<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: restore]]></title>
    <link>http://securityratty.com/tag/restore</link>
    <description></description>
    <pubDate>Mon, 12 May 2008 14:44:52 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[It makes good sense to just re-install]]></title>
      <link>http://securityratty.com/article/0600378a6736bed0cab395f17c9d710e</link>
      <guid>http://securityratty.com/article/0600378a6736bed0cab395f17c9d710e</guid>
      <description><![CDATA[This article offers a different approach to fighting malware infections. There is that stigma that users have with a re-install, they are not familiar with how to do it. Many dont even know if they...]]></description>
      <content:encoded><![CDATA[<div > This article offers a different approach to fighting malware infections.<br/>There is that stigma that users have with a re-install, they are not familiar with how to do it. Many dont even know if they have a restore CD that may have come with their puter when they bought it. </div>
<table cellpadding="0" cellspacing="0" width="100%" style="margin: 12px 0px; font-family: arial; color: #333333; background: #ffffff; border: solid 4px #e5e5e5; width: 100%; clear: left;">
<tr>
<td valign="top">
<table cellpadding="0" cellspacing="0" width="100%" class="CM_CTB_Content_Wrap" style="margin: 0px; padding: 0px;background-color: #ffffff;">
<tr>
<td valign="top">
<table cellpadding="0" cellspacing="0" width="100%" style="border-bottom: solid 1px #dcdcdc; white-space: nowrap; margin-bottom: 8px; background-color: #eeeeee ;background-image: url(http://clipmarks.com/images/source-bg.gif); background-repeat: repeat-x; height: 24px; line-height: 24px; vertical-align: middle; padding-bottom: 4px; color: #666666; font-size: 10px;">
<tr>
<td valign="top"><a href="http://clipmarks.com/clipmark/32FCFB9B-7779-4D5D-A72D-4AF74CDEA753/" title="go to this clipmark"><img src="http://content.clipmarks.com/blog_icon/76350314-72c8-431c-9bcc-ad3ab017ae8e/32FCFB9B-7779-4D5D-A72D-4AF74CDEA753/" alt="" width="19" height="19" border="0" style="vertical-align: middle; margin: 0px 4px; display: inline; border: none; float:none;" /></a>clipped from <a title="http://www.isyougeekedup.com/the-only-way-to-permanently-remove-viruses-spyware-and-malicious-code/" href="http://www.isyougeekedup.com/the-only-way-to-permanently-remove-viruses-spyware-and-malicious-code/" style="font-size: 11px;">www.isyougeekedup.com</a></td>
</tr>
</table>
<table cellpadding="0" cellspacing="0" width="100%" style="text-align: left; padding: 0px 8px; margin: 4px 0px 8px 0px; background: transparent; border: none;">
<tr>
<td valign="top"><!-- CLIPPED FROM: http://www.isyougeekedup.com/the-only-way-to-permanently-remove-viruses-spyware-and-malicious-code/ --><H2 id="post-446"><A rel="bookmark" href="http://www.isyougeekedup.com/the-only-way-to-permanently-remove-viruses-spyware-and-malicious-code/">The Only Way To Permanently Remove Viruses, Spyware, and Malicious Code</A></H2></td>
</tr>
</table>
<div style="height: 2px; font-size: 2px; background: #dcdcdc; border-bottom: solid 1px #f5f5f5; margin: 2px 4px;"></div>
<table cellpadding="0" cellspacing="0" width="100%" style="text-align: left; padding: 0px 8px; margin: 4px 0px 8px 0px; background: transparent; border: none;">
<tr>
<td valign="top"><!-- CLIPPED FROM: http://www.isyougeekedup.com/the-only-way-to-permanently-remove-viruses-spyware-and-malicious-code/ --><P>If you ask any experienced and competent IT professional what to do about an infected system, they should only give you one answer: format your hard drive and reinstall your operating system.? Why skip straight to the format/reinstall and disregard the anti-virus and anti-spyware removal tools?</P></td>
</tr>
</table>
</td>
</tr>
</table>
<div style="margin: 0px 6px 6px 4px;">
<table style="font-size: 11px;border-spacing: 0px;padding: 0px;" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td style="background:transparent;border-width:0px;padding:0px;">&nbsp;</td>
<td align="right" style="background:transparent;border-width:0px;padding:0px;width:107px" width="107"><a href="http://clipmarks.com/share/32FCFB9B-7779-4D5D-A72D-4AF74CDEA753/blog/" title="blog or email this clip"><img src="http://content9.clipmarks.com/images/c2b-foot.png" border="0" alt="blog it" width="107" height="17" style="border-width:0px;padding:0px;margin:0px;" /></a></td>
</tr>
</table>
</div>
</td>
</tr>
</table>
<BR/><MAP name="bdv_RSS_Ad_021208043534"><AREA alt="Feed Ads By BidVertiser.com" shape="poly" coords="0,0,467,0,467,45,315,45,315,59,0,59" href="http://secure.bidvertiser.com/performance/bdv_rss_rd.dbm?pid=165886&amp;bid=400950&amp;PHS=021208043534&amp;click=1" target="_blank" /><AREA alt="Feed Ads By BidVertiser.com" shape="rect" coords="315,45,467,59" href="http://www.bidvertiser.com/bdv/bidvertiser/bdv_ref.dbm?Ref_PID=165886&amp;Ref_Option=main&amp;source=90614506" target="_blank" /></MAP><P><a href="http://secure.bidvertiser.com/performance/bdv_rss_rd.dbm?pid=165886&amp;bid=400950&amp;PHS=021208043534&amp;click=1" target="_blank"><IMG src="http://bdv.bidvertiser.com/BidVertiser.dbm?pid=165886&amp;bid=400950&amp;PHS=021208043534&amp;rssimage=1&amp;rSRC=2" border="0" usemap="#bdv_RSS_Ad_021208043534" /></a></P>]]></content:encoded>
      <pubDate>Tue, 02 Dec 2008 13:35:34 +0000</pubDate>
      <category domain="http://securityratty.com/tag/spyware">spyware</category>
      <category domain="http://securityratty.com/tag/anti-spyware removal tools">anti-spyware removal tools</category>
      <category domain="http://securityratty.com/tag/permanently remove viruses">permanently remove viruses</category>
      <category domain="http://securityratty.com/tag/system">system</category>
      <category domain="http://securityratty.com/tag/malicious code">malicious code</category>
      <category domain="http://securityratty.com/tag/skip straight">skip straight</category>
      <category domain="http://securityratty.com/tag/article offers">article offers</category>
      <category domain="http://securityratty.com/tag/hard drive">hard drive</category>
      <category domain="http://securityratty.com/tag/malware infections">malware infections</category>
      <source url="http://spywarebiz.com/spywarebizblog/?p=668">It makes good sense to just re-install</source>
    </item>
    <item>
      <title><![CDATA[Bill allows victims of identity theft to obtain restitution]]></title>
      <link>http://securityratty.com/article/c1120bc034580fee43963351809a9f60</link>
      <guid>http://securityratty.com/article/c1120bc034580fee43963351809a9f60</guid>
      <description><![CDATA[Finally, criminals can be held responsible for the theft of our personal data


clipped from www.eweek.com

Congress Approves Computer Fraud Bill


The bill amends the federal criminal code to expand...]]></description>
      <content:encoded><![CDATA[<div > Finally, criminals can be held responsible for the theft of our personal data. </div>
<table cellpadding="0" cellspacing="0" width="100%" style="margin: 12px 0px; font-family: arial; color: #333333; background: #ffffff; border: solid 4px #e5e5e5; width: 100%; clear: left;">
<tr>
<td valign="top">
<table cellpadding="0" cellspacing="0" width="100%" class="CM_CTB_Content_Wrap" style="margin: 0px; padding: 0px;background-color: #ffffff;">
<tr>
<td valign="top">
<table cellpadding="0" cellspacing="0" width="100%" style="border-bottom: solid 1px #dcdcdc; white-space: nowrap; margin-bottom: 8px; background-color: #eeeeee ;background-image: url(http://clipmarks.com/images/source-bg.gif); background-repeat: repeat-x; height: 24px; line-height: 24px; vertical-align: middle; padding-bottom: 4px; color: #666666; font-size: 10px;">
<tr>
<td valign="top"><a href="http://clipmarks.com/clip-to-blog/" title="clipmarks' clip-to-blog"><img src="http://content.clipmarks.com/blog_icon/a87ed7a1-2f8b-4e20-b5fb-29b24260d97c/49961837-3FD3-4E0A-9167-54A039DF9B94/" alt="" width="19" height="19" border="0" style="vertical-align: middle; margin: 0px 4px; display: inline; border: none; float:none;" /></a>clipped from <a title="http://www.eweek.com/c/a/Security/Congress-Approves-Computer-Fraud-Bill/" href="http://www.eweek.com/c/a/Security/Congress-Approves-Computer-Fraud-Bill/" style="font-size: 11px;">www.eweek.com</a></td>
</tr>
</table>
<table cellpadding="0" cellspacing="0" width="100%" style="text-align: left; padding: 0px 8px; margin: 4px 0px 8px 0px; background: transparent; border: none;">
<tr>
<td valign="top"><!-- CLIPPED FROM: http://www.eweek.com/c/a/Security/Congress-Approves-Computer-Fraud-Bill/ -->
<div style="margin: 4px 0px; color: #000000; font-size: 20px;">Congress Approves Computer Fraud Bill</div>
</td>
</tr>
</table>
<div style="height: 2px; font-size: 2px; background: #dcdcdc; border-bottom: solid 1px #f5f5f5; margin: 2px 4px;"></div>
<table cellpadding="0" cellspacing="0" width="100%" style="text-align: left; padding: 0px 8px; margin: 4px 0px 8px 0px; background: transparent; border: none;">
<tr>
<td valign="top"><!-- CLIPPED FROM: http://www.eweek.com/c/a/Security/Congress-Approves-Computer-Fraud-Bill/ --><P>The bill amends the federal criminal code to expand<br />
interstate and foreign jurisdiction for prosecution of computer fraud offenses<br />
and imposes criminal and civil forfeitures of property used to commit computer<br />
fraud offenses. In addition, the legislation makes it a felony to damage 10 or<br />
more protected computers used by or for the federal government or a financial<br />
institution.</P></td>
</tr>
</table>
<div style="height: 2px; font-size: 2px; background: #dcdcdc; border-bottom: solid 1px #f5f5f5; margin: 2px 4px;"></div>
<table cellpadding="0" cellspacing="0" width="100%" style="text-align: left; padding: 0px 8px; margin: 4px 0px 8px 0px; background: transparent; border: none;">
<tr>
<td valign="top"><!-- CLIPPED FROM: http://www.eweek.com/c/a/Security/Congress-Approves-Computer-Fraud-Bill/ --><P>The legislation also expands the federal definition of<br />
cyber extortion to include a demand for money in relation to damage to a<br />
protected computer, where such damage was caused to facilitate the extortion.<br />
It also allows victims of identity theft to obtain restitution for time and<br />
money spent to restore credit and imposes a fine and imprisonment for<br />
installing spyware on a computer.</P></td>
</tr>
</table>
</td>
</tr>
</table>
<div style="margin: 0px 6px 6px 4px;">
<table style="font-size: 11px;border-spacing: 0px;padding: 0px;" cellpadding="0" cellspacing="0" width="100%">
<tr>
<td style="background:transparent;border-width:0px;padding:0px;">&nbsp;</td>
<td align="right" style="background:transparent;border-width:0px;padding:0px;width:107px" width="107"><a href="http://clipmarks.com/share/49961837-3FD3-4E0A-9167-54A039DF9B94/blog/" title="blog or email this clip"><img src="http://content8.clipmarks.com/images/c2b-foot.png" border="0" alt="blog it" width="107" height="17" style="border-width:0px;padding:0px;margin:0px;" /></a></td>
</tr>
</table>
</div>
</td>
</tr>
</table>
<BR/><MAP name="bdv_RSS_Ad_170908112807"><AREA alt="Feed Ads By BidVertiser.com" shape="poly" coords="0,0,467,0,467,45,315,45,315,59,0,59" href="http://secure.bidvertiser.com/performance/bdv_rss_rd.dbm?pid=165886&amp;bid=400950&amp;PHS=170908112807&amp;click=1" target="_blank" /><AREA alt="Feed Ads By BidVertiser.com" shape="rect" coords="315,45,467,59" href="http://www.bidvertiser.com/bdv/bidvertiser/bdv_ref.dbm?Ref_PID=165886&amp;Ref_Option=main&amp;source=90614506" target="_blank" /></MAP><P><a href="http://secure.bidvertiser.com/performance/bdv_rss_rd.dbm?pid=165886&amp;bid=400950&amp;PHS=170908112807&amp;click=1" target="_blank"><IMG src="http://bdv.bidvertiser.com/BidVertiser.dbm?pid=165886&amp;bid=400950&amp;PHS=170908112807&amp;rssimage=1&amp;rSRC=2" border="0" usemap="#bdv_RSS_Ad_170908112807" /></a></P>]]></content:encoded>
      <pubDate>Wed, 17 Sep 2008 19:28:07 +0000</pubDate>
      <category domain="http://securityratty.com/tag/computer">computer</category>
      <category domain="http://securityratty.com/tag/computer fraud offenses">computer fraud offenses</category>
      <category domain="http://securityratty.com/tag/identity theft">identity theft</category>
      <category domain="http://securityratty.com/tag/theft">theft</category>
      <category domain="http://securityratty.com/tag/fraud offenses">fraud offenses</category>
      <category domain="http://securityratty.com/tag/obtain restitution">obtain restitution</category>
      <category domain="http://securityratty.com/tag/commit computer">commit computer</category>
      <category domain="http://securityratty.com/tag/imposes criminal">imposes criminal</category>
      <category domain="http://securityratty.com/tag/extortion">extortion</category>
      <source url="http://spywarebiz.com/spywarebizblog/?p=616">Bill allows victims of identity theft to obtain restitution</source>
    </item>
    <item>
      <title><![CDATA[From one geek to another, back up your data!]]></title>
      <link>http://securityratty.com/article/fdb53a2502a0c3d137a21f96b877f364</link>
      <guid>http://securityratty.com/article/fdb53a2502a0c3d137a21f96b877f364</guid>
      <description><![CDATA[Hello all, hope all is well
Last week my wifes puter went BSOD. I ended up doing the Ghost restore back to day one. As I began to put her puter back together with her favorite programs, I hoped she...]]></description>
      <content:encoded><![CDATA[<p>Hello all, hope all is well.</p>
<p>Last week my wifes puter went BSOD. I ended up doing the Ghost restore back to day one. As I began to put her puter back together with her favorite programs, I hoped she had a current backup of her emails and Firefox favs put away somewhere.</p>
<p>She did! I was a happy toad! But for some reason, the backups were not compatible with the restore options with Firefox and Thunderbird.</p>
<p>So she lost all her emails for the last 2 months. The Firefox favs and settings are not a worry so much, but those emails she lost, sad.</p>
<p>So I come to you today thru the zeros and ones of the Internet to tell you,,,,,</p>
<p>Back up you data and make sure the restore options will work. Now I use Mozy and Ive had to do a restore with it in the past and it works great. So dont just be satisfied that you have backups, make sure the restore will work! Try it out. Do a backup and then right away, restore the data and check it.</p>
<p>Heres the <a title="Mozy" href="http://www.mozy.com/?ref=3f9a896b&amp;kbid=38419&amp;m=4&amp;i=77" target="_blank">Mozy</a> link I promote on <a title="SpywareBiz.com" href="http://www.spywarebiz.com/" target="_blank">SpywareBiz.com</a>, give it a try.</p>
]]></content:encoded>
      <pubDate>Sat, 09 Aug 2008 12:02:32 +0000</pubDate>
      <category domain="http://securityratty.com/tag/restore">restore</category>
      <category domain="http://securityratty.com/tag/ghost restore">ghost restore</category>
      <category domain="http://securityratty.com/tag/restore options">restore options</category>
      <category domain="http://securityratty.com/tag/firefox favs">firefox favs</category>
      <category domain="http://securityratty.com/tag/firefox">firefox</category>
      <category domain="http://securityratty.com/tag/data">data</category>
      <category domain="http://securityratty.com/tag/mozy link">mozy link</category>
      <category domain="http://securityratty.com/tag/current backup">current backup</category>
      <category domain="http://securityratty.com/tag/wifes puter">wifes puter</category>
      <source url="http://spywarebiz.com/spywarebizblog/?p=544">From one geek to another, back up your data!</source>
    </item>
    <item>
      <title><![CDATA[Decrypting and Restoring GPcode Encrypted Files]]></title>
      <link>http://securityratty.com/article/e39ad499bbe55c20aca17c7ba23989b4</link>
      <guid>http://securityratty.com/article/e39ad499bbe55c20aca17c7ba23989b4</guid>
      <description><![CDATA[The futile attempt to directly attack the encryption algorithm used by the GPcode ransomware, is prompting Kaspersky Labs to invest in a more pragmatic solutions to the problem , with a new version of...]]></description>
      <content:encoded><![CDATA[<div style="text-align: left;"></div>
<div class="separator" style="text-align: center; clear: both;"></div>
<a href="http://bp1.blogger.com/_wICHhTiQmrA/SGotTuyTE5I/AAAAAAAAB3U/gWdSWKjyPK0/s1600-h/gpcode_initiative.jpg" imageanchor="1" style="border: 0pt none ; background-color: transparent; clear: left; margin-bottom: 1em; float: left; margin-right: 1em;"><img src="http://bp1.blogger.com/_wICHhTiQmrA/SGotTuyTE5I/AAAAAAAAB3U/zT9QFXjWmFE/s200-R/gpcode_initiative.jpg" style="border: 0pt none ;" /></a>The futile attempt to directly attack the encryption algorithm used by the GPcode ransomware, is prompting Kaspersky Labs to invest in a more <a href="http://www.viruslist.com/en/weblog?weblogid=208187538">pragmatic solutions to the problem</a>, with <a href="http://www.viruslist.com/en/viruses/encyclopedia?virusid=313444#doc2">a new version of the StopGpcode tool</a> released last week. More info :<br />
<br />
"<i>It turns out that if a user has files that are encrypted by Gpcode and versions of those same files that are unencrypted, then the pairs of files (the encrypted and corresponding unencrypted file) can be used to restore other files on the victim machine. This is the method that the StopGpcode2 tool uses.</i><br />
<br />
<i>Where can these unencrypted files be found? They may be the result of using PhotoRec. Moreover, these files may be found in a backup storage or on removable media (e.g., the original files of photographs copied to the hard disk of a computer that has been attacked by Gpcode may still be on a camera’s memory card). Unencrypted files may also have been saved somewhere on a network resource (e.g., films or video clips on a public server) that the Gpcode virus has not reached.</i>"<br />
<br />
As <a href="http://www.securityfocus.com/news/11523/2">the customer support desk behind GPcode pointed out in an interview</a>, the malware is prone to evolve, and the simplistic file deletion process will be replaced by secure file deletion in order to render all data recovery tols useless, unless of course backups of the affected data are available. They often aren't, and depending on the importance of the files encrypted, the successful ransom is all a matter of the momentum. <br />
<br />
<span class="body">"<i>A person, presumably the author of Gpcode, contacted at <a href="http://ddanchev.blogspot.com/2008/06/whos-behind-gpcode-ransomware.html" target="_blank">one of the e-mail addresses</a> left behind by the program stated that future development efforts will likely increase the key size to 4,096 bits, "if AV companies or other (people) crack the current key, but (that's) impossible. </i></span><i><span class="body">The self-proclaimed author, who used the name "Daniel Robertson," also said that other standard techniques to defeat antivirus will be added, including polymorphic encryption, anti-heuristic features and the ability to self propagate, turning the program into a computer virus.</span><span class="body"> </span>It well pays back itself," he said</i>"<br />
<br />
There are even more pragmatic approaches to dealing with this problem, next to backups undermining their business model. <a href="http://blogs.zdnet.com/security/?p=1259">Try following the virtual money for instance</a>.<br />
<span class="body"> </span><span class="body"></span><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=4JuTFJ"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=4JuTFJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=CtTuIJ"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=CtTuIJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=UH6vhj"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=UH6vhj" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=rZfGRj"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=rZfGRj" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=602SKJ"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=602SKJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=XhBjBJ"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=XhBjBJ" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?a=9PpNFj"><img src="http://feeds.feedburner.com/~f/DanchoDanchevOnSecurityAndNewMedia?i=9PpNFj" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~4/324045050" height="1" width="1"/>]]></content:encoded>
      <pubDate>Tue, 01 Jul 2008 04:26:39 +0000</pubDate>
      <category domain="http://securityratty.com/tag/files">files</category>
      <category domain="http://securityratty.com/tag/gpcode">gpcode</category>
      <category domain="http://securityratty.com/tag/original files">original files</category>
      <category domain="http://securityratty.com/tag/gpcode virus">gpcode virus</category>
      <category domain="http://securityratty.com/tag/gpcode ransomware">gpcode ransomware</category>
      <category domain="http://securityratty.com/tag/file">file</category>
      <category domain="http://securityratty.com/tag/secure file deletion">secure file deletion</category>
      <category domain="http://securityratty.com/tag/computer virus">computer virus</category>
      <category domain="http://securityratty.com/tag/key">key</category>
      <source url="http://feeds.feedburner.com/~r/DanchoDanchevOnSecurityAndNewMedia/~3/324045050/decrypting-and-restoring-gpcode.html">Decrypting and Restoring GPcode Encrypted Files</source>
    </item>
    <item>
      <title><![CDATA[Backup Exec System Recovery Server Edition 8 Trialware]]></title>
      <link>http://securityratty.com/article/6b861b75a6d249df526910d44ea16d20</link>
      <guid>http://securityratty.com/article/6b861b75a6d249df526910d44ea16d20</guid>
      <description><![CDATA[Source: Symantec) Symantec Backup Exec System Recovery 8 is the gold standard in complete Windows system recovery with the ability to restore systems in minutes, even to dissimilar hardware or virtual...]]></description>
      <content:encoded><![CDATA[<b>(Source: Symantec)</b>  Symantec Backup Exec&trade; System Recovery 8 is the gold standard in complete Windows&reg; system recovery with the ability to restore systems in minutes, even to dissimilar hardware or virtual environments. Now includes flexible offsite protection and enhanced data recovery capabilities, integration with Symantec security and systems management solutions, and support for Windows Server 2008.
<p><a href="http://feeds.computerworld.com/~a/Computerworld/Security/News?a=Rgr7yj"><img src="http://feeds.computerworld.com/~a/Computerworld/Security/News?i=Rgr7yj" border="0"></img></a></p><img src="http://feeds.computerworld.com/~r/Computerworld/Security/News/~4/315646667" height="1" width="1"/>]]></content:encoded>
      <pubDate>Thu, 19 Jun 2008 09:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/symantec">symantec</category>
      <category domain="http://securityratty.com/tag/symantec security">symantec security</category>
      <category domain="http://securityratty.com/tag/systems management solutions">systems management solutions</category>
      <category domain="http://securityratty.com/tag/data recovery capabilities">data recovery capabilities</category>
      <category domain="http://securityratty.com/tag/gold standard">gold standard</category>
      <category domain="http://securityratty.com/tag/windows server">windows server</category>
      <category domain="http://securityratty.com/tag/restore systems">restore systems</category>
      <category domain="http://securityratty.com/tag/dissimilar hardware">dissimilar hardware</category>
      <category domain="http://securityratty.com/tag/virtual environments">virtual environments</category>
      <source url="http://feeds.computerworld.com/~r/Computerworld/Security/News/~3/315646667/whitepapers.do">Backup Exec System Recovery Server Edition 8 Trialware</source>
    </item>
    <item>
      <title><![CDATA[Best Practices for Backup and Recovery Webcast]]></title>
      <link>http://securityratty.com/article/ab3791fc9c2af5effc0e6f95f5052429</link>
      <guid>http://securityratty.com/article/ab3791fc9c2af5effc0e6f95f5052429</guid>
      <description><![CDATA[Source: Symantec) Data and system loss - from a hard drive failure, malicious attack, natural disaster, or simple human error - can happen anytime. Dont leave your business vulnerable. Make sure you...]]></description>
      <content:encoded><![CDATA[<b>(Source: Symantec)</b>  Data and system loss - from a hard drive failure, malicious attack, natural disaster, or simple human error - can happen anytime. Dont leave your business vulnerable.  Make sure you have a secure recovery strategy in place. Symantec's latest backup and system recovery technology can efficiently restore critical applications, individual emails and documents and even restore your entire system in minutes in the event of a loss.
<p><a href="http://feeds.computerworld.com/~a/Computerworld/Security/News?a=oC9wVb"><img src="http://feeds.computerworld.com/~a/Computerworld/Security/News?i=oC9wVb" border="0"></img></a></p><img src="http://feeds.computerworld.com/~r/Computerworld/Security/News/~4/314923270" height="1" width="1"/>]]></content:encoded>
      <pubDate>Wed, 18 Jun 2008 09:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/hard drive failure">hard drive failure</category>
      <category domain="http://securityratty.com/tag/loss">loss</category>
      <category domain="http://securityratty.com/tag/simple human error">simple human error</category>
      <category domain="http://securityratty.com/tag/system recovery technology">system recovery technology</category>
      <category domain="http://securityratty.com/tag/secure recovery strategy">secure recovery strategy</category>
      <category domain="http://securityratty.com/tag/system loss">system loss</category>
      <category domain="http://securityratty.com/tag/individual emails">individual emails</category>
      <category domain="http://securityratty.com/tag/symantec">symantec</category>
      <category domain="http://securityratty.com/tag/backup">backup</category>
      <source url="http://feeds.computerworld.com/~r/Computerworld/Security/News/~3/314923270/webcast.do">Best Practices for Backup and Recovery Webcast</source>
    </item>
    <item>
      <title><![CDATA[Sandown Health Centre backup tape is missing]]></title>
      <link>http://securityratty.com/article/930fdb89c35f1b9172d20874c9f9d1a1</link>
      <guid>http://securityratty.com/article/930fdb89c35f1b9172d20874c9f9d1a1</guid>
      <description><![CDATA[Technorati Tag: Security Breach

Date Reported
5/19/08

Organization
NHS Trust

Contractor/Consultant/Branch
Isle of Wight NHS Primary Care Trust
Sandown Health Centre
City Link (the courier

Victims...]]></description>
      <content:encoded><![CDATA[Technorati Tag: <a href="http://technorati.com/tag/security+breach" rel="tag">Security Breach</a><br><br>
<img src="http://breachblog.com/images/95781-88451/sandown.jpg" align="right" height="29" width="200"><font size="2"><span style="font-weight: bold;">Date Reported: </span><br>5/19/08<br><br><span style="font-weight: bold;">Organization: </span><br><a href="http://www.nhs.uk/Pages/homepage.aspx">NHS Trust</a> <br><br><span style="font-weight: bold;">Contractor/Consultant/Branch:</span><br><a href="http://www.iow.nhs.uk/asp/homepage/index.asp">Isle of Wight NHS Primary Care Trust</a> <br><a href="http://www.nhs.uk/ServiceDirectories/Pages/GP.aspx?pid=D77FB639-8C33-4021-9A2E-ABF2604323B8">Sandown Health Centre</a> <br>City Link (the courier)<br><br><span style="font-weight: bold;">Victims:</span><br>Patients<br><br><span style="font-weight: bold;">Number Affected:</span><br>38,650<br><br><span style="font-weight: bold;">Types of Data:</span><br>Medical records<br><br><span style="font-weight: bold;">Breach Description:</span><br>"The Isle of Wight NHS Primary Care Trust and the Sandown Health Centre are taking action to reassure patients after a computer tape containing their personal details went missing."<br><br><span style="font-weight: bold;">Reference URL:</span><br><a href="http://www.iow.nhs.uk/asp/news/index.asp?record=612&amp;articleID=346">Isle of Wight NHS Primary Care Trust News</a> <br><a href="http://ukpress.google.com/article/ALeqM5hLCDEeZ9Si_WA79rk9gW-sEXK0cw">The Press Association</a> <br><a href="http://news.bbc.co.uk/2/hi/uk_news/england/hampshire/7410119.stm">BBC News</a> <br><a href="http://www.ehiprimarycare.com/news/3780/records_of_38000_isle_of_wight_patients_lost">eHealth Insider</a> <br><br><span style="font-weight: bold;">Report Credit:</span><br>The Press Association<br><br><span style="font-weight: bold;">Response:</span><br>From the online sources cited above:<br><br>The Isle of Wight NHS Primary Care Trust and the Sandown Health Centre are taking action to reassure patients after a computer tape containing their personal details went missing.<br><br>The tape was sent in March to a London-based specialist GP software company who are responsible for maintaining their clinical software.<br><br>They carry out checks on computer back-up tapes to make sure they could be used effectively to restore information to the practice computer system in the event of a system failure or other emergency such as a fire.<br><br>Unfortunately, the tape has not been received back at the Health Centre, having been despatched by the company through a courier service in March.<br><br>Sent on 11 March, it took two months before the tape’s disappearance was discovered by INPS and the PCT.<br><span style="font-style: italic;">[Evan] The amount of time that it took to notice that the tape was missing is cause for concern.</span><br><br>The tape was meant to be tracked at every stage by City Link to ensure it reached its destination - the courier firm admitted this had not happened and it is now investigating the loss.<br><br>A spokesperson said: "We are naturally very concerned by the loss of our customer’s consignment and a rigorous search for the parcel continues. We are doing everything in our power to resolve the matter and return the package as quickly as possible."<br><br>It is presumed that the tape has been lost, possibly permanently, although all possible efforts are being made to try and find it.<br><br>The tape contains medical records of 38,650 current and past patients of the Health Centre from July 1996 onwards.<br><br>It includes all current patients and large numbers of patients who registered on a temporary basis whilst visiting or working on the Island and patients who have since transferred to practices elsewhere.<br><br>It is standard practice for GPs to hold patient details for at least ten years after they are no longer registered with them.<br><span style="font-style: italic;">[Evan] Some of the information on the tape dates back 12 years, but that is still in accordance with "at least ten years".</span><br><br>the risk of the tape being misused is extremely small<br><br>The tape requires specialist computer equipment to run it and the data is password protected.<br><br>In addition, highly advanced computer skills and/or access to a specialist programme only normally used by GPs and the data verification company are needed to make any sense of the information on the tape.<br><span style="font-style: italic;">[Evan] According to the <a href="http://www.ehiprimarycare.com/news/3780/records_of_38000_isle_of_wight_patients_lost">eHealth Insider</a> story the tape was encrypted.&nbsp; Is the "specialist programme"?&nbsp; If this is the case, and presuming that good password management practices were followed, then I agree with the assessment that the risk of disclosure is probably small.</span><br><br>The PCT is working with the practice to contact as many patients as possible and is in the process of writing to those who are currently still registered with the practice.<br><br>a dedicated telephone helpline has been set up and can be contacted on 0845 602 6834 between 8am and 8pm from Monday to Friday<br><br>The Interim Chief Executive of the PCT, Margaret Pratt, said:&nbsp; "Although there is very little chance of anyone being able to do anything untoward with this tape, should they find it, it is potentially a very serious loss of confidential information.<br><br>"It is important that everyone concerned continues to do everything possible to try and locate the tape and that is happening.&nbsp; It is equally important that we provide reassurance to patients over the level of risk that their personal information could be misused and I am confident that risk is extremely small."<br><br>"I should stress that neither the Health Centre nor the NHS more widely on the Island are in any way responsible for this tape going missing.&nbsp; However, we will, of course, be reviewing the procedures used for data verification by practices to see if there are lessons to learn."