Live data from Hacker News

T-Mobile: Breach Exposed SSN/DOB of 40M+ People

krebsonsecurity.com

1–10 of 282 posts

Re: T-Mobile: Breach Exposed SSN/DOB of 40M+ People

#6
As usual they don't say how this was accomplished. They call it "sophisticated" but it probably was just stupid or lazy, which is very common in most corporate hacks. Big companies don't really care much about security since it costs money and rarely causes much trouble to your stock price and exec compensation.

The people who suffer are those whose data is compromised and have no idea it happened.

Re: T-Mobile: Breach Exposed SSN/DOB of 40M+ People

#7
post #3

Are SSNs stored in plain text?

Probably so, in this case.

Here's a screenshot they uploaded as proof of the hack: https://pbs.twimg.com/media/E848JkGUUAIhIq5?format=jpg

You can see that it's running Goldengate, software used to replicate Oracle or other databases. So it probably had all the DB credentials needed to just export the whole database.

Re: T-Mobile: Breach Exposed SSN/DOB of 40M+ People

#10
It is annoying. Between all the breaches, it is virtually guaranteed my information is floating out there. The worst part is, I have zero to no recourse here. What are they gonna offer me? Discounted credit monitoring?

What is the tipping point? Did we manage to pass it altogether ( asking since even I took this news as... eh, why bother )?

Honestly, what needs to happen to make it 'not so'.

Post reply on HN