dslreports logo
site
 
    All Forums Hot Topics Gallery
spc

spacer




how-to block ads


Search Topic:
uniqs
409
share rss forum feed


Snakeoil
Ignore Button. The coward's feature.
Premium
join:2000-08-05
Mentor, OH
kudos:1

Michelle Obama's ID details hacked from data brokers

»www.bbc.co.uk/news/technology-24284277

quote:
Hackers stole millions of social security numbers by cracking open the networks of large US data brokers, reveals an investigation.

The ID details of US First Lady Michelle Obama and many other famous people were exposed by the hack attack.

Journalist Brian Krebs tracked the information back to hackers who ran an online market for confidential data.

He found they got their data by compromising computers sitting on the data brokers' corporate networks.
Deep access

In March, Krebs, as well as the FBI and US Secret Service, started looking into how the exposed.su website was getting hold of social security numbers and other details of many famous Americans.

The mysterious website, which has now been closed down, published confidential information about Bill Gates, Beyonce Knowles, Jay-Z, Ashton Kutcher and many others.

***quote break***
Analysis of the SSNDOB database by Krebs and forensic computer expert Alex Holden, of Hold Security, revealed the ID data being sold had come from machines sitting on the internal networks of several American information aggregation firms. Compromised computers or systems at LexisNexis, Dun & Bradstreet and Kroll were all named by Krebs as the sources of the data.

In the commercial world, the three firms are well known for providing businesses with data about potential commercial partners and customers. The open access the hackers enjoyed meant they could run their own queries about individuals via the databases of the three firms.

When will people/companies learn that anything hooked up to a network/internet is a target for hacking?
Stuff you want to keep secured should be on a computer that stands alone, with no network/internet access. Of course you'd remove the usb/dvd drives as well.
But then again, I guess that would add a layer of hindrance in people being able to do their jobs quickly at such firms.
--
Is a person a failure for doing nothing? Or is he a failure for trying, and not succeeding at what he is attempting to do? What did you fail at today?.


chachazz
Premium
join:2003-12-14
kudos:9
Reviews:
·TELUS

Brian Krebs: Data Broker Giants Hacked by ID Theft Service
»krebsonsecurity.com/2013/09/data···service/
--
Gladiator Security Forum



Ivybridge_I7
Cyber-Crime Researcher OpSec
Premium
join:2004-06-09
Daytona Beach, FL
kudos:2

You got to just love Brain Krebs website



Oleg
Premium
join:2003-12-08
Birmingham, AL
kudos:2
reply to Snakeoil

Mr. Obama well be mad


dave
Premium,MVM
join:2000-05-04
not in ohio
kudos:8
reply to Snakeoil

When will we learn that there needs to be legal penalties for companies that piss our privacy down the drain?

I favour putting a few CIOs in jail pour encourager les autres.



Snakeoil
Ignore Button. The coward's feature.
Premium
join:2000-08-05
Mentor, OH
kudos:1

Sounds good to me. Or how about take a page from China. Recall how China executed a couple of people due to the "tainted milk" incident.
»www.huffingtonpost.com/2009/11/2···657.html

quote:
China Executes 2 People Over Tainted Milk Scandal

One way to fix sloppiness, I guess.
--
Is a person a failure for doing nothing? Or is he a failure for trying, and not succeeding at what he is attempting to do? What did you fail at today?.