Live data from Hacker News

Breach affecting 1M was caught only after hacker maxed out target’s storage

arstechnica.com

31–35 of 35 posts

Re: Breach affecting 1M was caught only after hacker maxed out target’s storage

#32

Given the fair assumption that any piece of data you give to a third party system that has access to the internet will eventually be breached, I feel like we need an entirely new system for data sharing. The problem with most of these hacks isn't usually so much that the hacked system itself has lots of valuable data, but that the data from the hacked system can be used to hack into other systems that do have valuabl…

Many people here will nod their heads along with you and then go back to their dayjob of warehousing as much personal data as they can get their paws on. Every time GDPR comes up the wailing and gnashing of teeth from HN is obnoxious, and yet every time there is a breach people are tutting.

These breaches are the personal fault of many of the people who frequent this site. As the FTC says - the first step here should have been not warehousing data they didn't need for their business purposes. Which is the mandate of GDPR as well.

Re: Breach affecting 1M was caught only after hacker maxed out target’s storage

#34

plaintext passwords in 2019 .. it hurts to read articles like these.

These are often found in log files when people get a bit to log happy. I've seen many smart developers accidentally log a request in an API that also happens to show the login credentials.

I swear - our 'single sign on' that requires a new login on every single system just trains people to put in their username/password without thought....
Post reply on HN