Posts Tagged ‘Theft’

Former Intel engineer, Biswamohan Pani, pleads guilty to data theft charges

April 12th, 2012
Original Intel Inside brand logo

Ex-Intel employee charged with Data theft

IT employees have been taking data theft and IT security policies lightly. They think they need not follow them and at times believe they can get away by stealing data. We are not talking about petty thieves here but white-collar employees who can go to lengths to earn money and brand name.

The latest data theft case involves such an IT employee who thought he would get away by stealing data worth $400 billion!

Here goes the story

An ex-Intel engineer, Biswamohan Pani, stole documents worth $200 million – $400 million from Intel. He has pled guilty to stealing the documents and for 5 counts of fraud. Currently he is waiting to hear his sentence.

The case

The case will be heard in US District Court by Judge F. Dennis Saylor in Worcester, Massachusetts. Mr. Biswamohan worked at Intel’s Hudson, Massachusetts location in 2008. He put down his resignation at Intel on May 29, 2008 and requested his last day of work be June 11, 2008. At that time he was already employed by rival AMD and had access to the Intel computer systems.

As he had access to Intel computer systems, he started downloading confidential documents from Intel related to design and manufacture of computer processors. The moment Intel found out, it reported the theft and AMD cooperated with the investigation. What is bizarre is that AMD never asked Mr.Pani to steal the documents, nor were these used by anyone at AMD. Pani is looking at 20 years in prison on each of the five counts of fraud. Pani’s sole purpose for this theft was to boost his career!

AMD official’s statement

“AMD respects the intellectual property of other companies. AMD was completely unaware of Mr. Pani’s actions until we were contacted by the FBI, and we provided our full and prompt cooperation with the investigation.”

The documents were seized by Intel from Mr.Biswamohan’s home.

The justice department’s statement

‘The FBI was able to recover these documents quickly, before Pani could use them to Intel’s disadvantage, largely because Intel reported the theft quickly and assisted the investigation,’.

Corporate espionage and intellectual property theft, in the form of trade secrets, schematics, or other proprietary information is a treasure cove in the wrong hands and a recipe for disaster.

Pani’s lawyer has refused to comment about Pani’s defense.

More about intellectual property theft

More than often intellectual property theft goes unnoticed simply because it cannot be seen the way other thefts are visible. It involves stealing or misusing proprietary information of a company. Intellectual property theft can result in serious financial loss.

Alertsec protects intellectual property theft

It is clear that the security of world’s large corporations is at risk. In the absence of full disk encryption, valuable files can be accessed. To keep your sensitive data safe from thefts and hacking, it is vital to use Data encryption software. Data loss prevention systems can also reduce the loss of information. Investing $13/month gives an organization peace of mind. A very small price to pay compared to losing high-quality or sensitive data. Alertsec Xpress offers a very good and easy-to-use laptop security service that includes more than the traditional software licensing model.

Enhanced by Zemanta

Student data online for 8 months at University of Tampa

March 25th, 2012

University of Tampa

University of Tampa faces trouble due to data theft

The report in detail

While conducting an in-class project on advanced search techniques, news of major data breach came into light. This data breach happened at University of Tampa (UT) in Florida. Number of students who had enrolled last fall and who got affected due to this breach are more than 6,800. The data, that was on web for around eight months included date of births and social security numbers of the students. Notably, this breach occurred due to server management error, in which a text file was publicly accessible for around eight months.

More two database files containing UT identification number, name, social security number and photos of 22,722 faculty, staff and students were on the web. The files were on web from July 2011 to March 13, 2012 and were discovered during in-class search exercise. It so happened when two UT students viewed the files on March 13, 2012 and reported to the IT staff. The IT Staff with the help of University representatives has deleted all the files that were made publicly accessible on web.

Statement given by the University

The two databases were not indexed by Google and so there is a possibility that they might not have been viewed by others. However, there was no clarification from the University on why only one file was been indexed by Google.

How did the data theft take place?

The new server was made operational in July 2011 and the text file and two databases were created to solve the problem of UT identification cards. This information was supposed to reside on UT’s internal servers. But unfortunately, the text file got inadvertently indexed by Google. However, the two databases were not indexed by Google or any other search engine.

How to prevent data theft?

News of data exposure on web is common. But protecting data is not impossible. There are a variety of things that IT admin can do to prevent data theft. According to Privacy Rights Clearinghouse, 16 schools in United States suffered from data breaches this year. Even though there has not been any maliciously viewing of the above data breach, it is not the case always. But an individual with malicious intent can use the information as an identity theft and then for credit fraud. The University is taking efforts to minimise the possibility of such data thefts in future. Reviewing of security procedures and policies is being done by the University. The university is planning to appoint a third-party, qualified security assessor (QSA) for reviewing of information on security procedures. It is making continuous and constant efforts to avoid breaches to ensure maximum protection of data, information and networks.

