<?xml version="1.0" encoding="utf-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" version="2.0">
  <channel>
    <title><![CDATA[[SecurityRatty] tag: ties]]></title>
    <link>http://securityratty.com/tag/ties</link>
    <description></description>
    <pubDate>Wed, 11 Jun 2008 20:00:00 +0000</pubDate>
    <generator>iRatty Engine</generator>
    <docs>http://blogs.law.harvard.edu/tech/rss</docs>
    <item>
      <title><![CDATA[Links for 2008-10-07 [del.icio.us]]]></title>
      <link>http://securityratty.com/article/a4fb4cbc59a38a25b05ab5b59e8dcf10</link>
      <guid>http://securityratty.com/article/a4fb4cbc59a38a25b05ab5b59e8dcf10</guid>
      <description><![CDATA[Insider Threat Example: Medco Employee Indicted for Planting Computer Logic Bomb - Realtime IT Compliance
Latest Ponemon Institute Study Ties Lack of Awareness at Executive Level to Insider Threat...]]></description>
      <content:encoded><![CDATA[<ul>
<li><a href="http://www.realtime-itcompliance.com/information_security/2007/01/insider_threat_example_medco_e.htm">Insider Threat Example: Medco Employee Indicted for Planting Computer Logic Bomb&nbsp;-&nbsp;Realtime IT Compliance</a></li>
<li><a href="http://press-releases.techwhack.com/4152-ponemon-institute">Latest Ponemon Institute Study Ties Lack of Awareness at Executive Level to Insider Threat Challenges</a></li>
<li><a href="http://securityviews.com/blog/2007/03/13/its-not-that-you-cant-trust-them-but/">It&rsquo;s not that you can&rsquo;t trust them, but&hellip; | Scott Wright's Security Views</a></li>
<li><a href="http://www.cmu.edu/eddy/">Project EDDY - Home Page</a></li>
<li><a href="http://redmondmag.com/features/article.asp?editorialsid=639">Redmond | Feature Article: IT Gone Bad</a></li>
<li><a href="http://www.cs.sandia.gov/sisyphus/">Sisyphus: an event log data-mining toolkit</a></li>
<li><a href="http://www.metricscenter.org/index.php/resourcesmain/articles">Security Metrics</a></li>
<li><a href="http://taosecurity.blogspot.com/2007/02/combat-insider-threats-with.html">TaoSecurity: Combat Insider Threats with Nontechnical Means</a></li>
<li><a href="http://taosecurity.blogspot.com/2006/12/incorrect-insider-threat-perceptions.html">TaoSecurity: Incorrect Insider Threat Perceptions</a></li>
<li><a href="http://taosecurity.blogspot.com/2006/09/insider-threat-study.html">TaoSecurity: Insider Threat Study</a></li>
<li><a href="http://www.infoassurance.org/x9-95.htm">TTS</a></li>
<li><a href="http://www.codeplex.com/visuallogparser">Visual Log Parser - Home</a></li>
<li><a href="http://www.tssci-security.com/archives/2008/09/11/web-application-security-tomorrow/">Web Application Security Tomorrow | tssci security</a></li>
<li><a href="http://corp-integrity.blogspot.com/2008/10/grc-20-grc-ecosystem.html">Corporate Integrity, LLC: GRC 2.0 the GRC EcoSystem</a></li>
</ul><img src="http://feeds.feedburner.com/~r/AntonChuvakinPersonalBlog/~4/414485586" height="1" width="1"/>]]></content:encoded>
      <pubDate>Tue, 07 Oct 2008 20:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/insider threat challenges">insider threat challenges</category>
      <category domain="http://securityratty.com/tag/insider threat">insider threat</category>
      <category domain="http://securityratty.com/tag/insider threat study">insider threat study</category>
      <category domain="http://securityratty.com/tag/home page">home page</category>
      <category domain="http://securityratty.com/tag/visual log parser">visual log parser</category>
      <category domain="http://securityratty.com/tag/home">home</category>
      <category domain="http://securityratty.com/tag/taosecurity">taosecurity</category>
      <category domain="http://securityratty.com/tag/grc ecosystem">grc ecosystem</category>
      <category domain="http://securityratty.com/tag/grc">grc</category>
      <source url="http://feeds.feedburner.com/~r/AntonChuvakinPersonalBlog/~3/414485586/anton18">Links for 2008-10-07 [del.icio.us]</source>
    </item>
    <item>
      <title><![CDATA[Eye-Fi Adds Upgrade Track at Yearly Fee]]></title>
      <link>http://securityratty.com/article/3e1647519eaf22ed342316fc64fccf49</link>
      <guid>http://securityratty.com/article/3e1647519eaf22ed342316fc64fccf49</guid>
      <description><![CDATA[The Wi-Fi sharing digital memory card Eye-Fi adds another option for its product line: If you've purchased or plan to purchase an Eye-Fi, starting 5-Oct-2008, you can upgrade the model of card you...]]></description>
      <content:encoded><![CDATA[<p><strong><a href="http://www.eye.fi/news/press-releases/">The Wi-Fi sharing digital memory card Eye-Fi adds another option for its product line:</a></strong> If you've purchased or plan to purchase an Eye-Fi, starting 5-Oct-2008, you can upgrade the model of card you purchased by paying a yearly subscription fee. This provides more of a try-and-see mode for Eye-Fi's slightly more expensive offerings.</p>

