4 ms·
So covering up a known in-progress security breach is standard procedure? Instead of telling your users to change their passwords and so on? Personally, I dema
by malz 10y ago
So covering up a known in-progress security breach is standard procedure? Instead of telling your users to change their passwords and so on?
Personally, I demand criminal investigation and at least a $1000 fine per account breached.
- dhimes 10y agoYeah, that sucks because I have my business stuff with them (I know, I know). On the bright side I didn't receive an email so maybe they didn't get the biz accounts. Changed my pw anyway. And something's changed with their biz accounts anyway- it's been sold/rebranded or something and I'm not sure where the future lays... :[
- brian-armstrong 10y agoI don't think they actually broke any laws. How do you expect them to be charged for your demands?
- malz 10y agoYou got me, they only broke the law in 47 states. http://www.ncsl.org/research/telecommunications-and-information-technology/security-breach-notification-laws.aspx http://www.ncsl.org/research/telecommunications-and-informat...
- brian-armstrong 10y agoThe California law, for example, just says it needs to be "expedient" without defining time limits. It isn't clear that they violated that law at all. They are disclosing a very large breach and I would assume that if they do see suits here, they will be civil suits.
- ssalazar 10y agoYes, making demands in a web forum is the way to resolve this.