<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0"
    xmlns:dc="http://purl.org/dc/elements/1.1/"
     xmlns:admin="http://webns.net/mvcb/"
     xmlns:content="http://purl.org/rss/1.0/modules/content/"
     xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#">
	<channel> 

	<title>Comments on: Might as well give it up: 457-55-5462</title>
	<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462/</link>
	<description>Comments on MetaFilter post Might as well give it up: 457-55-5462</description>
	<pubDate>Mon, 06 Jul 2009 18:02:09 -0800</pubDate>
	<lastBuildDate>Mon, 06 Jul 2009 18:02:09 -0800</lastBuildDate>
	<language>en-us</language>
	<docs>http://blogs.law.harvard.edu/tech/rss</docs>
	<ttl>60</ttl>

	<item>
		<title>Might as well give it up: 457-55-5462</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462</link>	
		<description>&lt;a href="http://www.washingtonpost.com/wp-dyn/content/article/2009/07/06/AR2009070602955.html?hpid=topnews"&gt;&lt;em&gt;Researchers have found&lt;/a&gt; that it is possible to guess many -- if not all -- of the nine digits in an individual&apos;s Social Security number using publicly available information, a finding they say compromises the security of one of the most widely used consumer identifiers in the United States.

&lt;br&gt;&lt;br&gt;Many numbers could be guessed at by simply knowing a person&apos;s birth data, the &lt;a href=&quot;http://blogs.heinz.cmu.edu/ssnstudy/&quot;&gt;researchers&lt;/a&gt; from Carnegie Mellon University said.  &lt;/em&gt;
&lt;br&gt;&lt;br&gt;
&lt;a href=&quot;http://www.pnas.org/content/early/2009/07/02/0904891106.full.pdf+html&quot;&gt;Manuscript (PDF)&lt;/a&gt;
&lt;br&gt;&lt;br&gt;
&lt;a href=&quot;http://www.heinz.cmu.edu/~acquisti/ssnstudy/&quot;&gt;Study FAQs&lt;/a&gt;</description>
		<guid isPermaLink="false">post:www.metafilter.com,2009:site.83052</guid>
		<pubDate>Mon, 06 Jul 2009 17:59:37 -0800</pubDate>
		<dc:creator>educatedslacker</dc:creator>		<category>SSN</category>		<category>socialsecurity</category>		<category>WaPo</category>
	</item>	<item>
		<title>By: allen.spaulding</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638156</link>	
		<description>I had no idea the CEO of lifelock was a MeFite!  Nice touch.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638156</guid>
		<pubDate>Mon, 06 Jul 2009 18:02:09 -0800</pubDate>
		<dc:creator>allen.spaulding</dc:creator>
	</item>	<item>
		<title>By: nonspecialist</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638172</link>	
		<description>Of course, using your SSN as a key identifier for all sorts of completely unrelated things, from student IDs to video store memberships, makes it pretty secure in the first place.

What gets me is not that SSNs are easy to obtain for an individual -- but that knowledge of one, or even part of one, is frequently considered sufficient to authenticate you as that individual.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638172</guid>
		<pubDate>Mon, 06 Jul 2009 18:11:58 -0800</pubDate>
		<dc:creator>nonspecialist</dc:creator>
	</item>	<item>
		<title>By: blucevalo</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638177</link>	
		<description>Yay!</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638177</guid>
		<pubDate>Mon, 06 Jul 2009 18:15:03 -0800</pubDate>
		<dc:creator>blucevalo</dc:creator>
	</item>	<item>
		<title>By: rokusan</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638182</link>	
		<description>I have often wondered how guessable these were when noticing two very similar ones for same-aged people born in the same town. 

What&apos;s the good reason these are issued at birth now, anyway? What value do they have before you&apos;re working age?</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638182</guid>
		<pubDate>Mon, 06 Jul 2009 18:18:58 -0800</pubDate>
		<dc:creator>rokusan</dc:creator>
	</item>	<item>
		<title>By: floam</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638183</link>	
		<description>Looks like you were born in Texas a long while back?</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638183</guid>
		<pubDate>Mon, 06 Jul 2009 18:19:41 -0800</pubDate>
		<dc:creator>floam</dc:creator>
	</item>	<item>
		<title>By: floam</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638188</link>	
		<description>Actually I&apos;m not sure it was a long while back. But definitely well before 1988 and you&apos;re probably about 30? How close did I get?</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638188</guid>
		<pubDate>Mon, 06 Jul 2009 18:21:33 -0800</pubDate>
		<dc:creator>floam</dc:creator>
	</item>	<item>
		<title>By: Knappster</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638189</link>	
		<description>&lt;em&gt;What&apos;s the good reason these are issued at birth now, anyway? What value do they have before you&apos;re working age?&lt;/em&gt;

&lt;a href=&quot;http://www.ssa.gov/pubs/10023.html#why&quot;&gt;Why Should I Get A Number For My Baby?&lt;/a&gt;</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638189</guid>
		<pubDate>Mon, 06 Jul 2009 18:21:52 -0800</pubDate>
		<dc:creator>Knappster</dc:creator>
	</item>	<item>
		<title>By: pineapple</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638209</link>	
		<description>Yep, it was probably in the late 70&apos;s. I&apos;d guess, 1978 or 1979.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638209</guid>
		<pubDate>Mon, 06 Jul 2009 18:38:17 -0800</pubDate>
		<dc:creator>pineapple</dc:creator>
	</item>	<item>
		<title>By: Xurando</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638212</link>	
		<description>I&apos;m not sure I&apos;d trust any organization that calls itself PNAS.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638212</guid>
		<pubDate>Mon, 06 Jul 2009 18:41:29 -0800</pubDate>
		<dc:creator>Xurando</dc:creator>
	</item>	<item>
		<title>By: inigo2</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638219</link>	
		<description>&lt;i&gt;Of course, using your SSN as a key identifier for all sorts of completely unrelated things, from student IDs&lt;/i&gt;

Is it ironic then that CMU used to do exactly that? Or just unfortunate?</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638219</guid>
		<pubDate>Mon, 06 Jul 2009 18:45:53 -0800</pubDate>
		<dc:creator>inigo2</dc:creator>
	</item>	<item>
		<title>By: Knappster</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638231</link>	
		<description>&lt;a href=&quot;http://ssdi.rootsweb.ancestry.com/cgi-bin/ssdi.cgi?&amp;ssn=457-55-5461&quot;&gt;This guy was ahead of you in line&lt;/a&gt;.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638231</guid>
		<pubDate>Mon, 06 Jul 2009 18:55:15 -0800</pubDate>
		<dc:creator>Knappster</dc:creator>
	</item>	<item>
		<title>By: crapmatic</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638232</link>	
		<description>&lt;i&gt;What gets me is not that SSNs are easy to obtain for an individual -- but that knowledge of one, or even part of one, is frequently considered sufficient to authenticate you as that individual.&lt;/i&gt;

Yeah, funny about that, I called my brokerage today and they only needed my SSN and my birthdate to authenticate me.  Man, it must be really tough for identity thieves to find discarded mortgage applications, official documents, and so forth that have &lt;i&gt;both&lt;/i&gt; of those things printed on them.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638232</guid>
		<pubDate>Mon, 06 Jul 2009 18:55:29 -0800</pubDate>
		<dc:creator>crapmatic</dc:creator>
	</item>	<item>
		<title>By: smackfu</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638253</link>	
		<description>&lt;i&gt;They were able to identify all nine digits for 8.5 percent of people born after 1988 in fewer than 1,000 attempts. For people born recently in smaller states, researchers sometimes needed just 10 or fewer attempts to predict all nine digits.&lt;/i&gt;

Isn&apos;t this kind of a joke though?  It sounds like they are just guessing the last four digits, after knowing the first five by combining the state of birth and date of birth.  And they aren&apos;t doing a very good job of it, which means they are random.  That second sentence I quoted is the worst kind of lying with statistics: it basically says sometimes they got lucky and guessed right straight off, as if that means anything.

It seems like they are getting headlines based on predicting the middle two digits of an SSN, which were never intended to be secret in the first place: &quot;The middle two digits are the group number. They have no special geographic or data significance but merely serve to break the number into conveniently sized blocks for orderly issuance.&quot;</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638253</guid>
		<pubDate>Mon, 06 Jul 2009 19:18:14 -0800</pubDate>
		<dc:creator>smackfu</dc:creator>
	</item>	<item>
		<title>By: America</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638258</link>	
		<description>*looks around the room, sees no one is looking at him, and leaves*</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638258</guid>
		<pubDate>Mon, 06 Jul 2009 19:19:28 -0800</pubDate>
		<dc:creator>America</dc:creator>
	</item>	<item>
		<title>By: DevilsAdvocate</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638265</link>	
		<description>In other news, it&apos;s not really that hard to find out someone&apos;s mother&apos;s maiden name from public records.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638265</guid>
		<pubDate>Mon, 06 Jul 2009 19:21:49 -0800</pubDate>
		<dc:creator>DevilsAdvocate</dc:creator>
	</item>	<item>
		<title>By: dunkadunc</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638269</link>	
		<description>My old, old copy of &lt;i&gt;How to get Anything on Anybody&lt;/i&gt; had a chart mapping regions of the US with certain SSN ranges.

And only a couple years ago, I saw a list of SSNs on a professor&apos;s door next to grades. Talk of a security breach.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638269</guid>
		<pubDate>Mon, 06 Jul 2009 19:22:33 -0800</pubDate>
		<dc:creator>dunkadunc</dc:creator>
	</item>	<item>
		<title>By: smackfu</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638271</link>	
		<description>In other, other news, if you really want an SSN, just drive around in early January and steal people&apos;s mail.  The letters you want say &quot;Important Tax Return Document Enclosed&quot;.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638271</guid>
		<pubDate>Mon, 06 Jul 2009 19:24:10 -0800</pubDate>
		<dc:creator>smackfu</dc:creator>
	</item>	<item>
		<title>By: meinvt</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638285</link>	
		<description>&lt;em&gt;Is it ironic then that CMU used to do exactly that? Or just unfortunate?&lt;/em&gt;

I&apos;m also proud to recall that professors usually used the last four digits when publicly posting grades.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638285</guid>
		<pubDate>Mon, 06 Jul 2009 19:36:09 -0800</pubDate>
		<dc:creator>meinvt</dc:creator>
	</item>	<item>
		<title>By: Joey Michaels</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638287</link>	
		<description>If an infinite number of monkeys were placed in a room with an infinite number of adding machines, they would eventually guess every social security number.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638287</guid>
		<pubDate>Mon, 06 Jul 2009 19:36:52 -0800</pubDate>
		<dc:creator>Joey Michaels</dc:creator>
	</item>	<item>
		<title>By: scalefree</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638300</link>	
		<description>I&apos;ve known this for going on 20 years now.  I can&apos;t believe Black Hat is letting this be presented there.  What&apos;s next, punching a paperclip through the mouthpiece of a payphone to make free calls?</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638300</guid>
		<pubDate>Mon, 06 Jul 2009 19:51:07 -0800</pubDate>
		<dc:creator>scalefree</dc:creator>
	</item>	<item>
		<title>By: allen.spaulding</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638319</link>	
		<description>I also remember things about CMU that may or may not be SSN related.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638319</guid>
		<pubDate>Mon, 06 Jul 2009 20:10:44 -0800</pubDate>
		<dc:creator>allen.spaulding</dc:creator>
	</item>	<item>
		<title>By: scalefree</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638334</link>	
		<description>Yeah I remember a large university where the CS department used student SSNs as the authenticator for creating Unix accounts and also used them as anonymous identifiers for posting grades on professors&apos; doors.  Bad combination.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638334</guid>
		<pubDate>Mon, 06 Jul 2009 20:24:08 -0800</pubDate>
		<dc:creator>scalefree</dc:creator>
	</item>	<item>
		<title>By: koeselitz</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638341</link>	
		<description>&lt;small&gt;allen.spaulding: &lt;em&gt;I had no idea the CEO of lifelock was a MeFite! Nice touch.&lt;/em&gt;&lt;/small&gt;

Heh, yeah. In fact, this post does seem... well, sort of like a backhanded form of spam promoting LifeLock or some other credit-protection company.

Anyhow, this seems like as good a time as any to point it out: &lt;b&gt;credit-protection programs don&apos;t work&lt;/b&gt;--they do nothing but place &lt;em&gt;fraud alerts&lt;/em&gt; on your credit, and fraud alerts unfortunately do not prevent identity theft. In fact, a little over a month ago, Experian, one of the three major credit-reporting agencies, &lt;a href=&quot;http://www.wired.com/threatlevel/2009/05/lifelock/&quot;&gt;convinced a judge in California to issue a summary judgement declaring LifeLock&apos;s services illegal&lt;/a&gt;. This comes two years after the founder of LifeLock &lt;a href=&quot;http://www.wired.com/threatlevel/2007/06/lifelock_founde_1/&quot;&gt;resigned in disgrace&lt;/a&gt; after the bankruptcies of his former companies were revealed.

If you want to save the money that LifeLock charges, you can just issue fraud alerts yourself; it&apos;s free, and, well, it&apos;s not illegal. And the only have to be renewed every &lt;em&gt;nine months&lt;/em&gt;, so it&apos;s hardly an inconvenience.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638341</guid>
		<pubDate>Mon, 06 Jul 2009 20:28:19 -0800</pubDate>
		<dc:creator>koeselitz</dc:creator>
	</item>	<item>
		<title>By: Kadin2048</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638342</link>	
		<description>&lt;a href=&quot;/83052/Might-as-well-give-it-up-457555462#2638219&quot;&gt;inigo2&lt;/a&gt;: &quot;&lt;i&gt;Is it ironic then that CMU used to do exactly that? Or just unfortunate?&lt;/i&gt;&quot;

There&apos;s no good reason why the SSN can&apos;t be used as a person-specific unique identifier. You should be able to use it for keeping college records, video rentals, drivers licenses, etc., separate.  It is a really good, guaranteed-unique identifier.

The problem only occurs when some idiots start using it as an &lt;i&gt;authentication mechanism&lt;/i&gt;.  That is, just because you know what your SSN is, they assume that you must be that person.  And that&apos;s a really terrible assumption.

All SSN-related problems flow from insitutions &#8212; particularly financial institutions &#8212; using knowledge of the SSN for authentication, rather than purely for identification and keeping accounts straight.  If they&apos;d never made the jump from identification to proof-that-you&apos;re-you, we&apos;d never be in the mess.  But people did, and more unfortunately, rather than going &quot;hey, that&apos;s a really stupid way to do business, cut that shit out right now!&quot; we instead kowtowed and started pretending that the SSN was something to be kept secret.

Ironically, with the advent of computers that can process and store a lot more information, the SSN is no longer really as useful as a unique identifier as it used to be.  When you were storing data on punch cards, having a guaranteed-unique identifier that didn&apos;t need to be coordinated, and was also very compact (9 digits!) was pretty nice.  Today, you could just pull a &lt;a href=&quot;http://en.wikipedia.org/wiki/Globally_Unique_Identifier&quot;&gt;GUID&lt;/a&gt; out of your backside when you create the new record, and never worry about a collision if it&apos;s done right (and like using an SSN, no need for coordination to keep things straight, like you&apos;d need if you arbitrarily assigned sequential ID numbers).

So as much as I really hate that we&apos;ve moved towards using the SSN for authentication instead of records identification, the trend seems to be more in favor of that than against.  There are easy non-SSN ways of creating unique IDs today, and a lot of policy has been implemented that essentially made SSNs sensitive/controlled information, even though they never started out that way.

All in all, a crappy, out-of-control system and evidence of how something that seems harmless at first glance can really be misused and get out of hand.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638342</guid>
		<pubDate>Mon, 06 Jul 2009 20:31:30 -0800</pubDate>
		<dc:creator>Kadin2048</dc:creator>
	</item>	<item>
		<title>By: netbros</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638351</link>	
		<description>&lt;em&gt;&quot;The serial numbers &amp;mdash; the last four digits &amp;mdash; can often be guessed using formulas and patterns, he said. It turns out that the Social Security Administration doesn&apos;t utilize true randomization to create serial numbers. For example, &lt;a href=&quot;http://redtape.msnbc.com/2009/07/theres-a-new-reason-to-worry-about-the-security-of-your-social-security-number-turns-out-theyre-easy-to-guess--a-gro.html#posts&quot;&gt;a graph plotting the numbers&lt;/a&gt; issued to Oregon residents in 1996, shown below, shows bands that cluster around certain numbers. In fact, there are five discernable lines.  A truly random issue would show dots scattered throughout the chart.&quot;

&quot;The SSA believes that scheme is so complex that it&apos;s sufficiently random,&quot; he said. &quot;We show it is way less random than apparently they believe.&quot;  As a result, instead of a the four digits yielding a 1 in 10,000 chance in guessing SSNs, he said he can improve the odds to at least 1 in 1,000, and in some cases, far less than that.&quot;&lt;/em&gt;

Serial numbers can&apos;t have been too random over the years. In 1968 when my brother and I got our SSNs on the same day, our numbers were consecutive. One could perhaps surmise that the next person who walked into the office that day got the number after mine. Not so random.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638351</guid>
		<pubDate>Mon, 06 Jul 2009 20:46:47 -0800</pubDate>
		<dc:creator>netbros</dc:creator>
	</item>	<item>
		<title>By: Astro Zombie</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638358</link>	
		<description>My brother&apos;s number is the one after mine as well!

Come to think of it, I also know his mother&apos;s maiden name. Oh, man, the next six months are going to suck for Greg.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638358</guid>
		<pubDate>Mon, 06 Jul 2009 20:54:04 -0800</pubDate>
		<dc:creator>Astro Zombie</dc:creator>
	</item>	<item>
		<title>By: togdon</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638361</link>	
		<description>My twins have sequential numbers, which I found amusing. The weird thing is that the one born second has the lower number...</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638361</guid>
		<pubDate>Mon, 06 Jul 2009 20:55:47 -0800</pubDate>
		<dc:creator>togdon</dc:creator>
	</item>	<item>
		<title>By: educatedslacker</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638362</link>	
		<description>I assure you all I have nothing whatsoever to do with any company like lifelock.  I just remember that damn number from all the radio commercials I heard.  It makes me laugh because of the number of times that the guy&apos;s &lt;a href=&quot;http://livebolt.com/blog/2008/05/20/social-security-457-55-5462/&quot;&gt;been hacked&lt;/a&gt;.  

I&apos;d never give out my real SSN... that&apos;s fucking stupid.  Like lifelock.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638362</guid>
		<pubDate>Mon, 06 Jul 2009 20:56:25 -0800</pubDate>
		<dc:creator>educatedslacker</dc:creator>
	</item>	<item>
		<title>By: pineapple</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638371</link>	
		<description>Freaky deaky... I just saw my first l!f3l0ck commercial on TV.  Way to conjure junk adverts, MeFi.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638371</guid>
		<pubDate>Mon, 06 Jul 2009 21:02:28 -0800</pubDate>
		<dc:creator>pineapple</dc:creator>
	</item>	<item>
		<title>By: hillabeans</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638397</link>	
		<description>Fuck.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638397</guid>
		<pubDate>Mon, 06 Jul 2009 21:41:48 -0800</pubDate>
		<dc:creator>hillabeans</dc:creator>
	</item>	<item>
		<title>By: julie_of_the_jungle</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638408</link>	
		<description>All 4 of my siblings and I were all born in the same (smallish) hospital in a 12 year span and only two of us have the same 3 first numbers.. .hrmm...  

However, one of my siblings, two years and one week older, has the number after mine. 

*strolls off to steal full SSNs of siblings and neighbors*</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638408</guid>
		<pubDate>Mon, 06 Jul 2009 22:03:37 -0800</pubDate>
		<dc:creator>julie_of_the_jungle</dc:creator>
	</item>	<item>
		<title>By: shadow vector</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638420</link>	
		<description>My undergrad college&apos;s default email addresses and computer logins for all students and faculty were your 3 letter initials followed by the last 4 of your SSN.  E.g., abc1234.  You were allowed to change/proxy the default name, but lots of people did not.  Seeing as this was also during the &quot;Fw: Fw: Fw: Re: Fw: Re: Neiman Marcus Cookie Outrage!!!1!&quot; era, anybody who still hung onto emails going back that far could put together hundreds, maybe thousands of full SSNs with this info.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638420</guid>
		<pubDate>Mon, 06 Jul 2009 22:32:52 -0800</pubDate>
		<dc:creator>shadow vector</dc:creator>
	</item>	<item>
		<title>By: wv kay in ga</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638425</link>	
		<description>Good luck using my SSN.  I&apos;m broke.  Have at it.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638425</guid>
		<pubDate>Mon, 06 Jul 2009 22:46:18 -0800</pubDate>
		<dc:creator>wv kay in ga</dc:creator>
	</item>	<item>
		<title>By: Malor</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638430</link>	
		<description>&lt;i&gt;All in all, a crappy, out-of-control system and evidence of how something that seems harmless at first glance can really be misused and get out of hand.&lt;/i&gt;

This was exactly the sort of criticism that was leveled at the idea of Social Security numbers, that they would become a national ID card, and destroy privacy.  But the objections were sneered at, we started the program anyway, and here we are, sixty years later, with a national ID that really fouls us up, AND a program that&apos;s been looted into bankruptcy.  

That&apos;s an awfully expensive lesson to learn absolutely nothing from.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638430</guid>
		<pubDate>Mon, 06 Jul 2009 22:56:57 -0800</pubDate>
		<dc:creator>Malor</dc:creator>
	</item>	<item>
		<title>By: twoleftfeet</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638452</link>	
		<description>I&apos;m one of the few people who can get a new Social Security Number automatically, due to &lt;a href=&quot;http://ssa-custhelp.ssa.gov/cgi-bin/ssa.cfg/php/enduser/std_adp.php?p_faqid=292&quot;&gt;&quot;religious beliefs&quot;&lt;/a&gt;, because my SSN contains a &lt;a href=&quot;http://news.google.com/newspapers?nid=1356&amp;dat=19960909&amp;id=nCYVAAAAIBAJ&amp;sjid=ogcEAAAAIBAJ&amp;pg=6925,4202212&quot;&gt;666&lt;/a&gt;.  I&apos;ve been waiting for a reason to use this.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638452</guid>
		<pubDate>Mon, 06 Jul 2009 23:48:45 -0800</pubDate>
		<dc:creator>twoleftfeet</dc:creator>
	</item>	<item>
		<title>By: Kellydamnit</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638460</link>	
		<description>I think this may only be accurate for people after a certain year- the IRS didn&apos;t require it to claim your kids on taxes until 1987, and numbers being automatically issued when births were registered didn&apos;t hit for a couple years after that.  My sister, three years younger than me, is one digit off from my number.  My mom got our cards at the same time- to do her taxes in 1987.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638460</guid>
		<pubDate>Tue, 07 Jul 2009 00:10:49 -0800</pubDate>
		<dc:creator>Kellydamnit</dc:creator>
	</item>	<item>
		<title>By: koeselitz</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638490</link>	
		<description>&lt;small&gt;Kadin2048: &lt;em&gt;The problem only occurs when some idiots start using it as an authentication mechanism. That is, just because you know what your SSN is, they assume that you must be that person. And that&apos;s a really terrible assumption&amp;hellip;Today, you could just pull a GUID out of your backside when you create the new record, and never worry about a collision if it&apos;s done right (and like using an SSN, no need for coordination to keep things straight, like you&apos;d need if you arbitrarily assigned sequential ID numbers).&lt;/em&gt;&lt;/small&gt;

I agree completely, but&amp;hellip;well, I&apos;ve also always wondered: how would it be possible to use anything else? Aside from some crazy Star Trek-inspired DNA scan, what sequence of digits or characters or otherwise encoded objects could possibly be unique and at the same time secure enough to last more than a generation and usable enough to apply system-wide?

The primary applications where people choose to authenticate using SSN are usually applications where there really &lt;b&gt;is no alternative&lt;/b&gt;. I&apos;ll take an example that, because of a job I used to have, I&apos;m a little familiar with. Say that I&apos;m John Smith, and I&apos;m a licensed contractor or plumber, and I call a bank that I haven&apos;t done business with before and ask them for a loan. They&apos;re quite happy to give me the loan&amp;mdash;I give them my social security number, I give them my birthdate, my address, and my phone number. Furthermore, they get my contractor&apos;s license number, and verify that. Maybe if they get freaky about security I give them my wife&apos;s maiden name or a reference. Once they&apos;ve gotten all this, they rest assured that I &lt;em&gt;really am&lt;/em&gt; John Smith, that I &lt;em&gt;really do&lt;/em&gt; live at the address I gave them, that my credit score is the one showing on John Smith&apos;s entry, that I&apos;m the same one who has a contractor&apos;s license, et cetera. The trouble is, &lt;b&gt;if I can get a SSN and a date of birth for John Smith, the rest of this information is public and available within a matter of seconds to anyone who wants it&lt;/b&gt;. Addresses, phone numbers, family members&apos; names and details, various commercial license numbers, maiden names, etc&amp;hellip;all of these things are easy to obtain.

So the question is: &lt;b&gt;in order to &lt;em&gt;accurately&lt;/em&gt; verify John Smith&apos;s identity, what should the bank ask for&lt;/b&gt;? I can&apos;t think of any piece of &lt;em&gt;information&lt;/em&gt; whatsoever that could really verify that somebody is who they say they are. (The only available piece of info for this purpose that I can think of would maybe be driver&apos;s license number, but I&apos;m sure that would turn out to be publicly available, too.) Maybe you could require people to appear in person for true verification, but that would (a) cost money and (b) not &lt;em&gt;really&lt;/em&gt; guarantee anything, as we all know&amp;mdash;IDs can be faked, makeup can be worn, et cetera.

Moving up to the &lt;em&gt;human&lt;/em&gt; level (from the stark, empty, lifeless machine level on which problems like this actually matter) I don&apos;t think it&apos;ll ever be possible to identify someone based on information they give you. Ultimately, all of these questions are as futile as the old stand-by &amp;ldquo;who won the AL pennant last year?&amp;rdquo; clich&amp;eacute; that soldiers are supposed to have used to identify spys in the fifties; shades of &lt;em&gt;Gattaca&lt;/em&gt; appear before my eyes as I remark that we&apos;re only getting more and more technologically advanced in the &lt;em&gt;private information&lt;/em&gt; about people which we can store; we&apos;re not getting better at &lt;em&gt;knowing people themselves.&lt;/em&gt; As the weird mutant creature inside a guy&apos;s belly pointed out to Arnold Schwartzenegger in Paul Verhoeven&apos;s awesome movie &lt;em&gt;Total Recall&lt;/em&gt;&amp;mdash;and by the way he was echoing Aristotle when he said this&amp;mdash;you aren&apos;t what you &lt;em&gt;remember&lt;/em&gt;; you are what you &lt;em&gt;do&lt;/em&gt;. Or&amp;mdash;to take a somewhat different example&amp;mdash;as St. Thomas Aquinas pointed out in his commentary on Boethius&apos; &lt;em&gt;De Trinitate&lt;/em&gt;, even aside from the religious question, human beings need faith merely to &lt;em&gt;survive&lt;/em&gt; in the societies they inhabit; without some form of it&amp;mdash;faith in each other, primarily&amp;mdash;society becomes something totally different, something which is certainly not conducive to human survival.

