funsec mailing list archives

[privacy] Network Compromise at University of Virginia Goes Undetected for Two Y ears


From: "Fergie" <fergdawg () netzero net>
Date: Thu, 14 Jun 2007 15:20:51 GMT

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Via vnunet.com.

[snip]

Faculty members at the University of Virginia have had their personal
records hacked, including salary details and social security numbers.

The hack, which is believed to have gone undetected for two years, netted
details on over 6,000 staff who had taught at the university from 1990 to
August 2003.

The hacker defaced a web page on the university's portal and when IT staff
cleaned up they found evidence of the attack.

"We sincerely regret the distress this causes to our colleagues," said
James Hilton, vice president and chief information officer at the
University of Virginia.

"This theft adds greater urgency to our ongoing effort to remove Social
Security numbers and other personal information from databases that could
be accessed through the internet and potentially abused."

[snip]

More:
http://www.vnunet.com/vnunet/news/2192038/university-virginia-hacked

Also:
http://www.virginia.edu/uvatoday/newsRelease.php?id=2217

- - ferg

-----BEGIN PGP SIGNATURE-----
Version: PGP Desktop 9.6.1 (Build 1012)

wj8DBQFGcVzPq1pz9mNUZTMRAlHUAJ444+H2JUcBTMAPqY6a6ZkIF72iiwCfU4NQ
8BdyKCqaGY6/zitfGf6zAIc=
=VufZ
-----END PGP SIGNATURE-----



--
"Fergie", a.k.a. Paul Ferguson
 Engineering Architecture for the Internet
 fergdawg(at)netzero.net
 ferg's tech blog: http://fergdawg.blogspot.com/

_______________________________________________
privacy mailing list
privacy () whitestar linuxbox org
http://www.whitestar.linuxbox.org/mailman/listinfo/privacy


Current thread: