[Dataloss] Breach notice: BCTGM Local 192 Union

Adam Shostack adam at homeport.org
Sat Sep 16 21:12:15 EDT 2006


On Sat, Sep 16, 2006 at 09:09:50PM -0400, lyger wrote:
| 
| 
| On Sat, 16 Sep 2006, Adam Shostack wrote:
| 
| ": " Can I suggest you use a longer identifier, or are you planning to give
| ": " up after the first 10,000 breaches?
| ": " 
| ": " 
| ": " On Fri, Sep 15, 2006 at 07:25:24PM -0500, Chris Walsh wrote:
| ": " | This one is another from the state of North Carolina's response to my  
| ": " | FOIA request.
| ": " | 
| ": " | I am assigning it a UID of "CW-0006".
| 
| We actually discussed this at length over several emails.  As it stands, 
| we still have well under 400 breaches listed in DLDOS.  Even at a rate of 
| one per day from this point forward, that would be another 26 years or so 
| until we cross into the 5-digit realm.  
| 
| At that point, our future generations will probably be able to figure out 
| how to switch out the existing identifier in mere nanoseconds. :)

There's *no way* this system will still be operational by the year
2000.  And memory is sooo expensive! 

More seriously, 1) I expect the rate to climb substantially as
companies realize that breaches happen and 2) the year bits in CVE are
really useful.

Adam


More information about the Dataloss mailing list