<p>Eye-Fi divided its Wi-Fi SD card line-up into three parts earlier in the year: Home, which transfers to a computer ($80); Share, which uploads to a computer and to Eye-Fi's servers, which relay them to gallery, print, and social services ($100); and Explore, which ties in Wi-Fi positioning and one year of a Wayport hotspot subscription for uploads ($130). I wrote <strong><a href="http://wifinetnews.com/archives/008418.html">a long review of the Eye-Fi Explore</a></strong> on 12-Aug-2008.</p>

<p><img src="http://wifinetnews.com//images/2008/eye-fi_cards_sharer_sm.jpg" align="right"/>If you bought a Home, you can upgrade to the Share service for $10 per year, and if you bought either a Home or Share, you can add geotagging for $15 per year and hotspot access for $15 per year. It's a smart move, since original Eye-Fi card buyers already had a firmware upgrade that converted their card into a Share model; they'll now be able upgrade to the full featureset. This is something I thought the company was offering at launch months ago, and I speculated it would be easy to add.</p>

<p>Eye-Fi also added two new photo sharing services: Apple's MobileMe and AdoramaPix. I cannot think of any other firm that Apple has partnered with to allow direct MobileMe uploads, although this may be technically less a big deal than it sounds. But I believe it's unique--only the iPhone and iPhoto software can transfers images into MobileMe's galleries; I'll need to investigate further. It's a good feather in Eye-Fi's cap.</p>

<p>Finally, Eye-Fi says they'll release tweaked firmware on 5-Oct as well that will double the speed of photo transfers from their cards to a computer on the local network.</p>]]></content:encoded>
      <pubDate>Mon, 22 Sep 2008 18:07:12 +0000</pubDate>
      <category domain="http://securityratty.com/tag/eye-fi">eye-fi</category>
      <category domain="http://securityratty.com/tag/upgrade">upgrade</category>
      <category domain="http://securityratty.com/tag/eye-fi explore">eye-fi explore</category>
      <category domain="http://securityratty.com/tag/explore">explore</category>
      <category domain="http://securityratty.com/tag/direct mobileme uploads">direct mobileme uploads</category>
      <category domain="http://securityratty.com/tag/share service">share service</category>
      <category domain="http://securityratty.com/tag/mobileme">mobileme</category>
      <category domain="http://securityratty.com/tag/share">share</category>
      <category domain="http://securityratty.com/tag/transfers">transfers</category>
      <source url="http://wifinetnews.com/archives/008453.html">Eye-Fi Adds Upgrade Track at Yearly Fee</source>
    </item>
    <item>
      <title><![CDATA[Wee-Fi: Indian Terror over Wi-Fi; Fastest Wireless; Health Fears; Wi-Fi Tub; and More]]></title>
      <link>http://securityratty.com/article/38100bf79f0cedd88c5f6a02e45c5a85</link>
      <guid>http://securityratty.com/article/38100bf79f0cedd88c5f6a02e45c5a85</guid>
      <description><![CDATA[Another terror message sent via open Wi-Fi in India: Credit for terrorist blasts in Delhi was sent by email minutes before the attack took place using a Wi-Fi network owned by a retired engineer's...]]></description>
      <content:encoded><![CDATA[<p><img src="http://wifinetnews.com/images/weefi.jpg" align="right" border="0" hspace="5" /><a href="http://www.telegraphindia.com/1080915/jsp/nation/story_9835144.jsp"><strong>Another terror message sent via open Wi-Fi in India:</strong></a> Credit for terrorist blasts in Delhi was sent by email minutes before the attack took place using a Wi-Fi network owned by a retired engineer's wife. Though articles keep saying the network was "hacked," the Telegraph also notes that the network was "unsecured."</p>

