|
Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com |
Re: [Dataloss] More on the BofA card-cancellations
From: security curmudgeon (jericho
attrition.org)
Date: Fri Feb 10 2006 - 16:08:40 CST
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]
On Fri, 10 Feb 2006, Adam Shostack wrote:
: The only explanation(s) I can think of for not disclosing are ongoing
: investigations, which is starting to get thin as details leak, and that
: the data was "encrypted."
Adam brings up an interesting point about this case and possibly others.
How many companies are holding off on notification of any kind, citing
"ongoing investigation"? If the FBI is involved and have exhausted leads,
the case stays open for 7 years (or more). This would be a convenient way
for a company to hide an incident from the public and possibly escape
legal obligation to do so.
_______________________________________________
Dataloss mailing list
Dataloss
attrition.org
https://attrition.org/mailman/listinfo/dataloss
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]