Live data from Hacker News

PayPal discloses data breach that exposed user info for 6 months

bleepingcomputer.com

41–50 of 93 posts

Re: PayPal discloses data breach that exposed user info for 6 months

#41
post #6

[flagged]

These are often undesirable features for SMEs that need to be accountable for a variety of reasons, including KYC regulations; besides, while blockchains provide protocol-level security, they fail in two ways that do matter to consumers: - They provide no meaningful consumer protections (since this necessarily requires an authority, which blockchains may not have) - They don't protect at all against meatspace vulnera…

Cash has no consumer protections. I use it all the time. I don't expect to have any consumer protections from crypto either.

Re: PayPal discloses data breach that exposed user info for 6 months

#42

At one point on the internet PayPal was the most trusted way to send and receive money - at least you are limiting sharing your personal payment information with random companies on the internet who may or may not be compliant. Lately though, with companies like Stripe and Plaid making it nearly frictionless to add payments to your website just as PP once did, and things like Google & Apple pay - why is there a need…

AFAIK Stripe and Plaid support only a fraction of the countries that PayPal does. And PayPal is still a global brand - recognized by almost everyone, everywhere.

Re: PayPal discloses data breach that exposed user info for 6 months

#44

paypal is still around? I haven't seen any "accepts paypal" / paypal / checkout with paypal since around 2023 and the realization of it makes me unreasonably happy.

yeah they power everything under different brand names, such as Venmo

Re: PayPal discloses data breach that exposed user info for 6 months

#45

I recently tried to sign up for paypal, "tried" being the operative word since their garbage, broken processes couldn't verify me despite bank info, etc. After seeing their profound incompetence at customer acquisition, ineptitude on the security front is no surprise.

I think in general, it's getting harder and harder to 1. newly sign up for online services, and 2. come back to these services after long periods of inactivity. Everyone's got overly-aggressive automation that blocks you for no discernible reason, and endlessly requests more and more invasive "verification" schemes. I hardly ever use my Microsoft account. Probably haven't logged into it for years. But recently I want…

My first go at paying MS for anything was buying Minecraft for a child, it was pain from start to finish.

I'd bought Minecraft twice from Mojang, simple as.

Re: PayPal discloses data breach that exposed user info for 6 months

#46

At one point on the internet PayPal was the most trusted way to send and receive money - at least you are limiting sharing your personal payment information with random companies on the internet who may or may not be compliant. Lately though, with companies like Stripe and Plaid making it nearly frictionless to add payments to your website just as PP once did, and things like Google & Apple pay - why is there a need…

Wasn't PayPal at least at one time an easier way to support foreign transactions? Stripe was US-only last time I used it (which was years ago).

People in most countries can use Visa and Mastercard to pay across borders, and have been able to do so long before PayPal existed (at least back as far as the 1980s).

But PayPal probably existed and was easier for merchants in more countries than other payment services at certain points.

Re: PayPal discloses data breach that exposed user info for 6 months

#47

Earlier quoted context omitted.

When a bridge falls, there is a case in the courts, and sometimes engineers go to prison. Why shall be different with code?

This is a terrible analogy. You're comparing a failing bridge to an attack. These things are not the same. We did not sue the designers of the World Trade Center because their buildings could not withstand being hit by a plane.

It may well be a terrible analogy, but your comparison is also terrible.

Basic expectation for any web business is security sufficient to not leak PII (and it's the law almost everywhere). Meanwhile no-one expects, as a basic requirement, that buildings withstand plane crashes.

When buildings don't meet basic safety requirements then people sue. It's a regular occurrence, unfortunately.

Re: PayPal discloses data breach that exposed user info for 6 months

#48

At one point on the internet PayPal was the most trusted way to send and receive money - at least you are limiting sharing your personal payment information with random companies on the internet who may or may not be compliant. Lately though, with companies like Stripe and Plaid making it nearly frictionless to add payments to your website just as PP once did, and things like Google & Apple pay - why is there a need…

> At one point on the internet PayPal was the most trusted way to send and receive money

Not on my planet and I've run $100m+ through them over the years.

Re: PayPal discloses data breach that exposed user info for 6 months

#49
post #33

At one point on the internet PayPal was the most trusted way to send and receive money - at least you are limiting sharing your personal payment information with random companies on the internet who may or may not be compliant. Lately though, with companies like Stripe and Plaid making it nearly frictionless to add payments to your website just as PP once did, and things like Google & Apple pay - why is there a need…

Paypal G&S generally always gets money back if something went wrong on a p2p transaction. I've been scammed once or twice, but I always use G&S and have received my money back in full. If you don't use that, then you're pretty much screwed with Paypal F&F, Zelle, Cashapp, Venmo etc. At least as far as I'm aware.

Venmo has a g&s equivalent. Not sure about the others

Re: PayPal discloses data breach that exposed user info for 6 months

#50
post #33

Earlier quoted context omitted.

Paypal G&S generally always gets money back if something went wrong on a p2p transaction. I've been scammed once or twice, but I always use G&S and have received my money back in full. If you don't use that, then you're pretty much screwed with Paypal F&F, Zelle, Cashapp, Venmo etc. At least as far as I'm aware.

Venmo has a g&s equivalent. Not sure about the others

Venmo banned me for life because I and a friend both signed up a new account to try to send money to each other. The money disappeared, both accounts were locked and they told me I'm never allowed to open a Venmo account again because of my terribly fraudulent money laundering.
Post reply on HN