<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: SSN</title>
	<atom:link href="http://nat.org/blog/2010/06/ssn/feed/" rel="self" type="application/rss+xml" />
	<link>http://nat.org/blog/2010/06/ssn/</link>
	<description></description>
	<lastBuildDate>Mon, 07 May 2012 20:05:57 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: Jackson</title>
		<link>http://nat.org/blog/2010/06/ssn/comment-page-1/#comment-6847</link>
		<dc:creator>Jackson</dc:creator>
		<pubDate>Fri, 11 Feb 2011 17:38:11 +0000</pubDate>
		<guid isPermaLink="false">http://nat.org/blog/2010/06/ssn/#comment-6847</guid>
		<description>Try it on Bing now.</description>
		<content:encoded><![CDATA[<p>Try it on Bing now.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: cepler</title>
		<link>http://nat.org/blog/2010/06/ssn/comment-page-1/#comment-6792</link>
		<dc:creator>cepler</dc:creator>
		<pubDate>Thu, 29 Jul 2010 15:53:58 +0000</pubDate>
		<guid isPermaLink="false">http://nat.org/blog/2010/06/ssn/#comment-6792</guid>
		<description>Safely stored in Google&#039;s query requests now though :)</description>
		<content:encoded><![CDATA[<p>Safely stored in Google&#8217;s query requests now though <img src='http://nat.org/blog/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Miguel de Icaza</title>
		<link>http://nat.org/blog/2010/06/ssn/comment-page-1/#comment-6714</link>
		<dc:creator>Miguel de Icaza</dc:creator>
		<pubDate>Fri, 04 Jun 2010 18:24:08 +0000</pubDate>
		<guid isPermaLink="false">http://nat.org/blog/2010/06/ssn/#comment-6714</guid>
		<description>I belong to the school of &quot;trust, but verify&quot; and would like to double check.

Could you post your SSN here so I can validate your results?</description>
		<content:encoded><![CDATA[<p>I belong to the school of &#8220;trust, but verify&#8221; and would like to double check.</p>
<p>Could you post your SSN here so I can validate your results?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Alan</title>
		<link>http://nat.org/blog/2010/06/ssn/comment-page-1/#comment-6712</link>
		<dc:creator>Alan</dc:creator>
		<pubDate>Fri, 04 Jun 2010 15:09:26 +0000</pubDate>
		<guid isPermaLink="false">http://nat.org/blog/2010/06/ssn/#comment-6712</guid>
		<description>Well it is easy enough to find your DOB and I imagine with a little more work your place of birth. As SSNs are allocated non-randomly I wouldn&#039;t count on your SSN being secure. At least you were born well before the 1980s when SSNs became much more predictable.

SSNs are insecure and that fact won&#039;t change no matter how many laws they pass requiring bussinesses to protect them. 

