<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Endpoint Security Info</title>
	<atom:link href="http://www.endpoint-security.info/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.endpoint-security.info</link>
	<description>Endpoint Security in the News. Learn to protect your data by controlling removable storage devices.</description>
	<lastBuildDate>Thu, 02 Feb 2012 10:58:16 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
		<item>
		<title>Stolen Flash Drive Exposes Data of 1,200 University of Miami Patients</title>
		<link>http://www.endpoint-security.info/2012/02/02/stolen-flash-drive-exposes-data-of-1200-university-of-miami-patients/</link>
		<comments>http://www.endpoint-security.info/2012/02/02/stolen-flash-drive-exposes-data-of-1200-university-of-miami-patients/#comments</comments>
		<pubDate>Thu, 02 Feb 2012 10:58:16 +0000</pubDate>
		<dc:creator>Agent Smith</dc:creator>
				<category><![CDATA[Data Theft & Loss]]></category>
		<category><![CDATA[security breach]]></category>
		<category><![CDATA[data breach]]></category>
		<category><![CDATA[data theft]]></category>
		<category><![CDATA[healthcare]]></category>
		<category><![CDATA[healthcare data breach]]></category>
		<category><![CDATA[stolen flash drive]]></category>
		<category><![CDATA[stolen hardware]]></category>
		<category><![CDATA[University of Miami]]></category>

		<guid isPermaLink="false">http://www.endpoint-security.info/?p=843</guid>
		<description><![CDATA[A security breach exposing the data of over 1,200 patients has recently been disclosed by the University of Miami. The Miller School of Medicine patient data was stolen back in November 2011, together with a flash drive, when someone broke into a pathologist’s car and took the briefcase where the portable device was stored. The [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.endpoint-security.info%2F2012%2F02%2F02%2Fstolen-flash-drive-exposes-data-of-1200-university-of-miami-patients%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.endpoint-security.info%2F2012%2F02%2F02%2Fstolen-flash-drive-exposes-data-of-1200-university-of-miami-patients%2F&amp;source=cososys&amp;style=normal&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p><img style="float: left; margin-right: 10px" title="flash drive" src="http://www.endpoint-security.info/wp-content/uploads/2011/03/flash-drive.jpg" alt="" width="210" height="158" />A security breach exposing the data of over 1,200 patients <a href="http://www.miamiherald.com/2012/01/30/2615588/um-patient-data-stolen.html" target="_blank">has recently been disclosed by the University of Miami</a>. The Miller School of Medicine patient data was stolen back in November 2011, together with a flash drive, when someone broke into a pathologist’s car and took the briefcase where the portable device was stored.</p>
<p>The flash drive contained details such as age, sex, diagnosis and treatment information for patients treated from 2005 to 2011, the University of Miami disclosed in a press release. No financial information or Social Security numbers had been stored on the drive, according to the same press release.<span id="more-843"></span></p>
<blockquote><p>Following federal law, UM is informing the patients involved, according to the press release, but “there is no indication that the information was accessed or misused in any way.”</p></blockquote>
<p>The university promised to review and revise its physical and digital security policies to make sure patient data is safely stored and privacy is ensured. However, this is not the first incident they have had to deal with. Back in 2008, computer tapes with confidential information on 2.1 million patients was taken by a thief from a van transporting them. So when it comes to patient data kept in cars, the University of Miami has not changed anything in the past three years, but we can hope they will do better than empty promises next time.</p>
<p>Till the next data breach, we can surely hope so!</p>
<div id="crp_related"><h3>Related Posts:</h3><ul><li><a href="http://www.endpoint-security.info/2011/03/04/data-breaches-caused-by-storage-device-theft-hit-again/" rel="bookmark" class="crp_title">Data breaches caused by storage device theft hit again</a></li><li><a href="http://www.endpoint-security.info/2011/09/10/data-breach-roundup-missing-hardware/" rel="bookmark" class="crp_title">Data breach roundup: Missing hardware</a></li><li><a href="http://www.endpoint-security.info/2011/08/16/more-data-breaches-caused-by-improper-use-of-flash-drives-and-laptops/" rel="bookmark" class="crp_title">More data breaches caused by improper use of flash drives and laptops</a></li><li><a href="http://www.endpoint-security.info/2011/10/10/hardware-loss-in-a-hospital-endangers-data-of-1-6-million-people/" rel="bookmark" class="crp_title">Hardware loss in a hospital endangers data of 1.6 million people</a></li><li><a href="http://www.endpoint-security.info/2010/11/11/patient-records-lost-at-vincents-hospital/" rel="bookmark" class="crp_title">Patient Records Lost at Vincent’s Hospital</a></li></ul></div>]]></content:encoded>
			<wfw:commentRss>http://www.endpoint-security.info/2012/02/02/stolen-flash-drive-exposes-data-of-1200-university-of-miami-patients/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Stolen laptop and flash drive expose 7,000 to data theft</title>
		<link>http://www.endpoint-security.info/2012/02/01/stolen-laptop-and-flash-drive-expose-7000-to-data-theft/</link>
		<comments>http://www.endpoint-security.info/2012/02/01/stolen-laptop-and-flash-drive-expose-7000-to-data-theft/#comments</comments>
		<pubDate>Wed, 01 Feb 2012 12:59:17 +0000</pubDate>
		<dc:creator>Agent Smith</dc:creator>
				<category><![CDATA[Data Theft & Loss]]></category>
		<category><![CDATA[Identity Theft]]></category>
		<category><![CDATA[data theft]]></category>
		<category><![CDATA[Kansas Department of Aging]]></category>
		<category><![CDATA[security breach]]></category>
		<category><![CDATA[stolen flash drive]]></category>
		<category><![CDATA[stolen laptop]]></category>

		<guid isPermaLink="false">http://www.endpoint-security.info/?p=841</guid>
