|
|
|
|
|
by paulajohnson
3175 days ago
|
|
#3 bugs me. It gets asked every time there is a breach, but its irrelevant. Encryption at rest is only useful if the only way to access the data is to type in the key. But for Equifax there are going to be hundreds or thousands of accesses per second. If you encrypt the data then you have added no protection at all because you still have a huge pipeline out through an always-on decryption mechanism. Any attacker is going to access the data through that mechanism and ignore the encryption completely. |
|