National Public Data tells officials 'only' 1.3M people affected by intrusion (www.theregister.com)
from minnix@lemux.minnix.dev to privacy@lemmy.ml on 20 Aug 18:25
https://lemux.minnix.dev/post/465451

#privacy

threaded - newest

Imprint9816@lemmy.dbzer0.com on 20 Aug 19:05 next collapse

It sounds like they just report the number they are sure of at the time and update the filing later. Very high chance the number of affected is much more then 1.3M - the number of unique email addresses alone makes it pretty clear its more.

The situation doesn’t come without precedent either. It’s not uncommon for organizations disclosing data breaches with US state officials to update those filings down the line as investigations into potentially compromised data continue.

refalo@programming.dev on 20 Aug 19:13 next collapse

Biggest lie of the year award… it’s trivially easy to check how many unique SSNs are in the leak, and it’s 272 million.

haroldstork@lemm.ee on 20 Aug 19:31 collapse

Yes, but according to that same article, “49% of the SSNs exposed don’t include the minimum quality to pose a risk for identity attacks”. So it’s more like 136 million.

refalo@programming.dev on 20 Aug 20:20 collapse

Even still,

Even if only 51% of the SSNs exposed hold a minimal quality to be used in identity attacks, this translates to added risk to an unprecedented 138 million people.

Plus, identity attacks are not the only risk of this data being exposed. Stalkers, violent offenders etc. now have addresses/phone numbers and other info they can use as well. Their definition of identity attack also may not be the same as yours. Even if it’s just a name and SSN, that may not qualify to them, but could be useful to someone else in a negative way.

sunzu2@thebrainbin.org on 20 Aug 20:26 next collapse

yes daddy... i trust you bro

Deckweiss@lemmy.world on 20 Aug 21:34 collapse

Well, it’s right in the name - National PUBLIC Data

/s