Live data from Hacker News

Samsung Recent Security Incident

samsung.com

21–30 of 172 posts

Re: Samsung Recent Security Incident

#22
post #14

> may have affected information such as name, contact and demographic information, date of birth, and product registration information. No. No matter how safe of how carefully you take your security, a vendor should NOT keep these pieces of my private information with them.

Dont give it to them then,

Yes. But it is becoming increasingly difficult with "smart" or "connected" devices. Sometimes you have to fill forms to access services or agree with EULA's with abusive terms. If you disagree with the terms, you become ostracized because everybody else from your circles accepted those terms and nobody is using your open-source/decentralized/federated network or services.

You can't expect common people to be reasonable and spontaneously boycott abusive vendors. Most people are not educated enough for that. Among those who are, most don't care.

We need laws to prevent this kind of abuse so vendors can't take advantage of people who are willing to share such information even if they are knowledgeable about its implications.

Re: Samsung Recent Security Incident

#23
post #18

Earlier quoted context omitted.

> That's all you need to steal someone's identity I wish we could stop propagating the idea that it's possible to "steal someone's identity". No, you cannot take my identity from me, I am who I am, you are who you are. What you can do however, with those details, is tricking companies and committing fraud. But it should not be up to me to make sure companies are not being defrauded, the burden is on them to prevent t…

> I wish we could stop propagating the idea that it's possible to "steal someone's identity" Identity theft is a term that comes from the fact that you can use this information to open up a bank account or become someone digitally, not because they steal your personality. It’s a great term because exemplifies the gross negligence and liability that comes with egregious misuse of personal data

There was a push a while back to call it bank fraud. Because the banks are the victims and should be responsible to protect/insure themselves.

By calling it identity theft, we are saying individuals are the victims and should protect the banks from someone pretending to be them.

Edit: I also believe there was an argument that banks reporting to credit agencies based on fraudulent activity from a 3rd party should be treated as libel.

Re: Samsung Recent Security Incident

#24
Amateurs. Samsung's identity system was f*ed even before this. Only Lenovo/Motorola were worse. _Of course_ they got hacked: they were a big fat (in a purely metaphorical sense), stupid, target. The entire executive suite and board should be swept out and replaced. But that won't happen because those few have a lock on the majority of shares by either owning them outright or being golf partners with the like-minded idiot rest. Their main focus now, as always, is to deflect blame and preserve their positions. Does not inspire confidence in the future of anything. No wonder they can't get the simple things right, like providing clean water to Flint or Jackson. The clowns have taken over the bus and are driving it right over a cliff.

Re: Samsung Recent Security Incident

#26
post #7

Earlier quoted context omitted.

> That's all you need to steal someone's identity I wish we could stop propagating the idea that it's possible to "steal someone's identity". No, you cannot take my identity from me, I am who I am, you are who you are. What you can do however, with those details, is tricking companies and committing fraud. But it should not be up to me to make sure companies are not being defrauded, the burden is on them to prevent t…

In Sweden, this information is public.

I always find it curious that allegedly Swedish people on HN post this sentiment over and over, but then never link to their own personal information.

Why not share, if it's so harmless? Isn't that the point you're trying to make?

Re: Samsung Recent Security Incident

#28
post #18

Earlier quoted context omitted.

> That's all you need to steal someone's identity I wish we could stop propagating the idea that it's possible to "steal someone's identity". No, you cannot take my identity from me, I am who I am, you are who you are. What you can do however, with those details, is tricking companies and committing fraud. But it should not be up to me to make sure companies are not being defrauded, the burden is on them to prevent t…

> I wish we could stop propagating the idea that it's possible to "steal someone's identity" Identity theft is a term that comes from the fact that you can use this information to open up a bank account or become someone digitally, not because they steal your personality. It’s a great term because exemplifies the gross negligence and liability that comes with egregious misuse of personal data

If a bank allows someone to open up a bank account with personal details that don't really belong to them, I'd call that fraud and a failure on the banks side. "Stealing someone's identity" sounds like I could and should have been able to prevent that, rather than putting the blame on the bank who accepted false personal details in the first place.

As I said, those details, including address and more, are public in some countries. Those countries have learned to live that just being able to say my name, date of birth, address and telephone number is not enough to open a bank account, why can other "modern" countries not adjust accordingly too?

Re: Samsung Recent Security Incident

#29

This ship kinda sailed after Equifax data breach, but I wish we could make data a real liability ( as in, if you store it, you are on an actual legal hook for it ). 2017 settlement[1] was largely a joke if not an insult to all the affected individuals. The company still operates, no one went to jail and the company got a hard cap on potential claim from affected people. I don't know what the solution is exactly thoug…

I guess eventually everybody's data will be leaked (are we there yet?) and companies that would like to make loans will have to come up with some other way of verifying their customers.

The credit system is a scam anyway. Oh wow thanks Equifax, you think I should be allowed to go up to my eyeballs in debt. What an honor, I'm flattered.

Re: Samsung Recent Security Incident

#30
post #7

Earlier quoted context omitted.

In Sweden, this information is public.

I always find it curious that allegedly Swedish people on HN post this sentiment over and over, but then never link to their own personal information. Why not share, if it's so harmless? Isn't that the point you're trying to make?

Maybe they don’t want their identity and their opinions to be linked.
Post reply on HN