		<description><![CDATA[The Kansas Department on Aging has recently reported a hardware theft that caused a data breach affecting about 7,000 of its customers. A laptop, a flash drive and paper files were stolen out of an employee’s vehicle, putting thousands of senior customers at risk. The stolen files contained personal and protected health information belonging mainly [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.endpoint-security.info%2F2012%2F02%2F01%2Fstolen-laptop-and-flash-drive-expose-7000-to-data-theft%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.endpoint-security.info%2F2012%2F02%2F01%2Fstolen-laptop-and-flash-drive-expose-7000-to-data-theft%2F&amp;source=cososys&amp;style=normal&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p>The Kansas Department on Aging has recently reported a hardware theft that caused a <a href="http://www.kwch.com/kwch-news-kah-personal-information-stolen-from-ks-department-of-aging-20120119,0,7125622.story" target="_blank">data breach affecting about 7,000 of its customers</a>. A laptop, a flash drive and paper files were stolen out of an employee’s vehicle, putting thousands of senior customers at risk.</p>
<p>The stolen files contained personal and protected health information belonging mainly to customers located in Sedgwick, Harvey, and Butler counties. The theft was immediately reported to the Wichita Police Department. The Kansas Department on Aging says it is cooperating with the police, but the stolen hardware has not yet been recovered.<span id="more-841"></span></p>
<p>Fortunately, there is no evidence to indicate that the information has been accessed and misused. The stolen data and documents may include full customer names, complete addresses, dates of birth, social security numbers, gender, in home services program participation information, Medicaid identification numbers, case management location and case manager names and telephone numbers.  No banking, credit card, or driver license information was stored on the stolen devices.</p>
<p>The Kansas Department of Aging has confirmed that at least 100 customers have had their Social Security Numbers stolen and trying to inform those affected through phone calls. They will further notify everyone affected by the breach through letters explaining the situation.</p>
<blockquote><p>&#8220;We are immediately reviewing policies and procedures relevant to information security, especially for those employees whose duties require travel off-site to prevent a similar situation from recurring,&#8221; stated Secretary Shawn Sullivan of the Department on Aging.</p></blockquote>
<p>The Department of Aging also advised their customers to contact their banks and credit card companies and let them know they are victims of a data theft, prompting them to keep an eye on any suspicious activity in the following months.</p>
<div id="crp_related"><h3>Related Posts:</h3><ul><li><a href="http://www.endpoint-security.info/2011/06/20/hacks-and-stolen-hardware-top-data-breach-causes/" rel="bookmark" class="crp_title">Hacks and Stolen Hardware, Top Data Breach Causes</a></li><li><a href="http://www.endpoint-security.info/2008/04/27/credit-cart-info-of-wisebuy-customers-stolen/" rel="bookmark" class="crp_title">Credit Card Info of WiseBuy Customers Stolen</a></li><li><a href="http://www.endpoint-security.info/2008/08/12/stolen-flash-drive-with-personal-info-on-2600-delphi-workers/" rel="bookmark" class="crp_title">Stolen Flash Drive with Personal Info on 2,600 Delphi Workers</a></li><li><a href="http://www.endpoint-security.info/2011/03/16/hard-drive-with-private-information-of-nearly-90000-students-missing/" rel="bookmark" class="crp_title">Hard drive with private information of nearly 90,000 students missing</a></li><li><a href="http://www.endpoint-security.info/2011/01/03/stolen-laptop-jeopardizes-more-than-3000-patients/" rel="bookmark" class="crp_title">Stolen laptop jeopardizes more than 3000 patients</a></li></ul></div>]]></content:encoded>
			<wfw:commentRss>http://www.endpoint-security.info/2012/02/01/stolen-laptop-and-flash-drive-expose-7000-to-data-theft/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Data breach exposes records of 1.8 million New York utilities customers</title>
		<link>http://www.endpoint-security.info/2012/01/26/data-breach-exposes-records-of-1-8-million-new-york-utilities-customers/</link>
		<comments>http://www.endpoint-security.info/2012/01/26/data-breach-exposes-records-of-1-8-million-new-york-utilities-customers/#comments</comments>
		<pubDate>Thu, 26 Jan 2012 16:40:52 +0000</pubDate>
		<dc:creator>Agent Smith</dc:creator>
				<category><![CDATA[Data Theft & Loss]]></category>
		<category><![CDATA[endpoint security]]></category>
		<category><![CDATA[Identity Theft]]></category>
		<category><![CDATA[data breach]]></category>
		<category><![CDATA[data leak]]></category>
		<category><![CDATA[fraud]]></category>
		<category><![CDATA[NY public service comission]]></category>
		<category><![CDATA[NYSEG]]></category>
		<category><![CDATA[RG&E]]></category>

		<guid isPermaLink="false">http://www.endpoint-security.info/?p=839</guid>
		<description><![CDATA[A data breach affecting 1.8 million customers of two New York utilities companies has recently been made public by the  New York State Public Service Commission. The investigation into this data breach was initiated after an employee from a third party IT company contracted by New York State Electric &#38; Gas (NYSEG) and Rochester Gas and [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.endpoint-security.info%2F2012%2F01%2F26%2Fdata-breach-exposes-records-of-1-8-million-new-york-utilities-customers%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.endpoint-security.info%2F2012%2F01%2F26%2Fdata-breach-exposes-records-of-1-8-million-new-york-utilities-customers%2F&amp;source=cososys&amp;style=normal&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p>A data breach affecting 1.8 million customers of two New York utilities companies has recently been made public by the  New York State Public Service Commission. <a href="https://threatpost.com/en_us/blogs/data-breach-affects-two-million-ny-customers-state-commission-investigate-012412" target="_blank">The investigation into this data breach was initiated</a> after an employee from a third party IT company contracted by New York State Electric &amp; Gas (NYSEG) and Rochester Gas and Electric (RG&amp;E) was given unauthorized access to the company’s databases.</p>
<p>It is not clear if accessing the customer databases had any malicious intent, both affected companies claiming there was no proof of any data having been misused as a consequence of the breach. But, to stay on the safe side, they have decided to send out notifications regarding the data access, as it exposed Social Security Numbers, dates of birth and financial account information, as shown in the official <a href="http://www3.dps.ny.gov/pscweb/WebFileRoom.nsf/Web/1986D5ECA1917A8A8525798E005F81DD/$File/pr12007.pdf?OpenElement" target="_blank">press release</a> sent out by the NY Commission.<span id="more-839"></span></p>