Time to plan your cyber-security with Alertsec

Alertsec has created a web based encryption service that radically simplifies deployment and management of PC encryption by using industry leading Check Point Full Disk Encryption (former Pointsec) software. There are no short cuts to Data security in any organization. This news stresses the need for data protection applications. In an incident which highlights the need of Data encryption software and recovery software, the threat could have simply been reduced to an insurance matter by a mere investment of $13/month. The information would have been secure with no loss what so ever. That is certainly a small price to pay compared to what can happen if you lose confidential or sensitive data. Alertsec Xpress offers a very good and easy-to-use laptop security service that includes more than the traditional software licensing model.

Enhanced by Zemanta

Canadian businesses vulnerable to data breaches: Security needs tightening

February 29th, 2012
English: Cloud computing stack showing infrast...

The cloud-computing stack: Cloud computing is the answer to data security

It is a myth that only giant corporations become a victim of data breach as they deal in large amount of data. The reality is small and medium-sized businesses are not exception when it comes to getting hacked. Their data is equally insecure and unless they strengthen their security policies, they are looking for trouble with a capital T.

Today’s story throws light on the vulnerability of small and medium sized businesses. The focus today is on Canadian companies.

What the survey says?

According to the survey conducted by Primus Business Services 60 per cent of the small and medium business owners admitted that they invest less than 10 per cent of their budgets in data. It is true that they are aware of the risks they are taking but are unable to act on it.

Half of the company-owners said that they were concerned with cloud computing security, 40 per cent of them were of the opinion that they would feel more secure if cloud services had full unified threat management/firewall protection or if the cloud was a single-tenant environment.  Around 48 per cent agreed that having proper company security polices will solve the data breach problems.

Cloud-computing is a relatively new phenomenon and hence companies are wary of switching to this technology. As of now only 14 per cent companies are taking advantage of this technology. Somehow it is still felt that cloud-computing is insecure as compared to having your own servers.

According to AJ Byers, Executive Vice President of Primus Business Services “Our public and private cloud computing platforms have been designed with enterprise grade security, failover, and disaster recovery technologies that are far more advanced than the standard firewall and server protection that most small and mid-market companies are investing in to protect both their own, and customer, data.”

What does cloud-computing exactly do?

A cloud firewall protects cloud servers and offers a fully unified threat management approach to securing the
customer’s environment.
Cloud computing key features:
Network security: A configurable firewall combined with an Intrusion Protection system, Denial of Service protection, traffic forwarding, VPN support and other
security tools.
Application security: includes email and web security – Protects users from receiving malicious spyware and spam emails.

What does cloud-computing exactly do?

A cloud firewall protects cloud servers and offers a fully unified threat management approach to securing thecustomer’s environment.

Cloud computing key features:

Network security: A configurable firewall combined with an Intrusion Protection system, Denial of Service protection, traffic forwarding, VPN support and othersecurity tools. Application security: includes email and web security – Protects users from receiving malicious spyware and spam emails.

The above makes it all the more clear why data security is important. Data encryption via cloud computing is the way to keep data breaches at bay. Companies like Alertsec take care of security needs for big as well as medium-sized and small companies.

Let us peek into the key features of Alertsec:

256-bit Full Disk Encryption

Web-based management

Comprehensive 24/7 support

Logging & Reporting

HIPAA, PCI and SOX compliant

Alertsec’s cloud-based, hard disk encryption service provides an easy and convenient way to protect all information stored on your organisation’s laptops and PCs.


Enhanced by Zemanta

ID thieves are back in action: 7.7 million Americans hit with credit and debit card fraud

February 27th, 2012
English: A smartcard graphic, without banklogo...

Credit card thefts on the rise suggests a recent survey

Stop reveling in your new purchase of a Smartphone, take it easy! Your data on your smartphone is not exactly safe! It could get stolen, especially the financial info like your credit and debit card information. Read on the new item below and get the facts straight. It is time you get that encryption software installed on your laptop!

What does the recent survey say?

According to the latest report from Javelin Strategy & Research 7.7 million Americans have been hit with credit and debit card fraud in 2011 alone.

What is the reason for this increase? The answer: Credit card thefts are back in vogue.

“There’s been a rebound. … ID thieves have bounced back,” said Javelin President James Van Dyke. This is about 2.2 million more than in the previous year.

Analyst Avivah Litan says “Our data says the same thing (as the Javelin data). It is worth noting that increases in fraud rates are even more pronounced on the small business and corporate side, which Javelin didn’t survey.”

A broad definition of identity theft:  any time a transaction occurs using a victim’s name or account information without authorization.

