-
Recent Posts
Recent Comments
Archives
- August 2025
- January 2025
- December 2024
- November 2023
- August 2023
- September 2022
- June 2022
- April 2022
- January 2022
- October 2021
- September 2021
- August 2021
- July 2021
- May 2021
- April 2021
- March 2021
- February 2021
- January 2021
- June 2018
- May 2018
- January 2016
- October 2015
- February 2013
- January 2013
- April 2011
- October 2010
- September 2010
- August 2010
- February 2010
- January 2010
- October 2009
- September 2009
- April 2009
- March 2009
- November 2008
- September 2008
- August 2008
- June 2008
- April 2008
- March 2008
- February 2008
- January 2008
- November 2007
- October 2007
- September 2007
- August 2007
- July 2007
- June 2007
- May 2007
- April 2007
- March 2007
- February 2007
- January 2007
Categories
Meta
Tag Archives: breach notification
The Professional
An interesting narrative, trapped unfortunately behind a pay wall, comes from the Chronicle of Higher Education – “Chapel Hill Researcher Fights Demotion After Security Breach” A cancer researcher’s database of gets potentially pwnd (two years from incident to discovery), spurring the … Continue reading
Posted in Uncategorized
Tagged breach notification, computer forensics, crime, data breach, medical privacy, privacy, security, standards
Leave a comment
Intent
There’s a whole bunch of the IDC/RSA white paper on insider risk management that puzzles me on one level or another. “Whether the threats are accidental or deliberate, the costs are still the same.” I didn’t see much data in … Continue reading
Posted in Uncategorized
Tagged breach notification, fraud, insider threat, risk management, RSA
Leave a comment
Market Fresh
A curious discussion of terror risk, and a terror prediction futures market by some GMU economist types and at the Chronicle’s Footnoted blog. I don’t know enough to about econ to assess the value of such a market, but I … Continue reading
Posted in Uncategorized
Tagged breach notification, disclosure laws, risk assessment, risk management, threat, vulnerability
Leave a comment
I Feel That It’s Almost Crime
Imagine Monster put a click-through license on the malware, adjusted the privacy policy a tad (include an opt-out for additional “services”), and voila! It’s not a privacy breach, it’s an additional revenue stream! The 1.6M bits of Monster job hunter … Continue reading
Posted in Uncategorized
Tagged breach notification, consumer, disclosure laws, identity theft, privacy, singalong
Leave a comment
Half Baked
What follows are annoying thoughts that have been ground to meaningless gravel in my head for the past month or so. As soon as I think them through, and dismiss them, my brain belches them back up. Committing them to … Continue reading
Posted in Uncategorized
Tagged breach notification, compliance, internal auditing, risk management
Leave a comment
SSNS ON THE LOOSE! (Legacy Edition)
I’m trying to understand the newsworthiness of the latest episode of “SSNS On The L0OzE. OMG!!1!!” Some dude in the mail room puts a bunch of computer tapes in the wrong slot, according to the AP report in the Houston … Continue reading
Posted in Uncategorized
Tagged breach notification, disclosure laws, internal auditing, physical security, sb1386, security
Leave a comment
Repost Redux: Special SXSW Edition
Having read a few additional commentaries, I began to think some more on two issues I posted about earlier. Greg Abbott vs. The County ClerksMordaxus at Emergent Chaos says we need to chill, which made me wonder if there was … Continue reading
Posted in Uncategorized
Tagged breach notification, disclosure laws, panic, sb1386, ssns, texas
Leave a comment
Charts ‘n Graphs
From Pogo, this article from Physorg on the classic Evil Hacker v. Evil Suit dilemma. From the article: If Phil Howard’s calculations prove true, by year’s end the 2 billionth personal record – some American’s social-security or credit-card number, academic … Continue reading
Posted in Uncategorized
Tagged breach notification, consumer, disclosure laws, privacy, sb1386
Leave a comment
Impacted Molars: Misguided Ninja Dudes and PCI Awareness
MESIALDark Reading continues its obsession with physical security:Network dude rassels potential bad guy, followed by a stern warning on what a scary world it is out there, cause physical attacks hurt.Forgive me if I’m out of line, but why would … Continue reading
Posted in Uncategorized
Tagged breach notification, compliance, disclosure laws, pen testing, physical security
Leave a comment
Infosecalypse Now
A number of links in the chain:Mr. Walsh asks Why We Fight?Which spurs Mr. Hoffman’s Nam flashback.Bloginfosec says it’s safe to surf this beach, so its safe to surf this beach. Meanwhile, Charlie squats in the bush, everyday getting stronger, … Continue reading