<blockquote><p>“This investigation will seek a complete understanding of the root causes for this security breach, and the measures in place to protect against such a breach,” said the Commission&#8217;s Chairman Garry Brown.</p></blockquote>
<p>NYSEG and RG&amp;E have  also partnered with credit service group Experian to offer free credit card monitoring to the 1.8 million customers affected by the data breach. They also promised their full cooperation to forensics experts and law enforcement.</p>
<p>&nbsp;</p>
<div id="crp_related"><h3>Related Posts:</h3><ul><li><a href="http://www.endpoint-security.info/2012/01/24/zappos-and-amazon-face-consequences-of-data-breach/" rel="bookmark" class="crp_title">Zappos and Amazon face consequences of data breach</a></li><li><a href="http://www.endpoint-security.info/2010/11/01/one-million-pay-for-citibank-credit-card-account-theft/" rel="bookmark" class="crp_title">Court orders one million pay restitution for Citibank credit card accounts theft</a></li><li><a href="http://www.endpoint-security.info/2008/09/06/real-count-ny-bank-lost-data-on-12-million-customers/" rel="bookmark" class="crp_title">Real Count: NY Bank Lost Data on 12 Million Customers</a></li><li><a href="http://www.endpoint-security.info/2008/05/31/personal-info-on-45000-stolen-from-state-street/" rel="bookmark" class="crp_title">Personal Info on 45,000 Stolen from State Street</a></li><li><a href="http://www.endpoint-security.info/2008/05/29/breach-at-new-york-bank-exposes-millions-to-high-risks/" rel="bookmark" class="crp_title">Breach at New York Bank Exposes Millions to High Risks</a></li></ul></div>]]></content:encoded>
			<wfw:commentRss>http://www.endpoint-security.info/2012/01/26/data-breach-exposes-records-of-1-8-million-new-york-utilities-customers/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>EasyLock 2 &#8211; Cross-platform portable data encryption solution from CoSoSys</title>
		<link>http://www.endpoint-security.info/2012/01/26/easylock-2-cross-platform-portable-data-encryption-solution-from-cososys/</link>
		<comments>http://www.endpoint-security.info/2012/01/26/easylock-2-cross-platform-portable-data-encryption-solution-from-cososys/#comments</comments>
		<pubDate>Thu, 26 Jan 2012 10:09:46 +0000</pubDate>
		<dc:creator>Agent Smith</dc:creator>
				<category><![CDATA[Data Encryption]]></category>
		<category><![CDATA[Security Voyeurism]]></category>
		<category><![CDATA[Sneak Peeks]]></category>
		<category><![CDATA[CoSoSys]]></category>
		<category><![CDATA[cross platform data encryption]]></category>
		<category><![CDATA[data loss prevention]]></category>
		<category><![CDATA[Data Security]]></category>
		<category><![CDATA[EasyLock]]></category>
		<category><![CDATA[EasyLock 2]]></category>
		<category><![CDATA[new releases]]></category>
		<category><![CDATA[portable data encryption]]></category>
		<category><![CDATA[portable data protection]]></category>
		<category><![CDATA[security solutions]]></category>

		<guid isPermaLink="false">http://www.endpoint-security.info/?p=836</guid>
		<description><![CDATA[The biggest challenge of securing modern IT infrastructures is to protect networks that mix different platforms and operating systems. CoSoSys has always considered this challenge when releasing a new version of their endpoint security and data loss prevention solutions, making them available for Windows, Mac and Linux. The same holds true for the freshly released [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.endpoint-security.info%2F2012%2F01%2F26%2Feasylock-2-cross-platform-portable-data-encryption-solution-from-cososys%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.endpoint-security.info%2F2012%2F01%2F26%2Feasylock-2-cross-platform-portable-data-encryption-solution-from-cososys%2F&amp;source=cososys&amp;style=normal&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p><img style="float: left; margin-right: 10px" title="easy lock 2 portable data protection" src="http://www.endpoint-security.info/wp-content/uploads/2012/01/easy-lock-2-portable-data-protection-300x201.jpg" alt="" width="240" height="161" />The biggest challenge of securing modern IT infrastructures is to protect networks that mix different platforms and operating systems. CoSoSys has always considered this challenge when releasing a new version of their endpoint security and data loss prevention solutions, making them available for Windows, Mac and Linux. The same holds true for the <a href="http://www.macnn.com/articles/12/01/26/supports.mac.windows.opensuse.and.ubuntu/" target="_blank">freshly released EasyLock version 2</a>, the software developer&#8217;s portable data protection solution.</p>
<p>This<a href="http://it.tmcnet.com/news/2012/01/25/6075823.htm" target="_blank"> enhanced new version</a> offers full support for <a href="http://www.endpointprotector.com/en/index.php/products/easylock" target="_blank">cross-platform data encryption</a> between Windows, Mac OS X and Linux openSUSE and Ubuntu. EasyLock 2 comes with military-grade protection for data stored on USB flash drives and other portable storage devices through its 256bit AES encryption. It also allows cross platform mobility by enabling users to protect their files when in transit and to easily access them on different operating systems. <span id="more-836"></span></p>
<p>To make things simpler, everything is handled through an easy to use, intuitive interface. As the company CEO, Roman Foeckl explained, the main goal of this new version is to take a task that&#8217;s usually perceived as complicated and time consuming, data encryption, and turn it into a natural, seamless process. A big step into keeping confidential data safe is to integrate security policies into daily activities without burdening business or home users, and that&#8217;s exactly what EasyLock achieved with this new version.</p>
<p>The portable data encryption solution targets both home users that want to encrypt their private files, pictures or other personal information on a USB Flash Drive or external HDD and move them between a Windows PC in the office and a Mac at home, and  business users that need to ensure the privacy and protection of company and client confidential data.</p>
<p>EasyLock 2 can further enhance corporate data security when used with CoSoSys&#8217;  <a href="http://www.endpointprotector.com/en/index.php/products/endpoint_protector" target="_blank">device control and data loss prevention solution</a> Endpoint Protector, as it provides enforced encryption of data moved between endpoints of the corporate network. If you want to test it before you buy, EasyLock2 is available as a 30 day free trial at <a href="http://www.endpointprotector.com/" target="_blank">http://www.EndpointProtector.com</a>.</p>
<div id="crp_related"><h3>Related Posts:</h3><ul><li><a href="http://www.endpoint-security.info/2009/10/15/device-control-solution-for-windows-7-and-snow-leopard/" rel="bookmark" class="crp_title">The first fully compatible Device Control solution for Windows 7 and Mac OS X Snow Leopard</a></li><li><a href="http://www.endpoint-security.info/2010/05/27/my-endpoint-protector-in-japan/" rel="bookmark" class="crp_title">My Endpoint Protector makes its way into Japan</a></li><li><a href="http://www.endpoint-security.info/2010/10/13/endpoint-protector-2009-for-mac-introduces-file-tracing-for-portable-devices/" rel="bookmark" class="crp_title">Endpoint Protector 2009 for Mac Introduces File Tracing for Portable Devices</a></li><li><a href="http://www.endpoint-security.info/2010/09/09/manchester-police-lost-usb-stick-breach/" rel="bookmark" class="crp_title">Manchester Police Denies Ownership of lost USB stick with Classified Information</a></li><li><a href="http://www.endpoint-security.info/2010/09/28/conficker-stuxnet-cososys-advisory/" rel="bookmark" class="crp_title">How to Stop Conficker/Stuxnet in four easy steps &#8211; Advisory by CoSoSys</a></li></ul></div>]]></content:encoded>
			<wfw:commentRss>http://www.endpoint-security.info/2012/01/26/easylock-2-cross-platform-portable-data-encryption-solution-from-cososys/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Zappos and Amazon face consequences of data breach</title>
		<link>http://www.endpoint-security.info/2012/01/24/zappos-and-amazon-face-consequences-of-data-breach/</link>
		<comments>http://www.endpoint-security.info/2012/01/24/zappos-and-amazon-face-consequences-of-data-breach/#comments</comments>
		<pubDate>Tue, 24 Jan 2012 19:27:33 +0000</pubDate>
		<dc:creator>Agent Smith</dc:creator>
				<category><![CDATA[Data Theft & Loss]]></category>
		<category><![CDATA[Identity Theft]]></category>
		<category><![CDATA[In the News]]></category>
		<category><![CDATA[Amazon]]></category>
		<category><![CDATA[credit card information]]></category>
		<category><![CDATA[data breach]]></category>
		<category><![CDATA[Data Loss]]></category>
		<category><![CDATA[hacker attach]]></category>
		<category><![CDATA[lawsuit]]></category>
		<category><![CDATA[negligence]]></category>
		<category><![CDATA[security breach]]></category>
		<category><![CDATA[Zappos]]></category>

		<guid isPermaLink="false">http://www.endpoint-security.info/?p=834</guid>
		<description><![CDATA[When you are the lead artist of a security mishaps that ended up in a data breach affecting some 24 million people, consequences are bound to catch up with you. And they just have caught up with shoe retailer Zappos.com and the bigger online fish behind them, Amazon.com. The two companies are being sued by [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.endpoint-security.info%2F2012%2F01%2F24%2Fzappos-and-amazon-face-consequences-of-data-breach%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.endpoint-security.info%2F2012%2F01%2F24%2Fzappos-and-amazon-face-consequences-of-data-breach%2F&amp;source=cososys&amp;style=normal&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p>When you are the lead artist of a security mishaps that ended up in a data breach affecting some 24 million people, consequences are bound to catch up with you. And they just have caught up with shoe retailer Zappos.com and the bigger online fish behind them, Amazon.com. <a href="http://www.darkreading.com/authentication/167901072/security/privacy/232500341/zappos-amazon-sued-over-data-breach.html" target="_blank">The two companies are being sued by the customers affected by the data breach</a>, being accused of negligence.</p>
<p>A woman from Texas seems to be the main promoter in this Kentucky lawsuit. She claims that she and millions of other customers were harmed by the exposure of their personal account information. Zappos and Amazon have not commented on the lawsuit as of earlier today. <span id="more-834"></span></p>
<p>The Zappos data breach was made public on Sunday when the company emailed employees and customers to let them know that names, phone numbers and email addresses of customers might have been accessed in a hacker attack.  The same statement reassured them that credit card and payment information had not been stolen. Zappos also advised its customers to reset account passwords on their site and any other sites where similar passwords were being used.</p>
<p>The attorneys of the Texas woman are seeking class-action status on behalf of the 24 million affected customers, claiming the security breach was actually a violation of the federal Fair Credit Reporting Act. The sum the lawsuit seeks has not been specified, but it is in the range of millions of dollars in compensatory and exemplary damages for emotional distress and loss of privacy. It also seeks to have Zappos court-ordered to pay for credit monitoring and identity theft insurance, plus periodic audits, for all those affected by the data breach.</p>
<p>&nbsp;</p>
<div id="crp_related"><h3>Related Posts:</h3><ul><li><a href="http://www.endpoint-security.info/2010/11/01/one-million-pay-for-citibank-credit-card-account-theft/" rel="bookmark" class="crp_title">Court orders one million pay restitution for Citibank credit card accounts theft</a></li><li><a href="http://www.endpoint-security.info/2008/06/29/montgomery-ward-kept-customers-in-the-dark-on-data-theft/" rel="bookmark" class="crp_title">Montgomery Ward Kept Customers in the Dark on Data Theft</a></li><li><a href="http://www.endpoint-security.info/2009/02/04/tjx-sale-for-data-brech/" rel="bookmark" class="crp_title">TJX finds closure for breach in big time sale</a></li><li><a href="http://www.endpoint-security.info/2012/01/26/data-breach-exposes-records-of-1-8-million-new-york-utilities-customers/" rel="bookmark" class="crp_title">Data breach exposes records of 1.8 million New York utilities customers</a></li><li><a href="http://www.endpoint-security.info/2011/07/28/hackers-will-always-have-their-stolen-data/" rel="bookmark" class="crp_title">Hackers will always have their stolen data</a></li></ul></div>]]></content:encoded>
			<wfw:commentRss>http://www.endpoint-security.info/2012/01/24/zappos-and-amazon-face-consequences-of-data-breach/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>New report says cyber-attack risk to global stability is great and very real</title>
		<link>http://www.endpoint-security.info/2012/01/13/new-report-says-cyber-attack-risk-to-global-stability-is-great-and-very-real/</link>