<p>Italian free space optics test hits 1.2 terabits per second (<a href="http://www.corriere.it/scienze_e_tecnologie/08_settembre_11/wifi_pisa_record_3a9bf132-801f-11dd-9f6f-00144f02aabc.shtml">in Italian</a>, <a href="http://translate.google.com/translate?u=http://www.corriere.it/scienze_e_tecnologie/08_settembre_11/wifi_pisa_record_3a9bf132-801f-11dd-9f6f-00144f02aabc.shtml&hl=en&ie=UTF-8&sl=it&tl=en">Google translation</a>): Researchers in Pisa, Italy, along with colleagues from two Japanese institutions, crossed 1.2 Tbps in a test. Free space optics typically uses infrared lasers, and can work over a distance of kilometers. </p>

<p><a href="http://www.canada.com/montrealgazette/news/story.html?id=2e090761-519c-4de6-9ace-4153d6dc71d2"><strong>More Canadian Wi-Fi health fears:</strong></a> This time in an island in Montr&eacute;al. One of the concerned citizens: "This is something that is really under the radar. People do not know that long-term health hazards are associated with wireless technology." They don't know that because all verifiable, repeatable, well-conducted, academic tests so far indicate that there's no such health hazard associated with EMF. The concerned folks are raising an alarm about Wi-Fi being broadcast island wide, but are not paying attention, obviously, to the AM/FM radio, satellite radio, cellular, cordless, and thousand other wireless uses that are bombarding them right now, often at far higher signal levels.</p>

<p><a href="http://www.washingtonpost.com/wp-dyn/content/article/2008/09/13/AR2008091300340.html"><strong>Wi-Fi in a tub:</strong></a> I'm not going to say anything more.</p>

<p><a href="http://www.quickertek.com/products/expresscard.php"><strong>QuickerTek adds antenna to 300 mW ExpressCard for MacBook Pro:</strong></a> Users of Apple's higher-end laptops can drop $200 to get a 300 mW Draft N (802.11n) ExpressCard and 5 dBi external antenna with a mounting clip. That's a lot of power, and it's important to recall that have a louder signal doesn't mean that distant base stations can necessarily hear you better. Draft N devices typically pair better listening (receive sensitivity) with higher transmission power, however.</p>

<p><a href="http://networklocationapp.com/"><strong>Mac product ties location settings to Wi-Fi position:</strong></a> Centrix has updated its $29 Mac OS X location preferences program NetworkLocation to take advantage of Skyhook Wireless's Wi-Fi positioning data. You can now tie the package of settings that control what email account you use, iChat status, programs launched, disks mounted, and other factors, to where you're currently at.</p>]]></content:encoded>
      <pubDate>Mon, 15 Sep 2008 06:03:26 +0000</pubDate>
      <category domain="http://securityratty.com/tag/wi-fi">wi-fi</category>
      <category domain="http://securityratty.com/tag/wi-fi network owned">wi-fi network owned</category>
      <category domain="http://securityratty.com/tag/wireless">wireless</category>
      <category domain="http://securityratty.com/tag/wi-fi position">wi-fi position</category>
      <category domain="http://securityratty.com/tag/network">network</category>
      <category domain="http://securityratty.com/tag/skyhook wireless">skyhook wireless</category>
      <category domain="http://securityratty.com/tag/broadcast island wide">broadcast island wide</category>
      <category domain="http://securityratty.com/tag/island">island</category>
      <category domain="http://securityratty.com/tag/dbi external antenna">dbi external antenna</category>
      <source url="http://wifinetnews.com/archives/008439.html">Wee-Fi: Indian Terror over Wi-Fi; Fastest Wireless; Health Fears; Wi-Fi Tub; and More</source>
    </item>
    <item>
      <title><![CDATA[595 immigrants arrested at electronics plant]]></title>
      <link>http://securityratty.com/article/2afd3a8db87ddc9bda71788dabf2bbdd</link>
      <guid>http://securityratty.com/article/2afd3a8db87ddc9bda71788dabf2bbdd</guid>
      <description><![CDATA[Special agents with U.S. Immigration and Customs Enforcement (ICE) have arrested approximately 595 people suspected of being illegal aliens in the U.S., some with alleged ties to identity theft, at an...]]></description>
      <content:encoded><![CDATA[Special agents with U.S. Immigration and Customs Enforcement (ICE) have arrested approximately 595 people suspected of being illegal aliens in the U.S., some with alleged ties to identity theft, at an electronics manufacturing plant in Laurel, Mississippi.<p><A href="http://ad.doubleclick.net/jump/idg.us.nwf.rss/security;sz=468x60;ord=69295?">
<IMG src="http://ad.doubleclick.net/ad/idg.us.nwf.rss/security;sz=468x60;ord=69295?" border="0" width="468" height="60"></A>
</p>]]></content:encoded>
      <pubDate>Tue, 26 Aug 2008 20:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/illegal aliens">illegal aliens</category>
      <category domain="http://securityratty.com/tag/special agents">special agents</category>
      <category domain="http://securityratty.com/tag/identity theft">identity theft</category>
      <category domain="http://securityratty.com/tag/plant">plant</category>
      <category domain="http://securityratty.com/tag/electronics">electronics</category>
      <category domain="http://securityratty.com/tag/customs enforcement">customs enforcement</category>
      <category domain="http://securityratty.com/tag/ties">ties</category>
      <category domain="http://securityratty.com/tag/mississippi">mississippi</category>
      <category domain="http://securityratty.com/tag/laurel">laurel</category>
      <source url="http://www.networkworld.com/news/2008/082708-595-immigrants-arrested-at-electronics.html?fsrc=rss-security">595 immigrants arrested at electronics plant</source>
    </item>
    <item>
      <title><![CDATA[MI5 on Terrorist Profiling]]></title>
      <link>http://securityratty.com/article/bb80acbf5bcef69e830e8c656c41335c</link>
      <guid>http://securityratty.com/article/bb80acbf5bcef69e830e8c656c41335c</guid>
      <description><![CDATA[There's no profile : MI5 has concluded that there is no easy way to identify those who become involved in terrorism in Britain, according to a classified internal research document on radicalisation...]]></description>
      <content:encoded><![CDATA[<p>There's <a href="http://www.guardian.co.uk/uk/2008/aug/20/uksecurity.terrorism1">no profile</a>:</p>

<blockquote>MI5 has concluded that there is no easy way to identify those who become involved in terrorism in Britain, according to a classified internal research document on radicalisation seen by the Guardian.

<p><br />
[...]</p>

<p>The main findings include: </p>

<p>• The majority are British nationals and the remainder, with a few exceptions, are here legally. Around half were born in the UK, with others migrating here later in life. Some of these fled traumatic experiences and oppressive regimes and claimed UK asylum, but more came to Britain to study or for family or economic reasons and became radicalised many years after arriving.</p>

<p>• Far from being religious zealots, a large number of those involved in terrorism do not practise their faith regularly. Many lack religious literacy and could actually be regarded as religious novices. Very few have been brought up in strongly religious households, and there is a higher than average proportion of converts. Some are involved in drug-taking, drinking alcohol and visiting prostitutes. MI5 says there is evidence that a well-established religious identity actually protects against violent radicalisation. </p>

<p>• The "mad and bad" theory to explain why people turn to terrorism does not stand up, with no more evidence of mental illness or pathological personality traits found among British terrorists than is found in the general population.</p>

<p>• British-based terrorists are as ethnically diverse as the UK Muslim population, with individuals from Pakistani, Middle Eastern and Caucasian backgrounds. MI5 says assumptions cannot be made about suspects based on skin colour, ethnic heritage or nationality. </p>

<p>• Most UK terrorists are male, but women also play an important role. Sometimes they are aware of their husbands', brothers' or sons' activities, but do not object or try to stop them.</p>

<p>• While the majority are in their early to mid-20s when they become radicalised, a small but not insignificant minority first become involved in violent extremism at over the age of 30.</p>

<p>• Far from being lone individuals with no ties, the majority of those over 30 have steady relationships, and most have children. MI5 says this challenges the idea that terrorists are young men driven by sexual frustration and lured to "martyrdom" by the promise of beautiful virgins waiting for them in paradise. It is wrong to assume that someone with a wife and children is less likely to commit acts of terrorism.</p>

