Microsoft Outlook Support

  • Subscribe to our RSS feed.
  • Twitter
  • StumbleUpon
  • Reddit
  • Facebook
  • Digg

Sunday, 10 May 2009

IT experts say MI6 drug information loss in Columbia highlights need for encryption policies

Posted on 11:02 by Unknown
by Michael Smith (Veshengro)

Credant says MI6 drug information loss in Columbia highlights need for portable device encryption policies

The case of an MI6 agent - who apparently left an unencrypted USB stick containing several years worth of drug trafficking intelligence on an airport bus in Columbia - highlights the need to use encryption when dealing with sensitive information, says Credant Technologies, the military grade cryptography specialist.

"Newswire reports suggest that, in leaving her handbag containing the USB stick on a transit bus at Bogota airport, the agent has compromised the work of several of her fellow agents," said Michael Callahan, Credant's senior vice president.

"Reports also suggest that the loss of the USB stick has forced drug enforcement officials to relocate several of their agents and informants. If the data had been encrypted, however, this reaction would not have been necessary," he added.

According to Callahan, that the loss of a single USB stick should have compromised the activities of so many agents and their informants illustrates what a happen as a result of a single data loss incident.

It also, he explained, highlights what can happen when a single lapse in IT security policy occurs and the potential for the lapse to cause problems at multiple levels.

Callahan went on to say that Colombia may well be problematic when it comes to law enforcement, but implementing an effective IT security policy that requires data held on portable devices to be encrypted is far from being a high technology issue.

"This really comes down to common sense security. It's a great shame to see the UK Security Service embarrassed by a single data leak incident, but it is a security policy failure, nonetheless," he added.

For more on the Columbian USB stick loss fall-out: http://preview.tinyurl.com/ck6am5

For more on Credant Technologies: http://www.credant.com

I hate to ask this but are the British government and its agencies intending to get into the Guinness Book of Records as the most incompetent ones as far as data security is concerned.

The life of field agents is now being at risk and months if not years of hard and dangerous work because someone left an unencrypted USB stick with sensitive – extremely sensitive data – on an airport bus. How stupid can they actually get?

Proves yet again why intelligence officers are looking for intelligence, you sure know the joke; because they haven't got any. Same seems to apply for the entire government.

All it would have taken would have been a little AES 256 USB drive, the cheapest of which are now available in the form of the Crypto AES 256 bit from Integral or the Blockmaster Safestick. There simply is no need to have sensitive data unencrypted on a USB drive.

Another thing this reminds one of is the “for the lack of a nail a shoe was lost, etc.” and this sure as heck is just the way it would appear to run.

Businesses in the UK (and elsewhere) appear to be, in the main, better in safeguarding sensitive and extremely sensitive data than are the governments and their agencies.

This is criminal negligence in the extreme and it does not appear to get any better. The way it looks the British government and its agencies do not seem to learn from all those data breaches they incur. Breaches and losses that so easily could be prevented. All it is is a matter of cost, often only little cost. On top of this it is a matter of education but all of this seems to be sadly lacking in government circles, as does common sense.

© 2009
<>
Email ThisBlogThis!Share to XShare to FacebookShare to Pinterest
Posted in Columbian USB stick loss, Credant Technologies, MI6, MI6 data loss, SIS | No comments
Newer Post Older Post Home

0 comments:

Post a Comment

Subscribe to: Post Comments (Atom)

Popular Posts

  • DDoS-Attacks disable many shopping websites, including Amazon
    Just in time for last minute Christmas shopping major shopping sites disabled by Michael Smith (Veshengro) London, December 26, 2009: An...
  • Open Source Software in Business & Government
    by Michael Smith (Veshengro) Lots of Open Source in use in mainland Europe, including EU member states, very little in the UK and less still...
  • Cyber-Ark Expands RSA Secured Partner Program Certification Status
    Cyber-Ark Privileged Identity Management Suite, Inter-Business Vault and Sensitive Document Vault Now Formally Interoperable with RSA enVisi...
  • Infosecurity Adviser applauds forensics lab training facilities at key UK university
    London, UK. May 2009: Infosecurity Adviser, Infosecurity Europe’s online community for the information security industry, has published a r...
  • Scientific company discusses simultaneously protecting applications and data
    Simultaneously protecting applications and data: The next evolution in security? September 2009 (Eskenzi PR) – In a recent Imperva podcast...
  • TUFIN TECHNOLOGIES WINS the PRESTIGIOUS 2010 Computing Security Award for ‘Best bench tested solution of the Year’
    Network Computing and Computing Security Magazine Editors Select Tufin’s SecureChange Workflow as the Top Product Reviewed in 2010 Londo...
  • Brocade Service Could Help Reduce Billions in Data Centre Operations Costs
    New Energy Efficiency Review provides holistic assessment and remedial strategies to help companies optimise efficiency and reduce costs Ene...
  • Infosecurity Europe 2011 Hall of Fame nominations now open
    London UK, February  2011 – The time is ripe to elevate the greatest movers and shakers in the world of information security as nominations ...
  • Tufin survey reveals the truth about fudging audits, IT cost cutting and buying equipment online
    Ramat Gan, Israel – May 27, 2009 – Tufin Technologies today announced the results of its “Reality Bytes” security survey. The survey parti...
  • ISACA’s EuroCACS Conference Demystifies the Cloud
    Event for IT Professionals Will Take Place 20-23 March, Manchester London, England, (8 th March 2011)— Global business and information ...

