‹ BackHN Continuity

Thread

'We hacked the FBI:' Hackers say they have data on all FBI employees

817 points · 614 comments · spenvo

  1. jacobgold · · focus · HN ↗
    At this point, no one seems capable of keeping a large database safe. I assume all medical and biographical information that exists is in the hands of the major state actors.

    China hacked 22.1 million records of US government employees:

    <a href="https:&#x2F;&#x2F;en.wikipedia.org&#x2F;wiki&#x2F;2015_Office_of_Personnel_Management_data_breach" rel="nofollow">https:&#x2F;&#x2F;en.wikipedia.org&#x2F;wiki&#x2F;2015_Office_of_Personnel_Manag...

    1. titzer · · focus · HN ↗
      And the city wonders why I don&#x27;t want to put my credit card info in their crappy parking app and would instead prefer to put a quarter into the meter for 30 mins.
      1. lotsofpulp · · focus · HN ↗
        What info can be gleaned from that? Surely the mere fact that you have a credit card means your name and billing address are floating around.

        I guess your parking history around town could be valuable if someone is targeting you.

        1. ceejayoz · · focus · HN ↗
          &gt; What info can be gleaned from that?

          The card number?

          1. dylan604 · · focus · HN ↗
            who stores card numbers other than the processors? that should be a hangable offense. I&#x27;ve integrated card processing on multiple sites, and not once does the form come from me. I add the processor&#x27;s JS, and it collects the data to move along. They then return to me a bit of information that includes success&#x2F;fail so that I can decide what to do from there.
            1. ceejayoz · · focus · HN ↗
              &gt; I add the processor&#x27;s JS, and it collects the data to move along.

              Consumers aren&#x27;t gonna notice the difference if the site gets hacked and that JS is swapped out for a malicious set.

              1. pixl97 · · focus · HN ↗
                Yea, it&#x27;s insane seeing this person arguing about the nature of credit card theft when we have a million different examples of how it happens and how rarely the end user knows until it&#x27;s far too late. We almost always learn about itpost ad hoc.
                1. dylan604 · · focus · HN ↗
                  You&#x27;ve moved the goal posts. A typical site isn&#x27;t storing the numbers so when they get hacked, that data is not available. If you&#x27;re suggesting hackers directly injecting malicious JS to hijack card data then that&#x27;s totally different. I&#x27;m not insane about this particular subject. You&#x27;re just standing on a soapbox
                  1. ceejayoz · · focus · HN ↗
                    The parent post just says &quot;I don&#x27;t want to put my credit card info in their crappy parking app&quot;.

                    &quot;I&#x27;m only talking about long-term storage&quot; is a goalpost move!

Open on Hacker News to reply ↗

Unofficial Hacker News client; not affiliated with Y Combinator.