« Mac people upgrading your iPhone, beware if you use vmware | Main| What site bookmarking tool do you use? »

Bullshit detector goes off

Category
Nothing to do with Notes/Domino.  More to do with poor ass data security and a terrible PR announcement trying to cover one's ass.   Bold emphasis is mine.  Taken from this announcement.

"What has happened?
A burglary took place on Friday, 5th June in one of Bord Gáis Energy’s Dublin offices. During this incident four laptops were stolen, one of which contained customer information of 75,000 customers Bord Gáis Energy residential electricity customers.

What action has Bord Gáis Energy taken to address the situation?
Bord Gáis Energy is taking this breach of security very seriously and a team has been set up to deal with the situation. A full investigation is currently underway, we are working with the Data Protection Commissioner, the Gardaí, the Irish Banking Federation and other security experts. We have reviewed our laptop encryption programme and can confirm all laptops are now fully encrypted. "

...

"What information was on the laptops?
Of the four laptops stolen, one had hard drive encryption and the remaining three had sophisticated password protection. One of the laptops with password protection contained the details of Bord Gáis Energy’s residential electricity customers who pay via direct debit."


Comments

1 - Yep -- bullshit! Whoop whoop!

I just don't get it. Truecrypt has been free and available for a while now -- I don't carry around a laptop unless the entire things been encrypted with this stuff.

{ Link }

2 - Bigger question for me is "What the hell were 75,000 bank account details doing on a laptop? Secured servers are the correct location for that info".

3 - "sophisticated password protection" = Windows Password? Emoticon

4 - "Sophisticated password protection"
= you can still just take the hard drive out and put it in an external USB case, and poof! No password any more.

5 - If you have physical access to a device and time, no security is unbreakable. Be it hardware or software. Any security expert will tell you that.