		<comments>http://www.endpoint-security.info/2012/01/13/new-report-says-cyber-attack-risk-to-global-stability-is-great-and-very-real/#comments</comments>
		<pubDate>Fri, 13 Jan 2012 08:52:57 +0000</pubDate>
		<dc:creator>Agent Smith</dc:creator>
				<category><![CDATA[In The Spotlight]]></category>
		<category><![CDATA[Research and Studies]]></category>
		<category><![CDATA[security breach]]></category>
		<category><![CDATA[cyber attacks]]></category>
		<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[Davos]]></category>
		<category><![CDATA[global stability]]></category>
		<category><![CDATA[World Economic Forum]]></category>

		<guid isPermaLink="false">http://www.endpoint-security.info/?p=831</guid>
		<description><![CDATA[Security professionals fear cyber-attacks and warn ab0ut them every chance they get. Countries all over the world are trying to put up the best cyber defenses technology advancements can buy, but it does take a well established institution in the field of global economy to actually make us all tremble and finally believe cyber attacks [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.endpoint-security.info%2F2012%2F01%2F13%2Fnew-report-says-cyber-attack-risk-to-global-stability-is-great-and-very-real%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.endpoint-security.info%2F2012%2F01%2F13%2Fnew-report-says-cyber-attack-risk-to-global-stability-is-great-and-very-real%2F&amp;source=cososys&amp;style=normal&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p><img style="float: left; margin-right: 10px" title="cyber attacks global economic stability" src="http://www.endpoint-security.info/wp-content/uploads/2012/01/cyber-attacks-global-economic-stability.jpg" alt="" width="240" height="169" />Security professionals fear cyber-attacks and warn ab0ut them every chance they get. Countries all over the world are trying to put up the best cyber defenses technology advancements can buy, but it does take a well established institution in the field of global economy to actually make us all tremble and finally believe cyber attacks pose a great threat to global stability.</p>
<p>The <a href="http://www.theregister.co.uk/2012/01/12/world_economic_forum_risks/" target="_blank">World Economic Forum&#8217;s (WEF) Global Risks for 2012 report places cyber-attacks against governments and businesses among the top five risks in the world to global stability</a>, in terms of likelihood. Cyber-attacks come right after income disparity, fiscal imbalances, and the rising greenhouse gas emissions, shows the report released in WEF&#8217;s annual conference held in Davos, Switzerland. <span id="more-831"></span></p>
<p>The report put together by the WEF&#8217;s Risk Response Network is based on assessments of the tech industry which pointed out cyber-attacks as the biggest threat of all, as they can lead to devastating malfunctions in power plants, water supplies and other critical systems. The likelihood of such a globally debilitating attack is still up for debate, and other economic threats to global stability, such as income disparity, are far more pressing. WEF however believes we are not even close to understanding the risks posed to and handled by internet security.</p>
<p>Steve Wilson, chief risk officer for general insurance at Zurich and a member of the project, said:  &#8221;<em>We don&#8217;t even really understand the risks yet.&#8221;</em></p>
<p>The old-news threat to tech experts is now becoming an issue making its way into all the political agendas that matter. The the report calls &#8220;urgently&#8221; for new mechanisms to get private investment into exploring system vulnerabilities. It also pointed out how information about cyber-attacks and cybercrime is hard to get to in an objective fashion:</p>
<blockquote><p>Research into cyber threats against governments and the private sector has largely been funded by those who are in the business of selling internet security solutions – a potential bias that causes scepticism. Academic and policy papers are based largely on anecdotal case studies.</p>
<p>Vendors of online security products have an interest in talking up the threats of cybercrime, while victims of cybercrime often have an interest in remaining silent. It is therefore very difficult for firms and organisations to get a clear picture of the true levels of the risk and needs for investment. Correcting such information asymmetries should be at the centre of policies to improve global cyber security and to ensure an efficient market.</p></blockquote>
<p>The full report is available online <a href="http://www3.weforum.org/docs/WEF_GlobalRisks_Report_2012.pdf" target="_blank">here</a>.</p>
<p>&nbsp;</p>
<p>&nbsp;</p>
<div id="crp_related"><h3>Related Posts:</h3><ul><li><a href="http://www.endpoint-security.info/2010/06/22/cyber-attacks-warfare-without-a-smoking-gun/" rel="bookmark" class="crp_title">Cyber attacks: Warfare without a Smoking Gun</a></li><li><a href="http://www.endpoint-security.info/2008/07/01/top-vendors-join-forces-for-it-security/" rel="bookmark" class="crp_title">Top Vendors Join Forces for IT Security</a></li><li><a href="http://www.endpoint-security.info/2010/10/06/cyber-criminals-change-targets-small-fish-are-easier-to-catch/" rel="bookmark" class="crp_title">Cyber criminals change targets &#8211; small fish are easier to catch?</a></li><li><a href="http://www.endpoint-security.info/2010/10/01/stuxnet-and-cyber-warfare/" rel="bookmark" class="crp_title">Stuxnet and cyber warfare &#8211; the future is now</a></li><li><a href="http://www.endpoint-security.info/2010/07/27/security-breach-costs/" rel="bookmark" class="crp_title">The real cost of a security breach: 1 to 53 million USD per year</a></li></ul></div>]]></content:encoded>
			<wfw:commentRss>http://www.endpoint-security.info/2012/01/13/new-report-says-cyber-attack-risk-to-global-stability-is-great-and-very-real/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Ramnit worm steals 45000 Facebook users&#8217; credentials</title>
		<link>http://www.endpoint-security.info/2012/01/09/ramnit-worm-steals-45000-facebook-users-credentials/</link>
		<comments>http://www.endpoint-security.info/2012/01/09/ramnit-worm-steals-45000-facebook-users-credentials/#comments</comments>
		<pubDate>Mon, 09 Jan 2012 15:05:15 +0000</pubDate>
		<dc:creator>cristina</dc:creator>
				<category><![CDATA[Data Theft & Loss]]></category>
		<category><![CDATA[In the News]]></category>
		<category><![CDATA[In The Spotlight]]></category>
		<category><![CDATA[Malware Infections]]></category>
		<category><![CDATA[data theft]]></category>
		<category><![CDATA[email]]></category>
		<category><![CDATA[facebook]]></category>