<br><br>Dr Peter Randall, Senior Partner at the Sandown Health Centre, added:&nbsp; "We have another copy of the back-up tape and our main computer records system is not affected by this. So we still have access to all the information we need and patient care is not compromised in any way."<br><br>"My own view is also that the risk of any harm resulting is minimal.&nbsp; My own family are registered as patients at this practice which means their details are amongst those on the tape.&nbsp; I have no worries about the information falling into the wrong hands and being used improperly."<br><br>The incident comes five months after NHS chief executive David Nicholson wrote to all NHS trust chief executives telling them to review and tighten their information governance and data transfer arrangements.<br><span style="font-style: italic;">[Evan] Unfortunately, it took a number of breaches before Mr. Nicholson issued his directive.&nbsp; Better late than never.&nbsp; He should be commended in regards to the directive.&nbsp; My hope is that the NHS follows good information security governance practices and continually strives to improve their information security program(s).</span><br><br><span style="font-weight: bold;">Commentary:</span><br>There was no mention (unless I missed it) of encryption in the official Isle of Wight NHS news announcement.&nbsp; The encryption mention comes in the <a href="http://www.ehiprimarycare.com/news/3780/records_of_38000_isle_of_wight_patients_lost">eHealth Insider</a> report.&nbsp; It is also not clear what "medical records" entails exactly. <br><br><span style="font-weight: bold;">Past Breaches:</span><br>NHS Trust:<br>March, 2008 - <a href="http://breachblog.com/2008/03/06/telford.aspx">Stolen NHS flash drive contained adolescent information</a> <br>February, 2008 - <a href="http://breachblog.com/2008/02/15/dudley.aspx">Laptop missing from Russells Hall Hospital (UK)</a> <br>January, 2008 - <a href="http://breachblog.com/2008/02/04/boltonfeb.aspx">Stolen Bolton Hospitals Laptop affects cancer patients </a><br>January, 2008 - <a href="http://breachblog.com/2008/01/22/sidcup.aspx">Queen Mary's Sidcup Hospital microfiche film goes missing </a><br>January, 2008 - <a href="http://breachblog.com/2008/01/21/stockport.aspx">Stockport Primary Care Trust flash drive goes missing </a><br>January, 2008 - <a href="http://breachblog.com/2008/01/11/oldham.aspx">Oldham Primary Care Trust NHS loses two data sticks </a><br>January, 2008 - <a href="http://breachblog.com/2008/01/10/kingstonnhs.aspx">Highly sensitive medical information found in the road </a><br>December, 2007 - <a href="http://breachblog.com/2007/12/19/bolton.aspx">Laptop stolen in Royal Bolton Hospital break-in </a><br>September, 2007 - <a href="http://breachblog.com/2007/09/16/nhs.aspx">Dudley Group of Hospitals NHS Patient Data For Sale on eBay </a></font><br><br>
<script src="http://feeds.feedburner.com/%7Es/breachblog?i=http://breachblog.com/2008/05/27/sandown.aspx" type="text/javascript" charset="utf-8"></script>]]></content:encoded>
      <pubDate>Tue, 27 May 2008 09:14:16 +0000</pubDate>
      <category domain="http://securityratty.com/tag/tape">tape</category>
      <category domain="http://securityratty.com/tag/health centre">health centre</category>
      <category domain="http://securityratty.com/tag/sandown health centre">sandown health centre</category>
      <category domain="http://securityratty.com/tag/data verification">data verification</category>
      <category domain="http://securityratty.com/tag/data verification company">data verification company</category>
      <category domain="http://securityratty.com/tag/back-up tape">back-up tape</category>
      <category domain="http://securityratty.com/tag/computer tape">computer tape</category>
      <category domain="http://securityratty.com/tag/information">information</category>
      <category domain="http://securityratty.com/tag/personal information">personal information</category>
      <source url="http://breachblog.com/2008/05/27/sandown.aspx">Sandown Health Centre backup tape is missing</source>
    </item>
    <item>
      <title><![CDATA[Ted Kennedy: a lifetime of achievement, regrets of a world that could have been]]></title>
      <link>http://securityratty.com/article/46c0e216b7084846a34fe3d594d53e76</link>
      <guid>http://securityratty.com/article/46c0e216b7084846a34fe3d594d53e76</guid>
      <description><![CDATA[I usually stay away from politics on my blog. As I have said before, it is my blog and I can write what I want, but politics usually is just to controversial for me to write on. Upon hearing the...]]></description>
      <content:encoded><![CDATA[
<div xmlns="http://www.w3.org/1999/xhtml"><div>I usually stay away from politics on my blog. As I have said before, it is my blog and I can write what I want, but politics usually is just to controversial for me to write on. Upon hearing the <a href="http://news.yahoo.com/s/ap/20080521/ap_on_re_us/kennedy">terrible news</a> about Ted Kennedy's malignant brain tumor, I was moved to write something, than thought twice about it and thought yet again. However, Ted Kennedy and his life and times has been such an influence and part of my life, that I am compelled to write. So on this night where it appears that an African-American has won <a href="http://www.cnn.com/2008/POLITICS/02/29/delegate.counter/index.html?iref=mpstoryview">a majority of the pledged delegates</a> of the Democratic Party, while running against a woman, I think it only fitting to remember Ted Kennedy. I do not mean this as a eulogy or obituary and in fact hope against all that I have read and heard that a miracle will grant him many more years of serving in the Senate. But it seems Teddy has a tough road ahead and this is as good as a time as any to speak out.<br /><br />One of my earliest memories of current events was when Ted's brother John was assassinated. I was a little boy playing catch with my Dad when my Mom came to the door and called us in because something terrible had happened. I didn't really understand, but my parents told me that the President (who I had seen with VP Johnson drive by in a motorcade months before) had been shot. I don't remember a lot more of the details, but do remember Oswald getting shot and some pictures of the funeral. The mind of a young boy is quickly filled with other things though and I moved on past that horrific November day.</div>

<div> <br />Next when I was a bit older, the crazy year of '68 was upon us. I was still fairly young, but I remember riots in the cities, pictures on the news of the war and Bobby Kennedy, the Senator from NY running for President when President Johnson said he would not run. Martin Luther King was shot and killed and so was Bobby shortly after. By now I was old enough to realize the tragedy of these killings. I remember hearing Teddy's eulogy of Bobby and thinking what a terrible thing to have happened to this family, losing two of their sons like this. <br /><br />For me it was the start of a life long interest in all things Kennedy. I read many books about all of the Kennedy's and lamented what could have been if not for the bullets that killed first John and than Bobby. A key part of my core political beliefs was that if John Kennedy would have served out his first term and been re-elected, how different the world would have been.&nbsp; If Bobby Kennedy had been elected President instead of Nixon, what would the world look like now? There was always a sense that Teddy, the baby Kennedy brother would rise up and take the mantle and place that seemed to belong to this family. He would restore Camelot. Alas it was not to be. His time just never came. Though he ran a noble race, Chappaquiddick haunted and doomed his candidacy. After that Teddy was the patron of a family that just seemed unable to escape tragedy. One mishap after another befell this family that had been previously granted so much good fortune. It truly did seem as if they were cursed. Teddy himself had his ups and downs with drinking and divorce and the health of his children. Though he asked us to never let the dream die, the legacy of Camelot did seem to pass on.<br /><br />Through it all Ted Kennedy continued to do good work for this country in the Senate. Looking back Teddy's legislative record has probably had more of an influence on this country than either of his brothers had. His name is attached to many of the greatest laws passed over the last 40 years. Teddy was also a great orator. Many say that his <a href="http://www.youtube.com/watch?v=ydHc-ExClqw">finest speech was as the keynote speaker</a> at the 1980 Democratic Convention, when he mounted his challenge to a sitting President Carter. But for me Teddy's finest moment was in delivering the eulogy for his brother Bobby. The &quot;some man ask why, Bobby dreamed of what could be and asked why not&quot; speech never ceases to move me. I include this You Tube as a tribute to Ted Kennedy and all that he and his brothers meant to me along with my prayers for a recovery from this terrible condition.</div>

<div class="youtube-video"><embed src="http://www.youtube.com/v/FiCLi9ddqlM" width="425" height="355" type="application/x-shockwave-flash" wmode="transparent"></embed> </div></div>

<p><a href="http://feeds.feedburner.com/~a/StillsecureAfterAllTheseYears?a=1oE6ag"><img src="http://feeds.feedburner.com/~a/StillsecureAfterAllTheseYears?i=1oE6ag" border="0"></img></a></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=MMYVHH"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=MMYVHH" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=cQDvkH"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=cQDvkH" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=BHEnLH"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=BHEnLH" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=bRDG6H"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=bRDG6H" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=Q8X8mh"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=Q8X8mh" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?a=HIvGxh"><img src="http://feeds.feedburner.com/~f/StillsecureAfterAllTheseYears?i=HIvGxh" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/StillsecureAfterAllTheseYears/~4/294782921" height="1" width="1"/>]]></content:encoded>
      <pubDate>Tue, 20 May 2008 20:04:43 +0000</pubDate>
      <category domain="http://securityratty.com/tag/ted kennedy">ted kennedy</category>
      <category domain="http://securityratty.com/tag/kennedy">kennedy</category>
      <category domain="http://securityratty.com/tag/remember ted kennedy">remember ted kennedy</category>
      <category domain="http://securityratty.com/tag/ted">ted</category>
      <category domain="http://securityratty.com/tag/john kennedy">john kennedy</category>
      <category domain="http://securityratty.com/tag/bobby kennedy">bobby kennedy</category>
      <category domain="http://securityratty.com/tag/bobby">bobby</category>
      <category domain="http://securityratty.com/tag/bobby shortly">bobby shortly</category>
      <category domain="http://securityratty.com/tag/remember">remember</category>
      <source url="http://feeds.feedburner.com/~r/StillsecureAfterAllTheseYears/~3/294782921/ted-kennedy-a-l.html">Ted Kennedy: a lifetime of achievement, regrets of a world that could have been</source>
    </item>
    <item>
      <title><![CDATA[Economic Downturn Reduces Security]]></title>
      <link>http://securityratty.com/article/18d3303714b6482d3ec23618c31674f4</link>
      <guid>http://securityratty.com/article/18d3303714b6482d3ec23618c31674f4</guid>
      <description><![CDATA[Even if the tech industry itself is still steaming along at full speed (questionable), the overall tilt of the American economy has an ominous feel for the near future of info and network security...]]></description>
      <content:encoded><![CDATA[<p>Even if the tech industry itself is still steaming along at full speed (questionable), the overall tilt of the American economy has an ominous feel for the near future of info and network security. </p>
<p>Today Allan Pomerantz at the InfoSec blog takes a look at how the sub-prime crisis in particular might be affecting security at financial institutions &#8212; </p>
<blockquote><p>In order to help restore their balance sheets, these institutions are announcing extensive expense reductions, particularly layoffs. Of course, the details of these cutbacks are not announced, so the result of this situation on their information security cannot be known. However, there are three results that are quite feasible in this situation.</p>
<p> * First, the staff reductions likely include security personnel.<br /> * Second, the capital spending reductions may include security infrastructure.<br /> * Third, and perhaps most important, the number of “insiders” (i.e., employees and contractors) who have a motivation to cause harm to their employers will probably increase.</p>
<p>This could be a volatile mix.</p></blockquote>
<p>He also offers a couple suggestions. Go read the <a rel="nofollow" target="_blank" href="http://www.bloginfosec.com/2008/05/13/human-fallout-and-the-security-impact-of-the-sub-prime-crisis/">full post </a>to learn more.</p>]]></content:encoded>
      <pubDate>Tue, 13 May 2008 07:55:19 +0000</pubDate>
      <category domain="http://securityratty.com/tag/security">security</category>
      <category domain="http://securityratty.com/tag/information security">information security</category>
      <category domain="http://securityratty.com/tag/include security personnel">include security personnel</category>
      <category domain="http://securityratty.com/tag/extensive expense reductions">extensive expense reductions</category>
      <category domain="http://securityratty.com/tag/include security infrastructure">include security infrastructure</category>
      <category domain="http://securityratty.com/tag/reductions">reductions</category>
      <category domain="http://securityratty.com/tag/network security">network security</category>
      <category domain="http://securityratty.com/tag/institutions">institutions</category>
      <category domain="http://securityratty.com/tag/infosec blog takes">infosec blog takes</category>
      <source url="http://feeds.feedburner.com/~r/itsecurity/~3/289657690/">Economic Downturn Reduces Security</source>
    </item>
    <item>
      <title><![CDATA[Former employee exposes Purdue Pharma personal information]]></title>
      <link>http://securityratty.com/article/5567080eb516a43807499e1350da7025</link>
      <guid>http://securityratty.com/article/5567080eb516a43807499e1350da7025</guid>
      <description><![CDATA[Technorati Tag: Security Breach

