Identity theft
A US pressure group has identified systemic computer security problems

US losing battle against identity theft

Existing laws not offering sufficient protection, warns pressure group

Written by Robert Jaques

There have been at least 104 serious "data incidents" in the US since 1 January which represent just the "tip of an iceberg" in serious systemic computer security problems.

The incidents potentially affect more than 56.2 million individuals, according to the US-based non-profit Identity Theft Resource Center (ITRC).

Congressional committees are waging a turf war over a security breach notification law, while companies, governmental agencies and educational facilities are "mishandling information on a daily basis and putting all of us at risk of identity theft".

"We have been given a loud wake-up call. Is anyone planning to pay attention to the true problem, or will companies be allowed to continue to disregard the importance of your future and your financial identity?" warned the ITRC.

"How many breaches don't make the front page or are even reported to consumers because a company has deemed the breach not to 'cause significant risk of harm' to the individual or has buried it to avoid additional problems?

"We will never know. What we do know is that security breaches are not new - they have been occurring for years. What is different is that now you are hearing about them."

However, the pressure group admitted that any notification law is only a bandage to cover the more significant problem of personal information leakage, a subject that the ITRC believes industry would rather Congress did not address.

The ITRC noted that security breaches fall into a number of easily recognisable categories, including lost or stolen computers, unprotected backup tapes lost in transit, hackers breaking into systems and virus attacks.

The pressure group also identified additional risks including employees stealing information or allowing access to confidential information, poor internal corporate security policies and improper disposal of sensitive information.

While it may be impossible to stop some hackers, most of these breaches could have been avoided by following safe information handling practices, the ITRC claimed.

"Something has to change or we might as well give up the battle against identity theft and protecting the privacy of our information," the group warned.

"Congress needs to take action, not at the expense of consumers but in creating laws and assisting companies to better control their information.

"Under pending [US] legislation, the only time you will hear of a breach is when a company believes there is significant harm that may occur.

"Responsible corporate lawyers, fraud investigators, computer security specialists and members of law enforcement will tell you that no-one can predict the future or say how a thief might use illegally obtained information."

Tags:

Further reading

One in five hit by identity theft

Experian-Gallup report warns of growing danger   More...

Liberty Alliance tackles ID theft

Taskforce to concentrate on user education and better security policies   More...

Technology accused of aiding ID theft

Another blow to ID cards   More...

Half of UK adults fear ID theft

Londoners most at risk as internet fraud soars   More...

Related articles

2007 Roundup: Data loss hits the headlines

Nationwide, Halifax, TK Maxx, HMRC and many, many more to blame   More...

Monster.com suffers job lot of data theft

Details stolen from hundreds of thousands of users   More...

Details of six million Chileans posted online

Hacker claims to 'highlight poor security'   More...

More P2P fraud victims expected

Criminals increasingly using peer-to-peer software to commit fraud   More...

Do you agree?

Advertisement

Job of the week

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Hiring now on ComputingCareers:

Related IT jobs

Search thousands of IT jobs :

Search thousands of IT jobs:

Advanced search

Advertisement

Watch

25 Jul 2008

7.85 MBPodcast Special: Views from the Valley More...

24 Jul 2008

3.68 MBSpammer jailed, Esquire e-cover, and network passwords More...

23 Jul 2008

2.99 MBSmall time security, official 'spying' requests and a spammer jail break More...

Poll

EUROPEAN E-COMMERCE

EUROPEAN E-COMMERCE

Are you happy making an online purchase from another European country?

Previous poll results

Newsletter signup

Sign up for our range of FREE newsletters:

Existing User

Newsletter user login:

Enter email address to edit your newsletter preferences

Spotlight

Credit card transaction

Credit card fraud rampant in the UK

Attempted frauds go unreported and ignored, analysts claim   More...

Intel

Intel rolls out new embedded line-up

System-on-a-chip offerings promise footprint and power saving   More...

Advertisement

Network cables

Tech giants collaborate on wireless HD

Another attempt at cable-free transmission in the home   More...

iPhone fever fills AT&T coffers

US provider cashes in on Apple smartphone   More...

Advertisement