Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security Information-Security-News
[Top] [All Lists]

[ISN] Honeywell blames ex-employee in data leak

Subject: [ISN] Honeywell blames ex-employee in data leak
Date: Wed, 8 Feb 2006 02:19:23 -0600 (CST)
http://www.computerworld.com/securitytopics/security/story/0,10801,108434,00.html

By Robert McMillan
FEBRUARY 06, 2006
IDG NEWS SERVICE

Honeywell International Inc.  says a former employee has disclosed
sensitive information relating to 19,000 of the company's U.S.
employees.

Honeywell discovered the information being published on the Web on
Jan. 20 and immediately had the Web site in question pulled down, said
company spokesman Robert Ferris.

In court filings dated Jan. 30, the company accused former employee
Howard Nugent of Arizona of accessing the information on a Honeywell
computer and then causing "the transmission of that information."

Nugent has since been ordered not to disclose any information about
Honeywell, including "information about Honeywell's employees (payroll
data, Social Security numbers, personal information, etc.)," according
to a Jan. 31 order signed by Judge Neil Wake of the U.S. District
Court for the District of Arizona.

The precise method Nugent is alleged to have used to gain access to
the information, and why he may have disclosed it, is not clear.

In the court filings, Honeywell claimed that Nugent "intentionally
exceeded authorized access to a Honeywell computer," but the integrity
of Honeywell's computer systems was not compromised, Ferris said.

"Nobody hacked into systems," he said, without disclosing further
details on the data breach.

Honeywell employees were notified of the breach via e-mail on Jan. 23,
just days after it was discovered, and the company has since mailed
notices about the compromise to all affected employees, Ferris said.

The company is working with federal and local authorities on the case,
but Ferris declined to comment on whether criminal charges were
expected to be filed.

Nugent could not be reached to comment for this story.


_________________________________
InfoSec News v2.0 - Coming Soon! 
http://www.infosecnews.org 

<Prev in Thread] Current Thread [Next in Thread>
  • [ISN] Honeywell blames ex-employee in data leak, InfoSec News <=