7 ms·
I hope all the hacked data gets open-sourced. Maybe then we'll have some serious reform. This is ridiculous. What is it going to take to get Congress to actuall
by typetehcodez 9y ago
I hope all the hacked data gets open-sourced. Maybe then we'll have some serious reform. This is ridiculous. What is it going to take to get Congress to actually do something? In the meantime, my strategy is to keep my credit score bad.
- dboreham 9y agoCongress does plenty... ..to allow these corporations to continue to make money at our expense.
- smnrchrds 9y agoIndeed. Though I guess the plans are at least delayed for now, if not abandoned. https://www.nbcnews.com/business/consumer/republicans-congress-want-roll-back-regulations-credit-bureaus-n800471 https://www.nbcnews.com/business/consumer/republicans-congre...
- cityzen 9y agoConsidering the $7.2 million contract the IRS just awarded Equifax in a no contest bid, I think we're definitely getting close! /s
- toomuchtodo 9y agoIf you have a better way to ensure knowledge based authentication continuity for all online IRS transactions until they switch providers, I'd love to hear it.
- goialoq 9y agoHere's one: don't do KBA, since that is an open door to fraud.
- foobarian 9y agoHow about mandatory 2FA rfid token implants, then we can put this SSN business behind us.
- KGIII 9y agoYou can't really mandate implants. Well, you could but that's how you get open revolution in the streets.
- freehunter 9y agoLuckily we already have 2fa implants. They're called retinas or fingerprints, to be used in conjunction with passwords. What you have, what you know, what you are. Those are the three factors. Passwords and fingerprints are two of them.
- KGIII 9y agoI'm not sure I'd generally refer to those as implants, but point taken.
- bognition 9y agoNo actually those don't work for the same reason that SSNs don't work. You need the ability to change out your password or 2fa if it gets compromised. You can't change your fingerprints or retinas.
- freehunter 9y agoThen I don't think you understand the various "factors" of security. I'd advise you to re-read the last line of my post that you replied to where I explained them. "What you are" is a completely valid factor for 2fa, when combined with either "what you have" (a token) or "what you know" (a password). People need to stop complaining about biometric security if they don't understand the basic concepts of security in the first place. Re-read my first post and this one, and if you're still confused, look into factors of security. Hopefully you can stop parroting this nonsense that fingerprints are not a valid factor in 2fa.
- freehunter 9y agoThe first step would be open bidding to determine who is able to provide what.
- toomuchtodo 9y agoThat's not how business continuity works. You don't just pull the plug on your vendor when its a critical component of your business (or in this case, a public service). What are you going to do if you have a dispute with your payment processor? Just stop processing payments while you switch providers? Its like no one here has run a legitimate business before.
- freehunter 9y agoI think a dispute with a payment processor is an issue on a little different scale than the leak of every American's credit history and PII. Regardless of what the options are, it's a colossal PR misstep that deserved a much more thorough explanation from the IRS than "they're the only ones who can provide this service that we can't readily explain".
- downrightmike 9y agoThe IRS could just do automatic tax filing and we'd only file if we'd want to have them take something in account that they haven't. They already have all of this data, but companies that file taxes actively bribe congress.