An example of ID theft

The survey further adds- There were some very high-profile thefts, such as the breaches on Sony Corp’s PlayStation network in April. A person whose personal information is stolen in a data breach is 9.5 times more likely to become a victim of identity fraud.

The situation is not as bleak as it looks. There is still hope. Consumers can protect themselves against identity fraud by taking the appropriate steps to safeguard their personal information.

Sure fire ways to protect from identity/credit card fraud:

– Monitor your accounts — Consumers can monitor accounts and catch fraudulent activity even faster with available electronic resources. Fraudulent activity can be monitored through electronic means like online banking, mobile banking and ATMs.

– Time to get rid of paper – Get your bank and credit card statements delivered online, there’s always a chance of your hard copy getting stolen.

– Set up a fraud alert.

– Avoid sharing personal information on social media sites.

The connection between social media and identity fraud

According to the survey there is a connection between active use of social networks and ID theft. More than 10 percent of LinkedIn users say they were a victim of identity theft (10.1 percent), while 7 percent of Google+ users and 6.3 percent of Twitter users admitted to being victims of ID theft –. Facebook users were at 5.7 percent just above the national average of 4.9 percent.

Social networking site users are more than often careless with their data: 45 percent disclose their birth date and year; 63 percent their high school; 18 percent their phone number; and 12 percent their pet’s name.

Data security with Alertsec

Alertsec is here to take care of our security issues especially for anyone working with PCs. Alertsec Xpress is the service that automatically protects ALL information you store on your PC. The fact that we now buy more laptops than desktops shows that the information we all store is increasingly more vulnerable to be exposed. It is a much higher risk to lose a laptop than a desktop computer.

Encryption is the only secure method for complete protection of data stored on your hard disk. Today laptops are overtaking desktop PCs as the major source of computing and media storage, laptops frequently store an organization’s most valuable information. Thus laptop encryption is becoming more and more important.

Alertsec Xpress offers full disk encryption and is therefore superior to other encryption methods when comparing security, performance, robustness and ease-of-use for both administrators and users.

Enhanced by Zemanta

Tracking software helps catch laptop thief in Altadena, Los Angeles

February 25th, 2012
English: Laptop

Tracking software helps recover stolen laptop

We cannot stress how important it is to get your laptop encrypted. Dozens of cases very month are related to laptop thefts.

What is scary is that 97% of stolen laptops are never recovered! Intellectual property theft is on the rise and we need stricter laws to keep laptop thieves at bay. It is just not the physical thing that you lose but you lose sensitive and valuable data. If you own a laptop, today’s post is for you. In case you ever loose your laptop but have encryption software loaded, you stand a good chance of getting your laptop back.

Today’s article not only helped the detectives to recover a stolen laptop but also other items that the thief stole like rifles and iPhones!

Read on

In January, Los Angeles County sheriff’s detectives marched into the home of  Raymond Jackson, 57, and found stolen goods that included a laptop which was protected by a encryption software. The laptop was stolen from an Altadena residence in May 2011. The detectives were on to this case for last 9 months.

They kept monitoring the laptop’s use through the tracking software. What they actually did was that they captured the keystrokes and screen images in November 2011. That helped them to zero in on Raymond. Prior to that Raymond did use the laptop but the data was not much to go for for the detectives.

With the help of the search warrant the detectives managed to recover not only the laptop but items like a legally banned, unregistered assault rifle; a pair of loaded rifle magazines; a .32-caliber revolver with a scratched-off serial number; and six stolen iPhones. 2 of the iPhones have been confirmed as stolen.

Jackson was arrested at his home and later released after posting $50,000 bail.  He is scheduled to appear again in court March 12.

Sheriff’s Detective David Gaisford comments

“The use of tracking software for one crime, led to the solving of multiple crimes,” said.

“My partner and I have recovered several laptops over the last year alone through laptop tracking. They often lead us to property stolen in other crimes.’”

Some do’s and don’ts for laptop users

Do’s
• Choose a password which is hard to decipher.
• Create a different password for every website that you use.
• Use anti-virus software on your laptop.
• During the coffee break, lock your keyboard or log off.
Don’ts
• Use an easy password like your birth date, car or phone number.
• Do not give your password to anyone however close to you.
• Open attachments or emails that look dicey or are from an unknown source.

Cyber-security with Alertsec

Alertsec Xpress is a very easy and convenient service which enables securing valuable information on laptops.

Alertsec Xpress is powered by Check Point, the market leader in the field of mobile data protection. The software was launched 16 years ago and is the most robust software on the market today.

Alertsec Xpress provides:

  • Fully managed service for your convenience.
  • Very cost effective service.
  • Market leading laptop protection service.
  • Quick and easy implementation.
  • Easy to use protection.
  • Transparent solution.
  • Global 24/7 helpdesk.

100% secure and reliable encryption.

Enhanced by Zemanta