Red Flags Rule Clarified

On December 18th, President Obama signed into law the Red Flag Program Clarification Act, making changes to the Red Flags Rule. The Red Flags Rule requires many businesses and organizations to implement a written Identity Theft Prevention Program designed to detect the warning signs — or “red flags” — of identity theft. The new Clarification [...]

2010 Verizon PCI Compliance Report

Verizon has just released its 2010 PCI Compliance Report [PDF] which looks at PCI Data Security Standard (PCI DSS) assessments done by Verizon and looks at how organizations are attempting to become compliant. The report also compares companies in a “normal” population vs those that have suffered security breaches. This report does not attempt to [...]

Absolute Recovery Makes Campus Employee Come Clean

This laptop was stolen from a university auditorium after the cable was forced open. Within a couple days of theft, Absolute had identified two unauthorized users – both students at the school. The Recovery Team passed this information over to police, who recovered the stolen computer and probed the suspects for further details. Interviews broadened [...]

Absolute Cracks Down on IT Imposter

This laptop was one of four machines recovered by Absolute after a mass on-campus theft. Posing as a prospective student, a rather crafty thief arranged a campus tour. He expressed particular interest in computer science, and requested a visit to the school’s IT department. This visit gave him just enough time to scope out the [...]

Red Flags Rule Enforcement Delayed Again

The FTC announced recently that they have once again extended the enforcement of the “Red Flags” Rule. This latest extension was made at the request of Members of Congress, delaying the enforcement of the “Red Flags” Rule through to December 31, 2010. This delay was granted so that Congress could consider “legislation that would affect [...]

2009 iC3 Report on Internet Crime

The FBI, through its Internet Crime Compliance Center, has released the 2009 iC3 report which looks at the internet crimes reported in 2009. The website received 336,655 complaints in 2009, 146,663 of which were passed on to law enforcement for consideration. According to the report, the majority of crimes reported involved fraud with a total [...]

First HIPAA Lawsuit

The first HIPAA-related lawsuit has just been filed by Connecticut Attorney General Richard Blumenthal. The AG is suing Health Net of Connecticut for failing to secure private patient medical records and financial information for 446,000 Connecticut residents and for failing to promptly notify those at risk from the breach. In his lawsuit, Blumenthal is seeking [...]