Nov 17, 2008 : University Breach Affects 333K Patients


📅 -  -- A data breach at The University of Florida's dental school (http://www.dental.ufl.edu) last month has left the private information of 333,000 people in jeopardy, according to reports on ITBusiness.ca.


The intrusion marks the latest incident involving a compromised college network, which are often criticized for having significant security vulnerabilities. In August, hackers gained access to the New Zealand's University of Otago staff member accounts and used it to send out some 1.55 million spam emails in two-and-a-half days.

The University of Florida revealed in a statement last week that the compromised information included the names, dates of birth, Social Security numbers, addresses, and in some cases, the dental procedures of current and former College of Dentistry patients dating back as far as 1990.

The unencrypted data was taken from a database on the compromised server, said the school, adding that it has notified the 330,000 people.

School officials said it hopes that another 8,000 affected patients whose current mailing addresses they could not uncover will learn about the data breach through media coverage.

The school's IT staff first learned of the breach on October 3 during the server's upgrade procedure, discovering that the attackers had installed malware on the server from a remote location.

The IT staff "immediately disconnected" the server from the Internet after discovering the breach, and has since then deployed stronger security measures. However, the university did not disclose any information about these new measures.

Prior to the breach, the system already had extensive security measures in place, including the encryption of data while in transit, as well as the reinforcement of firewalls and intrusion-detection systems, said the school.

In the statement, the school also explained that it waited for more than a month to alert the potentially compromised patients because the school's IT employees and external consultants needed to figure out the size of the breach and how many individuals had been affected.

Once this information was determined, law enforcement officials requested the school to withold the disclosure until it concluded its investigation. The university also needed to to set up a call center and website to accomodate the barrage of questions that it anticipated from affected individuals.

The time taken to notify the affected patients was well within the 45 days of discovering a potential compromise that is required by Florida breach disclosure rules,said the school's spokesperson.

Just as other comparable disclosures in the past, the school did not say what kind of server was compromised or offer details on how the attacker managed to break into it. The school also did manage when the breach started or how long it took to be discovered.

The university is also taking additional precautionary measures by looking at nearly 60,000 other computers on its campus for similar security vulnerabilities.

Reads: 1340 | Category: General | Source: TheWHIR : Web Host Industry Reviews

Want to add a website news or press release ? Just do it, it's free! Use add web hosting news!

Other news


blacksun.ca logo📅 - BlackSun Lowers .INFO domain cost to $2.95 per domain - BlackSun.ca, a Canadian owned and operated Web hosting provider announced today the launch of a new domain search tool. The domain tool allows the user to enter any keyword phrase or extension and returns multiple extensions, in addition to offering various suggested related Premium Domains that are available from a large auction database.

"With the new launch, .INFO domains are available to all of our customers at $2.95 for a limited time!" said Steve Rogoschewsky, managing director of BlackSun Inc. "The return of premium domain suggestions allow users to purchase related names directly from the domain seller, which has been traditionally a difficult process to ...
mitwi.com📅 - Web hosting data centers outside America: mitwi.com - Do you know that almost all web hosting companies host their web sites from Data Centers located in America. Not so with MITWI.com. MITWI.com is one of the few web hosting companies with Data Centers located outside America. Its Data Centers are actually located in St Vincent West Indies. It provides the same reliable hosting service, 24hr Instant Chat support, Control Panel/Filemanager/FTP, PHP & ASP.NET support, MYSql and Microsoft SQL technologies, Antivirus Anti-spam etc. Haven't you heard that America is in recession (sources http://money.cnn.com/2008/11/10/markets/markets_newyork/index.htm and ...
asphostportal.com logo📅 - Cheap SQL 2008 Hosting and Best Windows 2008 Provider! - Short Description:
BEST Windows 2008 Hosting Provider and CHEAP SQL 2008 Database from only $4.99/month. We support SQL Express 2008 Database, Reporting Service 2008 and Crystal Report 2008 Hosting. All from ONLY $4.99/month (plus FREE 1 Domain Name for you to start)

Full Description:
We are one of the premier cheap SQL 2008 and Windows 2008 Hosting providers. Our SQL 2008 hosting plan starts from as low as $4.99/month (plus you will get one FREE domain name) with the following added-features: crystal report 2008, front page 2008, reporting service 2008 and other 50 FREE One-Click Direct installations from our control panel. Our reseller plan starts from as ...
redrocksdatacenter.com📅 - RRDC Adds Outside Air Cooling - On the outskirts of Denver, the Red Rocks Data Center (redrocksdatacenter.com) will now be cooled for more than 80 percent of the year by cool mountain air, after installing an air economizer that pulls in and filters outside air to cool customers' servers. According to the company's Monday announcement, Morrison, Colorado-based RRDC, which provides managed IT infrastructure for colocation, dedicated servers and virtual private servers, has installed a Trane Voyager (http://www.trane.com) air economizer system, cutting the its cooling costs to one-sixth of its previous consumption using conventional air conditioning."By cutting our consumption of green house gas ...
📅 - Emerson Offers Efficiency Metric - Emerson Network Power (http://www.emerson.com), a business-critical continuity business, issued a new white paper on Tuesday that discusses how an industry-wide measure of data center efficiency is a crucial next step in addressing IT energy consumption. The white paper, "Energy Logic: Calculating and Prioritizing Your Data Center IT Efficiency Actions," uses a placeholder metric to highlight the value of measuring data center efficiency, comparable to the miles-per-gallon standard unit of measure that is ued to determine a vehicle's fuel efficiency.There is a complete analysis of the metric available for download on EfficentDataCenters.com ...
theplanet.com logo📅 - The Planet Launches API - Dedicated and managed hosting provider The Planet (theplanet.com 👉 Total Reviews: 3
🙌 Average Rating: 1 / 10
👍 Good Reviews: 0
👎 Bad Reviews: 3
👈 Official Responses: 0
) announced on Tuesday the launch of a new application programming interface that will extend the management capabilities of Planet Alpha's dedicated hosting customers, particularly its reseller customer base. According to The Planet's most recent announcement, the API will enable resellers to integrate features from the company's Orbit customer portal into their own applications, "to extend their internal management systems, tools and portals to automatically manage their hosted infrastructure without manual human intervention.""We offer our Planet Alpha customers a number of ways to manage ...