OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: [Dataloss] NH govt breach

From: lyger (lygerattrition.org)
Date: Wed Feb 15 2006 - 22:57:50 CST


On Wed, 15 Feb 2006, Chris Walsh wrote:

": " A quick Google Alerts cut/paste:
": "
": " SECURITY breach reported in state computers
": " Boston Globe - United States
": " CONCORD, NH --New Hampshire's state computer system was breached and
": " might
": " have compromised customers' credit card numbers, Gov. John Lynch said
": " Wednesday. ...
": " <http://www.boston.com/news/local/vermont/articles/2006/02/15/
": " security_breach_reported_in_state_computers>

"State information technology experts became aware of the breach Wednesday
when they spotted a variation of legitimate "Cain and Abel" software in
the system.

The illegal software, which may have been installed for six months, allows
a hacker to watch transactions in real time, but not to recover earlier
records, said Richard Bailey, chief information officer for the Office of
Information Technology."

So "Cain & Abel" is legitimate, but variations are not? This seems to be
shoddy reporting, unless I missed something here..

http://www.oxid.it/cain.html

_______________________________________________
Dataloss mailing list
Datalossattrition.org
https://attrition.org/mailman/listinfo/dataloss