OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
[Dataloss] Maine Attorney General & Maine Department of Professional and Financial Regulation

From: d2d (d2dattrition.org)
Date: Mon Jan 12 2009 - 13:15:07 CST


The two offices in Maine that receive, by law, breach notification letters
have sent us (as a result of our Freedom of Information Requests) over a
thousand pages of breach notifications, spanning from 2006 through the end
of 2008.

So far we've scanned, OCR'd and uploaded 130 notifications covering
almost all of 2008 from the Maine Attorney General's Office.

You can browse the primary sources here:

http://datalossdb.org/search/primary_sources/7-maine-attorney-general

While we haven't had much time to catalogue these and associate them with
incidents, a couple stood out:

http://datalossdb.org/incidents/show/1457
Summary: Email sent to unauthorized people containing personal information
of employees, mistakenly believed to be sample data.
Organizations: Automatic Data Processing, Oldcastle Precast, Inc.

http://datalossdb.org/incidents/show/1023
Summary: Colt Express / New companies added as affected by the breach,
namely: Zhone Technologies. Zhone says 3000 people total, Exponent says
3878, CNET says 6500, Bebe says 541 in MD alone.

http://datalossdb.org/incidents/show/1457
Summary: Automatic Data Processing email breach affecting over 9,000

http://datalossdb.org/primary_sources/936
Summary: Stolen laptop breach notification from Crabtree & Evelyn, Ltd.

http://datalossdb.org/primary_sources/945
Summary: Hack affects Best & Company customer credit cards.

There are likely several others that are of interest.

Special thanks to the Maine Attorney General's Office, and all those over
in the Department of Professional and Financial Regulation who were
extremely cooperative and expedient with our Freedom of Information
request.

Also, we could really use help cataloguing these and other primary
sources. Users get credit for their hard work adding incidents and
matching primary sources
(http://datalossdb.org/users/kirniki/submissions). Users are assigned
ranks for their efforts, and can track the assistance they've provided over time.
You can also assist anonymously, if you prefer, no account required.

_______________________________________________
Dataloss Mailing List (datalossdatalossdb.org)

Tenable Network Security offers data leakage and compliance monitoring
solutions for large and small networks. Scan your network and monitor your
traffic to find the data needing protection before it leaks out!
http://www.tenablesecurity.com/products/compliance.shtml