• frongt@lemmy.zip
      link
      fedilink
      arrow-up
      2
      ·
      1 day ago

      Last time it was like 10 years. But this administration probably won’t spring for that again.

  • sylver_dragon@lemmy.world
    link
    fedilink
    arrow-up
    9
    ·
    1 day ago

    The Pentagon stated that it currently has no evidence that the stolen data has been used for criminal purposes. Those affected are being offered identity protection and credit monitoring services.

    On the upshot, this was probably just China updating the SF-86 database they took from OPM back in 2015; so, they aren’t likely to use it to issue credit cards. The downside is that organizations are still treating identity protection and credit monitoring services as anything other than complete and utter bullshit. We really need to overhaul the SSN system to something more modern to be able to deal with the fact that everyone’s SSN has long since been leaked. Especially when we have the idiots like the DOGE employees dumping this sort of thing on publicly accessible servers.

      • hoshikarakitaridia@lemmy.world
        link
        fedilink
        arrow-up
        1
        ·
        16 hours ago

        Wouldn’t it even help to just do the basics like MFA or maybe OTP?

        The issue is not that they’re not meeting special authentication requirements, they aren’t even meeting basic safety standards for any web app.

        • ScoffingLizard@lemmy.dbzer0.com
          link
          fedilink
          arrow-up
          2
          ·
          2 hours ago

          Social security identities will never be uncompromised. That’s what happens when you give teenage cybercriminal fascists access to everyone’s sensitive info. They were not following any standards at all.