Sorry, we've wronged too many people to be held accountable! What a wild argument.
Sorry, we've wronged too many people to be held accountable! What a wild argument.
Plucky startup takes the 'ask forgiveness rather than permission' approach and ignores a bunch of regulations, legal system doesn't care because they're just a plucky startup.
10 or so years later plucky startup is a massive corpo, another 5 or so years later the legal system catches up but they're a massive corpo making piles of cash and the worst the legal system can do at that point is penalize them with the equivalent of pocket change compared to the piles of cash they made while ignoring those regulations.
Examples? Usually when I see this argument being brought up, it's usually something like "[multinational megacorp] fined $x for breaking Belgian privacy laws", and then people pile in saying how "$x is 1% of [multinational megacorp]'s turnover" and therefore the fine is just "a cost of doing business", but neglecting to account for how much % of their revenue is in Belgium, or how much money they could have plausibly gained from the offenses in question.
Apparently, your personal information is worth about $2.90.
How much money did they make from the breach though? The argument made by the gp was that the fines were "pocket change compared to the piles of cash they made while ignoring those regulations.". According to FTC's press release, they were fined at least $575M for "failure to take reasonable steps to secure its network". How much do you think did you think equifax saved by skimping on security? Probably not $575M. They got pwned by an outdated third party library. There's no way keeping your libraries up to date is going to cost anywhere near that amount.
I took their post to mean that the $2.90 figure included damages.
In your words, how much will the ensuing fraud, identity theft, and spam cost me?