Sensitive information retrieved from P2P networks
Posted on 08 February 2010.
Bookmark and Share
Security researchers Larry Pesce and Mick Douglas demonstrated on Friday - at this year's ShmooCon security conference in Washington, D.C - the amazing variety of sensitive information that people send out out over peer-to-peer networks, without a thought as to what would happen if such information fell into the wrong hands.

Using search terms such as word, doctor, health, passwd, password, lease, license, passport and visa; file names like password.txt, TaxReturn.pdf, passport.jpg, visa.jpg, license.jpg and signons2.txt; and a myriad of file extensions, they managed to get their hands on tax forms containing complete personal information of the taxpayer, IRS forms with identification numbers on it, driver's licenses and passports, event schedules (names, hotel room numbers, performance dates and locations), financial retirement plans, and even information about a student that offered to help U.S. forces in Iraq and is currently hiding for fear of torture and death!

The conclusion? Security awareness is still nonexistent among the typical low-level users, and the process of education must be continued for as long as it takes to make everybody aware of the dangers of sharing sensitive and/or personal information through insecure channels.

Network World reports that the two researchers also presented the Cactus Project, whose purpose is to help organizations carry out this kind of research and impose changes to improve security when it comes to file sharing on the Gnutella bases P2P network.







Spotlight

The CSO perspective on healthcare security and compliance

Posted on 20 May 2013.  |  Randall Gamby is the CSO of the Medicaid Information Service Center of New York. In this interview he discusses healthcare security and compliance challenges and offers a variety of tips.


Daily digest

By subscribing to our early morning news update, you will receive a daily digest of the latest security news published on Help Net Security.
  

Weekly newsletter

With over 500 issues so far, reading our newsletter every Monday morning will keep you up-to-date with security risks out there.
  

 
DON'T
MISS

Tue, May 21st
    COPYRIGHT 1998-2013 BY HELP NET SECURITY.   // READ OUR PRIVACY POLICY // ABOUT US // ADVERTISE //