Industry


Ads by TechWords

See your link here


Subscribe to our e-mail newsletters
For more info on a specific newsletter, click the title. Details will be displayed in a new window.
Computerworld Daily News (First Look and Wrap-Up)
Computerworld Blogs Newsletter
The Weekly Top 10
More E-Mail Newsletters 
Michael R. Farnum's picture
Michael R. Farnum

Hitting the Security Nerve

Clean your HD's BEFORE the auction

Andrew Chapman bought what appears to be a NAS device on eBay for about £37 (about $66).  Nice catch.  But when he found data on over one million bank customers, he figured out that he got a little more than he bargained for.

Mr. Chapman bought what appears to be a SNAP! NAS server (going by the picture in the article) for a song.  But when he fired it up and started looking around, he found the IDs for over one million customers of American Express, NatWest and Royal Bank of Scotland.  The data "includes names, addresses, mobile phone numbers, bank account numbers, sort codes, credit card numbers, mothers' maiden names and even signatures."  According to the article, a former employee sold the NAS device on eBay, and he obviously sold it without erasing the hard drive.

One question is what was he doing with the server in the first place?  Shouldn't that be criminal right there?  Of course, he might have bought it or had it given to him after it depreciated and was taken off the books.  But to then sell it on eBay without erasing the data is inexcusable.

One good thing that comes from this is that an honest man was found.  That helps restore my faith in humanity a bit.  Mr. Chapman, I salute you.

Reply
The content of this field is kept private and will not be shown publicly.
* We require you to preview your comment before posting to prevent comment spam. Please read our comments policy before posting.