http://www.heinz.cmu.edu/~acquisti/ssnstudy/

&quot;&quot;Ranges of values&quot; means that the predictions are based on statistical inferences: in general, the first 5 digits can be predicted with a very high degree of accuracy with a single attempt - especially for individuals born after 1988 and in less populous states. In some cases, we were able predict the whole 9 digits of individual SSNs at the very first attempt. More often, the predictions produce windows of values that are likely to include the actual 9 digits. These windows can be very large (and, therefore, inaccurate) for certain years and states (for instance, for individuals born in California in 1973), but can get very narrow (and therefore more concerning, in terms of identity theft risks) for smaller states and recent years (for instance, 1 out of 20 SSNs of individuals born in DE in 1996 in our dataset could be identified with just 10 or fewer attempts per SSN).&quot;</description>
		<content:encoded><![CDATA[<p>Well it is easy enough to find your DOB and I imagine with a little more work your place of birth. As SSNs are allocated non-randomly I wouldn&#8217;t count on your SSN being secure. At least you were born well before the 1980s when SSNs became much more predictable.</p>
<p>SSNs are insecure and that fact won&#8217;t change no matter how many laws they pass requiring bussinesses to protect them. </p>
<p><a href="http://www.heinz.cmu.edu/~acquisti/ssnstudy/" rel="nofollow">http://www.heinz.cmu.edu/~acquisti/ssnstudy/</a></p>
<p>&#8220;&#8221;Ranges of values&#8221; means that the predictions are based on statistical inferences: in general, the first 5 digits can be predicted with a very high degree of accuracy with a single attempt &#8211; especially for individuals born after 1988 and in less populous states. In some cases, we were able predict the whole 9 digits of individual SSNs at the very first attempt. More often, the predictions produce windows of values that are likely to include the actual 9 digits. These windows can be very large (and, therefore, inaccurate) for certain years and states (for instance, for individuals born in California in 1973), but can get very narrow (and therefore more concerning, in terms of identity theft risks) for smaller states and recent years (for instance, 1 out of 20 SSNs of individuals born in DE in 1996 in our dataset could be identified with just 10 or fewer attempts per SSN).&#8221;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Nat Friedman</title>
		<link>http://nat.org/blog/2010/06/ssn/comment-page-1/#comment-6711</link>
		<dc:creator>Nat Friedman</dc:creator>
		<pubDate>Fri, 04 Jun 2010 13:33:02 +0000</pubDate>
		<guid isPermaLink="false">http://nat.org/blog/2010/06/ssn/#comment-6711</guid>
		<description>Good point! I did. :-)</description>
		<content:encoded><![CDATA[<p>Good point! I did. <img src='http://nat.org/blog/wp-includes/images/smilies/icon_smile.gif' alt=':-)' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: zeta</title>
		<link>http://nat.org/blog/2010/06/ssn/comment-page-1/#comment-6710</link>
		<dc:creator>zeta</dc:creator>
		<pubDate>Fri, 04 Jun 2010 13:30:53 +0000</pubDate>
		<guid isPermaLink="false">http://nat.org/blog/2010/06/ssn/#comment-6710</guid>
		<description>I hope you used the HTTPS version, https://www.google.com/</description>
		<content:encoded><![CDATA[<p>I hope you used the HTTPS version, <a href="https://www.google.com/" rel="nofollow">https://www.google.com/</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Alberto</title>
		<link>http://nat.org/blog/2010/06/ssn/comment-page-1/#comment-6708</link>
		<dc:creator>Alberto</dc:creator>
		<pubDate>Fri, 04 Jun 2010 12:20:54 +0000</pubDate>
		<guid isPermaLink="false">http://nat.org/blog/2010/06/ssn/#comment-6708</guid>
		<description>SSN is something I understand only in part, as well as identity theft (not common at all where I used to live), even if I have been living for a while in US. 

I mean, why do they use it so much with identification purposes, if it is so delicate? And what is done to prevent identity theft, in addition to suggesting you not to use SSN, to find out that you are required to use it, even if legally not necessary (see opening a bank account, which formally should not require a SSN, but in practise, most accounts are &quot;SSN-driven&quot;).

We have something similar to SSN in Italy (we call it &quot;fiscal code&quot;, and it groups now our fiscal and health care information, being valid, for the second purpose Europe-wide), but there is no need to keep it secret (it can actually be obtained easily from people name, birth of date, and some other info, and there are softwares to check the authenticity), since it is *not* a valid way to identify you. If you want to open a bank account or do some other activity, the code is only one of the (two) things you need, since a valid ID has to be presented and associated to the code itself, and there are easy ways to check if the two match.

I&#039;m still wondering why something similar wasn&#039;t implemented in US, but maybe I just don&#039;t know this is done. :-?</description>
		<content:encoded><![CDATA[<p>SSN is something I understand only in part, as well as identity theft (not common at all where I used to live), even if I have been living for a while in US. </p>
<p>I mean, why do they use it so much with identification purposes, if it is so delicate? And what is done to prevent identity theft, in addition to suggesting you not to use SSN, to find out that you are required to use it, even if legally not necessary (see opening a bank account, which formally should not require a SSN, but in practise, most accounts are &#8220;SSN-driven&#8221;).</p>
<p>We have something similar to SSN in Italy (we call it &#8220;fiscal code&#8221;, and it groups now our fiscal and health care information, being valid, for the second purpose Europe-wide), but there is no need to keep it secret (it can actually be obtained easily from people name, birth of date, and some other info, and there are softwares to check the authenticity), since it is *not* a valid way to identify you. If you want to open a bank account or do some other activity, the code is only one of the (two) things you need, since a valid ID has to be presented and associated to the code itself, and there are easy ways to check if the two match.</p>
<p>I&#8217;m still wondering why something similar wasn&#8217;t implemented in US, but maybe I just don&#8217;t know this is done. <img src='http://nat.org/blog/wp-includes/images/smilies/icon_confused.gif' alt=':-?' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: ben</title>
		<link>http://nat.org/blog/2010/06/ssn/comment-page-1/#comment-6707</link>
		<dc:creator>ben</dc:creator>
		<pubDate>Fri, 04 Jun 2010 12:14:38 +0000</pubDate>
		<guid isPermaLink="false">http://nat.org/blog/2010/06/ssn/#comment-6707</guid>
		<description>In North America, knowing someone&#039;s SSN is a big step toward being able to steal his identity. You&#039;d be surprised how many things you can do over here in someone else&#039;s name just by giving his SSN.</description>
		<content:encoded><![CDATA[<p>In North America, knowing someone&#8217;s SSN is a big step toward being able to steal his identity. You&#8217;d be surprised how many things you can do over here in someone else&#8217;s name just by giving his SSN.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Nat Friedman</title>
		<link>http://nat.org/blog/2010/06/ssn/comment-page-1/#comment-6706</link>
		<dc:creator>Nat Friedman</dc:creator>
		<pubDate>Fri, 04 Jun 2010 11:33:30 +0000</pubDate>
		<guid isPermaLink="false">http://nat.org/blog/2010/06/ssn/#comment-6706</guid>
		<description>Ha!</description>
		<content:encoded><![CDATA[<p>Ha!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: ethana2</title>
		<link>http://nat.org/blog/2010/06/ssn/comment-page-1/#comment-6699</link>
		<dc:creator>ethana2</dc:creator>
		<pubDate>Fri, 04 Jun 2010 05:15:56 +0000</pubDate>
		<guid isPermaLink="false">http://nat.org/blog/2010/06/ssn/#comment-6699</guid>
		<description>I started typing mine, but it suggested yours, and I clicked it.

