829

According to a protected disclosure filed with the Office of Special Counsel, Borges told the Government Accountability Project that DOGE officials working at Social Security created a “live copy” of the country’s Social Security records in a separate cloud environment that sidestepped usual security checks.

The group says those lapses put the Social Security information of more than 300 million Americans at risk.

top 50 comments
sorted by: hot top controversial new old
[-] hperrin@lemmy.ca 276 points 1 week ago

What a perfect time to stop using social security numbers for specifically the thing they were not designed to be.

[-] TheMadCodger@piefed.social 59 points 1 week ago

Except the dumfucks have railed against the idea of a national id number since before they removed "Not to be used for ID" from the SS cards. So instead we have a national id number that was never meant to be one and stupidly easy to figure out.

load more comments (2 replies)
[-] phutatorius@lemmy.zip 229 points 1 week ago

All U.S. Social Security numbers may need to be changed

Yeah, sure, and winged monkeys may fly out of my ass. But I doubt it'll happen.

[-] ButteryMonkey@piefed.social 64 points 1 week ago

Yeah, honestly they have needed to be changed for years now, what with all the data breaches and stuff.. Pretty sure everyone’s info was leaked ages ago. Nothing has been done because this is how the people in charge want it.

[-] Telorand@reddthat.com 30 points 1 week ago

We're the unwashed masses. Changing our social security numbers would mean considering us people worth more than a means of exploitation, and the ruling class couldn't possibly burden themselves with the mere thought.

load more comments (2 replies)
[-] roguetrick@lemmy.world 38 points 1 week ago

For sure. They were fine invalidating mine and everybody else's Puerto Rican birth certificate but they'll never put this sort of administrative burden in action.

[-] scarabic@lemmy.world 15 points 1 week ago* (last edited 1 week ago)

It would have happened after Experian if it was ever possible for it to happen.

EDIT: I was thinking of Equifax but Experian is not clean either

load more comments (4 replies)
load more comments (1 replies)
[-] Archer@lemmy.world 116 points 1 week ago

They actually need to publicly release everyone’s SSNs so that they can’t be used for authentication anymore, which they never should have been

I’ve been saying this for literal years now. They should release a publicly searchable database of every single SSN, name, and DOB. Force organizations to stop using those as a form of ID, because they’re not secure and never have been.

Give it like a year of lead time. Like announce “March 1 2027, we’ll post the database” and then that gives institutions a full year to figure something new out.

load more comments (4 replies)
[-] remotelove@lemmy.ca 16 points 1 week ago

SSNs are generally considered public information but how the SSN is linked to other information is usually the more difficult bit to find and it's generally pay-walled. (Any jackass with a business license and a credit card can usually buy background check information for 'hiring'.)

But no, it shouldn't be solely used for authentication. That is just dumb. However, it can be used as part of a larger verification and validation scheme while building authentication/authorization profiles. In most systems that I have seen that use full or partial SSNs, it is always linked to several other identifiers that need to match.

[-] Archer@lemmy.world 20 points 1 week ago

They are definitely not. People consider it increased risk for identity theft if they hear their SSN was stolen and you just cited how people are still using them in part for authentication. They need to be completely useless for authentication

load more comments (4 replies)
[-] XLE@piefed.social 90 points 1 week ago

Borges alleges that a little-known federal tech team called the Department of Government Efficiency, or DOGE, copied the government’s master Social Security database into a cloud system that lacked normal oversight.

I don't know if I'd call them a little-known team (they're infamous for basically fraud), but point taken.

[-] guywithoutaname@lemmy.world 87 points 1 week ago

Regardless of whether or not they are breached, the social security numbering system needs to be changed because it is far from a secure number.

[-] dgriffith@aussie.zone 65 points 1 week ago

because it is far from a secure number.

It is only the American obsession with using it as a unique identifier for everything in their lives that has caused this issue.

[-] SketchySeaBeast@lemmy.ca 55 points 1 week ago

The problem is they are using Identification for authentication.

[-] Jakeroxs@sh.itjust.works 17 points 1 week ago

You say that like we had any part in every single service asking for our SSN lmfao

[-] themeatbridge@lemmy.world 17 points 1 week ago

It would be less expensive to simply trust everyone. Administering a numbering system and trying to prevent fraud costs more than the actual fraud it prevents, and does nothing to prevent the larger frauds.

It's like having a chain on the pen at the bank, with a security guard watching the chain, and three managers making aure the secuirty guard is watching the chain all day, but the cash drawers are open and the three managers simply help themselves to as much cash as they like.

load more comments (1 replies)
[-] brown567@sh.itjust.works 57 points 1 week ago

more than 300 million Americans

Last I checked, that's all of 'em

Thanks a lot DOGE. So clearly Elon Musk gives every American compensation, we get new numbers and have all of our credit history wiped clean to start new right? Bc otherwise this just means we've all been massively fucked by Trump and his band of idiots

[-] LodeMike@lemmy.today 16 points 1 week ago* (last edited 1 week ago)

His wealth spread across everyone living in the U.S. is ~ $2500 a person

Not adult, not citizen, not household,..

Person

I could use an extra $2500.

load more comments (3 replies)
[-] ToTheGraveMyLove@sh.itjust.works 51 points 1 week ago
[-] Sunforged@lemmy.ml 30 points 1 week ago* (last edited 1 week ago)

They would do it to punish out groups...

They sure are making alot of lists lately.

load more comments (4 replies)
[-] runsmooth@kopitalk.net 19 points 1 week ago

A cynic in me suggests that this may be a move to push people off the system and disenfranchise them entirely, or the new rationale to create a second class of people who are forced to live with increased digital vulnerability while a new class of numbers can be generated with different privileges.

