First-Person Identity Theft Story
MenuBlogNewsletterBooksEssaysNewsTalksAcadem 2026-7-22 11:2:26 Author: www.schneier.com(查看原文) 阅读量:3 收藏

Comments

Doug July 22, 2026 7:54 AM

I read articles like this and shudder. I’m married and nearly all of our financial accounts are shared. Trying to figure out a security schema that works for two people who have vastly different understandings of security and risk is not trivial.

Billy Jack July 22, 2026 8:02 AM

I received an e-mail last night from a former customer of mine. The only explanation I can think of is that he or his wife gave out their gmail address and password to someone spoofing something called paperlesspost.

I got his telephone number from one of the early morning coffee drinkers a few minutes ago and am getting ready to call him to warn him and suggest that he contact his bank and credit card companies and that he should probably start changing passwords. If I can’t get hold of him, I’ll probably drive out to his house in a bit to talk to him in person.

It would surprise me if he didn’t use the same weak password on everything.

Rontea July 22, 2026 8:49 AM

This is why layered security and zero-trust practices are absolutely essential in our connected world. A single point of failure—your core account, your phone number, your email—can cascade into a total compromise if it’s the foundation for everything else. Social engineering is powerful because it exploits human trust, and spoofed calls or texts can look perfectly legitimate in the moment.

Two key takeaways: diversify your digital keys and never authenticate inbound. Call your bank or provider directly using a verified number, and treat unsolicited messages—even those that look official—as suspect. One proactive measure today can prevent a full-scale loss tomorrow.

Atom Feed Subscribe to comments on this entry

Sidebar photo of Bruce Schneier by Joe MacInnis.


文章来源: https://www.schneier.com/blog/archives/2026/07/first-person-identity-theft-story.html
如有侵权请联系:admin#unsafe.sh