SecurityRatty :: tag: feb
Featured Articles :: Cincinnati ISACA Feb 12th Meeting :: Anton Security Tip of the Day #14: More accesslog Fun: What Are You Not GETting? :: What If All Vulnerabilities Had This Disclosure Timeline? :: Cascade Healthcare Community donors affected by malware :: Harvard University warns graduate students about web hack :: Mike Rothman - The 419 :: Netscape Closes Shop :: Unattended Middle Tennessee State University laptop :: Laptop stolen from NHLBI contained personal health information :: Intrusion at Okemo Mountain Resort exposes customers
...Feb. 12 meeting and workshop information page
Thanks, Erik
Erik T. Heidt, CISA, CISSP
Art of Information Security would love your feedback
Cincinnati ISACA Feb 12th Meeting
...Feb 6, 2008: Vulnerability still not patched
Its not your typical disclosure time line. In recent years we have become accustomed to a disclosure time line that goes something like this
Typical Timeline
Dec 16, 2007: Vendor notified of vulnerability and given exploit code
Feb 6, 2008: Public disclosure with details and vendor patch available...
...Feb. 5. At that time, CHC hired an external information technology forensic team to investigate the incident
After an exhaustive forensic evaluation, CHC learned Feb. 20 that some personal information stored on our systems may have been compromised
This information included names, addresses, dates of birth and credit card information for...
...Feb. 17 until Feb. 21 in order to investigate the incident and to improve security
The Universitys initial examination did not reveal the full extent of the hack. As the investigation continued, it became apparent that some sensitive applicant data, including Social Security numbers, could potentially have been accessed
Evan] Without knowing...
...Feb 2008 22:36:52 +0100
Dear mr Rothman
I do not know you either, so I will send you some pictures of my estate in Germany, you can look at it at google earth from above. Sended you the adress before
XXXXXX
Barendorf
Germany
My age is 50, married with a German Lady, having two Sons
Further, I 'am not interested in the company you are...
...Feb 1st 2008 they will discontinue releasing any further revisions, including security updates for the Netscape browser. Honestly, this doesnt come as a huge surprise to me given how things have been going for the last 4-5 years now for them, but its still a bummer to lose the only other existing survivor from the original browser wars. That...
...Feb 13, 2008 11:24 pm
Even as a student there, I always wondered why our SS numbers were used as our ID numbers. In this day and age, it IS NOT safe to use your SS number! Especially with how easy a slip-up such as this can happen! Something needs to change! Too bad it takes an event like this happening to even make people consider change
...
...February, potentially exposing seven years' worth of clinical trial data, including names, medical diagnoses and details of the patients' heart scans
The information was not encrypted, in violation of the government's data-security policy
Evan] What good is a policy if it is not followed or enforced? There should be penalties for...
...Feb. 7 and Feb. 22 and 18,401 credit cards between January and March 2006
Reference URL
Okemo Mountain Resort News Release
Barre-Montpelier Times Argus
BusinessWeek
WTNH Channel 8 News
Report Credit
Okemo Mountain Resort
Response
From the online sources cited above
Okemo Mountain Resort today announced that it has been a recent target of...