<p>• Those involved in British terrorism are not unintelligent or gullible, and nor are they more likely to be well-educated; their educational achievement ranges from total lack of qualifications to degree-level education. However, they are almost all employed in low-grade jobs.</blockquote></p><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=GwMQnK"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=GwMQnK" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/schneier/fulltext?a=nvC4JK"><img src="http://feeds.feedburner.com/~f/schneier/fulltext?i=nvC4JK" border="0"></img></a>
</div>]]></content:encoded>
      <pubDate>Fri, 22 Aug 2008 02:18:30 +0000</pubDate>
      <category domain="http://securityratty.com/tag/mi5">mi5</category>
      <category domain="http://securityratty.com/tag/terrorism">terrorism</category>
      <category domain="http://securityratty.com/tag/british terrorism">british terrorism</category>
      <category domain="http://securityratty.com/tag/british terrorists">british terrorists</category>
      <category domain="http://securityratty.com/tag/terrorists">terrorists</category>
      <category domain="http://securityratty.com/tag/violent radicalisation">violent radicalisation</category>
      <category domain="http://securityratty.com/tag/majority">majority</category>
      <category domain="http://securityratty.com/tag/individuals">individuals</category>
      <category domain="http://securityratty.com/tag/internal research document">internal research document</category>
      <source url="http://www.schneier.com/blog/archives/2008/08/mi5_on_terroris.html">MI5 on Terrorist Profiling</source>
    </item>
    <item>
      <title><![CDATA[Metro Round-Up: Cablevision Update; Springfield (Mich.)]]></title>
      <link>http://securityratty.com/article/04d2b01379cd1ae8f0505f615eab7ead</link>
      <guid>http://securityratty.com/article/04d2b01379cd1ae8f0505f615eab7ead</guid>
      <description><![CDATA[Cablevision says it's already spent $20m towards its plan to build out Wi-Fi across its operating territory: The cable firm has $300m budgeted to put Wi-Fi in place for its higher-tier subscribers at...]]></description>
      <content:encoded><![CDATA[<p><img src="http://wifinetnews.com/images/muni_icon.jpg" align="right" border="0" hspace="5" /><a href="http://www.newsday.com/business/ny-bzwifi0801,0,5681847.story"><strong>Cablevision says it's already spent $20m towards its plan to build out Wi-Fi across its operating territory:</strong></a> The cable firm has $300m budgeted to put Wi-Fi in place for its higher-tier subscribers at no cost across Long Islands and parts of New Jersey and Connecticut, as well as New York City and Westchester County. Cablevision thinks their network will be good enough to replace cell phones across their coverage, which ties in with the quadruple play many cable operators are aiming for: data, voice, video, and mobile.</p>

<p><a href="http://www.battlecreekenquirer.com/apps/pbcs.dll/article?AID=/20080801/NEWS01/808010366/1002/NEWS01"><strong>Springfield, Mich., puts in its first antennas for a city-wide network:</strong></a> The network is being built with a $750,000 grant from a state development corporation to extend access and improve the business climate. Access will cost $10 per month for residents after an initial free period while the service powers up.</p>]]></content:encoded>
      <pubDate>Fri, 01 Aug 2008 10:49:43 +0000</pubDate>
      <category domain="http://securityratty.com/tag/network">network</category>
      <category domain="http://securityratty.com/tag/city-wide network">city-wide network</category>
      <category domain="http://securityratty.com/tag/cablevision">cablevision</category>
      <category domain="http://securityratty.com/tag/extend access">extend access</category>
      <category domain="http://securityratty.com/tag/initial free period">initial free period</category>
      <category domain="http://securityratty.com/tag/replace cell phones">replace cell phones</category>
      <category domain="http://securityratty.com/tag/access">access</category>
      <category domain="http://securityratty.com/tag/higher-tier subscribers">higher-tier subscribers</category>
      <category domain="http://securityratty.com/tag/development corporation">development corporation</category>
      <source url="http://wifinetnews.com/archives/008408.html">Metro Round-Up: Cablevision Update; Springfield (Mich.)</source>
    </item>
    <item>
      <title><![CDATA[How personal information wound up at the side of the road is a mystery]]></title>
      <link>http://securityratty.com/article/42893bd55f98a595373bc046f7b93a94</link>
      <guid>http://securityratty.com/article/42893bd55f98a595373bc046f7b93a94</guid>
      <description><![CDATA[Technorati Tag: Security Breach

