Language Selection

English French German Italian Portuguese Spanish

Congress urged to boost identity theft safeguards

Filed under
Security

It takes only a few seconds for your financial identity to be stolen, but months to get it back and clean up the credit mess. Aware of consumers' frustration and fear, the government wants Congress to consider more protections.

Lawmakers should look at strengthening laws that govern the way companies store and use sensitive consumer data, the Federal Trade Commission recommended at a Senate hearing Thursday.

The agency's chairwoman, Deborah Platt Majoras, also endorsed the idea of a law requiring companies to tell consumers about a security breach when there is significant risk of identity theft.

California has a law that requires such notification; many other states are considering following suit.

Nearly 10 million people fall victim to identity theft annually, costing consumers $5 billion in out-of-pocket losses and businesses $48 billion, according to the FTC.

The nonprofit Identity Theft Resource Center estimates the average victim spends 600 hours trying to clear up credit problems. The center, based in San Diego, helps people recover from the crime.

Identity theft has become even more alarming for consumers in recent months with disclosures of data losses or possible breaches at CitiFinancial, Time Warner Inc., Wachovia Corp. and Ameritrade Holding Corp.

At the hearing, Majoras announced a settlement with BJ's Wholesale Club in a case the FTC said led to the theft of credit and debit card data involving thousands of customers. The data was used, the agency said, to make millions of dollars in illegal purchases.

BJ's, based in Natick, Mass., will not have to pay a fine. The company agreed to submit to outside security audits for 20 years and tighten protection of customer information.

``This information is like gold. It's as valuable as money these days and it ought to be treated that way,'' said Sen. Charles Schumer, D-N.Y., before the hearing by the Senate Commerce, Science and Transportation Committee.

Schumer and Sen. Bill Nelson, D-Fla., have introduced an identity theft bill that would require notification and higher security standards for personal data, such as encryption. Schumer also said the bill would impose fines on companies of up to $1,000 per customer violated.

Consumers Union, the publisher of Consumer Reports magazine, supports tougher security standards for companies as well as federal and state notification laws.

``What we're hearing from consumers really is a fear that even if they're doing everything right, they can still become a victim,'' said Susanna Montezemolo, a policy analyst with the group.
Experts say banks and other companies can do more.

``Without any question, some of the incidents that have occurred underscore the need for encryption, particularly when you're transmitting information electronically or tapes by delivery,'' said Rick Fischer, who has spent more than 30 years advising banks and other financial institutions on data security and privacy issues.

Associated Press

More in Tux Machines

OpenSUSE fonts – The sleeping beauty guide

Pandora’s box of fonts is one of the many ailments of the distro world. As long as we do not have standards, and some rather strict ones at that, we will continue to suffer from bad fonts, bad contrast, bad ergonomics, and in general, settings that are not designed for sustained, prolonged use. It’s a shame, because humans actually use computers to interface with information, to READ text and interpret knowledge using the power of language. It’s the most critical element of the whole thing. OpenSUSE under-delivers on two fonts – anti-aliasing and hinting options that are less than ideal, and then it lacks the necessary font libraries to make a relevant, modern and pleasing desktop for general use. All of this can be easily solved if there’s more attention, love and passion for the end product. After all, don’t you want people to be spending a lot of time interacting, using and enjoying the distro? Hopefully, one day, all this will be ancient history. We will be able to choose any which system and never worry or wonder how our experience is going to be impacted by the choice of drivers, monitors, software frameworks, or even where we live. For the time being, if you intend on using openSUSE, this little guide should help you achieve a better, smoother, higher-quality rendering of fonts on the screen, allowing you to enjoy the truly neat Plasma desktop to the fullest. Oh, in the openSUSE review, I promised we would handle this, and handle it we did! Take care. Read more

Today in Techrights

Direct Rendering Manager and VR HMDs Under Linux

  • Intel Prepping Support For Huge GTT Pages
    Intel OTC developers are working on support for huge GTT pages for their Direct Rendering Manager driver.
  • Keith Packard's Work On Better Supporting VR HMDs Under Linux With X.Org/DRM
    Earlier this year Keith Packard started a contract gig for Valve working to improve Linux's support for virtual reality head-mounted displays (VR HMDs). In particular, working on Direct Rendering Manager (DRM) and X.Org changes needed so VR HMDs will work well under Linux with the non-NVIDIA drivers. A big part of this work is the concept of DRM leases, a new Vulkan extension, and other changes to the stack.

Software: Security Tools, cmus, Atom-IDE, Skimmer Scanner

  • Security Tools to Check for Viruses and Malware on Linux
    First and foremost, no operating system is 100 percent immune to attack. Whether a machine is online or offline, it can fall victim to malicious code. Although Linux is less prone to such attacks than, say, Windows, there is no absolute when it comes to security. I have witnessed, first hand, Linux servers hit by rootkits that were so nasty, the only solution was to reinstall and hope the data backup was current. I’ve been a victim of a (very brief) hacker getting onto my desktop, because I accidentally left desktop sharing running (that was certainly an eye opener). The lesson? Even Linux can be vulnerable. So why does Linux need tools to prevent viruses, malware, and rootkits? It should be obvious why every server needs protection from rootkits — because once you are hit with a rootkit, all bets are off as to whether you can recover without reinstalling the platform. It’s antivirus and anti-malware where admins start getting a bit confused. Let me put it simply — if your server (or desktop for that matter) makes use of Samba or sshfs (or any other sharing means), those files will be opened by users running operating systems that are vulnerable. Do you really want to take the chance that your Samba share directory could be dishing out files that contain malicious code? If that should happen, your job becomes exponentially more difficult. Similarly, if that Linux machine performs as a mail server, you would be remiss to not include AV scanning (lest your users be forwarding malicious mail).
  • cmus – A Small, Fast And Powerful Console Music Player For Linux
    You may ask a question yourself when you see this article. Is it possible to listen music in Linux terminal? Yes because nothing is impossible in Linux. We have covered many popular GUI-based media players in our previous articles but we didn’t cover any CLI based media players as of now, so today we are going to cover about cmus, is one of the famous console-based media players among others (For CLI, very few applications is available in Linux).
  • You Can Now Transform the Atom Hackable Text Editor into an IDE with Atom-IDE
    GitHub and Facebook recently launched a set of tools that promise to allow you to transform your Atom hackable text editor into a veritable IDE (Integrated Development Environment). They call the project Atom-IDE. With the release of Atom 1.21 Beta last week, GitHub introduced Language Server Protocol support to integrate its brand-new Atom-IDE project, which comes with built-in support for five popular language servers, including JavaScript, TypeScript, PHP, Java, C#, and Flow. But many others will come with future Atom updates.
  • This open-source Android app is designed to detect nearby credit card skimmers
    Protecting our data is a constant battle, especially as technology continues to advance. A recent trend that has popped up is the installation of credit card skimmers, especially at locations such as gas pumps. With a simple piece of hardware and 30 seconds to install it, a hacker can easily steal credit card numbers from a gas pump without anyone knowing. Now, an open-source app for Android is attempting to help users avoid these skimmers.