Auteur Sujet: [SecListe]Public points of data loss  (Lu 4498 fois)

0 Membres et 1 Invité sur ce sujet

Hors ligne igor51

  • Admin
  • Mega Power Members
  • *****
  • Messages: 10419
[SecListe]Public points of data loss
« le: mai 16, 2012, 21:00:24 »
Public points of data loss

    <span style="font-weight: bold; font-style: italic;">“Forgetting”</span> or <span style="font-weight: bold; font-style: italic;">“underestimating”</span> are the main reasons for data loss around the world. In an airport lounge during my last trip I came across  some cool tab devices running on Android integrated with an external keyboard available for public use and connected to the Internet.     <p class=c><img src="images/pictures/klblog/208193495.png" border="1" alt="" title=""></p> <a href="http://www.securelist.com/en/blog/396/Your_very_own_personal_Wiki_leaks">As in the past</a> I performed a quick check of downloaded files, most visited sites and browser history and found a huge list of sensitive information. Here are some examples:  <ul style="font-style: italic;">   <li>Access via OWA to a corporate email of a Latin American bank.</li> <li>Medical files from Spanish hospitals.</li> <li>Commercial offers with personal banking information of a service provider.</li> <li>Personal traveller information with full names, IDs, frequent flyer number and the destination of the flight. </li> <li>Audit control released by a Latin American government to local companies. </li> </ul> I didn’t check if the browser function “save passwords” was enabled. <span style="font-style: italic;">Just imagine if it was!</span> I also didn’t check the saved cookies. Anyway enough sensitive information was already exposed out there.     Lots of people are not very good at safeguarding their personal information on standard PCs; they are even worse when it comes to tab computers. More often than not, they just don’t know where a file was downloaded on a tab, and they have no idea how to delete it afterwards.     I wonder how much sensitive information is already exposed in this way at airports around the globe! Without any doubt it’s a huge advantage for cybercriminals who know how to use social engineering and a big pain for security officers of the companies who have to train employees. Another important point is when people fly on business - they are usually managers, so any leaked information can compromise not only their personal identity but also a company’s secrets.
Source: Public points of data loss

Tags: