« Malware hits London hospitals | Main | Infosec risk assessments - uncertainty and opinion »

BNP Data Breach

KingS The data breach suffered by the British National Party is a low-tech incident against which there is little defence. See http://news.bbc.co.uk/1/hi/uk/7736794.stm.

I have no personal sympathy for the BNP - and their politics are not for comment on this blog - but the incident is a good example of the impact that a disgruntled insider with access to confidential data can have.

It's similar to a recent case that came my way where a former company employee, shortly after leaving his organisation, anonymously sent an email to senior management containing an alleged exposé of poor management practices within his business unit. A real case of sour grapes that fortunately had little impact other than to create some mischief.

While it's possible to restrict an individuals access to the office and network once they have resigned or been fired, it's not always easy to know what grudges may be held or what information or documentation might already have been removed. The insider threat, as the BNP have now discovered, remains a potent one.



Bookmark and Share


TrackBack

TrackBack URL for this entry:
http://www.computerweekly.com/cgi-bin/mt/mt-tb.cgi/40837

Comments (1)

Gary Borders:

It is looking more like it was theft by Labour extremists rather than an inside job, if you want to read the latest news.

Post a comment

(If you haven't left a comment here before, you may need to be approved by the site owner before your comment will appear. Until then, it won't appear on the entry. Thanks for waiting.)

About

This page contains a single entry from the blog posted on November 19, 2008 7:45 AM.

The previous post in this blog was Malware hits London hospitals.

The next post in this blog is Infosec risk assessments - uncertainty and opinion.

Many more can be found on the main index page or by looking through the archives.