Here are the pages of the report that make me upset:
- Page 6, paragraph 10 : "A firewall misconfiguration permitted commands to reach and be executed by that server, which enabled access to folders or buckets of data in Capital One's storage space at the Cloud Computing Company"
- Page 8, paragraph 14: "According to Capital One, the data copied from Capital One's data folders or buckets includes primarily data related to credit card applications. Although some of the information in those applications (such as SSN) has been tokenized or encrypted, other information including applicants' names, addresses, dates of birth and information regarding their credit history has not been tokenized. According to Capital One, the data includes data regarding large numbers of applications, likely tens of millions of applications. According to Capital One that dta includes approximately 120,000 SSN and approximately 77,000 bank account numbers.
Hey man. I think you know the answer already - there is no way to make sure about it. It's the same questions as "How can I make sure that my software is not hackable". But are you going to live without any digital devices, probably not. Change your router password periodically, unplug devices when you don't use them, put tapes on cameras or deactivate them if not needed...I hope we can all own our own privacy. Unfortunately, it's impossible if you want to live in the modern society.
Indeed. I have to admit that it's like other questions around doing a startup. It seems that other people all have similar questions, but nobody's situation is exactly the same. So we can only learn what is the best option by trying it out. But appreciate your answer.
Thanks for sharing your insights. I personally don't like asking people's credit card during the trial. But what you said makes sense as well. I think we just need to try.