Summary

Elon Musk and his “Department of Government Efficiency” (DOGE) have been granted access to the U.S. Treasury’s federal payment system, raising concerns about security and misuse.

Treasury Secretary Scott Bessent approved the move after a top Treasury official was ousted for resisting.

Critics warn Musk could freeze payments to government programs or manipulate federal contracts.

The move coincides with DOGE’s takeover of the Office of Personnel Management.

Experts call it a dangerous power grab, as Musk holds no official government position.

  • spooky2092@lemmy.blahaj.zone
    link
    fedilink
    English
    arrow-up
    22
    ·
    8 hours ago

    Thanks to Verizon/TMobile/AT&T being the swiss cheese fort Knox, I’d be surprised if Felon Skum didn’t have it.

    Companies have played fast and loose with our PII for so long that it’s at a point where we need something else to act as that value so it’s actually secret. But with this administration, that would end up being a wrist tattoo…

    • ZILtoid1991@lemmy.world
      link
      fedilink
      arrow-up
      5
      ·
      7 hours ago

      I already have a suspicion that he might already be leaking information out to third parties from Twitter (private messages, etc.), so…

  • atzanteol@sh.itjust.works
    link
    fedilink
    English
    arrow-up
    52
    ·
    9 hours ago

    Everyone has my social security number. It’s one of the stupidest security fails of all time that nobody seems to want to fix. And now there is an entire “credit protection” industry so it will remain that way.

  • ansiz@lemmy.world
    link
    fedilink
    English
    arrow-up
    12
    arrow-down
    2
    ·
    10 hours ago

    All of my data got breached multiple times going back to the dot-com bubble days, by Yahoo, the original 2015 OPM Beach and by two of the big credit bureaus for a start. If Musk has my social at this point it doesn’t matter.

  • whotookkarl@lemmy.world
    link
    fedilink
    arrow-up
    5
    arrow-down
    1
    ·
    8 hours ago

    SSN is not a password and anyone who uses it like one doesn’t understand security because you can’t change it. It’s a user ID, like a finger print or email address.

    • dan@upvote.au
      link
      fedilink
      arrow-up
      89
      ·
      edit-2
      13 hours ago

      It’s weird that SSNs are treated as some sort of secret number given they don’t have any security features. They were never supposed to be used the way they’re used today, but there’s no good alternative yet.

      The US really needs a replacement, for example a national digital ID based on PKI (public key infrastructure) where you can generate new ID numbers based on a private key. Each bank, lender, employer, etc that needs it would get a unique ID that only works for them, and you could revoke access for just that one company if needed.

      Kinda like how OAuth/OIDC login works, where you can log in to sites using your Google account, Apple account, self-hosted Authentik or Authelia, etc. but the site you’re logging in to never sees your password. If a site/app misbehaves, you revoke their access to the account, and everything else that uses the account can keep working.

      • JayleneSlide@lemmy.world
        link
        fedilink
        arrow-up
        2
        ·
        9 hours ago

        The US really needs a replacement, for example a national digital ID based on PKI… you revoke their access to the account, and everything else that uses the account can keep working

        There is already an open standard growing around exactly this concept, Web5 Distributed IDs (DID): https://dev.to/tbdevs/what-is-web5-233o

        Disclosure: I worked on the implementation for an Open Banking company (does that need to be disclosed? <shrug> I’m including it lest someone think I’m a shill)

  • over_clox@lemmy.world
    link
    fedilink
    arrow-up
    17
    arrow-down
    2
    ·
    18 hours ago

    Didn’t Elon get hacked and his SS number leaked?

    No, I’m not about to go search for that, but I’m pretty sure that happened, with the 23andme data breach…

        • TachyonTele@lemm.ee
          link
          fedilink
          arrow-up
          4
          arrow-down
          10
          ·
          edit-2
          16 hours ago

          Well, your in a topic thats clearly only about Americans, and you felt the need to yell “im not American this doesn’t affect me”, as if anyone cares.

          No one cares if you’re not american. The topic doesn’t affect you by default.

            • TachyonTele@lemm.ee
              link
              fedilink
              arrow-up
              8
              arrow-down
              4
              ·
              edit-2
              16 hours ago

              What indicates that it’s only about Americans

              Aside from the headline, the very first sentence of the article.

              The world’s richest man may now have access to the confidential personal information of every taxpayer in the United States

              But we both know you’re just playing dumb and you obviously knew it from the headline, because you obviously didn’t bother to read the article.

              And of course there’s the article summary in the body of the post that’s blatantly about the US.

            • tal@lemmy.today
              link
              fedilink
              English
              arrow-up
              3
              arrow-down
              4
              ·
              edit-2
              16 hours ago

              We’re in a general news community on Lemmy.world.

              You probably want !world@lemmy.world.

              Back on Reddit, /r/news basically became about US news – I mean, it wasn’t a restriction to only be US, but it was just overwhelmed by US news – and so /r/worldnews was created in response, so that there was a subreddit that explicitly excluded US-specific news, so that it wouldn’t get flooded by it. !news@lemmy.world and !world@lemmy.world kinda parallels that relationship.

                • TachyonTele@lemm.ee
                  link
                  fedilink
                  arrow-up
                  2
                  arrow-down
                  2
                  ·
                  edit-2
                  15 hours ago

                  If you think the US is going to annex Canada, you truly are a moron. I can only imagine the type of work you do. You can’t read, so that’s probably a problem for you first off.

  • ohellidk@sh.itjust.works
    link
    fedilink
    English
    arrow-up
    9
    ·
    17 hours ago

    I’m sure quite a few people have mine. SSN’s aren’t a secure thing at all. It should be updated.

  • penquin@lemm.ee
    link
    fedilink
    arrow-up
    8
    arrow-down
    1
    ·
    16 hours ago

    You can get anyone’s SSN for $15 on the dark web. lol. The amount of leaks/hacks that have happened to all of the companies that require your SSN is insane.

    • nomy@lemmy.zip
      link
      fedilink
      English
      arrow-up
      4
      ·
      9 hours ago

      You can get it on the clear web for about $20 completely legitimately. Background checks have been a thing forever and reveal basically everything.

        • nomy@lemmy.zip
          link
          fedilink
          English
          arrow-up
          1
          ·
          8 hours ago

          You’d hope so but not really, they basically need as much partial information as you can supply so they know they’re finding the right records.

          Fullz are great because you already know that social belongs to that person but you really just need enough cross-verifiable information to confirm. If you only have one or two pieces of info you can pay somebody like Checkr or Certn to run your check or just find a local PI to pull them. If you have LE connects they have access to databases with criminal histories as well but AFAIK (in my state at least) those searches are logged.