Tuesday, 20 June 2017

Is your data aggregated and exposed like this?

Scary news just came across my feed. Another data exposure problem, with a marketing research firm that compiled a huge data set and did not secure it. Anyone with the link could access it. They don't *think* it was accessed maliciously by anyone.

The full story is here: http://www.bbc.com/news/technology-40331215

The data set included name, address, phone number, political affiliation, and likely views on any number of issues (was being used by GOP in the US). Estimated number of people affected: Nearly 200 million. The data were aggregated from multiple sources (including Reddit threads -- so yes, this is the spooky bit where everything you ever do online is somehow compiled and put together as a profile of you).

With this in mind, are you concerned? Do you think we need a law to govern the collection, storage, and security of data? Or is it too late or unwieldy to do anything in this arena?