Skipton in lost laptop security woes
14,000 accounts suspended after latest data breach
Posted in ID, 21st December 2007 15:06 GMT
Free Download - Security Web 2.0
Skipton Financial Services has confessed to losing a laptop containing records of 14,000 customers. Information exposed by the breach includes names, addresses, National Insurance numbers, and fund investment details of clients of Skipton's Fidelity FundsNetwork.
The laptop was nicked from a locker being used by a staff member of Moore Stephens Consulting, an IT consultancy employed by Skipton Financial Services, on Tuesday evening last week, the Yorkshire Post reports.
The machine was password protected, but not encrypted. Skipton has suspended affected accounts as a precaution. It has also written to punters affected by the breach, which marks the latest entry in a growing list of UK firms falling victim to customer data security cock-ups.
Jamie Cowper, EMEA director of marketing at encryption firm PGP, called for a reform in UK data protection laws. "The sheer volume of data disasters this year has made it clear that today's online society has outgrown the Data Protection Act. The government must make a new year's resolution to not only revise it, but also make clear to organisations that they must start moving away from reactive data protection measures to pre-emptive ones," Cowper said.
"Encryption should play a major role in security policies," he added. ®

An Improved Architecture for High-Efficiency, High-Density Data Centers [WP126]
Implementing Energy Efficient Data Centers [WP114]
LDAP Injection
Securing your Online Data Transfer with SSL
The Register Guide to Extended Validation

Inmate hacked prison network, broke into employee database
Miscreants hijacking machines via (freshly patched) Adobe flaw
Martial law planned for Craigslist's red-light district
Cocaine addicted IT manager hacks ex-employer's mail servers