Date Reported
4/14/08 (delayed

Organization
Purdue Pharma L.P

Contractor/Consultant/Branch
None

Victims
Employees

Number Affected
5,000

Types of Data
names, dates...]]></description>
      <content:encoded><![CDATA[Technorati Tag: <a href="http://technorati.com/tag/security+breach" rel="tag">Security Breach</a><br><br>
<img src="http://breachblog.com/images/95781-88451/purdue.jpg" align="right" height="58" width="151"><font size="2"><span style="font-weight: bold;">Date Reported: </span><br>4/14/08 (delayed)<br><br><span style="font-weight: bold;">Organization: </span><br><a href="http://www.purduepharma.com">Purdue Pharma L.P.</a> <br><br><span style="font-weight: bold;">Contractor/Consultant/Branch:</span><br>None<br><br><span style="font-weight: bold;">Victims:</span><br>Employees<br><br><span style="font-weight: bold;">Number Affected:</span><br>~5,000<br><br><span style="font-weight: bold;">Types of Data:</span><br>"names, dates of birth, Social Security numbers and other pension related information"<br><br><span style="font-weight: bold;">Breach Description:</span><br>"a former employee accessed a disk containing personal information about individuals employed by Purdue Pharma and its associated U.S. companies prior to December 31, 2003 and attempted to email some of the information on the disk to another person"<br><br><span style="font-weight: bold;">Reference URL:</span><br><a href="http://doj.nh.gov/consumer/pdf/purduepharma.pdf">The New Hampshire State Attorney General breach notification</a> <br><br><span style="font-weight: bold;">Report Credit:</span><br>The New Hampshire State Attorney General<br><br><span style="font-weight: bold;">Response:</span><br>From the online source cited above:<br><br>We are writing to inform you about an incident affecting information maintained by Purdue Pharma L.P. ("Purdue Pharma")<br><br>Purdue Pharma is a privately held pharmaceutical company.<br><br>we recently learned that a former employee accessed a disk containing personal information about individuals employed by Purdue Pharma and its associated U.S. companies prior to December 31, 2003 and attempted to email some of the information on the disk to another person.<br><span style="font-style: italic;">[Evan] Attempted?&nbsp; What prevented the former employee from actually sending the information?&nbsp; It's not clear why the former employee wanted to send the information either.</span><br><br>We have determined that the disk contained information concerning approximately 5,000 individuals, and included names, dates of birth, Social Security numbers and other pension related information.<br><br>The former employee retained the disk when his employment ended, in direct violation of our policies and standard confidentiality agreement.<br><span style="font-style: italic;">[Evan] This former employee may not have given a damn.</span><br><br>As soon as we learned of the unauthorized access, we promptly demanded that the information be deleted and returned to us.<br><br>The original disk has been returned and we believe that all copies of the information have been deleted.<br><span style="font-style: italic;">[Evan] Once information confidentiality has been compromised it is very difficult (some would argue impossible) to restore it.&nbsp; How can you be certain that the information has been deleted?</span><br style="font-style: italic;"><br>We have undertaken a thorough investigation of this matter and, based on results of that investigation to date, we have no reason to believe that the personal information was misused.<br><span style="font-style: italic;">[Evan] Actually, there is EVERY reason to believe that the personal information was misused!&nbsp; If the information was used in a manner that was not permitted by the owner (the victim), then it was misused.&nbsp; That’s my definition anyway.</span><br style="font-style: italic;"><br>We are continuing to investigate the incident and are examining the measures we can take to help prevent incidents of this kind from happening again.<br><br>Even though we believe that there is little risk of fraud or identity theft against the individuals as a result of this incident, we are providing the potentially affected individuals, at our cost, with the identity theft protection services in the attached notification letter, for two years.<br><span style="font-style: italic;">[Evan] If there is "little risk of fraud", then why spend thousands of dollars in notification (because it’s the law, I suppose) and identity theft protection (not required by law)?</span><br><br>Purdue has contracted to provide a two year subscription to TrustedID's IDFreeze.<br><span style="font-style: italic;">[Evan] The cost of </span><a style="font-style: italic;" href="https://www.trustedid.com/registration/identity_theft_protection_products_signup1.php">IDFreeze</a><span style="font-style: italic;"> is $8.25/mo.&nbsp; I am almost certain that Purdue isn't paying this full price and there is a good chance that not all affected persons will enroll, but for demonstration purposes only, $8.25/mo. x 5,000 subscriptions x 24 months = $990,000!</span><br><br>We deeply regret that this incident occurred and take very seriously our obligation to protect the privacy of personal information.<br><br><span style="font-weight: bold;">Commentary:</span><br>Employee and former employee information misuse is a very challenging issue for information security professionals.&nbsp; It's tough to comment because we don't have much detail about what controls are already in place. <br><br><span style="font-weight: bold;">Past Breaches:</span><br>Unknown</font><br><br>
<script src="http://feeds.feedburner.com/%7Es/breachblog?i=http://breachblog.com/2008/05/12/purdue.aspx" type="text/javascript" charset="utf-8"></script>]]></content:encoded>
      <pubDate>Mon, 12 May 2008 14:44:52 +0000</pubDate>
      <category domain="http://securityratty.com/tag/information">information</category>
      <category domain="http://securityratty.com/tag/personal information">personal information</category>
      <category domain="http://securityratty.com/tag/information security professionals">information security professionals</category>
      <category domain="http://securityratty.com/tag/purdue pharma">purdue pharma</category>
      <category domain="http://securityratty.com/tag/purdue">purdue</category>
      <category domain="http://securityratty.com/tag/information confidentiality">information confidentiality</category>
      <category domain="http://securityratty.com/tag/employee information misuse">employee information misuse</category>
      <category domain="http://securityratty.com/tag/employee">employee</category>
      <category domain="http://securityratty.com/tag/original disk">original disk</category>
      <source url="http://breachblog.com/2008/05/12/purdue.aspx">Former employee exposes Purdue Pharma personal information</source>
    </item>
  </channel>
</rss>
