720-891-1663

Vendor and Supply Chain Risk

Businesses have always outsourced work.  It used to be plumbers and what were referred to as “the trades”.  Now it is programmers and manufacturing. What is different now is the degree of connectedness that those suppliers have. A couple of examples: Target uses HVAC contractors to maintain the refrigeration in their stores. It used to […]

Continue reading → [DISPLAY_ACURAX_ICONS]

The Cost Of A Data Breach – T-Mobile May Fire Experian

T-Mobile and Experian both announced that an Experian database containing credit application data for prospective T-Mobile customers (people who applied to finance a new phone or new phone service) between September 2013 and September 2015 was accessed by hackers.  T-Mobile outsources their credit application process to Experian, which is typical, and that is where the […]

Continue reading → [DISPLAY_ACURAX_ICONS]

SEC Fines Investment Advisor $75,000 For Breach

The SEC and Investment Adviser R.T. Jones (RTJ) came to an agreement last week regarding a breach that RTJ had. R.T. Jones, an investment advisor in St. Louis with about 8,000 clients, has agreements with retirement plan administrators to offer investment advice to participants in those plans via the web. To log in to the […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Systema Leaves Insurance Claims Data In The Cloud – Unprotected

Databreaches is reporting that someone discovered a large amount of data on a public segment of Amazon Web Services.  This person, described as a technology enthusiast (i.e. a geek) downloaded some of this data and discovered it contained medical claims data. The repository, which supposedly contained gigabytes of data was later identified to belong to […]

Continue reading → [DISPLAY_ACURAX_ICONS]

The Target Breach Story – How Did They Let This Out?

Krebs On Security has extensive reporting of an investigation by Verizon conducted starting a few days after the Target breach was announced. Target has refused to confirm or deny the report . One thing to consider.  We do not know how Brian (Krebs) got the report, so all we can do is speculate. This report, in […]

Continue reading → [DISPLAY_ACURAX_ICONS]