No results, just like you said.  *whew*</description>
		<content:encoded><![CDATA[<p>I started typing mine, but it suggested yours, and I clicked it.</p>
<p>No results, just like you said.  *whew*</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Igor</title>
		<link>http://nat.org/blog/2010/06/ssn/comment-page-1/#comment-6697</link>
		<dc:creator>Igor</dc:creator>
		<pubDate>Fri, 04 Jun 2010 01:46:38 +0000</pubDate>
		<guid isPermaLink="false">http://nat.org/blog/2010/06/ssn/#comment-6697</guid>
		<description>:(</description>
		<content:encoded><![CDATA[<p> <img src='http://nat.org/blog/wp-includes/images/smilies/icon_sad.gif' alt=':(' class='wp-smiley' /> </p>
]]></content:encoded>
	</item>
	<item>
		<title>By: antimonio</title>
		<link>http://nat.org/blog/2010/06/ssn/comment-page-1/#comment-6696</link>
		<dc:creator>antimonio</dc:creator>
		<pubDate>Fri, 04 Jun 2010 01:34:33 +0000</pubDate>
		<guid isPermaLink="false">http://nat.org/blog/2010/06/ssn/#comment-6696</guid>
		<description>What&#039;s the point? I may be living under a rock, but I don&#039;t know why that would be bad? (Mine is googlable, why should I be sad?)</description>
		<content:encoded><![CDATA[<p>What&#8217;s the point? I may be living under a rock, but I don&#8217;t know why that would be bad? (Mine is googlable, why should I be sad?)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: dustym</title>
		<link>http://nat.org/blog/2010/06/ssn/comment-page-1/#comment-6694</link>
		<dc:creator>dustym</dc:creator>
		<pubDate>Fri, 04 Jun 2010 01:15:19 +0000</pubDate>
		<guid isPermaLink="false">http://nat.org/blog/2010/06/ssn/#comment-6694</guid>
		<description>Ugh. I&#039;m not so lucky.</description>
		<content:encoded><![CDATA[<p>Ugh. I&#8217;m not so lucky.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Oli</title>
		<link>http://nat.org/blog/2010/06/ssn/comment-page-1/#comment-6693</link>
		<dc:creator>Oli</dc:creator>
		<pubDate>Fri, 04 Jun 2010 00:42:48 +0000</pubDate>
		<guid isPermaLink="false">http://nat.org/blog/2010/06/ssn/#comment-6693</guid>
		<description>Nice, now Google knows your SSN!</description>
		<content:encoded><![CDATA[<p>Nice, now Google knows your SSN!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: FriendlyNigerian</title>
		<link>http://nat.org/blog/2010/06/ssn/comment-page-1/#comment-6692</link>
		<dc:creator>FriendlyNigerian</dc:creator>
		<pubDate>Fri, 04 Jun 2010 00:23:20 +0000</pubDate>
		<guid isPermaLink="false">http://nat.org/blog/2010/06/ssn/#comment-6692</guid>
		<description>Wow,, this is amazing work! May I knwo the your SSN so that I can may confirm this? I would like want see this for my self. Thankyou.



/s</description>
		<content:encoded><![CDATA[<p>Wow,, this is amazing work! May I knwo the your SSN so that I can may confirm this? I would like want see this for my self. Thankyou.</p>
<p>/s</p>
]]></content:encoded>
	</item>
</channel>
</rss>

