Note: this blog is a mirror of my HP Labs Blog, on the same topic, accessible at: http://h30507.www3.hp.com/t5/Research-on-Security-and/bg-p/163

Monday, December 3, 2007

UK Personal Data for Sale on the Internet …

A recent article by “The Times” (authors: Alexi Mostrous and Dominic Kennedy), called “Websites Sell Secret Bank Data and PINs”, reveals how journalists easily managed to get identity information about UK citizens, on the Internet, for free, offered as “tasters”:

“Security breaches that are allowing the financial details of tens of thousands of Britons to be sold on the internet are to be investigated by the country’s information watchdog.
Without paying a single penny, The Times downloaded banking information belonging to 32 people, including a High Court deputy judge and a managing director. The private account numbers, PINs and security codes were offered as tasters by illegal hacking sites in the hope that purchases would follow.
Richard Thomas, the Information Commissioner, will begin an investigation into the security breach today and Scotland Yard is also investigating. Experts said that the findings suggested that more personal data than ever before was going astray. The Times found: More than 100 websites trafficking British bank details; A fraudster offering to sell 30,000 British credit card numbers for less than £1 each; A British “e-passport” for sale, although the Government insists that they are unhackable. …”

--- NOTE: my original HP blog can be found here ---

No comments: