They’re blaming customers for not having good cybersecurity practices instead of themselves for not having good cybersecurity practices.

  • The Bard in GreenA
    link
    fedilink
    English
    249 months ago

    From a PSA stand point, 23andMe makes a really good point here.

    From a Legal / Responsible Data Custodian perspective, it’s the same collective responsibility bullshit that the oil industry likes to shit out about climate change.

    • @GrundlButter@lemmy.dbzer0.com
      link
      fedilink
      English
      59 months ago

      While it’s not the point 23andMe wants to make here, it is an absolutely horrible idea to allow a company to access, catalog and sell your DNA information. Shame they didn’t touch on that point.

  • @brettvitaz@programming.dev
    link
    fedilink
    39 months ago

    Yeah, users have some of the blame, but 23andme shares responsibility by not having basic detection of bad actors. Some things that come to mind are rate limits, alarms on strange user login behavior, watching for mass logins from an unexpected region, excessive bad password attempts across a large number of users.