How do they undo SSN failure? And how do we avoid NI failure?

Steve Summit posts to Peter Neumann’s Risks digest about delays in US “too little too late” efforts to secure the social security number by removing them from publicly accessible documents. He muses:

(not for the first time) what it would take to get U.S. commerce and society to properly separate the tasks of identification and authentication. Would federal legislation mandating this separation be effective?

Indeed. And what will it take to get the same point accepted in UK government? Can we do that BEFORE we use the national insurance number as our ID System index, rather than 15-25 years after?

There are no comments yet.

Leave a Reply

Contributors to the Blindside wiki and blog should note their input forms part of a collaborative resource that is Creative Commons (by-sa 2.5) licensed. We hope these resources will be reused and remixed in the public interest. You do not need to seek permission before you re-use our works, although we do require that users attribute Blindside as their source, and license the resulting work under the same terms.