this post was submitted on 26 Aug 2025
118 points (100.0% liked)

news

24253 readers
663 users here now

Welcome to c/news! Please read the Hexbear Code of Conduct and remember... we're all comrades here.

Rules:

-- PLEASE KEEP POST TITLES INFORMATIVE --

-- Overly editorialized titles, particularly if they link to opinion pieces, may get your post removed. --

-- All posts must include a link to their source. Screenshots are fine IF you include the link in the post body. --

-- If you are citing a twitter post as news please include not just the twitter.com in your links but also nitter.net (or another Nitter instance). There is also a Firefox extension that can redirect Twitter links to a Nitter instance: https://addons.mozilla.org/en-US/firefox/addon/libredirect/ or archive them as you would any other reactionary source using e.g. https://archive.today/ . Twitter screenshots still need to be sourced or they will be removed --

-- Mass tagging comm moderators across multiple posts like a broken markov chain bot will result in a comm ban--

-- Repeated consecutive posting of reactionary sources, fake news, misleading / outdated news, false alarms over ghoul deaths, and/or shitposts will result in a comm ban.--

-- Neglecting to use content warnings or NSFW when dealing with disturbing content will be removed until in compliance. Users who are consecutively reported due to failing to use content warnings or NSFW tags when commenting on or posting disturbing content will result in the user being banned. --

-- Using April 1st as an excuse to post fake headlines, like the resurrection of Kissinger while he is still fortunately dead, will result in the poster being thrown in the gamer gulag and be sentenced to play and beat trashy mobile games like 'Raid: Shadow Legends' in order to be rehabilitated back into general society. --

founded 5 years ago
MODERATORS
 

Borges warned in the complaint that if this information were compromised, “it is possible that the sensitive [personally identifiable information] on every American including health diagnoses, income levels and banking information, family relationships, and personal biographic data could be exposed publicly, and shared widely.”

The complaint said any compromise or unauthorized access to the database would have “catastrophic impact” on the U.S. Social Security program, describing a worst-case scenario as potentially having to reissue everyone’s Social Security numbers.

top 15 comments
sorted by: hot top controversial new old
[–] rafflesia@hexbear.net 41 points 2 days ago

everything about social security numbers is so fucking stupid. here's the most important card in your life with your unique number thats just +1 to the last, we've printed it on 1ply toilet paper and no you cant make copies but if you lose it or its stolen you're unpersoned at your expense and we're uploading them all to biggie ballz's imgur btw

[–] corgiwithalaptop@hexbear.net 37 points 2 days ago (1 children)

These are the fucking people in charge stalin-stressed

Failing ever upward

[–] infuziSporg@hexbear.net 11 points 1 day ago

Security breaches of private servers are funny when they happen at the expense of a Secretary of State, less funny when they happen to the entire general public.

[–] hotspur@hexbear.net 20 points 2 days ago (1 children)

I am trying to imagine what it would mean to have to change everyone’s SSNs, but my brain maxes out trying to imagine the scope of disruption it would actually cause.

[–] rubber_chicken@hexbear.net 24 points 2 days ago (2 children)

IMO, an SSN crisis is something to be accelertionist about. Mine showed up on the dark web and I had to freeze it so nobody can start collecting with it when I'm old enough. If social security is still paying out when I'm old enough, am I going to have to keep checking on it every month to make sure it's still paying out to me and not some rando h4x0r? I'd much rather see everyone's SSN compromised so we can come up with a better system than a 9-digit number you have to give to countless people and systems during your life in the hope that you manage to rack up a 65-year hack-free streak.

[–] hotspur@hexbear.net 15 points 2 days ago

I agree with everything you’ve written.

I think I was more thinking about in the sense that it’s the core element that underpins everyone’s identity, next to birth certificates, and it’s buried at the core of things like citizenship verification, tax stuff, job documents, credit scores, etc. so just thinking about how much incredible mess it would cause for people in the short term.

But like you say, it might be worth it if we got to a better system on the other side.

[–] BountifulEggnog@hexbear.net 15 points 2 days ago* (last edited 2 days ago)

If social security is still paying out when I'm old enough

Good news for you regarding this worry at least

[–] gay_king_prince_charles@hexbear.net 19 points 2 days ago (3 children)

Software engineers really need a version of a PE to mitigate this hellscape. That, and systems like this need a tech equivalent of building codes.

[–] BeanisBrain@hexbear.net 15 points 1 day ago

Software engineers are an out-of-shape bunch and definitely need physical education but I'm not sure how that'd help with bad security practices

[–] AernaLingus@hexbear.net 6 points 1 day ago

A PE is an engineering professional who has earned a license to practice engineering. To become licensed, engineers must complete a four-year college degree, work under a Professional Engineer for at least four years, pass two intensive competency exams and receive a license from their state's licensure board. Then, to retain their licenses, PEs must continually maintain and improve their skills throughout their careers.

Didn't know the jargon, but I totally agree. It is absolutely wild that you can graduate with a CS degree and immediately start working on the largest computing systems known to man without having ever taken a security course or ethics course, studied software engineering disasters, or passed any kind of competency exam.

[–] carpoftruth@hexbear.net 2 points 1 day ago

any version of PE should be revised to include more firm accountability. PE laws are as much about setting up liability scapegoats as anything. the scale of these systems is such that any one individual or small group of culpable individuals isn't capable of responsibly covering the liability for their decisions. individual PE liability is good for malpractice and whatnot, but the companies that own and derive the majority of the surplus value from building and owning these systems need to be more on the hook too. failing that, PE rules just turn into a way to shunt liability from the company to the individual while retaining profits

[–] segfault11@hexbear.net 4 points 1 day ago* (last edited 1 day ago)

this is the real reason those kids beat up big balls... they were just looking out for us...

[–] terminhell@lemmy.dbzer0.com 18 points 2 days ago
[–] segfault11@hexbear.net 8 points 2 days ago

social insecurity kelly