Settings

Theme

The IRS is paying Equifax millions for a login system that's been hacked twice

qz.com

34 points by imanewsman 8 years ago · 2 comments

Reader

wilkystyle 8 years ago

> The system, known as Knowledge-Based Authentication, or KBA, asks questions based on a person’s credit history, such as “On which of the following streets have you lived?” or “What is your total scheduled monthly mortgage payment?”

So it authenticates you based on facts that can’t be changed, and are either publicly-available knowledge or easily discoverable with some lite social engineering?

diggernet 8 years ago

Boggles the mind.

Keyboard Shortcuts

j
Next item
k
Previous item
o / Enter
Open selected item
?
Show this help
Esc
Close modal / clear selection