IT Reseller Magazine
Article Search: Go To: Keyword 
 
   

FREE Subscription to IT Reseller Magazine






Internet Security
Internet control, email and network protection


US missile launch data on eBay hard drive
May 11, 2009  

Credant Technologies, the end-point encryption specialist, says that revelations about a hard drive purchased on eBay – which reportedly contained the launch procedures for a US military air defence system - is extremely worrying.

"This is obviously a serious lapse of security procedures for the agency concerned, but the worrying aspect about the incident is that it may not be a one-off. US government agencies - and, indeed, all government agencies worldwide - should have a policy of crushing hard drives once they have been removed from office PCs," said Michael Callahan, Credant's senior vice president.

"But this isn't a one-off situation - if we go back to April 2006, there was the well-publicised incident of a flash drive with US spy data being sold in an Afghan bazaar for just $40. The ensuing investigation into that incident revealed the fact that the data had been downloaded from an unencrypted hard drive," he added.

And the lack of encryption - rather than a lack of enforced policies on disposal of old drives - is the root cause of this latest security incident, he says.

If the data on the PC used in Afghanistan in 2006 had been encrypted, as had the data on the drive reportedly sold on eBay, then the ensuing press embarrassment for the US military would not have happened.

It is, Callahan explained, all very well having a security policy in place for the disposal of unwanted hard drives and other PC components in government agencies, but enforcing such policies is a difficult task.

Difficult, not impossible. And, says Callahan, if government agencies also encrypt all critical and private data on their networks - whether in transit or at rest, as is the case with hard drive storage systems - then this acts as a fail-safe backup for security policy failures.

"I suspect that the investigation by BT's security research centre and a number of international universities will reveal other serious security failures with hard drives," he said.

"The bottom line, as this incident - and the Afghan $40 bazaar sale - clearly proves, is that government IT security procedures, policies and enforcement systems need to be multi-layered and multi-faceted, with encryption forming the mainstay of such protection," he added.

For more on the eBay missile data saga: http://preview.tinyurl.com/d5zn3y

 


Other Internet Security News Security White Papers
Sourcefire launches Razorback, delivering a framework for multi-vendor threat detection and protection
Sourcefire, Inc., the creator of Snort and a leader in intelligent cybersecurity solutions, has launched Razorback, an open source framework designed to deliver deep inspection capabilities for combating today's most complex threats.
Trusteer warns financial malware is attacking leading US banks using Visa and MasterCard
Trusteer has announced that the Zeus (Zbot) financial malware is targeting online banking customers of 15 leading US financial institutions by exploiting two trusted credit card security programs.
Barracuda spam & virus firewall offers broader outbound email content filtering capabilities
Barracuda Networks Inc., provider of security, storage and networking solutions, has announced new features to its flagship Barracuda Spam & Virus Firewall that enhance full inbound and outbound email scanning from the same appliance.
Over half of IT professionals are still leaving mobile security to chance
As threats to corporate data grow, and the cost of breaches increase, a survey of alleged security conscious professionals has remarkably revealed that over half of respondents (52%), who admit to carrying company data on a USB stick, do not encrypt it.
Webroot announces channel expansion in Ireland
Webroot has announced its plans to recruit an additional ten strategic channel partners in Ireland, to expand the availability of Webroot Web Security Service, Webroot Email Security Service and Webroot Email Archiving Service.
What every CEO should know about advanced persistent threats and industrialised hacking
The world of hacking has evolved into two major varieties: industrialised attacks and advanced persistent threats (APT).

More >>

Understanding the value of outsourcing network security services
This white paper will examine the many new challenges that are facing today’s network owners, the pros and cons of using in-house resources and outsourcing for your network assessment and day-to-day monitoring, as well as guidelines to help select and maximize the value of outside resources.
GFI warns one anti-virus engine is not enough to protect your business
Although 99% of large British companies use anti-virus products, 43% were still infected by viruses (UK ISBS Survey 2006)
CONTENT FILTERING SOLUTIONS TECHNOLOGY REPORT APRIL 2006
Source: West Coast Labs/Netintelligence
The Trend of Threats Today: 2005 Annual Roundup and 2006 Forecast
Trend Micro
The report that follows is not only an account and analysis of 2005 threat
incidents. It also serves as a forecast of what the future holds in 2006 and
onwards. Through Trend Micro‘s extensive research and analysis of the 2005
incidents, this paper documents how threats evolved into the multi-purpose
threat regime – thus providing corporate and home users information on what
to do to ensure they remain protected against future threats. Download free white paper.
If you can't beat it, manage it
David Caughtry of Computerlinks looks at the challenges facing IT managers with the growing use of Instant Messaging in the workplace.
Are you becoming a one-stop security shop?
David Ellis, director of e-security at Unipalm discusses best practice security management and the evolution of protection technology.

More >>

advertisements


 



Related Articles

None

Let the news come to you!
Subscribe to our weekly newsletter and the digital edition of IT Reseller Magazine!

Email Address:   



© Copyright 2006, IBC - Interactive Business Communications

Help | Contact Us | PrivacyRSS Feeds | Site Map | Advertise
YourTechTV.com Only Technology Videos