		<category><![CDATA[Ramnit]]></category>

		<guid isPermaLink="false">http://www.endpoint-security.info/?p=824</guid>
		<description><![CDATA[The Ramnit worm, first discovered a year and a half ago, a malware that used to target online banking and FTP credentials, makes victims among UK and French Facebook users. A new version of the worm managed to steal more than 45000 Facebook usernames and passwords and tried to attack the e-mail accounts and virtual [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.endpoint-security.info%2F2012%2F01%2F09%2Framnit-worm-steals-45000-facebook-users-credentials%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.endpoint-security.info%2F2012%2F01%2F09%2Framnit-worm-steals-45000-facebook-users-credentials%2F&amp;source=cososys&amp;style=normal&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p>The Ramnit worm, first discovered a year and a half ago, a malware that used to target online banking and FTP credentials, makes victims among UK and French Facebook users.</p>
<p>A new version of the worm managed to steal more than 45000 Facebook usernames and passwords and tried to attack the e-mail accounts and virtual private networks of affected persons. The worm has sent malicious links to victims&#8217; friends, links that downloaded malware to the person&#8217;s computer, which helped spread the worm even faster.</p>
<p>It seems like the attackers are adapting to market tendencies, targeting social networks rather than traditional communication means (such as email).</p>
<p>For more details, you can read the <a href="http://www.techweekeurope.co.uk/news/facebook-ramnit-worm-variant-stole-uk-log-in-credentials-report-claims-52733">techweekeurope.co.uk</a> report.</p>
<div id="crp_related"><h3>Related Posts:</h3><ul><li><a href="http://www.endpoint-security.info/2010/09/20/stuxnet-worm-threatening-scada-systems-and-other-industrial-environments/" rel="bookmark" class="crp_title">Stuxnet Worm: New threat targets Scada Systems and other industrial environments</a></li><li><a href="http://www.endpoint-security.info/2011/02/04/facebook-fixes-data-theft-issue/" rel="bookmark" class="crp_title">Facebook fixes data theft issue</a></li><li><a href="http://www.endpoint-security.info/2008/12/02/us-army-bans-usb-devices-to-stop-worm-from-spreading/" rel="bookmark" class="crp_title">US Army bans USB devices to stop worm from spreading</a></li><li><a href="http://www.endpoint-security.info/2009/05/13/i-spy-with-my-little-eye/" rel="bookmark" class="crp_title">I Spy with My Little Eye&#8230;.</a></li><li><a href="http://www.endpoint-security.info/2011/01/03/new-variations-of-the-stuxnet-worm-expected-to-emerge-in-2011/" rel="bookmark" class="crp_title">New variations of the Stuxnet worm expected to emerge in 2011</a></li></ul></div>]]></content:encoded>
			<wfw:commentRss>http://www.endpoint-security.info/2012/01/09/ramnit-worm-steals-45000-facebook-users-credentials/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Security audit reveals Department of Taxation internal breaches</title>
		<link>http://www.endpoint-security.info/2011/12/18/security-audit-reveals-department-of-taxation-internal-breaches/</link>
		<comments>http://www.endpoint-security.info/2011/12/18/security-audit-reveals-department-of-taxation-internal-breaches/#comments</comments>
		<pubDate>Sun, 18 Dec 2011 08:00:34 +0000</pubDate>
		<dc:creator>Agent Smith</dc:creator>
				<category><![CDATA[DLP]]></category>
		<category><![CDATA[endpoint security]]></category>
		<category><![CDATA[compromised database]]></category>
		<category><![CDATA[DOTAX]]></category>
		<category><![CDATA[Hawaii DOTAX]]></category>
		<category><![CDATA[internal breach]]></category>
		<category><![CDATA[security audit]]></category>
		<category><![CDATA[security breach]]></category>
		<category><![CDATA[state department]]></category>

		<guid isPermaLink="false">http://www.endpoint-security.info/?p=819</guid>
		<description><![CDATA[The US Department of Taxation (DOTAX) decided to take a closer look at how their systems work this year. The process of evaluation included a security audit which lead to discovering internal security breaches dating back to 2008. DOTAX celebrated the three years of undiscovered breaches by putting employees of the Hawaii DOTAX on administrative [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.endpoint-security.info%2F2011%2F12%2F18%2Fsecurity-audit-reveals-department-of-taxation-internal-breaches%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.endpoint-security.info%2F2011%2F12%2F18%2Fsecurity-audit-reveals-department-of-taxation-internal-breaches%2F&amp;source=cososys&amp;style=normal&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p>The US Department of Taxation (DOTAX) decided to take a closer look at how their systems work this year. The process of evaluation included a security audit which lead to <a href="http://mauinow.com/2011/12/15/department-of-taxation-security-audit-leads-to-investigation/" target="_blank">discovering internal security breaches dating back to 2008</a>. DOTAX celebrated the three years of undiscovered breaches by putting employees of the Hawaii DOTAX on administrative leave without pay and starting a comprehensive investigation.</p>
<p style="text-align: center;"><a href="http://endpointprotector.com"><img class="aligncenter" style="border-style: initial; border-color: initial; border-image: initial; border-width: 0px;" title="Device Control for Windows and Mac" src="/wp-content/uploads/banners_2011/en-336x280.jpg" alt="Device Control for Windows and Mac" width="336" height="280" align="middle" border="0" /></a></p>
<p>The breaches affected the Department’s computer tax database but no one knows when they occurred, it is suspected they happened at least as far back as 2008.The discovered incidents were immediately turned over to the Department of the Attorney General for review and investigation.<span id="more-819"></span></p>
<blockquote><p>“Protecting the integrity of tax records is a serious matter,” said Fred Pablo, the state tax director, in a written statement. “The possibility of wrongful actions are extremely disturbing, which is why these matters were immediately reported to the Attorney General.”</p></blockquote>
<p>Other than announcing some of their staff were put on administrative leave, DOTAX did not release any other details on the investigation, stating they would only do so after it had been completed.  We look forward to that moment to know how many people have been affected and what kind of protection they will receive.</p>
