

DtSR Episode 135 - NewsCast for March 23rd, 2015
Mar 23, 2015
51:39
Send the hosts a message - try it now!
Remember folks, as you listen reach out to us on Twitter and hit the hashtag #DtSR to continue the conversation, and speak your mind! Let's hear what your take is on the stories we discuss...maybe you have a unique angle we've not considered?
In this episode--
- Target settled class-action lawsuit over its data breach - for $10M USD
- Who wins? Lawyers, clearly the lawyers
- Burden of proof on the victims to show they've suffered a loss to get up to $10,000.00.
- If you can't prove loss, you can still try to get part of settlement of what's left-over
- http://www.usatoday.com/story/money/2015/03/19/target-breach-settlement-details/25012949/
- Federal judge dismisses suit against Paytime -- "simply no compensable injury yet"
- Leaves door open for future suits if someone were to suffer a compensable injury
- "Once a hacker does misuse a person's information for personal gain...there is a clear injury and one that can be fully compensated with money damages." -- Judge John E. Jones III
- Watch this case, read the story for yourself
- http://www.securityinfowatch.com/news/11883806/federal-judge-dismisses-lawsuits-over-paytime-inc-data-breach
- Sacred Heath Health System victim-by-proxy of a data breach
- Happened at a 3rd party
- So why is only Sacred Heart in the news?
- ~40 individuals SSN and patient information
- "deceptive technique" known as phishing
- http://pensacolatoday.com/2015/03/sacred-heart-informs-patients-of-billing-information-disclosure/
- Premera Blue Cross "warned about security flaws before breach"
- Lots to talk about here -- starting with is 3 weeks enough time?
- OPM audit finds issues, is this a systemic failure or examplary of an enterprise doing its best in a difficult security climate?
- Before you judge, measure up your own security posture against this article
- http://www.seattletimes.com/business/local-business/feds-warned-premera-about-security-flaws-before-breach/
- Advantage Dental notifies patients of breach
- 3 days from initial breach to discovery
- Amazingly fast detection, but was it adversary or malware?
- Is this a feel-good, or something else?
- https://secure.advantagedental.com/index.asp?din=598
>>> Please consider clicking the link above to support the show!
-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=-=
YouTube home: https://youtube.com/playlist?list=PLyo0dkKRvfVtWXjRxNISrhme1MgBj3C2U&si=scHDiTuLXSEQ9qHq
LinkedIn Page: https://www.linkedin.com/company/down-the-security-rabbithole-podcast/
X/Twitter: https://twitter.com/dtsr_podcast