Categories

  • ASUS
  • AVG Link Scanner
  • BeCrypt
  • book review
  • Brocade
  • Codenomicon
  • Columbian USB stick loss
  • computer recycling
  • Conficker worm
  • Credant Technologies
  • cyber crime
  • Cyber-Ark
  • Cyber-Ark®
  • Data Center
  • data encryption
  • DeviceLock
  • Digital Pathways
  • diskGenie
  • Eclypt
  • Eee PC
  • Eee PC Seashell 1008HA
  • F5 Networks
  • Facebook
  • Finjan
  • Finjan Inc.
  • Finjan MCRC
  • Firewall Management
  • Fortify
  • Fortify 360
  • Fortify Software
  • Fortify® Software
  • gadgets
  • Google
  • Google Chrome
  • green computing
  • green IT
  • IBM
  • Infosec
  • Infosec Europe 2009
  • Infosecurity Adviser
  • Infosecurity Europe
  • Infosecurity Europe 2009
  • Internet privacy
  • iStorage
  • iStorage diskGenie
  • iStorage Ltd.
  • Juniper Networks
  • Lakeland
  • Lapdesk
  • LLC
  • Logitech
  • malware
  • ManageEngine
  • McAfee International Ltd
  • MI6
  • MI6 data loss
  • Microsoft
  • MiFi™ 2352
  • Mio
  • Mobile Broadband
  • MS Office
  • National Cybersecurity Advisor
  • Navman
  • Navman Spirit
  • Netac
  • Novatel
  • Novatel Wireless Intelligent Mobile Hotspot 2352
  • OneClick IntelliPanel Desktop
  • online social media
  • open source
  • OpenOffice.org
  • Optenet
  • Origin Data Locker
  • Origin Storage
  • PNDs
  • product review
  • Red
  • SaaS
  • Sat Nav
  • saving energy
  • Security
  • Shavlik Technologies
  • SIS
  • spam
  • Stonewood Group
  • Storage Area Networks
  • Storage Expo
  • Storage Expo 2009
  • Sun Microsystems
  • Swine Flu
  • Syphan Technologies
  • Throwing Sheep in the Boardroom
  • Tufin Technologies
  • Twitter
  • U256
  • Unisys Security Index
  • USB drives
  • Vektor
  • VisionRacer
  • VisionRacer VR3
  • VMware
  • Weast
  • Web Apps Security
  • WebFilter PC Solution
  • WebSpy
  • XSS-driven attacks

Blog Archive

  • ►  2012 (1)
    • ►  January (1)
  • ►  2011 (67)
    • ►  December (1)
    • ►  April (1)
    • ►  March (14)
    • ►  February (30)
    • ►  January (21)
  • ►  2010 (192)
    • ►  December (20)
    • ►  November (22)
    • ►  October (19)
    • ►  September (5)
    • ►  August (8)
    • ►  July (5)
    • ►  June (22)
    • ►  May (13)
    • ►  April (11)
    • ►  March (13)
    • ►  February (27)
    • ►  January (27)
  • ▼  2009 (240)
    • ►  December (25)
    • ►  November (9)
    • ►  October (21)
    • ►  September (19)
    • ►  August (30)
    • ►  July (35)
    • ►  June (30)
    • ▼  May (21)
      • Impressions of an ASUS Eee PC 900
      • Touch the Light Fantastic
      • Survey Reveals Workaholics now working 2-6 hours a...
      • Tufin survey reveals the truth about fudging audit...
      • UK SMEs drastically underestimate IT security dang...
      • Experts says trashed hard drive fiasco at Pfizer c...
      • New In-Line product doubles network throughput
      • Beware fake security software
      • TDK bid to use solid state technology will not fly
      • Fortify says online credit card security lapse may...
      • The KBC Group Taps Tufin Technologies to Streamlin...
      • MPAA/RIAA Web site security flaw ironic, but unsur...
      • Mio launches new Navman range
      • ASUS Eee PC Seashell Netbook launched in UK
      • US missile launch data on eBay hard drive signifie...
      • Is Your Firewall A Fire Hazard?
      • Throwing Sheep in the Boardroom – Book Review
      • IT experts say MI6 drug information loss in Columb...
      • IT Security Solution helps keep Swine Flu under co...
      • Tufin Technologies supports Rt Hon David Blunkett'...
      • Tufin Open Platform launched providing platform fo...
    • ►  April (42)
    • ►  March (8)
Powered by Blogger.

About Me

Unknown
View my complete profile