Hope this isn’t a repeated submission. Funny how they’re trying to deflect blame after they tried to change the EULA post breach.

  • rockSlayer@lemmy.world
    link
    fedilink
    English
    arrow-up
    6
    arrow-down
    8
    ·
    edit-2
    9 months ago

    Is it also the User’s fault for the 6,898,600 people that didn’t reuse a password and were still breached?

    • pearsaltchocolatebar@discuss.online
      link
      fedilink
      English
      arrow-up
      13
      arrow-down
      5
      ·
      9 months ago

      Yes, because you have to choose to share that data with other people. 23andMe isn’t responsible if grandma uses the same password for every site.

      • rockSlayer@lemmy.world
        link
        fedilink
        English
        arrow-up
        6
        arrow-down
        9
        ·
        9 months ago

        23andMe is responsible for sandboxing that data, however. Which they obviously didn’t do.

          • rockSlayer@lemmy.world
            link
            fedilink
            English
            arrow-up
            3
            arrow-down
            3
            ·
            9 months ago

            You opt in to share your data with Facebook. Would you still consider it an issue if your data was breached because someone else’s account was hacked?

            • stepanzak@iusearchlinux.fyi
              link
              fedilink
              English
              arrow-up
              5
              arrow-down
              1
              ·
              9 months ago

              I would consider normal that my photos that I only share with some people were leaked if one of those people’s accounts got hacked.

            • jimbo@lemmy.world
              link
              fedilink
              English
              arrow-up
              2
              ·
              edit-2
              9 months ago

              Sure, it’s a breach, but I would blame my idiot friend for re-using passwords. I wouldn’t blame the service for doing exactly what I expected the service to do, and is the reason I chose to use the service in the first place.

              It’s also the reason I’ve very selective about what I share with anyone online, friend or otherwise.

            • JohnEdwa@sopuli.xyz
              link
              fedilink
              English
              arrow-up
              2
              arrow-down
              1
              ·
              edit-2
              9 months ago

              If you share your nudes with the “friends only” privacy settings on facebook, and someone else accesses one of your friends accounts because they reused their password and proceeds to leak those photos, is it the fault of Facebook, your friend, the person leaking them, or you?

              Because that is exactly what happened here. Credit stuffing reused passwords and scraping opt-in “friends only” shared data between accounts.

        • pearsaltchocolatebar@discuss.online
          link
          fedilink
          English
          arrow-up
          6
          arrow-down
          2
          ·
          9 months ago

          Did you not read my comment? Users opt in to sharing data with other accounts, which means if one account is compromised, then every account that allowed them access would have their data compromised too. That’s not on the company, because they feature can’t work without allowing access.

    • Zoolander@lemmy.world
      link
      fedilink
      English
      arrow-up
      11
      arrow-down
      5
      ·
      9 months ago

      They weren’t breached. The data they willingly shared with the compromised accounts was available to the people that compromised them.

      • SpaceNoodle@lemmy.world
        link
        fedilink
        English
        arrow-up
        4
        arrow-down
        10
        ·
        9 months ago

        Pretty sure nobody clicked a button that said “share my data with compromised accounts.”

        • Zoolander@lemmy.world
          link
          fedilink
          English
          arrow-up
          9
          arrow-down
          5
          ·
          9 months ago

          There was a button that said “share my data with this account”. If that person went and shared that info publicly, how is that any different? The accounts accessed with accessed with valid credentials through the normal login process. They weren’t “breached” or “hacked”.