Data Storage Today

CIO Today Network Sites:   Top Tech News  |   CIO Today   |   Mobile Tech Today   |   Data Storage Today
News & Information for Data Storage Professionals
Brocade delivers
cloud-optimized networking solutions
to deploy, manage, and scale networks.

www.brocade.com
Wednesday, May 22nd 
Introducing Simpana® 10 software
Home
Data Centers
Storage Solutions
Storage Networks
Data Storage Issues
Data Security
Enterprise I.T.
DST Press Releases
 
Free Newsletters
Top CIO News
 
Mobile Tech Today
 

Advertisement
Data Security

Data on 684,000 Stolen at University of Nebraska

Data on 684,000 Stolen at University of Nebraska
June 1, 2012 11:49AM

Bookmark and Share
The University of Nebraska "did not divulge what the vulnerability -- that they say is now closed -- was that enabled the breach," said security researcher Neil Roiter. "However, the message is clear: Universities, as institutions that typically need to be open to advanced learning, have to balance security with that openness."

Brocade delivers a comprehensive cloud-optimized networking portfolio of products and open-architecture solutions to simplify and accelerate the deployment of cloud computing and provide maximum deployment flexibility with plug-in scalability. Click here to learn more.

Another week, another security breach. This time it happened at University of Nebraska -- and it's being called the biggest university breach this year.

The University of Nebraska database breach exposed sensitive information of more than 654,000 students, parents and employees. The database in question, the Nebraska Student Information System, contains the Social Security numbers and dates of birth for all employees.

On Thursday, University of Nebraska officials announced that an individual had been identified who they believe was responsible for the breach. Meanwhile, security analysts are wading through the fallout of yet another high-profile hack.

"We have seized computers and related equipment belonging to a UNL undergraduate student who we believe is involved in this incident," said University of Nebraska-Lincoln Police Chief Owen Yardley. "They are currently in the hands of law enforcement and undergoing analysis."

Forensics Testing Under Way

According to Yardley, the individual was identified by NU Computing Services personnel through IP addresses used to access the system. The suspect's name will not be released until an arrest is made. A forensics team is analyzing the evidence.

"In order to assist with the criminal investigation, police asked the university not to release information about this security incident during the first 48 hours as work was done to verify the identity of the individual involved and necessary legal steps were taken to seize the property," Yardley said.

University officials recommended concerned parties contact a credit reporting agency to determine whether hackers have tried to establish or extend credit in their name. Although bank account information for most employees was not stored in the database, the university suggests monitoring bank accounts carefully.

Joshua Mauk, University of Nebraska information security officer, said the university and law enforcement officers were continuing to analyze how the breach occurred, and whether any information was downloaded.

Balancing Security with Openness

We caught up with Neil Roiter, director of research at Corero, to discuss the latest high-profile security breach. He told us it's fortunate that the breach was discovered and authorities had identified a suspect.

"Described by the university as a 'skilled attack,' we do not know what was done with the exposed Social Security numbers, names, addresses, course grades, financial aid and other information on students who attended the university since 1985," Roiter said.

"The university did not divulge what the vulnerability -- that they say is now closed -- was that enabled the breach. However, the message is clear: Universities, as institutions that typically need to be open to advanced learning, have to balance security with that openness to ensure sensitive data Relevant Products/Services is protected.

"The fact, according to the university, that its data was not encrypted and that the nature of the attack would have bypassed it in any event, raises questions about its overall security posture."

Tell Us What You Think
Comment:

Name:

Advertisement

Have an informed opinion on this story?
Send a Letter to the Editor.
We want to know what you think.
Send us your Feedback.

 Related Topics  Latest News & Special Reports

  NVIDIA GPU Boosts Citrix XenDesktop
  Security Alert: New Trojan Attacking
  Blue Coat Beefs Up Big Data Security
  Backing Up Is Hard To Do, Yet Critical
  Dell Kills Its In-House Public Cloud

 Technology Marketplace

BYOD & MDM
Forrester Research Inc., Report: BYOD from AT&T. Make everyone more efficient.
 
Cloud & Virtualization
Brocade technologies help enable the full benefits of virtualization.
Riverbed Stingray Traffic Manager on Amazon Web Services
 
Contact Centers
Unlock the potential in your people with Microsoft Dynamics
 
Customer Service
Unlock the potential in your people with Microsoft Dynamics
 
Data Security
Simpana® 10 software: an exponential leap forward
 
Data Storage
Brocade makes it easier to deploy, manage, and scale networks.
 
Enterprise Software
Simpana® 10 software: an exponential leap forward
 
Network Security
Brocade makes it easier to deploy, manage, and scale networks.
 
Navigation
Data Storage Today
Home/Top News | Data Centers | Storage Solutions | Storage Networks | Data Storage Issues | Data Security | Enterprise I.T.
DST Press Releases
Also visit these Enterprise Technology Sites
Top Tech News | CIO Today | Mobile Tech Today | Data Storage Today

Services:
FreeNewsFeed | Free Newsletters | XML/RSS Feed

About CIO Today Network | How To Contact Us | Article Reprints | Services for PR Pros (In partnership with NewsFactor) | Top Tech Wire | How To Advertise

Privacy Policy | Terms of Service
© Copyright 2000-2013 Data Storage Today. All rights reserved. Article rating technology by Blogowogo. Member of Accuserve Ad Network.