funsec mailing list archives

Ohio University Server in Hackers' Hands for a Year


From: "Fergie" <fergdawg () netzero net>
Date: Mon, 22 May 2006 02:09:51 GMT

Via C|Net News.

[snip]

An unprecedented string of electronic intrusions has prompted Ohio University to place at least one technician on paid 
administrative leave and begin a sweeping reorganization of the university's computer services department.

Bill Sams, Ohio University's chief information officer, said he initiated the reorganization on Friday. The Athens, 
Ohio-based university is reacting to recent discoveries that data thieves compromised at least three campus computer 
servers.

In a disclosure that hasn't been widely reported, one of the compromised servers, which held Social Security numbers 
belonging to 137,000 people, was penetrated by U.S. and overseas-based hackers for at least a year and possibly much 
longer, Sams said in a phone interview Sunday with CNET News.com.

At least one security expert was astonished that a compromise could go undetected for so long.

[snip]

More here:
http://news.com.com/2100-7349_3-6074739.html

- ferg


--
"Fergie", a.k.a. Paul Ferguson
 Engineering Architecture for the Internet
 fergdawg () netzero net or fergdawg () sbcglobal net
 ferg's tech blog: http://fergdawg.blogspot.com/


_______________________________________________
Fun and Misc security discussion for OT posts.
https://linuxbox.org/cgi-bin/mailman/listinfo/funsec
Note: funsec is a public and open mailing list.


Current thread: