<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Alertsec Xpress Data Security Blog &#187; Encryption Chip</title>
	<atom:link href="http://blog.alertsec.com/category/encryption-chip/feed/" rel="self" type="application/rss+xml" />
	<link>http://blog.alertsec.com</link>
	<description></description>
	<lastBuildDate>Tue, 07 Feb 2012 04:29:10 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.1</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Data Breach at Yale compromises 43k Social Security Numbers‎</title>
		<link>http://blog.alertsec.com/2011/08/data-br/</link>
		<comments>http://blog.alertsec.com/2011/08/data-br/#comments</comments>
		<pubDate>Sun, 28 Aug 2011 17:57:39 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Data Protection]]></category>
		<category><![CDATA[Encryption Chip]]></category>
		<category><![CDATA[Identity and Information loss]]></category>
		<category><![CDATA[Security Flaw]]></category>
		<category><![CDATA[Uncategorized]]></category>
		<category><![CDATA[identity theft]]></category>
		<category><![CDATA[data breach]]></category>
		<category><![CDATA[Enter your zip code here]]></category>
		<category><![CDATA[File Transfer Protocol]]></category>
		<category><![CDATA[Google]]></category>
		<category><![CDATA[Google Search]]></category>
		<category><![CDATA[Servers]]></category>
		<category><![CDATA[Social Security number]]></category>
		<category><![CDATA[Web search engine]]></category>
		<category><![CDATA[Yale University]]></category>

		<guid isPermaLink="false">http://blog.alertsec.com/?p=2339</guid>
		<description><![CDATA[

Summary: It has become a regular phenomenon. Another serious data breach. This time  its Yale University whose data has been compromised, thanks to Google indexing !
The story
Alumni, faculty and staff belonging to Yale were recently informed that the names and Social Security numbers of 43,000 people affiliated with Yale were accessible via Google search engine for [...]]]></description>
			<content:encoded><![CDATA[<div class="zemanta-img" style="margin: 1em; display: block;">
<div class="wp-caption alignright" style="width: 310px"><a href="http://commons.wikipedia.org/wiki/File:Sterling_Memorial_Library_2%2C_September_1%2C_2008.jpg"><img title="Yale University's Sterling Memorial Library, a..." src="http://upload.wikimedia.org/wikipedia/commons/thumb/1/12/Sterling_Memorial_Library_2%2C_September_1%2C_2008.jpg/300px-Sterling_Memorial_Library_2%2C_September_1%2C_2008.jpg" alt="Yale University's Sterling Memorial Library, a..." width="300" height="375" /></a><p class="wp-caption-text">Breach at Yale</p></div>
</div>
<p>Summary: It has become a regular phenomenon. Another serious data breach. This time  its Yale University whose data has been compromised, thanks to Google indexing !</p>
<p><strong>The story</strong></p>
<p>Alumni, faculty and staff belonging to Yale were recently informed that the names and Social Security numbers of 43,000 people affiliated with Yale were accessible via Google search engine for the last 10 months.</p>
<p>Here is an extract from the letter sent by Yale:</p>
<p>&#8220;A Yale computer file that contained your name and Social Security number was stored for 10 months in a way that left it accessible to Google Internet searches,&#8221; the letter explained. &#8220;The computer file was created in 1999 and was inadvertently moved to an insecure section of a computer server in July 2005. At that point, the file was no longer fully protected but could not be located by an ordinary Internet search engine. The situation changed in September 2010, when Google modified its search engine in a way that allowed it to locate files stored on servers like the one holding this file.&#8221;</p>
<p>According to Len Peters, Information Technology services director for Yale,<br />
&#8220;the file and its directory had innocent sounding names, and someone encountering the file via Google would not be able to figure out what was in it without first opening it up&#8221;.</p>
<p>&#8220;It was pretty well-hidden, with a very inconspicuous file name,&#8221; said Peters, in a statement.</p>
<p><strong>How was the breach discovered?</strong></p>
<p>As soon as Yale discovered on June 30 that its data was left open on an unsecured server, it immediately blocked the FTP server from the Internet and deleted all the server&#8217;s data. The compromised victims have been offered identity theft insurance and free credit report monitoring services for two years by Yale.</p>
<p><a title="Computerworld coverage of Google" href="http://www.computerworld.com/s/article/9136345/Google_Update">Google</a> made a major change in Sept that allowed its search engine to index and find FTP servers. Unfortunately Yale university IT officials were oblivious to the change.</p>
<p><strong>Series of University breaches</strong></p>
<p>A similar type of breach was reported in June where Southern California Medical-Legal Consultants Inc. (SCMLC) said that the names and Social <a title="Computerworld coverage of security" href="http://www.computerworld.com/s/topic/17/Security">Security</a> numbers of about 300,000 people who had filed for California workers compensation had been were exposed. This happened because data on the internal server remained exposed to search engines.</p>
<p>There was another one where a server containing Social Security numbers and other personal information of more than 7,000 former Purdue University students was accessed last week. The breach occurred April 5, 2010, and affected students who took math courses from 2000 through the summer session of 2005, according to the statement.</p>
<p><strong>Protect your servers with Alertsec</strong></p>
<p>Alertsec Xpress offers a customizable data encryption software solution from Checkpoint, the industry leader in encryption software (former Pointsec). Alertsec has come up with a web based encryption service that helps in deployment and management of PC encryption.</p>
<p>The need of a <a title="data encryption software" href="http://www.alertsec.com/" target="_blank">Data encryption software</a> and recovery software is felt by big and small companies in today&#8217;s vulnerable data world. The threat could have simply been reduced to an insurance matter by a mere investment of $13/month. Certainly a small price to pay compared to what can happen if you lose confidential or sensitive data. Alertsec Xpress offers a very good and easy-to-use laptop security service that includes more than the traditional software licensing model.</p>
<div class="zemanta-pixie" style="margin-top: 10px; height: 15px;"><a class="zemanta-pixie-a" title="Enhanced by Zemanta" href="http://www.zemanta.com/"><img class="zemanta-pixie-img" style="border: none; float: right;" src="http://img.zemanta.com/zemified_e.png?x-id=001497e0-6e18-4612-9f9d-a34260fe55ad" alt="Enhanced by Zemanta" /></a></div>
]]></content:encoded>
			<wfw:commentRss>http://blog.alertsec.com/2011/08/data-br/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Why Data Encryption is Important</title>
		<link>http://blog.alertsec.com/2011/05/why-data-encryption-is-important/</link>
		<comments>http://blog.alertsec.com/2011/05/why-data-encryption-is-important/#comments</comments>
		<pubDate>Sat, 07 May 2011 05:36:39 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Alertsec Express]]></category>
		<category><![CDATA[Data Protection]]></category>
		<category><![CDATA[Encryption]]></category>
		<category><![CDATA[Encryption Chip]]></category>
		<category><![CDATA[Hard Disk]]></category>
		<category><![CDATA[data encryption]]></category>
		<category><![CDATA[data encryption software]]></category>

		<guid isPermaLink="false">http://blog.alertsec.com/?p=2042</guid>
		<description><![CDATA[
As the technology is upgrading day by day, people are getting more involved to their work and they have very little time for the things which seem negligible at the starting but can be very dangerous in future. In today’s world 99% people are more interested in sending and receiving data through internet and mobile [...]]]></description>
			<content:encoded><![CDATA[<div class="zemanta-img" style="margin: 1em; display: block;">
<div class="wp-caption alignright" style="width: 310px"><a href="http://commons.wikipedia.org/wiki/File:Board300.jpg"><img title="Part of the EFF's DES cracking machine which w..." src="http://upload.wikimedia.org/wikipedia/commons/thumb/b/bd/Board300.jpg/300px-Board300.jpg" alt="Part of the EFF's DES cracking machine which w..." width="300" height="314" /></a><p class="wp-caption-text">Data Encryption</p></div>
<p>As the technology is upgrading day by day, people are getting more involved to their work and they have very little time for the things which seem negligible at the starting but can be very dangerous in future. In today’s world 99% people are more interested in sending and receiving data through internet and mobile data storage devices. But among those 995 people 90% people do not encrypt their data though they know that the data contains personal information and the chances of data lose or hacking is very high.</p>
<p>Sending data through internet has high chances of getting hacked. Because the number of hackers are increasing in a rapid rate day by day and those hackers are so efficient in their job that they can easily hack the unencrypted data from the internet. And if those hacked data contains any sort of personal information then they can misuse those data, even they can make some criminal offenses by using those data and without doing anything wrong you will become a criminal. At the time of sending data through internet lot of people can easily access your data if your data is not encrypted.</p>
<p>Another importance of <a href="http://www.alertsec.com/">data encryption</a> is that is helps to protect your computer from viruses. Though you may think that your computer/ laptop is protected enough because of the anti-virus and router you are using, but remember keeping your data safe from the hackers is not that easy. And if your computer becomes virus affected, then any other computer presents in your office or home can be easily affected by the virus.</p>
<p>Now internet is available in the hostels, cyber cafe, hotels and those connections have no protection. So the data can easily be hacked of accessed by some other person.</p>
<p>And <a href="http://www.alertsec.com/">data encryption</a> also helps to protect the data of different mobile data storage devices. As the data storage devices sometimes contain personal or sensible data, so the loss of any storage device can be very harmful for us. Because any one can misuse those data. But we will keep our data encrypted then we will be sure that no one can misuse those data.</p>
<p>These are the main reason behind the <a href="http://www.alertsec.com/">data encryption</a>. Data encryption not only keeps our data safe but also helps us to be tension free.</p>
<p><span style="text-decoration: underline;"><strong>About Alertsec:-</strong></span></p>
<p>Alertsec Xpress is the No.1 encryption service provider for hundreds of banks and financial institutions worldwide. They are providing 24*7 customer service system. By offering computer protection software, encryption with lowest TCO (Total Cost of Operation), Checkpoint and Pointec they are assuring to make data secure. For more details about Alertsec log on to: http://www.alertsec.com</p>
<div class="zemanta-pixie" style="margin-top: 10px; height: 15px;"><a class="zemanta-pixie-a" title="Enhanced by Zemanta" href="http://www.zemanta.com/"><img class="zemanta-pixie-img" style="border: medium none; float: right;" src="http://img.zemanta.com/zemified_e.png?x-id=923378b4-2190-4902-bdeb-04f6387a2fdc" alt="Enhanced by Zemanta" /></a></div>
</div>
]]></content:encoded>
			<wfw:commentRss>http://blog.alertsec.com/2011/05/why-data-encryption-is-important/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Leak Fear as Hospital Loses Patient Detail</title>
		<link>http://blog.alertsec.com/2011/04/leak-fear-as-hospital-loses-patient-detail/</link>
		<comments>http://blog.alertsec.com/2011/04/leak-fear-as-hospital-loses-patient-detail/#comments</comments>
		<pubDate>Fri, 29 Apr 2011 12:19:32 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Alertsec Express]]></category>
		<category><![CDATA[Computer security]]></category>
		<category><![CDATA[Data Protection]]></category>
		<category><![CDATA[Encryption]]></category>
		<category><![CDATA[Encryption Chip]]></category>
		<category><![CDATA[Hard Disk]]></category>
		<category><![CDATA[USB Key]]></category>
		<category><![CDATA[full disk encryption]]></category>
		<category><![CDATA[Cloud computing]]></category>
		<category><![CDATA[Cryptography]]></category>
		<category><![CDATA[data encryption]]></category>
		<category><![CDATA[Data storage device]]></category>
		<category><![CDATA[security]]></category>

		<guid isPermaLink="false">http://blog.alertsec.com/?p=2027</guid>
		<description><![CDATA[

As the number of laptop and data storage device robbery increasing day by day, the negligence of different organizations about the implementation of data encryption software and laptop encryption software come to the notice of ICO. Though ICO is trying hard to make all the organizations aware about the importance of encryption of data but [...]]]></description>
			<content:encoded><![CDATA[<div class="zemanta-img" style="margin: 1em; display: block;">
<div class="wp-caption alignright" style="width: 250px"><a href="http://www.flickr.com/photos/26652303@N07/2673202881"><img title="Data Security" src="http://farm4.static.flickr.com/3193/2673202881_1d0172afeb_m.jpg" alt="Data Security" width="240" height="180" /></a><p class="wp-caption-text">Flah Drive</p></div>
</div>
<p>As the number of laptop and data storage device robbery increasing day by day, the negligence of different organizations about the implementation of <a href="http://www.alertsec.com/">data encryption software</a> and laptop encryption software come to the notice of ICO. Though ICO is trying hard to make all the organizations aware about the importance of <a href="http://www.alertsec.com/">encryption</a> of data but the organizations are showing to less energy to encrypt the laptops and data storage devices. As a result of that any short of data or device loss is making huge effect on the organization.</p>
<p>ICO came to know that recently at Queen Marry Hospital a flash drive which contained the details of the patients of that hospital had been lost. Though the main copy of those data has been stored in a computer with password protection but the data in the flash drive was neither encrypted nor password protected.</p>
<p>The hospital informs that the flash drive contained the names and id numbers of at least 19 patients of them. From this we can easily understand the situation that is going to occur if the incident came to the notice of those patients. And not only in this hospital but this thing is happening in everywhere like; schools, different organizations even in antivirus developing organizations also. A source of the hospital informed that the data was stored in the flash drive from a password protected computer to upgrade the computer. The management of the hospital immediately lodged a report to the police and they assured that the treatment of the patients would not be affected due to this incident.</p>
<p>Such type of incidents shows us the importance of <a href="http://www.alertsec.com/">data encryption software</a>, computer security software. If <a href="http://www.alertsec.com/">encryption</a> is enabled in our system and storage devices then we do not have to worry about the manipulation of data after the data has been lost. Though a lot of encryption software is available in the market and ICO is trying their best so that every organization uses those <a href="http://www.alertsec.com/">encryption</a> softwares to protect their system and data but due to unawareness and negligence most of the organizations show lethargy to implement it in their organizations. ICO has decided to take some serious steps so that every organization will implement those softwares in their organization.</p>
<p>Though the hospital informed the police and the patients and apologized to them for their mistakes, just to put off the light from their fault but everyone can easily understand the effect of this incident.</p>
<p><strong>About Alertsec</strong>:-</p>
<p>Alertsec is one of the leading data <a href="http://www.alertsec.com/">encryption</a> software providers. Alertsec offers computer protection that is convenient and affordable. Analysis of the total cost of ownership of the Alertsec Xpress solution and the major alternatives show that the benefits of the Cloud Service can cut the TCO by up to half.</p>
<div class="zemanta-pixie" style="margin-top: 10px; height: 15px;"><a class="zemanta-pixie-a" title="Enhanced by Zemanta" href="http://www.zemanta.com/"><img class="zemanta-pixie-img" style="border: medium none; float: right;" src="http://img.zemanta.com/zemified_e.png?x-id=58ac9ab6-fc44-45b0-b91e-78e2ccbe23f2" alt="Enhanced by Zemanta" /></a><span class="zem-script more-related pretty-attribution"><script src="http://static.zemanta.com/readside/loader.js" type="text/javascript"></script></span></div>
]]></content:encoded>
			<wfw:commentRss>http://blog.alertsec.com/2011/04/leak-fear-as-hospital-loses-patient-detail/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Computer Systems at 2500 Companies Hacked</title>
		<link>http://blog.alertsec.com/2010/02/computer-systems-at-2500-companies-hacked/</link>
		<comments>http://blog.alertsec.com/2010/02/computer-systems-at-2500-companies-hacked/#comments</comments>
		<pubDate>Fri, 19 Feb 2010 02:36:49 +0000</pubDate>
		<dc:creator>admin</dc:creator>
				<category><![CDATA[Encryption]]></category>
		<category><![CDATA[Encryption Chip]]></category>
		<category><![CDATA[BlackHat]]></category>
		<category><![CDATA[Botnet]]></category>
		<category><![CDATA[Cardinal Health]]></category>
		<category><![CDATA[ChristopherTarnovsky]]></category>
		<category><![CDATA[Facebook]]></category>
		<category><![CDATA[Mexico]]></category>
		<category><![CDATA[Personal computer]]></category>
		<category><![CDATA[RSA]]></category>
		<category><![CDATA[Saudi Arabia]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Social network service]]></category>
		<category><![CDATA[Trusted Platform Module]]></category>
		<category><![CDATA[United States]]></category>
		<category><![CDATA[United States Army]]></category>
		<category><![CDATA[Yahoo]]></category>

		<guid isPermaLink="false">http://blog.alertsec.com/?p=672</guid>
		<description><![CDATA[



Image by joshuadelaughter via Flickr



In a high security breach malicious hackers have penetrated into more than 75,000 machines in 2500 companies across the US &#38; rest of the world.. Not only have the breached the security, but also they have obtained access to confidential data from commercial and government entitites across the globe.
According to the [...]]]></description>
			<content:encoded><![CDATA[<div class="zemanta-img" style="margin: 1em; display: block;">
<div>
<dl class="wp-caption alignright" style="width: 250px;">
<dt class="wp-caption-dt"><a href="http://www.flickr.com/photos/28210085@N05/2878302498"><img title="Hacker! 13/365" src="http://farm4.static.flickr.com/3044/2878302498_c22b49ff85_m.jpg" alt="Hacker! 13/365" /></a></dt>
<dd class="wp-caption-dd zemanta-img-attribution" style="font-size: 0.8em;">Image by <a href="http://www.flickr.com/photos/28210085@N05/2878302498">joshuadelaughter</a> via Flickr</dd>
</dl>
</div>
</div>
<p>In a high security breach malicious hackers have penetrated into more than 75,000 machines in 2500 companies across the US &amp; rest of the world.. Not only have the breached the security, but also they have obtained access to confidential data from commercial and government entitites across the globe.</p>
<p>According to the security firm, NetWitness, the attacks have compromised the login credentials of over 68,000 accounts revealing the new banking site information. Raising serious eye brows about the type of <a href="http://www.alertsec.com/index.php?page=ov_why" target="_blank">computer security software</a>, the report mentioned a &#8220;dangerous new ZeuS botnet (a malicious programme)&#8221;.</p>
<p>Apparently, the Zeus botnet tool kit, allows criminals to infect and remotel control of users&#8217; PCs. The Zeus tool kit can be purchased on the payment of some dollars. Swiss anti-spam activist Roman Hüssy operates the ZeusTracker website, which keeps watch on several Zeus control servers that are used by various gangs of criminals.</p>
<blockquote><p>Alex Cox, who works at NetWitness &amp; uncovered Kneber said, &#8220;When we detected the correlation between the methodology used by the Kneber crew to attack victim machines and the wide variety of data sets harvested, it became clear that security teams must rethink their entire perspective on threats such as Zeus&#8221;.</p></blockquote>
<p>Kneber is described as a command-and-control system botnet based on the ZeuS Trojan and is based on the older version of 1.2 Zeus. First discovered in January, the malicious programme collects login credentials of online financial systems, <a class="zem_slink" title="Social network service" rel="wikipedia" href="http://en.wikipedia.org/wiki/Social_network_service">social networking sites</a> like Facebook &amp; corporate email systems from infested computers and reports the information to miscreants.</p>
<p>NetWitness CEO and former Director of the National Cyber Security Division Amit Yoran said that cyber criminals like the Kneber crew target and compromise thousands of government and commercial organisations globally.</p>
<p>The unaware employees were caught on the backfoot when they downloaded the hacked software from the sites which were administered by the hackers. They were baited into opening emails which contained these infected attachments.</p>
<p>According to Yoran, “Because they’re using multiple bots and very sophisticated command and control methods, once they’re in the system, even if you whack the command and control servers, it’s difficult to rid them of the ability to control the users’ computers” .</p>
<p>According to WSJ, there were many companies hit by this attack including Cardinal Health, located in Dublin, Ohio, and Merck. Once the infected computers were identified they were immediately removed from the network. Also caught were the educational institutions, energy firms, financial companies, <a class="zem_slink" title="Internet service provider" rel="wikipedia" href="http://en.wikipedia.org/wiki/Internet_service_provider">internet service providers</a> are even  government agencies were penetrated.</p>
<p>In a statement issued by the security firm, the scope of these attacks scaled across the United States, Saudi Arabia, Egypt, Turkey and Mexico.</p>
<p>To help keep your business data protected in an effective way, explore our secure <a href="http://www.alertsec.com/index.php?page=encryption_software">encryption software solutions</a>. Unlike competitors, our software won&#8217;t be hacked and it provides an independent layer of encryption. Try a free 30-day trial now!</p>
<h6 class="zemanta-related-title" style="font-size: 1em;">Related articles by Zemanta</h6>
<ul class="zemanta-article-ul">
<li class="zemanta-article-ul-li"><a href="http://r.zemanta.com/?u=http%3A//www.guardian.co.uk/technology/2010/feb/18/kneber-botnet-netwitness-cybercrime&amp;a=13270104&amp;rid=fbc87f75-6f2c-4468-9edd-86b175c6da0e&amp;e=861f18a9bd1d4b176aa75d71414aeea2">Kneber botnet catches 2,500 companies worldwide</a> (guardian.co.uk)</li>
<li class="zemanta-article-ul-li"><a href="http://r.zemanta.com/?u=http%3A//www.msnbc.msn.com/id/35456838/ns/technology_and_science-security/&amp;a=13256916&amp;rid=fbc87f75-6f2c-4468-9edd-86b175c6da0e&amp;e=a432f5086b09ebfb7693f5f9563752eb">Virus breaches 75,000 computers, study says</a> (msnbc.msn.com)</li>
<li class="zemanta-article-ul-li"><a href="http://r.zemanta.com/?u=http%3A//www.calgaryherald.com/virus%2Bbreached%2Bcomputers%2BStudy/2581528/story.html&amp;a=13272932&amp;rid=fbc87f75-6f2c-4468-9edd-86b175c6da0e&amp;e=47d2d1688d262fa8ee28d9efc754b878">New virus has breached 75,000 computers: Study</a> (calgaryherald.com)</li>
</ul>
<div class="zemanta-pixie" style="margin-top: 10px; height: 15px;"><a class="zemanta-pixie-a" title="Reblog this post [with Zemanta]" href="http://reblog.zemanta.com/zemified/fbc87f75-6f2c-4468-9edd-86b175c6da0e/"><img class="zemanta-pixie-img" style="border: medium none; float: right;" src="http://img.zemanta.com/reblog_e.png?x-id=fbc87f75-6f2c-4468-9edd-86b175c6da0e" alt="Reblog this post [with Zemanta]" /></a><span class="zem-script more-related pretty-attribution"><script src="http://static.zemanta.com/readside/loader.js" type="text/javascript"></script></span></div>
]]></content:encoded>
			<wfw:commentRss>http://blog.alertsec.com/2010/02/computer-systems-at-2500-companies-hacked/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
	</channel>
</rss>

