactly the type of story that tends to spend a couple of days on the front page.

But it’s also the kind of story that won’t stay down, and will definitely be back.

It appears as if there are folks here that don’t want to talk about this.

Re: Hackers had a live feed of every ID verification company scanned for over a year

#29
The original idea for the ID verification was broken by design anyway. The only safe and secure way is a chain/tree of trust, e.g. with PKI, where you could generate some certificate just for that particular service, while keeping your root key safe. Then, in the case of leak, the most you lose, is one particular key for one particular service that could be immediately revoked. You could even slap zero-knowledge proofs for particular properties (e.g. if the person has a driver license or not) without de-anonymizing the account. In the rare even of root key leak you should be able to physically go to the authority and make a new one, while revoking the old key. I don't see any other better alternatives than this.
Post reply on HN