BreachExchange mailing list archives

IN: Computer breach gives prison staff access to employee information


From: d2d <d2d () attrition org>
Date: Sat, 4 Aug 2007 04:43:19 +0000 (UTC)


http://www.tribstar.com/news/local_story_216000536.html

Carlisle . Officials at a Wabash Valley prison confirmed Friday that an 
internal computer security breach allowed prison staff access to Social 
Security numbers and other identifying information of employees for an 
unknown period of time.

Rich Larsen, public information officer for the Wabash Valley Correctional 
Facility in Carlisle, said a database containing Social Security numbers, 
dates of birth and names of people employed at the facility between 1997 
and 2002 was unintentionally moved .from a secure private drive that was 
accessible only by the human resources department to a shared directory 
that could be accessed by other employees here..

The database was not accessible by the general public, Larsen added.

There have been no complaints or reports of identity theft because of the 
breach, Larsen said, but as a precaution, officials sent letters to the 
staff members, current and former, whose information was included in the 
database.

[...]
_______________________________________________
Dataloss Mailing List (dataloss () attrition org)
http://attrition.org/dataloss

Tenable Network Security offers data leakage and compliance monitoring
solutions for large and small networks. Scan your network and monitor your
traffic to find the data needing protection before it leaks out!
http://www.tenablesecurity.com/products/direct.shtml


Current thread: