logoalt Hacker News

ga_totoday at 12:38 PM1 replyview on HN

What big-tech companies have been _actually_ held accountable for data misuse, as in, 'consequences that actually mattered'? Being able to absorb fines just turns them into a cost-of-doing-business tax.


Replies

bkotoday at 12:48 PM

Billions in fines is at least an incentive to invest in measures to prevent data leaks or misuse.

For instance, in July 2026 the D.C. Department of Health Care Finance discovered that two reports published on its own website contained hidden underlying personal data that unauthorized users could access. The reports were supposed to show aggregate statistics, but the accessible data could include Medicaid IDs, birth dates, provider names, race, gender, ward, and ethnicity. The exposure potentially existed from 2023 until July 2026.

Do you want to guess how many billions in fines or people were fired due to the leak?

https://dhcf.dc.gov/page/dhcf-data-incident