Thursday, November 22, 2012

Security & Hacking: Update "Phishing attack, stolen credentials sparked South Carolina breach"

Governor Nikki Haley update on SC Hack of Tax Returns

  

Contrast VOD with spinless details, Phishing attack, stolen credentials sparked South Carolina breach

I blogged about this before, see link here http://cliffsesportcorner.blogspot.com/2012/10/security-hacking-governor-nikki-haley.html with VOD from Governor Haley's (South Carolina) Press Conference about SC Tax Returns being hacked.

Turns out those "sophisticated" "foreign" hackers used a Phishing attack.

And since SC didn't encrypt the data, or use Two Factor, they were totally pwned.

For TWO MONTHS, it was actually the cops that told them there was a problem!!!

Full Story, very much worth reading, http://searchsecurity.techtarget.com/news/2240172466/Phishing-attack-stolen-credentials-sparked-South-Carolina-breach

See also this PDF Public Incident Response Report, http://governor.sc.gov/Documents/MANDIANT%20Public%20IR%20Report%20-%20Department%20of%20Revenue%20-%2011%2020%202012.pdf


No comments:

Post a Comment