I don&apos;t think this is a problem technology can solve.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638490</guid>
		<pubDate>Tue, 07 Jul 2009 01:43:52 -0800</pubDate>
		<dc:creator>koeselitz</dc:creator>
	</item>	<item>
		<title>By: flyinghamster</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638507</link>	
		<description>ive known this for years.


thank you 2600.



also, spot the grammar errors in the faq for bonus points</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638507</guid>
		<pubDate>Tue, 07 Jul 2009 03:08:58 -0800</pubDate>
		<dc:creator>flyinghamster</dc:creator>
	</item>	<item>
		<title>By: fraula</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638510</link>	
		<description>Perhaps something like a passport or a national ID card. I have a hard time understanding arguments against these considering how you have to have a &lt;i&gt;less secure&lt;/i&gt; version in the form of an SSN (and/or driver&apos;s license) in order to do much of anything. Less secure in that it&apos;s not photo ID, not to mention all the fancy-schmancy stuff used on passports nowadays.

Could also just get rid of credit reports. They don&apos;t have them here in France. To get a mortgage, for instance (something I did last year), you provide proof of employment (or self-employment), proof of income, photo ID, and documentation of any other loans you have. This is because banks refuse to knowingly indebt someone beyond 1/3 of their income for a mortgage. Conversely, if you withhold documentation of other loans in order to get around that 33% limit, you&apos;re held responsible. (I don&apos;t know how exactly and don&apos;t have time to look it up, but recall hearing about a few rare cases. In general people agree with the 33% limit and so very few try to get around it.) For &quot;consumption loans&quot; (these can be lines of credit from a bank, store credit cards, and other credit cards), it&apos;s simpler: you declare your income and how much you spend on other loans, and provide photo ID. Again, if you knowingly withhold information and end up with too much debt, you&apos;re held responsible for it.

(I looked up my SSN range on that Social Security death index search and whoa, the person right after me is in there.)</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638510</guid>
		<pubDate>Tue, 07 Jul 2009 03:19:05 -0800</pubDate>
		<dc:creator>fraula</dc:creator>
	</item>	<item>
		<title>By: forforf</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638517</link>	
		<description>koselitz,
Couldn&apos;t using references solve this?  For example, requiring the applicant to disclose a relationship with another financial institution (or other trusted institution)?  One can then verify that the applicant has at least maintained that identity successfully for some period of time, and you&apos;d have a better basis for trusting that the applicant is, in fact, the applicant.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638517</guid>
		<pubDate>Tue, 07 Jul 2009 03:33:22 -0800</pubDate>
		<dc:creator>forforf</dc:creator>
	</item>	<item>
		<title>By: octothorpe</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638538</link>	
		<description>My undergrad university (the one across the street from CMU) used to mail me letters with my full SS# printed on the mailing label on the front of the envelope.  Most, if not all, schools have stopped using SS#s as student numbers by now.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638538</guid>
		<pubDate>Tue, 07 Jul 2009 04:33:31 -0800</pubDate>
		<dc:creator>octothorpe</dc:creator>
	</item>	<item>
		<title>By: languagehat</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638554</link>	
		<description>&lt;a href=&quot;http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638358&quot; title=&quot;Astro Zombie wrote in comment #2638358&quot;&gt;&amp;gt;&lt;/a&gt; &lt;i&gt;My brother&apos;s number is the one after mine as well! &lt;/i&gt;

What about Astro Zombie 2 and 3?</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638554</guid>
		<pubDate>Tue, 07 Jul 2009 05:09:04 -0800</pubDate>
		<dc:creator>languagehat</dc:creator>
	</item>	<item>
		<title>By: etaoin</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638567</link>	
		<description>I seem to recall being told as a kid that it was illegal to use a Social Security number for any purpose other than taxes and Social Security claims. That obviously has not been true for many years.
As far as getting a Social Security number for kids--mine came from China at age 3. I had to get a number for her before the end of the year so that I could claim her on my tax return. But using it on tax returns immediately exposes it through tax-submission services, government offices, etc.

The clerk who handled payroll records at my former employer kept everyone&apos;s weekly timecards in a folder at her desk. Name/department/Social Security number, written in full, on tabbed folders, for everyone to see. That went on for years.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638567</guid>
		<pubDate>Tue, 07 Jul 2009 05:41:25 -0800</pubDate>
		<dc:creator>etaoin</dc:creator>
	</item>	<item>
		<title>By: a robot made out of meat</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638580</link>	
		<description>Aside from references, if you put an alert on your report they have to call the phone number that is attached to the report.  So, in addition to whipping up the information you had to secure a phone number in my name which delivers its statement to my address, and have neither myself nor the lender notice that I have two active phones at the same address, and have the lender call the newer one.  That or steal my cell phone.  Either way it takes longer and / or requires intercepting multiple pieces of mail or stealing a possession that I&apos;m sure to miss.

This is how it should work by default.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638580</guid>
		<pubDate>Tue, 07 Jul 2009 06:01:19 -0800</pubDate>
		<dc:creator>a robot made out of meat</dc:creator>
	</item>	<item>
		<title>By: mary8nne</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638581</link>	
		<description>&lt;i&gt;in order to accurately verify John Smith&apos;s identity, what should the bank ask for? &lt;/i&gt;

well in the Australia and the UK for pretty much anything you need to provide photo identification (License or Passport) AND a few proof of addresses (letter from council, bank, utilities with your name and address on it).

You generally can&apos;t do anything without both those. that seems to work.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638581</guid>
		<pubDate>Tue, 07 Jul 2009 06:01:39 -0800</pubDate>
		<dc:creator>mary8nne</dc:creator>
	</item>	<item>
		<title>By: educatedslacker</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638609</link>	
		<description>&lt;em&gt;What about Astro Zombie 2 and 3?&lt;/em&gt;

Now I&apos;m just waiting for someone to spend $5 for a Greg Zombie sockpuppet.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638609</guid>
		<pubDate>Tue, 07 Jul 2009 06:42:51 -0800</pubDate>
		<dc:creator>educatedslacker</dc:creator>
	</item>	<item>
		<title>By: Kadin2048</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638664</link>	
		<description>&lt;a href=&quot;/83052/Might-as-well-give-it-up-457555462#2638490&quot;&gt;koeselitz&lt;/a&gt;: &quot;&lt;i&gt;I agree completely, but...well, I&apos;ve also always wondered: how would it be possible to use anything else? Aside from some crazy Star Trek-inspired DNA scan, what sequence of digits or characters or otherwise encoded objects could possibly be unique and at the same time secure enough to last more than a generation and usable enough to apply system-wide? ...  I can&apos;t think of any piece of &lt;em&gt;information&lt;/em&gt; whatsoever that could really verify that somebody is who they say they are. (The only available piece of info for this purpose that I can think of would maybe be driver&apos;s license number, but I&apos;m sure that would turn out to be publicly available, too.) Maybe you could require people to appear in person for true verification, but that would (a) cost money and (b) not &lt;em&gt;really&lt;/em&gt; guarantee anything, as we all know&#8212;IDs can be faked, makeup can be worn, et cetera.&lt;/i&gt;&quot;

You bring up a number of interesting points.  The SSN serves well as a unique identifier &#8212; a string that&apos;s guaranteed to be specific to a particular person and won&apos;t repeat, so you can safely use it as a primary key in your database or other system.  The problem is using it as a &quot;shared secret,&quot; something that only Joe Blow&apos;s bank and Joe Blow will know.  The problem is, if you use it as a unique identifier, it&apos;s not a secret, so the first use case &#8212; which I think is what SSNs were actually designed for &#8212; undermines its usefulness in the second.

The inherent problem isn&apos;t authenticating yourself as someone using information.  You&apos;re correct that there are some problems with that &#8212; how can you ever be 100% sure someone you&apos;re talking to is who they say they are? (I call this the &quot;T-1000 problem&quot;) &#8212; but they&apos;re a lot more academic than the hugely flawed way that a lot of banks use SSNs.  You&apos;re totally right that there&apos;s a sort of philosophical/ontological problem, when you start really getting into authentication and being absolutely certain of the person you&apos;re talking to, especially if you start allowing for edge cases like &quot;what if they have an identical twin who knows everything about them?&quot; or &quot;what if their mind and all their memories got transferred to a different body?&quot;  You end up in weird places pretty fast.

But that doesn&apos;t mean you can&apos;t come up with a &lt;i&gt;practical&lt;/i&gt; authentication strategy, one that covers most cases that you run into in the world we live in now, that&apos;s a hell of a lot better than using SSNs as a secret.

Solution 1:  Authenticate in person.  I think this option gets written off too quickly in many discussions.  There&apos;s no really good reason why people &lt;i&gt;need&lt;/i&gt; to be able to apply for a loan or a credit card without any sort of physical interaction, and allowing them to do so lowers the barrier to fraud tremendously, regardless of anything else you do.  So my Gordian Knot solution is just don&apos;t allow it.  If you need to prove your identity to someone, go there in person and show traditional physical ID documents (which can be forged, but that&apos;s a much higher bar than just repeating a SSN over the phone).  For long-distance transactions where that&apos;s not practical, use trusted third parties of some sort: a bank in California could have an agreement with a bank in Connecticut to do its authentications, and vice versa.  Alternately you could make use of the notary system that&apos;s already around (although I don&apos;t know if the notary system is rigorous enough to be used for financial transactions, it might need higher standards than currently exist in some places).  The authentication/identity problem is one that&apos;s been dealt with since the dawn of long-distance commerce; we could do worse than to fall back on some of the traditional solutions.  Low-tech solutions should always be preferred to &quot;black box&quot; ones that a typical user won&apos;t understand and must blindly trust.

Solution 2:  If we must have an electronic way of doing it, set up a system for online (that is, real-time) verification run by a government agency.  Such a system should be opt-in, but the value of the SSN as an authentication mechanism should be completely destroyed &#8212; either by mandating that anyone using knowledge of an SSN as an authentication mechanism is wholly liable for fraud resulting from it, or by publishing a master list of names and SSNs thus destroying any hint of secrecy, or both &#8212; so that the current practice is ended.  

The way the system would work is that users would need to contact the SSA (or whoever is going to run this thing; for the moment lets pretend we&apos;re in a world where the government is not completely incompetent when it comes to administering large-scale IT projects) and set up a password or PIN.  This PIN, unlike their actual SSN, is truly secret and they would be cautioned against giving it out to anyone they don&apos;t absolutely trust.  To authenticate their identity to a bank, they would give their SSN and PIN, and the bank would perform some sort of hash and run a query to the system, which would give a yes/no response.  You could build in checks that would prohibit multiple queries to the same SSN within a set period (to prevent offline cracking), salt to prevent precomputation, etc.  It&apos;s all pretty well-known stuff.

The advantage of this system over the current &quot;give us your SSN to reset your password&quot; system is that it separates the unique identifier from the shared secret, and also lets users change the secret at will.  If Joe User accidentally gives out his secret via insecure email, or to a lender he later decides was a bit shady, he can call up the administering authority and change his secret right then.  All queries using the old secret will immediately fail.  (In thinking about this, you might need to have two passwords; one that gets given out to banks and can be changed online at will, another that&apos;s used to change passwords and is never given out &#8212; this could be much more complicated and arbitrarily assigned.  If a user forgot that one they&apos;d need to go to a SSA office and authenticate in person.)

On the whole I am biased heavily towards Solution 1 rather than 2; I think #2 probably risks creating more problems than it solves, just like assigning everyone SSNs created a lot of problems that I doubt were anticipated.  (Although I agree with Malor to a certain extent: the SSN has become what its worst detractors always said it would be, a de facto national ID number, when this was promised would never happen.)  I think it would be pretty daft to try and solve a problem created by an overreaching government bureaucracy with more government bureaucracy, but in a perfect world it would be an option so I leave it out there.

Anyway, if you put me in charge of the whole mess tomorrow, what I&apos;d do is announce that in 12 months, every SSN ever issued would be published alongside the name of the person it was issued to, and just nuke the whole thing from orbit.  Let the banks work out a better authentication strategy, and if we can&apos;t apply for loans online anymore, than we can&apos;t apply for loans online.  It&apos;s a small price to pay to get rid of the rampant fraud which currently exists, and in many ways ends up being a sort of &quot;lottery tax&quot; &#8212; some unlucky person ends up paying huge amounts of time and money so that the rest of us can have the questionable convenience of applying for a new Discover card online.  That needs to stop, now.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638664</guid>
		<pubDate>Tue, 07 Jul 2009 07:27:27 -0800</pubDate>
		<dc:creator>Kadin2048</dc:creator>
	</item>	<item>
		<title>By: krinklyfig</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638671</link>	
		<description>&lt;em&gt;&quot;I&apos;ve known this for going on 20 years now. I can&apos;t believe Black Hat is letting this be presented there. What&apos;s next, punching a paperclip through the mouthpiece of a payphone to make free calls?&quot;&lt;/em&gt;

They still make payphones?</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638671</guid>
		<pubDate>Tue, 07 Jul 2009 07:31:11 -0800</pubDate>
		<dc:creator>krinklyfig</dc:creator>
	</item>	<item>
		<title>By: krinklyfig</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638677</link>	
		<description>&lt;em&gt;&quot;I seem to recall being told as a kid that it was illegal to use a Social Security number for any purpose other than taxes and Social Security claims. That obviously has not been true for many years.&quot;&lt;/em&gt;

It is, but it&apos;s never enforced.