<div id="crp_related"><h3>Related Posts:</h3><ul><li><a href="http://www.endpoint-security.info/2011/10/24/spectrum-data-theft/" rel="bookmark" class="crp_title">Spectrum Health Client Data Stolen With Hard Drive</a></li><li><a href="http://www.endpoint-security.info/2011/06/29/employee-goe-home-with-9000-records-of-coworkers/" rel="bookmark" class="crp_title">Employee goes home with 9,000 records of coworkers</a></li><li><a href="http://www.endpoint-security.info/2008/09/06/2008-sky-is-the-limit-for-us-data-breaches/" rel="bookmark" class="crp_title">2008: Sky is the Limit for US Data Breaches</a></li><li><a href="http://www.endpoint-security.info/2011/04/07/93500-midstate-medical-center-patients-affected-by-data-breach/" rel="bookmark" class="crp_title">93,500 MidState Medical Center patients affected by data breach</a></li><li><a href="http://www.endpoint-security.info/2011/08/01/short-data-breach-disclosure-windows-potentially-damaging-to-consumers/" rel="bookmark" class="crp_title">Short Data Breach Disclosure Windows, Potentially Damaging to Consumers</a></li></ul></div>]]></content:encoded>
			<wfw:commentRss>http://www.endpoint-security.info/2011/12/18/security-audit-reveals-department-of-taxation-internal-breaches/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Healthcare data breaches on the rise and costing billions</title>
		<link>http://www.endpoint-security.info/2011/12/02/healthcare-data-breaches-on-the-rise-and-costing-billions/</link>
		<comments>http://www.endpoint-security.info/2011/12/02/healthcare-data-breaches-on-the-rise-and-costing-billions/#comments</comments>
		<pubDate>Fri, 02 Dec 2011 21:09:13 +0000</pubDate>
		<dc:creator>Agent Smith</dc:creator>
				<category><![CDATA[Data Theft & Loss]]></category>
		<category><![CDATA[DLP]]></category>
		<category><![CDATA[Research and Studies]]></category>
		<category><![CDATA[data breaches]]></category>
		<category><![CDATA[healthcare]]></category>
		<category><![CDATA[healthcare providers]]></category>
		<category><![CDATA[hospitals]]></category>
		<category><![CDATA[Ponemon Institute]]></category>
		<category><![CDATA[report]]></category>
		<category><![CDATA[research]]></category>

		<guid isPermaLink="false">http://www.endpoint-security.info/?p=814</guid>
		<description><![CDATA[Based on the many stories about data breaches reported by organizations in the healthcare industry, from hospitals to insurance companies and other third-party companies that deal with healthcare data, we could have guessed this is not even close to being a top sector when it comes to data security. A new report released by the [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.endpoint-security.info%2F2011%2F12%2F02%2Fhealthcare-data-breaches-on-the-rise-and-costing-billions%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.endpoint-security.info%2F2011%2F12%2F02%2Fhealthcare-data-breaches-on-the-rise-and-costing-billions%2F&amp;source=cososys&amp;style=normal&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p><img style="float: left; margin-right: 10px" title="hospital" src="http://www.endpoint-security.info/wp-content/uploads/2011/12/hospital.jpg" alt="" width="240" height="158" />Based on the many stories about data breaches reported by organizations in the healthcare industry, from hospitals to insurance companies and other third-party companies that deal with healthcare data, we could have guessed this is not even close to being a top sector when it comes to data security. <a href="http://www.darkreading.com/insider-threat/167801100/security/attacks-breaches/232200606/healthcare-data-in-critical-condition.html" target="_blank">A new report released by the Ponemon Institute</a> now brings even further insight into the state of the healthcare industry, showing a spike in data breaches of over 30% and average annual costs of 6.5 billion US dollars.</p>
<p>The &#8220;2011 Benchmark Study on Patient Privacy and Data Security,&#8221; commissioned by IDExperts, idendified employee error to be one of the main cause for data breaches in hospitals and healthcare providers. These types of organizations in the healthcare industry suffered an average of four data breaches in the past year. Nearly 30 percent of healthcare companies said the breaches they suffered resulted in medical identity theft – an over 25 percent increase over 2010.<span id="more-814"></span></p>
<p>The jump is not entirely determined by a larger number of breaches happening in the past year compared to the previous one. It&#8217;s actually the effect of better detection capabilities by healthcare organizations, <a href="http://www.darkreading.com/insider-threat/167801100/security/attacks-breaches/232200606/healthcare-data-in-critical-condition.html" target="_blank">according to Larry Ponemon, chairman and founder of the Ponemon Institute. </a></p>
<blockquote><p>&#8220;It was not too surprising that the rate of data loss increased … [But] we think that finding may not be as negative as it appears, and could be a discovery-rate increase with more control and governance practices and use of enabling technologies.&#8221;</p></blockquote>
<p>The strong increase of mobile device usage in the healthcare segment is also a high-impact factor. About 80% use such devices to gather, transmit and store patient data, and a troubling 50% don&#8217;t secure their mobile devices. The help they provide in patient care is overshadowed by the major risks to data security the patients are exposed to.</p>
<p>Nearly half of the healthcare industry breached were caused by stolen or lost computing or data devices and another 46% were caused by errors by third-party providers. Moreover, the healthcare organizations are just unaware of where patient data is stored &#8211; 61% don&#8217;t really know where all their patient data is kept. If that&#8217;s not enough, over half of them aren&#8217;t sure they actually can detect incidents where patient data is exposed.</p>
<p>Hospitals don&#8217;t lack written policies when it comes to data breach reporting &#8211; about 80% have them. Too bad about 60% consider them ineffective.</p>
<p>A full copy of the report <a href="http://www2.idexpertscorp.com/ponemon-study-2011" target="_blank">is available here for download</a>.</p>