[-] Tiger666@lemmy.ca 49 points 1 week ago

DOGE infiltrated months ago and you are just reacting now?

[-] BreadstickNinja@lemmy.world 23 points 1 week ago

The people in power are the same ones who created DOGE. It's like Epstein - not like they're going to investigate themselves.

load more comments (2 replies)
[-] dhork@lemmy.world 46 points 1 week ago

I'm less upset that all SSNs might end up compromised and more upset that no one is going to get punished for it. If a career Federal Employee did this, they would be prosecuted to the fullest extent of the law.

But since it was Elon's friends who did it, everyone in power will just shrug and say "who knew this would be such a big deal"....

[-] rumba@lemmy.zip 39 points 1 week ago

0 chance they hand out new SSID, that's money and work and confusion, imagine every medical entity changing over that code?

First, the govt would need to make a lookup table.

Anyone that used their old ssid for something, or a system that had the old ssid in it, would need a translation to the new ID.

Sooo at what point could you safely stop accepting old ID's because they're all changed over? Never. Some random medical provider in east bumfuck, TN, still uses your SSID from their own paper copy. So you're stuck accepting old SSIDs and translating them into new SSIDs on demand, which completely breaks any security of changing IDs in the first place.

There have been enough nexus/credit leaks over the years, it's hardly news that those ID's are compromised.

[-] MrMcGasion@lemmy.world 14 points 1 week ago

Just a minor bit of pedantry, but Social Security Numbers are generally abbreviated as SSN, SSID usually refers to a "Service Set Identifier" aka WiFi network name.

load more comments (1 replies)
[-] prenatal_confusion@feddit.org 13 points 1 week ago

I think bumfucking is not legal in Tennessee.

load more comments (6 replies)
load more comments (2 replies)
[-] turmacar@lemmy.world 36 points 1 week ago

more than 300 million Americans

I know wiggle room is the gold standard of journalism... but you can just say "all Americans".

[-] SaveTheTuaHawk@lemmy.ca 14 points 1 week ago

The rest are being deported.

[-] Gammelfisch@lemmy.world 34 points 1 week ago

File a lawsuit against fucking DOGE and MAGA.

[-] baggachipz@sh.itjust.works 18 points 1 week ago

And then what? The Department of “””justice””” is part of them.

[-] WraithGear@lemmy.world 32 points 1 week ago

ssn was never intended to be a form of identification. it was specifically decided that it would not be used as a form of identification by the administration that controlled it

load more comments (3 replies)
[-] Formfiller@lemmy.world 31 points 1 week ago

SIEZE Elons assets arrest try him and repair the damage to American infrastructure with his money

[-] nosuchanon@lemmy.world 29 points 1 week ago
load more comments (2 replies)
[-] dan69@lemmy.world 29 points 1 week ago

lol I can confirm this, just gave my ssn to a reputable company’s hr system. And it says that info is already exists..

[-] maplesaga@lemmy.world 28 points 1 week ago* (last edited 1 week ago)

I have long predicted the entire goal of DOGE was to feed more data to Palantir, and clearly no other company is ever going to be given this level of security clearance, so they become dependent on it forever. I think this view is gaining more traction from what I've seen.

load more comments (3 replies)
[-] RoyaltyInTraining@lemmy.world 23 points 1 week ago

I will keep laughing at Americans till they manage to get their broken democracy to establish an ID system like every other country.

[-] JackbyDev@programming.dev 28 points 1 week ago

The same group that pushes for voter ID laws refuses to implement a national ID system because they're afraid of the mark of the beast.

[-] Lucky_777@lemmy.world 17 points 1 week ago

Too bad they already wear the mark, in the form of an ugly red hat

load more comments (5 replies)
[-] muelltonne@feddit.org 21 points 1 week ago

I'm sure that this will be more expensive to fix than whatever "savings" Elons ghouls have managed to bring.

[-] moopet@sh.itjust.works 21 points 1 week ago

Just add a 1 at the end of them all. That's what I do when my work says I have to change my password.

[-] kelseybcool@lemmy.world 17 points 1 week ago

Same. My password is on hunter2111111111111 now.

Shit, shouldn't have shared it. I'll just have to change it to >!hunter21111111111111!<.

[-] Ninjascubarex@lemmy.zip 18 points 1 week ago

I don't know what you're talking about, all I see is *******************

load more comments (1 replies)
[-] Retro_unlimited@lemmy.world 20 points 1 week ago

They “leak” the numbers, then only issue new ones to the people they like…

load more comments (1 replies)
[-] jj4211@lemmy.world 16 points 1 week ago

Instead of new SSNs, how about we maybe the number less risky in general?

It should never have served as a "secret". Authenticating someone needs more than some account number. SSN should be more of a "username", not a password.

load more comments (1 replies)
load more comments
view more: next ›
this post was submitted on 16 Feb 2026
829 points (100.0% liked)

Technology

82070 readers
3129 users here now

This is a most excellent place for technology news and articles.


Our Rules


  1. Follow the lemmy.world rules.
  2. Only tech related news or articles.
  3. Be excellent to each other!
  4. Mod approved content bots can post up to 10 articles per day.
  5. Threads asking for personal tech support may be deleted.
  6. Politics threads may be removed.
  7. No memes allowed as posts, OK to post as comments.
  8. Only approved bots from the list below, this includes using AI responses and summaries. To ask if your bot can be added please contact a mod.
  9. Check for duplicates before posting, duplicates may be removed
  10. Accounts 7 days and younger will have their posts automatically removed.

Approved Bots


founded 2 years ago
MODERATORS