Date Reported
7/10/08

Organization
Liberty Furniture

a North Carolina based company with Mid-South ties to Cromcraft - a furniture warehouse in Tate County&quot;,...]]></description>
      <content:encoded><![CDATA[Technorati Tag: <a href="http://technorati.com/tag/security+breach" rel="tag">Security Breach</a><br><br>
<img src="http://breachblog.com/images/95781-88451/liberty.jpg" width="200" align="right" height="150"><font size="2"><b>Date Reported: </b><br>7/10/08<br><br><b>Organization: </b><br>Liberty Furniture*<br><br><font size="1">*"a North Carolina based company with Mid-South ties to Cromcraft - a furniture warehouse in Tate County", Mississippi.&nbsp; According to the report, Liberty Furniture may have gone out of business more than 20 years ago.</font><br><br><b>Contractor/Consultant/Branch:</b><br>Unknown<br><br><b>Victims:</b><br>Former employees<br><br><b>Number Affected:</b><br>"hundreds, maybe even thousands of people"<br><br><b>Types of Data:</b><br>Personal information including W-2 forms and tax forms containing names, addresses, and Social Security numbers<br><br><b>Breach Description:</b><br>"Eyewitness News Everywhere Uncovers the personal information of hundreds, maybe even thousands of people - dumped along a Mid-South road."<br><br><b>Reference URL:</b><br><a href="http://www.myeyewitnessnews.com/news/local/story.aspx?content_id=1601248c-3496-44ad-a2a3-053a779e9edf">Eyewitness News Everywhere</a> <br><br><span style="font-weight: bold;">Report Credit:</span><br>Kevin Holmes, Eyewitness News Everywhere<br><br><span style="font-weight: bold;">Response:</span><br>From the online source cited above:<br><br>Eyewitness News Everywhere Uncovers the personal information of hundreds, maybe even thousands of people - dumped along a Mid-South road.<br><span style="font-style: italic;">[Evan] For those readers who may be unsure where this "Mid-South" is located, in this case it is Mississippi.</span><br><br>We even found W-2 forms, tax forms with people's names, addresses and social security numbers.<br><br>Investigators in Tate County are trying to figure out how the papers got there.<br><br>Larry Davis made the discovery.<br><br>He says he was driving into town when he came across thousands of forms.<br><br>"That's just uncalled for...you are entrusting these people with a lot of information that could ruin you very quickly, but yet they treat it like it's trash," said Davis.<br><span style="font-style: italic;">[Evan] I think most people share Mr. Davis' feelings.&nbsp; It is puzzling.&nbsp; What was the person who dumped the information on the side of the road thinking, supposing the the person was thinking and supposing the information was dumped and not lost (i.e. fell off a truck).</span><br><br>Financial records, shipping order forms, and W-2's of former employees<br><br>"Stupidity on the person that threw it out on the road.&nbsp; The people who disposed of these, there should be some legal action against them, but to me that's mismanagement," said Davis.<br><span style="font-style: italic;">[Evan] Again, I think many people share the same feelings as Mr. Davis.</span><br><br>Many of the records are from Liberty Furniture, a North Carolina based company with Mid-South ties to Cromcraft - a furniture warehouse in Tate County<br><br>"There all from North Carolina, how did they get here?&nbsp; This is Mississippi.&nbsp; We got some strong wind, but they ain't that strong," says Davis. <br><br>Even Cromcraft employees were shocked when we brought this to their attention. <br><br>Most of the W-2's are from the late 1970's and early 80's.<br><span style="font-style: italic;">[Evan] Wow!&nbsp; These W-2's are 20-30+ years old?!</span><br><br>we're told Liberty Furniture went out of business more than twenty years ago.<br><br>Larry Davis' daughter Susan Herron said, "This could be someone's grandparents on fixed income, now their social security number is floating around somewhere and it's awful, people need to be more careful."<br><br>Eyewitness News Everywhere caught up with one of the former employees whose personal information was exposed. <br><br>"My initial feeling was a very sinking, horrified, scared, feeling....You feel vulnerable and hope your social security number hasn't fallen into the wrong hands.&nbsp; So I have to be diligent in checking my credit report," said the employee.<br><span style="font-style: italic;">[Evan] It is interesting to read how a person feels when they learn that their personal information has been compromised.