<div id="crp_related"><h3>Related Posts:</h3><ul><li><a href="http://www.endpoint-security.info/2011/08/29/new-data-breaches-reported-by-healthcare-companies/" rel="bookmark" class="crp_title">New Data Breaches Reported by Healthcare Companies</a></li><li><a href="http://www.endpoint-security.info/2010/07/27/security-breach-costs/" rel="bookmark" class="crp_title">The real cost of a security breach: 1 to 53 million USD per year</a></li><li><a href="http://www.endpoint-security.info/2011/09/10/data-breach-roundup-missing-hardware/" rel="bookmark" class="crp_title">Data breach roundup: Missing hardware</a></li><li><a href="http://www.endpoint-security.info/2008/05/20/hospitals-a-danger-to-your-personal-data/" rel="bookmark" class="crp_title">Hospitals, a Danger to Your Personal Data</a></li><li><a href="http://www.endpoint-security.info/2009/07/23/uk-data-breaches-rise/" rel="bookmark" class="crp_title">UK data breaches on the rise</a></li></ul></div>]]></content:encoded>
			<wfw:commentRss>http://www.endpoint-security.info/2011/12/02/healthcare-data-breaches-on-the-rise-and-costing-billions/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>British authorities experienced 1,035 data loss incidents</title>
		<link>http://www.endpoint-security.info/2011/11/24/british-authorities-experienced-1035-data-loss-incidents/</link>
		<comments>http://www.endpoint-security.info/2011/11/24/british-authorities-experienced-1035-data-loss-incidents/#comments</comments>
		<pubDate>Thu, 24 Nov 2011 09:05:24 +0000</pubDate>
		<dc:creator>Agent Smith</dc:creator>
				<category><![CDATA[Data Theft & Loss]]></category>
		<category><![CDATA[DLP]]></category>
		<category><![CDATA[authorities]]></category>
		<category><![CDATA[BIg Brother Watch]]></category>
		<category><![CDATA[data breaches]]></category>
		<category><![CDATA[Data Loss]]></category>
		<category><![CDATA[Data Security]]></category>
		<category><![CDATA[local council]]></category>
		<category><![CDATA[report]]></category>
		<category><![CDATA[UK]]></category>

		<guid isPermaLink="false">http://www.endpoint-security.info/?p=809</guid>
		<description><![CDATA[Only 55 of the data loss breaches have actually been reported If you can&#8217;t stop data breaches, at least cover them up! This seems to be the data security code British authorities go by. Too bad for them there is something called Freedom of Information Act requests&#8230; A new report issued by privacy campaign group [...]]]></description>
			<content:encoded><![CDATA[<div class="tweetmeme_button" style="float: right; margin-left: 10px;">
			<a href="http://api.tweetmeme.com/share?url=http%3A%2F%2Fwww.endpoint-security.info%2F2011%2F11%2F24%2Fbritish-authorities-experienced-1035-data-loss-incidents%2F"><br />
				<img src="http://api.tweetmeme.com/imagebutton.gif?url=http%3A%2F%2Fwww.endpoint-security.info%2F2011%2F11%2F24%2Fbritish-authorities-experienced-1035-data-loss-incidents%2F&amp;source=cososys&amp;style=normal&amp;b=2" height="61" width="50" /><br />
			</a>
		</div>
<p><em><strong>Only 55 of the data loss breaches have actually been reported</strong></em></p>
<p>If you can&#8217;t stop data breaches, at least cover them up! This seems to be the data security code British authorities go by. Too bad for them there is something called Freedom of Information Act requests&#8230; A new report issued by privacy campaign group Big Brother Watch showed that councils across the UK experienced over a thousand data loss cases over a three year period &#8211; August 2008 to August 2011.</p>
<p>To get the information, the group sent 433 FOIs to local authorities and councils across the Great Britain and showed s shocking discrepancy between the reported 50 something incidents and the harsh reality. Not only did BBW uncover the data mishandling cases, they also requested information on what happened to the employees of said councils &#8211; if they had been disciplined, fired or prosecuted over the data breaches -, and inquired about the council&#8217;s response to each incident. <span id="more-809"></span></p>
<p>According to the 395 replies received,</p>
<blockquote><p>&#8220;We have uncovered more than 1,000 incidents across 132 local authorities, including at least 35 councils who have lost information about children and those in care,&#8221; said BBW in a <a href="http://www.bigbrotherwatch.org.uk/home/2011/11/local-authority-data-loss-exposed.html#.Tsy-109jUjw" target="_blank">statement</a> accompanying its <a href="http://bigbrotherwatch.org.uk/la-data-loss.pdf" target="_blank">report (PDF)</a>. &#8221;Highly confidential information has been treated without the proper care and respect it deserves. At least 244 laptops and portable computers were lost, while a minimum of 98 memory sticks and more than 93 mobile devices went missing.&#8221;</p></blockquote>
<p>Only 55 of the incidents were subsequently reported to the Information Commissioner&#8217;s Office, which handles data loss complaints. In only 9 cases, those involved in the data breach were fired.</p>
<blockquote><p>“I welcome this research by Big Brother Watch,&#8221; <a href="http://www.theregister.co.uk/2011/11/23/big_brother_watch_report/" target="_blank">local government minister Grant Shapps told the data protection advocates</a>. &#8221;This reinforces the need for steps to protect the privacy of law-abiding local residents. Civil liberties are under threat from the abuse of town hall surveillance powers, municipal nosy parkers rummaging through household bins and town hall officials losing sensitive personal data on children in care.”</p></blockquote>
<p>For a list of some of the most important data incidents included in the report, read the <a href="http://www.theregister.co.uk/2011/11/23/big_brother_watch_report/" target="_blank">story published by the Register</a>.</p>
<div id="crp_related"><h3>Related Posts:</h3><ul><li><a href="http://www.endpoint-security.info/2011/02/25/british-local-council-gets-fine-for-mishandling-of-data/" rel="bookmark" class="crp_title">British local council gets fine for mishandling of data</a></li><li><a href="http://www.endpoint-security.info/2011/08/16/more-data-breaches-caused-by-improper-use-of-flash-drives-and-laptops/" rel="bookmark" class="crp_title">More data breaches caused by improper use of flash drives and laptops</a></li><li><a href="http://www.endpoint-security.info/2009/01/19/us-2008-data-breach-growth-blamed-on-insiders/" rel="bookmark" class="crp_title">US 2008 data breach growth blamed on insiders</a></li><li><a href="http://www.endpoint-security.info/2011/08/16/june-the-month-with-the-most-data-breaches-of-2011-so-far/" rel="bookmark" class="crp_title">June, the month with the most data breaches of 2011 so far</a></li><li><a href="http://www.endpoint-security.info/2011/09/10/data-breach-roundup-missing-hardware/" rel="bookmark" class="crp_title">Data breach roundup: Missing hardware</a></li></ul></div>]]></content:encoded>
			<wfw:commentRss>http://www.endpoint-security.info/2011/11/24/british-authorities-experienced-1035-data-loss-incidents/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

