[Dataloss] NH govt breach

lyger lyger at attrition.org
Wed Feb 15 23:57:50 EST 2006



On Wed, 15 Feb 2006, Chris Walsh wrote:

": " A quick Google Alerts cut/paste:
": " 
": " SECURITY breach reported in state computers
": " Boston Globe - United States
": " CONCORD, NH --New Hampshire's state computer system was breached and  
": " might
": " have compromised customers' credit card numbers, Gov. John Lynch said
": " Wednesday. ...
": " <http://www.boston.com/news/local/vermont/articles/2006/02/15/ 
": " security_breach_reported_in_state_computers>

"State information technology experts became aware of the breach Wednesday 
when they spotted a variation of legitimate "Cain and Abel" software in 
the system.

The illegal software, which may have been installed for six months, allows 
a hacker to watch transactions in real time, but not to recover earlier 
records, said Richard Bailey, chief information officer for the Office of 
Information Technology."

So "Cain & Abel" is legitimate, but variations are not?  This seems to be 
shoddy reporting, unless I missed something here..

http://www.oxid.it/cain.html


More information about the Dataloss mailing list