At the LISA conference a couple of years ago (the one in Atlanta, I think) somebody gave a talk about a study/paper he worked one: He bought various refurbished/used disk devices off eBay to see what information he could find on them. He found all sorts of things he should not have found, like bank records. (He called the bank to let them know about this incredible security breach and they didn't care at all about the security problem, they just wanted to be sure they weren't going to be sued).
The point of his talk was to teach the sysadmins how to REALLY delete things from a disk. But my gosh, what an amazing thing.
So it's not necessarily the fault of the guy who owned this originally, at least not completely. There are other security measures that should be in place elsewhere.
no subject
Date: 2006-03-20 06:05 pm (UTC)The point of his talk was to teach the sysadmins how to REALLY delete things from a disk. But my gosh, what an amazing thing.
So it's not necessarily the fault of the guy who owned this originally, at least not completely. There are other security measures that should be in place elsewhere.