OPM Data Breach

You have a good point about spouses not being covered.
I was very happy to get 18 months of free service because I was considering subscribing to Life Lock.

Now I may still get Life Lock at least for my wife.

This is really going to cost us tax payers a lot of money.

OPM could have saved all that money if they had taken security more seriously. :worried:
 
Got my 'You've been hacked'! notice last week. The fun never stops when you're working for Uncle Sam! :D
 
CSID sent me an E-mail last week. I had already changed my password in OPM. 1million ins. policy for id. theft and credit monitoring for free! :banana:
 
I have not and hopefully I won't get one. I live in SC and our tax returns were hacked a couple of years ago. Still getting free protection from the State of SC.
 
Re(1): 'Social Engineering', The Belmont Club, Richard Fernandez...

1. Always read 'The Belmont Club'

2. The Chinese do not care about the $27 bucks in Burros account

3. They most likely care deeply about the peccadilloes of various database administrators, server administrators, and programmers

The gubmint doesn't seem to value skillset. They want their mid-level management to be the 'leaders of the free world' rather than competent managers who understand their technology, workforce, and the risks involved. My guess is that Katherine Achuleta has no idea of what happened and is just wallowing about. She probably has a Masters Degree in Leadership or something... Then she hires someone with a Masters Degree in Project Management or something... Or maybe someone with a Security+ certificate but no background in any of the IT fields...



There will be many, many data breaches stemming from this one. I kinda target myself by typing here. Some part of the 1.6 Billion people in China got my info - what they got is anyone guess - and are now scouring blogs like this one to see who has high access. Then some chump with bad english will call and mention something that happened in the way back that was disclosed during the security check. Well, bad english phone grinder, I don't have the access you seek. Call someone else...

I got a virus on my computer last week and had to ship the hard drive to Washington for forensics analysis. They would not tell me anything and will not tell me if they find anything. Kind of odd isn't it?
 
Well got my notification when I arrived to work this morning! Ok so I get the free monitoring for the next 18 months, these hackers know that too. It's the months 19 and beyond that I'm worried about!
 
Well got my notification when I arrived to work this morning! Ok so I get the free monitoring for the next 18 months, these hackers know that too. It's the months 19 and beyond that I'm worried about!
Right, all they have to do is wait out the initial monitoring period.

I guess it's better than what we got after 911 - a flashlight, clear goggles, rubber gloves, a dust mask and a light stick wrapped around a trash bag(for us to crap in) tied up with a rubber band. I still have this in my desk drawer.
 
My guess is that server maintenance requests and personnel funding were denied so that travel could be approved for senior and middle managers to have a whoopdidoo somewhere and call it improving government.

FS
 
"Identity Risk Factors how many do you have?" (Ad at top of page! lol.) They can add 'Do you work for the Federal Government? Then YOU may be at risk, BUY NOW!'
I'm NOT lovin it Uncle Sam! ;swear
 
A couple interesting developments.


The link in Ms. Seymour's e-mail from her new address at CSID.com is blocked at work. I didn't have time to look in to it further as real work intruded. At what point does "real" work that I need to do real time become secondary to following up on the instructions of the Secretary, Assistant Secretary, senior management and their staff; and the OPM CIO?


This is starting to get real unreal. I would like to thank the cyber security staff for protecting us from trying to follow orders to protect ourselves since they can't protect us. Or something like that.


I followed the link given by Ms. Seymour in her new role as an apparent employee of CSID from home. I was underwhelmed. No confirmation e-mail to the address entered and when I "downloaded" the free credit report I actually could only review it on line.


I am sure Ms. Seymour is only doing what Ms. Archuleta told her to do. Looking at the OPM org chart you can't seem to find anyone in charge of cyber security.


Other interested entities have stated that the protection provided is not protection and we are on our own.


PO
 
Other interested entities have stated that the protection provided is not protection and we are on our own.
PO

Say what? Can you expound on who those "other interested entities" might be? official sources or unofficial sources with enough creds to warrant belief? just askin', I'm sure other inquiring minds would also be interested in that particular answer, PO. TIA
 
Two bargaining units and a few opinion articles I am too lazy to look up.

I DO realize the bargaining units have their own agenda.

PO
 
I got my notice Friday but haven't had a chance to do anything yet. I am going to freeze my credit with the 3 companies. I saw this morning on Govexec.com that they think the number hacked is up to 18 million.
 
I got my notice Friday but haven't had a chance to do anything yet. I am going to freeze my credit with the 3 companies. I saw this morning on Govexec.com that they think the number hacked is up to 18 million.
It is now estimated that anyone who filed to get a job with the government had their data stolen.
 
I received a notice as well, with the personally named notice and pin code, ... but I think the point being made is that the notices (at least what I received) did not come from a .gov address. It says it's from "OPM CIO" and the address is "opmcio@csid.com". I did not receive anything (addressed specifically to me) from a verifiable US Government address, yet. I took a look at the commercial webpage, but took no action and provided no data, yet.

CSDI is the company in charge of sending out notifications to DOD employees on behalf of OPM. Not sure if this company is responsible for all agencies or if there are other companies being used.

Edit: Dang it! I got fooled again. Didn't realize I was on the first page of this thread. :o
 
CSDI is the company in charge of sending out notifications to DOD employees on behalf of OPM. Not sure if this company is responsible for all agencies or if there are other companies being used.

Edit: Dang it! I got fooled again. Didn't realize I was on the first page of this thread. :o

Yes, I realize that ... but it seems something should come from OPM.gov (the real OPM) that introduces the contractor they hired. Anyone can embed a fake message from OPM in a .com e-mail.
 
Back
Top