&nbsp; I feel bad for these people.&nbsp; This employee doesn't need to feel "horrified and scared", but he/she does nonetheless, and it's all due to negligence.&nbsp; This is just one reason why information security is so personal to me.</span><br><br>Other former Liberty Furniture employees tell Eyewitness News Everywhere they will be doing the same thing - checking their credit report.<br><br>Eyewitness News Everywhere will keep those forms in a secure place until we hand them over to the proper authorities.<br><br><span style="font-weight: bold;">Commentary:</span><br>There is a lot of mystery surrounding this breach.&nbsp; How did the information get there?&nbsp; Why was the information still kept?&nbsp; Who was in possession of the information before it was found on the side of the road?&nbsp; Why wasn't the information already destroyed if the company who was responsible for it is no longer in business?<br><br><span style="font-weight: bold;">Past Breaches:</span><br>Unknown<br></font><br><br>
<script src="http://feeds.feedburner.com/%7Es/breachblog?i=http://breachblog.com/2008/07/10/liberty.aspx" type="text/javascript" charset="utf-8"></script>]]></content:encoded>
      <pubDate>Thu, 10 Jul 2008 06:50:31 +0000</pubDate>
      <category domain="http://securityratty.com/tag/information">information</category>
      <category domain="http://securityratty.com/tag/personal information">personal information</category>
      <category domain="http://securityratty.com/tag/road">road</category>
      <category domain="http://securityratty.com/tag/personal">personal</category>
      <category domain="http://securityratty.com/tag/w-2 forms">w-2 forms</category>
      <category domain="http://securityratty.com/tag/liberty furniture employees">liberty furniture employees</category>
      <category domain="http://securityratty.com/tag/w-2">w-2</category>
      <category domain="http://securityratty.com/tag/eyewitness news">eyewitness news</category>
      <category domain="http://securityratty.com/tag/liberty furniture">liberty furniture</category>
      <source url="http://breachblog.com/2008/07/10/liberty.aspx">How personal information wound up at the side of the road is a mystery</source>
    </item>
    <item>
      <title><![CDATA[ACLU files lawsuit to challenge surveillance law]]></title>
      <link>http://securityratty.com/article/b09a58329837b4b7da8a4c22ce236db7</link>
      <guid>http://securityratty.com/article/b09a58329837b4b7da8a4c22ce236db7</guid>
      <description><![CDATA[The American Civil Liberties Union (ACLU) and several other groups have filed a lawsuit in an effort to strike down a new law allowing the U.S. government to intercept the phone calls and e-mail...]]></description>
      <content:encoded><![CDATA[The American Civil Liberties Union (ACLU) and several other groups have filed a lawsuit in an effort to strike down a new law allowing the U.S. government to intercept the phone calls and e-mail messages of people with suspected ties to terrorism.]]></content:encoded>
      <pubDate>Wed, 09 Jul 2008 20:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/aclu">aclu</category>
      <category domain="http://securityratty.com/tag/law">law</category>
      <category domain="http://securityratty.com/tag/e-mail messages">e-mail messages</category>
      <category domain="http://securityratty.com/tag/phone calls">phone calls</category>
      <category domain="http://securityratty.com/tag/lawsuit">lawsuit</category>
      <category domain="http://securityratty.com/tag/government">government</category>
      <category domain="http://securityratty.com/tag/effort">effort</category>
      <category domain="http://securityratty.com/tag/ties">ties</category>
      <category domain="http://securityratty.com/tag/strike">strike</category>
      <source url="http://www.networkworld.com/news/2008/071008-aclu-files-lawsuit-to-challenge.html?fsrc=rss-security">ACLU files lawsuit to challenge surveillance law</source>
    </item>
    <item>
      <title><![CDATA[Will Idiocy Ever End?]]></title>
      <link>http://securityratty.com/article/7a7383b72d02885cfc7f7edc37372687</link>
      <guid>http://securityratty.com/article/7a7383b72d02885cfc7f7edc37372687</guid>
      <description><![CDATA[So, I just came back from FIRST2008 and a typical conference discussion over beer has turned - again! - to academic security research