UNM used to use the complete SS # as the student ID, which was printed on your ID card and all your paperwork. It was nearly impossible not to have to give it out multiple times a day to several random student employees and admins. They did change to a non-SS-related student ID number some years ago, however, back in the late &apos;90s, IIRC.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638677</guid>
		<pubDate>Tue, 07 Jul 2009 07:33:59 -0800</pubDate>
		<dc:creator>krinklyfig</dc:creator>
	</item>	<item>
		<title>By: munyeca</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638689</link>	
		<description>In related news, &lt;a href=&quot;http://cornellsun.com/section/news/content/2009/06/24/security-breach-leaves-45000-risk-identity-theft&quot;&gt;Cornell University managed to lose a computer containing the SSN&apos;s of 45,000 students, faculty, and staff&lt;/a&gt; last month.

I guess I should really give up, now.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638689</guid>
		<pubDate>Tue, 07 Jul 2009 07:40:53 -0800</pubDate>
		<dc:creator>munyeca</dc:creator>
	</item>	<item>
		<title>By: ALongDecember</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638742</link>	
		<description>&lt;em&gt;Is it ironic then that CMU used to do exactly that? Or just unfortunate?&lt;/em&gt;

CMU used to use SSN as an alternate ID form until about 2004 if I can remember. This 2001 article shows it was &lt;a href=&quot;http://privacy.cs.cmu.edu/dataprivacy/projects/ssnwatch/refs/seth1.html&quot;&gt;becoming an issue&lt;/a&gt;. 

The worst thing was having to give your SSN to the local pizza delivery in order to use your dining plan. Luckily they changed to an alternate ID number for everyone.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638742</guid>
		<pubDate>Tue, 07 Jul 2009 08:18:52 -0800</pubDate>
		<dc:creator>ALongDecember</dc:creator>
	</item>	<item>
		<title>By: Nelson</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638749</link>	
		<description>Social Security Numbers are not secrets. Like credit card numbers and bank accounts, they are data that we freely share with people all the time. Systems that assume they are secrets are broken. OTOH, this quote from the SSA spokesman is all kinds of ignorant: &quot;there is no fool proof method for predicting a person&apos;s Social Security Number&quot;. Well, maybe not, but now there&apos;s more evidence that it&apos;s pretty easy to guess someone&apos;s SSN.

My fucking &lt;i&gt;videogame account&lt;/i&gt; has &lt;a href=&quot;http://us.blizzard.com/support/article.xml?locale=en_US&amp;articleId=24660&quot;&gt;two factor authentication&lt;/a&gt;, it astounds me that banks don&apos;t offer this protection to US customers. I finally managed to get a token generator for my primary bank account but it took a special request.

Needed: a &lt;a href=&quot;http://openid.net/&quot;&gt;single login system for the Internet&lt;/a&gt;. Oh, it&apos;s all designed and ready to go! Are there any OpenID providers specializing in really secure authentication?</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638749</guid>
		<pubDate>Tue, 07 Jul 2009 08:24:24 -0800</pubDate>
		<dc:creator>Nelson</dc:creator>
	</item>	<item>
		<title>By: krinklyfig</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638752</link>	
		<description>&lt;em&gt;&quot;There&apos;s no really good reason why people &lt;/em&gt;need&lt;em&gt; to be able to apply for a loan or a credit card without any sort of physical interaction&quot;&lt;/em&gt;

Well, I don&apos;t know. All my credit cards are with banks which are not located in this state. I had to prove identity by faxing over documents. This happens when you get a loan at a local broker, who usually has to send info to the originator, which is not usually done in person.

Authentication based on a few strings of &quot;secret&quot; data is not a very good method, but in-person authentication is easily faked with the right documents.

The way this is done in the crypto world is typically trust-based with public-private keys or certs, like PGP or similar. A secret is still involved, but a public key is available. Public key signatures might be a good place to start.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638752</guid>
		<pubDate>Tue, 07 Jul 2009 08:25:20 -0800</pubDate>
		<dc:creator>krinklyfig</dc:creator>
	</item>	<item>
		<title>By: Fezboy!</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638760</link>	
		<description>I think &lt;a href=&quot;http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2638664&quot;&gt;solution #2&lt;/a&gt; could be improved upon slightly by requiring those who make queries to the SSA register as well.  Thus the query is a hash comprised of&lt;ul&gt;&lt;li&gt;query-maker&apos;s PID&lt;/li&gt;&lt;li&gt;The target&apos;s PID&lt;/li&gt;&lt;li&gt;The target&apos;s SSN&lt;/li&gt;&lt;/ul&gt;and the query-maker&apos;s tax ID/SSN/Agency identifying number.  The query merely returns a boolean.  This requires the putative cracker to obtain four times as many data points *and* the hashing algorithm before appropriating an identity.  Also, the scope of the identity theft is limited to those authorized query makers who the cracker has compromised.  One could start blocking requests from a tax ID/SSN/etc after N consecutive failed requests or other such safeguards to protect against a compromised query-maker&apos;s PID.

Like any other centralized authentication system it has its weaknesses but the utility of such a system to distance-mediated commerce outweighs the danger posed IMO.  One need not make it impossible to crack, merely unprofitable to the majority of hackers with contingencies rolled in for cases where the system is compromised.  Letting both sides of the transaction manage their PIDs and separating authentication from identity should facilitate better security.

Getting the PID to the SSA *should* be handled in person and require physical identification but this likely means that users are less likely to change their PID frequently.  Then again, after working for a bit in a capacity administering user accounts, I don&apos;t harbor any illusions as to the average user picking a strong PID or changing it in any manner that might be called regularity.  Still, this is better than assuming an SSN provides meaningful authentication.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2638760</guid>
		<pubDate>Tue, 07 Jul 2009 08:29:31 -0800</pubDate>
		<dc:creator>Fezboy!</dc:creator>
	</item>	<item>
		<title>By: delmoi</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2639074</link>	
		<description>Well, if it had any security, then it would be possible to compromise it, but social security numbers were never &lt;i&gt;intended&lt;/i&gt; to be a personal identifier.  In fact, I believe it&apos;s possible to &lt;a href=&quot;http://crime.about.com/od/v_domviolence/qt/ssnchange.htm&quot;&gt;change it&lt;/a&gt;.  It&apos;s been used as a personal identifier because various companies want ways to keep track of us, but that&apos;s not necessarily a good reason for there to be one.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2639074</guid>
		<pubDate>Tue, 07 Jul 2009 11:13:20 -0800</pubDate>
		<dc:creator>delmoi</dc:creator>
	</item>	<item>
		<title>By: delmoi</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2639097</link>	
		<description>&lt;i&gt;Today, you could just pull a GUID out of your backside when you create the new record&lt;/i&gt;

They could always have used &lt;i&gt;serial numbers&lt;/i&gt;. The problem isn&apos;t &quot;what to use as a primary key&quot; it&apos;s &quot;what to use as a primary key that will match some other database at some other company.&quot;  And while it would be &lt;i&gt;convenient&lt;/i&gt;&lt;sup&gt;1&lt;/sup&gt; for companies to be able to do that, that dosn&apos;t mean it&apos;s a good idea to let them. Why should companies be able to cross check their records on us in the first place?

