Welcome to DU! The truly grassroots left-of-center political community where regular people, not algorithms, drive the discussions and set the standards. Join the community: Create a free account Support DU (and get rid of ads!): Become a Star Member Latest Breaking News General Discussion The DU Lounge All Forums Issue Forums Culture Forums Alliance Forums Region Forums Support Forums Help & Search
 

Segami

(14,923 posts)
Fri Dec 18, 2015, 07:43 PM Dec 2015

DNC Data Security Breach -- WHO Gave The Media ACCESS To Audit Trail...And Why?

This is the oddest reporting on a data security breach I have ever seen. It’s bizarre, and seems to fall outside the typical protocols for dealing with security issues.

For example, this is from www.nbcnews.com:


After Bernie Sanders' presidential campaign was disciplined by the Democratic National Committee for improperly accessing the Hillary Clinton campaign's proprietary voter database, documents obtained and reviewed by NBC News appeared to show that at least four individuals affiliated with the Sanders campaign conducted searches and saved the Clinton campaign's lists of potential voters over a period of more than 40 minutes.

A series of documents outlining an audit trail maintained by the database company, obtained and reviewed by NBC News, shows that the four individuals spent a total of about 40 minutes conducting searches of the Clinton data. Those searches included terms that point to Sanders' team gaining access to proprietary lists from more than 10 early voting states of Clinton's likely supporters as well as lists for Sanders backers. That data was saved to personal folders.

http://www.nbcnews.com/politics/2016-election/bernie-sanders-campaign-penalized-dnc-after-improperly-accessing-clinton-voter-n482341


For safety’s sake, security breach information is usually held close to the chest. Most security breaches aren’t even reported to media unless there is a danger that users need to be made aware of. You don’t want to give hackers any ideas or provide them with road maps. Security issues should be hush hush by their very nature.

I have never seen an audit trail of an actual breach being passed on to the media before. For me, this is unheard of. While, in this case, it may not actually pose a significant risk, it is most definitely bad practice.

This information wasn’t passed on to media to warn end users, so what was the purpose in its being released? And who decided to release it?


http://www.dailykos.com/story/2015/12/18/1461565/-DNC-Data-Security-Breach-Who-Gave-The-Media-Access-To-Audit-Trail-And-Why
2 replies = new reply since forum marked as read
Highlight: NoneDon't highlight anything 5 newestHighlight 5 most recent replies
DNC Data Security Breach -- WHO Gave The Media ACCESS To Audit Trail...And Why? (Original Post) Segami Dec 2015 OP
They could easily claim it's due to their own incompetence. Wilms Dec 2015 #1
I would have to wonder if it is authentic. LiberalArkie Dec 2015 #2
Latest Discussions»Retired Forums»2016 Postmortem»DNC Data Security Breach ...