Data Theft Security

Trustwave, Symantec make acquisitions

Angela Moscaritolo January 12, 2010

Compliance management vendor Trustwave announced on Tuesday the acquisition of data encryption vendor BitArmor. Trustwave plans to integrate BitArmor's file- and full-disk encryption technology into its current data leakage prevention and endpoint security solution to help clients comply with regulations that are increasing the demand for encryption. Meanwhile, Symantec on Tuesday announced plans to buy Gideon Technologies, provider of IT risk automation, to better serve public-sector customers. Terms of both deals were not disclosed. — AM
 

Thief steals U.S. Army laptop from employee's home

Angela Moscaritolo December 17, 2009

A laptop containing the personal information of tens of thousands of U.S. Army soldiers, family members and U.S. Department of Defense employees was recently stolen.
 

U.S. and Russian officials talk cyberissues

Angela Moscaritolo December 14, 2009

American and Russian officials recently met to discuss cybersecurity issues, such as collaboration among law enforcement bodies and the use of cyberweapons, the New York Times reported in its Saturday editions.
 

Secure customer loyalty with the gift of data security

Brian Lapidus, chief operating officer, Kroll Fraud Solutions December 07, 2009

Retailers need to check their list twice to ensure the proper security measures are in place.
 

Lawsuit against breached Express Scripts dismissed

Angela Moscaritolo December 04, 2009

The case was dismissed because the plaintiff could not prove that his information was actually used fraudulently following the breach of a pharmacy benefit management provider.
 

Gov't executives cite unstructured data as top concern

Angela Moscaritolo November 18, 2009

Seventy-nine percent of federal government IT executives surveyed recently said unstructured data increases the security risk within their organization.
 

Attack tool can hijack data off unlocked iPhones

Dan Kaplan November 11, 2009

On the heels of what is believed to be the first-ever iPhone worm, hackers now have devised a way to steal data off jailbroken versions of the popular Apple device.
 

FBI: Money mule scams top $100 million

Angela Moscaritolo November 04, 2009

The FBI is dealing with new cases every week of sophisticated banking trojans being installed on PCs to swindle companies out of large amounts of money, the agency said this week.
 

Privacy groups blast new health care notification rule

Angela Moscaritolo September 22, 2009

Privacy advocates are questioning a provision of the new health care breach notification rule, which states that organizations only need to alert victims if they believe disclosure of the information "poses some harm."
 

DuPont sues employee for trade secrets data breach

Chuck Miller September 09, 2009

Industrial giant DuPont has been hit again by a malicious insider.
 

Koobface spreading through thousands of IP addresses

Dan Kaplan September 01, 2009

The Koobface worm continues to abuse social-networking sites and draw people into other malicious sites through search engine optimization tactics.
 

Identity fraud ring busted in New York

Chuck Miller August 24, 2009

Members of an alleged fraud ring have been arraigned in New York, charged with stealing identities and obtaining $22 million of wireless phone equipment and services.
 

Mass. data law revised

Dan Kaplan August 24, 2009

The deadline to comply with Massachusetts' new data security regulations -- considered among the strictest in the nation -- has been extended three months, until March 1, 2010, the state announced last week. The provisions also were updated to reflect a risk-based approach for developing a written information security policy, a move meant to assuage small businesses that have expressed concern over meeting the demands. The new language dictates that in implementing safeguards, organizations should take into account their size, the types of records they maintain and the ID theft threat they pose. — DK
 

Health care breach notification mandated

Angela Moscaritolo August 21, 2009

New breach notification mandates for health care organizations were promulgated this week, just as $1.2 billion became available to facilitate the move to digital medical records.
 

Survey: Data at risk in app testing and development

Angela Moscaritolo August 18, 2009

Eighty percent of organizations use real data during application testing and development, but most are not confident about their ability to protect it, according to a survey released Tuesday.
 

Mac OS X 10.5.8 update fixes 18 flaws

Angela Moscaritolo August 06, 2009

The vulnerabilities could allow an attacker to execute arbitrary code, obtain sensitive information, or cause a denial-of-service.
 

Black Hat: Clampi banking trojan spreading rapidly

Dan Kaplan July 30, 2009

A newly revealed banking trojan is considered one of the biggest threats on the internet because of the way it can quickly spread.
 

Report: Data attacks more frequent than CEOs think

Angela Moscaritolo July 15, 2009

CEOs often have a rosier view of data protection in their organization than other executives, according to a study released Wednesday by the Ponemon Institute and security vendor Ounce Labs.
 

Symantec wins piracy cases

Chuck Miller July 09, 2009

Symantec has been awarded $18.6 million in two federal lawsuits against distributors selling counterfeit software. The judgments were against V-Micro, based in New Jersey, and Higher Model Computer, based in Connecticut, the company announced Thursday. Symantec alleged copyright and trademark infringement and fraud against the distributors for selling counterfeit products such as Norton SystemWorks, Norton AntiVirus and pcAnywhere. — CAM
 

IBM develops selective data hiding on the fly

Chuck Miller July 09, 2009

IBM researchers say they have invented a way to selectively obscure sensitive information before it is displayed on a computer screen.
 

Security can drive business, Microsoft survey finds

Angela Moscaritolo June 24, 2009

Information security presents a unique set of challenges, but it also can enable business, a new Microsoft survey says.
 

Security expert wants feds to recruit volunteer pen testers

Dan Kaplan June 18, 2009

One respected security researcher wants to legalize the hacking of federal government and military websites -- and he wants everyone to hear him out.
 

Hackers claim they raided sensitive T-Mobile information

Dan Kaplan June 08, 2009

T-Mobile has yet to release details about an alleged massive hack of its systems.
 

GAO report finds security lagging at federal agencies

Dan Kaplan May 21, 2009

Federal agencies continue to be lax in their implementation of information security programs, according to a new report from the Government Accountability Office.
 

Hannaford lawsuits tossed

Chuck Miller May 13, 2009

A federal judge has thrown out all but one lawsuit in the Hannaford data breach case. In his ruling, U.S. District Judge D. Brock Hornby said Tuesday that consumers whose payment data are stolen can recover claims only if a merchant's negligence caused a direct loss to the consumer's account; plaintiffs who cited inconvenience or distress because of the breach could not. Of 4.2 million credentials exposed, no more than 1,800 were ever used for unauthorized purchases, according to Hannaford. — CAM
 

U.S. missile defense information found in disk bought on eBay

Angela Moscaritolo May 07, 2009

A hard disk containing the launch procedures for a U.S. military missile defense system was recently purchased on eBay.
 

LexisNexis admits to another major data breach

Angela Moscaritolo May 04, 2009

About 32,000 people are being notified that their personal information may have been compromised after a breach at consumer data provider LexisNexis resulted in identity theft and credit fraud, the company has disclosed.
 

Heartland again PCI compliant

Dan Kaplan May 01, 2009

Breached payment card processor Heartland Payment Systems has been again certified compliant with the Payment Card Industry Data Security Standard (PCI DSS), the company announced Friday. In March, two months after the breach was disclosed, Visa removed Heartland from its list of compliant service providers. Some experts questioned whether the removal meant merchants risked being fined for doing business with Heartland, but Visa issued a statement saying this was not true. Heartland said it is expects to rejoin the Visa-approved list on Monday. — DK
 

Facebook neutralizes phishing attack

Dan Kaplan April 30, 2009

Fraudsters, using hijacked Facebook accounts, tried to lure users of the social networking site into divulging their login credentials.
 

Corporate users increasingly skirt security infrastructures

Angela Moscaritolo April 16, 2009

In a recent assessment, organizations had an average of 156 applications traversing their networks -- some of which pose a danger to the organization.