&lt;sub&gt;1: I actually overheard some old COBOL programmer complaining about how some other agency &lt;i&gt;wasn&apos;t&lt;/i&gt; using SSNs and saying &quot;why wold you do that&quot;&lt;/sub&gt;</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2639097</guid>
		<pubDate>Tue, 07 Jul 2009 11:24:19 -0800</pubDate>
		<dc:creator>delmoi</dc:creator>
	</item>	<item>
		<title>By: $5</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2639139</link>	
		<description>It could be worse.

Once upon a time, there was a mid-sized Company.  Like most most mid-sized companies, the Company decided to treat Social Security numbers as secret information, and so generated a new, unique number to keep track of everyone; that number could be relied upon to uniquely identify a particular person, even if there were two people at the Company with the same name, or if someone got married and changed their name (and Company e-mail address), etc.  This number was printed on all Company photo ID cards, and was visible in the online directory.

Eventually, it became the number that the payroll department asked for when you wanted to set up direct deposit, the one you gave to human resources if you needed to sign up for health insurance or change it (for instance, if you wanted to add your new baby to your plan), and the one you needed in order to get a parking sticker for your car, or to be seen at the Company walk-in clinic.  Of course, you could do a lot of these things over the phone, just by giving out your ID number.  And that&apos;s where the trouble begins.

The internal Company ID number started being used, by itself, as an authentication factor.  The problem was that it was still easily accessible to anyone who could use the Internet to get to the online Company directory.  Eventually, someone realized that you might be able to get health-related information from the clinic just by calling in and giving the Company ID number, and issued a hurried order to put a stop to this.  The solution was to stuff the cat back into the bag&#8212;a decree came down from the administration that none of the Company&apos;s electronic directories (backend included) would answer queries for the ID number.

The Company&apos;s carpooling coordination site used the ID number as a unique identifier.  So did the online reimbursement form for Company-related expenses incurred by employees.  So did the Take-Your-Children-to-Work signup sheet.  And so on.  Eventually, a compromise was made: the public directory would no longer show the number, but the backend servers would still answer queries for it.

This left the Company with &lt;i&gt;two&lt;/i&gt; parallel sets of unique identifiers for everybody, both of which weren&apos;t actually secret, but were treated as such anyway.

This problem is &lt;b&gt;never going to go away&lt;/b&gt; until people and systems stop using non-secret information as authentication factors.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2639139</guid>
		<pubDate>Tue, 07 Jul 2009 11:46:15 -0800</pubDate>
		<dc:creator>$5</dc:creator>
	</item>	<item>
		<title>By: Eideteker</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2639301</link>	
		<description>This is why I always make one up on the spot. If I&apos;m going to need to remember it for authentication purposes later, I&apos;ll write it down (or more recently, covertly key it into the cell phone in my pocket).

I also always use &quot;ZANGIEF&quot; as my mother&apos;s maiden name. No one&apos;s called me on it yet.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2639301</guid>
		<pubDate>Tue, 07 Jul 2009 12:46:59 -0800</pubDate>
		<dc:creator>Eideteker</dc:creator>
	</item>	<item>
		<title>By: Kadin2048</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2639346</link>	
		<description>&lt;a href=&quot;/83052/Might-as-well-give-it-up-457555462#2639097&quot;&gt;delmoi&lt;/a&gt;: &quot;&lt;i&gt;They could always have used &lt;i&gt;serial numbers&lt;/i&gt;. The problem isn&apos;t &quot;what to use as a primary key&quot; it&apos;s &quot;what to use as a primary key that will match some other database at some other company.&quot;&lt;/i&gt;&quot;

Well, if you just use a serial number, you run into problems fairly quickly that require a lot of infrastructure to solve.

Let&apos;s say you have two people who can add records to the system, and you want them to be able to add them offline (in the case of say, two registration desks located in two parts of campus on Day One at some big university) &#8212; you need some way to make sure the serial numbers they give out don&apos;t conflict.  You could do this by assigning each desk a block of serial numbers, or telling one to use even numbers and another to use odd ones, etc., but this requires a lot of coordination.  SSNs are convenient in that they don&apos;t require any logic to assign, there&apos;s no coordination necessary (the coordination has already been done), they&apos;re guaranteed to be unique, and most people already know what theirs is, so you don&apos;t have to worry about people forgetting their arbitrarily assigned serial number the next day.

That old COBOL programmer was right in a sense; if you&apos;re allowed to, there&apos;s no reason &lt;i&gt;not&lt;/i&gt; to use SSNs &#8212; they work really well as a per-person records identification number.  If you can take advantage of pre-existing infrastructure like that, it&apos;s silly not to.

The reason I suggested GUIDs as a replacement is because they still allow independent generation and are guaranteed unique (assuming you use the right kind of GUID), and don&apos;t require any sort of central coordination.  Each registration kiosk can be completely independent, work totally offline, and still generate IDs without problems.  (You don&apos;t have to use real GUIDs to get this, of course; you could just create an arbitrary serial number of the form [year][registration kiosk number][incremental serial] and get the same benefits; it&apos;s just slight wheel-reinvention.)

You still don&apos;t get all the benefits of using SSNs when you generate GUID or GUID-like serial numbers though; it&apos;s an extra number for users to have to remember or carry around on a printed object (like an ID card).  If SSNs weren&apos;t abused as an authentication factor, there wouldn&apos;t be any problem using them universally for simple organization; all the issues stem from treating them like a secret.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2639346</guid>
		<pubDate>Tue, 07 Jul 2009 13:12:00 -0800</pubDate>
		<dc:creator>Kadin2048</dc:creator>
	</item>	<item>
		<title>By: inigo2</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2639597</link>	
		<description>&lt;i&gt;CMU used to use SSN as an alternate ID form until about 2004 if I can remember. This 2001 article shows it was becoming an issue. &lt;/i&gt;

While it was still used extensively, I think they pulled it off the student ID cards before that, at least; I want to say...maybe 98 or 99?</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2639597</guid>
		<pubDate>Tue, 07 Jul 2009 15:30:26 -0800</pubDate>
		<dc:creator>inigo2</dc:creator>
	</item>	<item>
		<title>By: pineapple</title>
		<link>http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2639654</link>	
		<description>&lt;a href=&quot;http://www.metafilter.com/83052/Might-as-well-give-it-up-457555462#2639301&quot;&gt;Eideteker&lt;/a&gt; said: &quot;&lt;i&gt;I also always use &quot;ZANGIEF&quot; as my mother&apos;s maiden name. No one&apos;s called me on it yet.&lt;/i&gt;&quot;

Uncle Eideteker? Is that you?

I need bone marrow.</description>
		<guid isPermaLink="false">comment:www.metafilter.com,2009:site.83052-2639654</guid>
		<pubDate>Tue, 07 Jul 2009 16:07:13 -0800</pubDate>
		<dc:creator>pineapple</dc:creator>
	</item>
	</channel>
</rss>
