Image Screenshot-from-2023-12-22-08-10-46 in James McKee's images album
Every time that there is a leak like this it's infinitely aggravating how the spin department tries to downplay what happened. If you are using SMS based MFA you probably want to stop doing that now.
Edit: sorry, app didn't show the entire image by default, they DO list exactly what was lost, not a bad email tbh (although better if they didn't lose it)
Isn't it saying that they didn't have those bits so couldn't loose them?
It would have been more useful (but look worse for them!) If they just listed what was lost....
The reality is they may not know exactly what was obtained, but they do know it wasn’t anything they don’t collect (like DOB, SSN, etc listed in the message). Instead of looking at this purely as a CYA message, instead looking at it as informing you as soon as they had any idea your information may have been impacted instead of waiting weeks/months to inform you. Don’t let perfect be the enemy of good.
I think leaks should come with stiff penalty. Like the CTO goes to jail, pays each person involved for a lifetime worth of damage, and then has their head and arms locked in an old timey wooden head and hands stock lock at the center of town square where the public gets to throw rotten food at their face. No but seriously, they need to pay people affected a lot of money for potentially fucking their credit up because that's where this kind of data goes.