I lamented and ranted and rambled about it ( here , here , here...]]></description>
      <content:encoded><![CDATA[So, I just came back from <a href="http://www.first.org/conference/2008/program/#p864">FIRST2008</a> and a typical conference discussion over beer has turned - again! - to  academic security research.<br /><br />I lamented and ranted and rambled about it (<a href="http://chuvakin.blogspot.com/2007/12/spaf-on-academic-security-research.html">here</a>, <a href="http://chuvakin.blogspot.com/2007/09/once-more-on-failure-of-academic.html">here</a>, <a href="http://chuvakin.blogspot.com/2008/05/fun-security-reading-3.html">here</a>), but I am still shocked. I come from academic background myself and it is unthinkable to me that a research physicist today will write a thesis on 2nd Law of Newton or will set to prove that objects tend to fall down while dropped. Or that they, in fact, "fall up."<br /><br />However, that is the type of stuff I see in academic security papers that I occasionally get to review. Based on our FIRST conversation, other people who happen to retain ties to academia are reporting the same: research work that confuses "phishing" with "fast flux networks" (thanks Jose), inventing a new intrusion detection "paradigm, "  and all sorts of other bizarre crap continues to be cooked and  submitted to publications.<br /><br />When will this end? Why can't you people tackle REAL problems? Or at least useful and hard classic problems? Or, at the very least, learn  WTF is going on the real world of operational security before you do ANYTHING? The maybe you stop saying things like "in general, IDS is considered to be a security tool" as if it was some kind of Zen wisdom (a quote from a pathetic excuse for a paper that I reviewed recently...)<div class="blogger-post-footer">About me: http://www.chuvakin.org</div><div class="feedflare">
<a href="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?a=RlxgsI"><img src="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?i=RlxgsI" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?a=GLg27I"><img src="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?i=GLg27I" border="0"></img></a> <a href="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?a=0keoFI"><img src="http://feeds.feedburner.com/~f/AntonChuvakinPersonalBlog?i=0keoFI" border="0"></img></a>
</div><img src="http://feeds.feedburner.com/~r/AntonChuvakinPersonalBlog/~4/319714659" height="1" width="1"/>]]></content:encoded>
      <pubDate>Wed, 25 Jun 2008 02:15:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/research">research</category>
      <category domain="http://securityratty.com/tag/academic security research">academic security research</category>
      <category domain="http://securityratty.com/tag/people">people</category>
      <category domain="http://securityratty.com/tag/people tackle real">people tackle real</category>
      <category domain="http://securityratty.com/tag/bizarre crap continues">bizarre crap continues</category>
      <category domain="http://securityratty.com/tag/typical conference discussion">typical conference discussion</category>
      <category domain="http://securityratty.com/tag/research physicist">research physicist</category>
      <category domain="http://securityratty.com/tag/academic security papers">academic security papers</category>
      <category domain="http://securityratty.com/tag/fast flux networks">fast flux networks</category>
      <source url="http://feeds.feedburner.com/~r/AntonChuvakinPersonalBlog/~3/319714659/will-idiocy-ever-end.html">Will Idiocy Ever End?</source>
    </item>
    <item>
      <title><![CDATA[Japan and France agree to closer ties on cybercrime]]></title>
      <link>http://securityratty.com/article/74d925626957d8d93bd5a21cbf1fc54c</link>
      <guid>http://securityratty.com/article/74d925626957d8d93bd5a21cbf1fc54c</guid>
      <description><![CDATA[Japanese and French government ministers agreed on Thursday to work more closely on...]]></description>
      <content:encoded><![CDATA[Japanese and French government ministers agreed on Thursday to work more closely on cybercrime.]]></content:encoded>
      <pubDate>Wed, 11 Jun 2008 20:00:00 +0000</pubDate>
      <category domain="http://securityratty.com/tag/french government ministers">french government ministers</category>
      <category domain="http://securityratty.com/tag/cybercrime">cybercrime</category>
      <category domain="http://securityratty.com/tag/closely">closely</category>
      <category domain="http://securityratty.com/tag/japanese">japanese</category>
      <category domain="http://securityratty.com/tag/thursday">thursday</category>
      <source url="http://www.networkworld.com/news/2008/061208-japan-and-france-agree-to.html?fsrc=rss-security">Japan and France agree to closer ties on cybercrime</source>
    </item>
  </channel>
</rss>
