WebProWorld Part of WebProNews.com
Page One Link To Us Edit Profile Private Messages Archives FAQ RSS Feeds  
 

Go Back   WebProWorld > Webmaster, IT and Security Discussion > Internet Security Discussion Forum
Subscribe to the Newsletter FREE!


Register FAQ Members List Calendar Arcade Chatbox Mark Forums Read

Internet Security Discussion Forum This forum is for the discussion of security related issues. If you find a new Phishing scheme, spyware, virus or malicious site - let us know about it. If any of the above found you... here's where you ask for help.

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 12-30-2005, 01:55 PM
Guest
 

Posts: n/a
Default Justice Dept. Not Protecting SSNs

Social Security numbers (SSN) are generally used for one thing: Social Security. That's all they're supposed to be used for. They are supposed to be a fairly private number because possession of it could allow certain records to be manipulated. How is it then, that the Department of Justice (DOJ) published SSNs on its website.

InformationWeek put together a great story on the Justice Department's apparent issues involving the social security numbers of past cases from the DOJ. Based on a tip they received, InformationWeek accessed multiple names and the accompanying SSNs. A particular instance involved a woman from a 2003 case involving immigration review. But there were others.

While the DOJ said the problem would be corrected and that they follow privacy rules, the Privacy Act and the Freedom of Information Act, the problem still exists and it's likely to get worse. The DOJ suggests they are working hard to fight identity fraud yet they publish SSNs on their site.

The article pointed out some 51 million people had their identity compromised in 2005 and Congress is set to relax rules on reporting these security breaches. After a terrible year for identity fraud, one would think the rules would be improving.

This isn't the only case of problems with the federal government though. The FBI doesn't have up-to-date security certificates; the DOD and defense contractors get hacked by Chinese hackers and the list goes on.

The federal government talks a decent game when it comes to stopping cybercrime and having adequate protections. That doesn't seem to be the case. They need to get their own house in order, if not, it's not going to matter what they do with everyone else.
Reply With Quote
Reply

  WebProWorld > Webmaster, IT and Security Discussion > Internet Security Discussion Forum
Tags: , , ,



Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Search Engine Optimization by vBSEO 3.2.0