[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [Full-disclosure] Re: choice-point screw-up and secure hashes
- To: "Vincent van Scherpenseel" <mailinglists@xxxxxxxxxxxxxxxxxx>, "Full-Disclosure" <full-disclosure@xxxxxxxxxxxxxxxxx>
- Subject: Re: [Full-disclosure] Re: choice-point screw-up and secure hashes
- From: "Kurt Seifried" <listuser@xxxxxxxxxxxx>
- Date: Sat, 19 Mar 2005 05:02:20 -0700
Don't forget that it's bad for the company's image to have confidential
customer data stolen. As soon as the press catches on it's bad for
business.
So, companies *do* have a drive to secure your private data.
Uhhh no. See consumers such as yourself don't actually purchase services
from choicepoint/etc (unless you're a Nigerian guy who is into ID theft =).
Businesses do. And businesses don't care if choicepoint is secure or not,
they care if choicepoint has the data. It's like Equifax, you don't buy
information from them, companies you deal with do. These firms have no
incentive to protect your information, because they'll never lose your
business.
Sorry to break it to you, but there are no market forces to drive these
companies to better security.
Kurt Seifried, kurt@xxxxxxxxxxxx
A15B BEE5 B391 B9AD B0EF
AEB0 AD63 0B4E AD56 E574
http://seifried.org/security/
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://www.secunia.com/