funsec mailing list archives

Re: [privacy] Guidance Software Makes Deal with Feds Over Data Leak


From: "Dude VanWinkle" <dudevanwinkle () gmail com>
Date: Thu, 16 Nov 2006 15:12:41 -0500

Kinda funny hey called someone else in to do the forensics for this break in

make you wonder...

On 11/16/06, Fergie <fergdawg () netzero net> wrote:
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

This is completely bogus. The FTC should've hit 'em where it
hurts -- in the pocketbook.

Via C|Net News.

[snip]

A leading seller of software for investigating computer crimes has reached
a settlement with federal regulators, after a hacking incident exposed data
on thousands of its customers.

Under a settlement with the Federal Trade Commission announced on Thursday,
Pasadena, Calif.-headquartered Guidance Software must put into place a
"comprehensive information-security program" and undergo audits by
independent, third-party security professionals once every two years for
the next decade.

The intrusion into Guidance's servers, discovered last December, unmasked
the names, addresses and credit card details of about 3,800 customers, the
company said at the time. Guidance executives said they had notified all of
its approximately 9,500 customers about the attack and called on the U.S.
Secret Service to conduct an investigation. The company, one of the world's
top providers of forensic software, counts government and law enforcement
personnel and security researchers among its clientele. A handful of these
reported suspicious credit card charges after the breach.

[snip]

More:
http://news.com.com/2100-7350_3-6136165.html

FTC link:
http://ftc.gov/opa/2006/11/guidance.htm

- - ferg

-----BEGIN PGP SIGNATURE-----
Version: PGP Desktop 9.5.1 (Build 1557)

wj8DBQFFXLf/q1pz9mNUZTMRApZTAKDTUSMpBePs9XqXGYX/dAQU0EmGFACffQIu
adRXryJxAauJ10UBN6uf3Xo=
=CCzq
-----END PGP SIGNATURE-----



--
"Fergie", a.k.a. Paul Ferguson
 Engineering Architecture for the Internet
 fergdawg(at)netzero.net
 ferg's tech blog: http://fergdawg.blogspot.com/

_______________________________________________
privacy mailing list
privacy () whitestar linuxbox org
http://www.whitestar.linuxbox.org/mailman/listinfo/privacy

_______________________________________________
privacy mailing list
privacy () whitestar linuxbox org
http://www.whitestar.linuxbox.org/mailman/listinfo/privacy


Current thread: