We’d like to remind Forumites to please avoid political debate on the Forum.

This is to keep it a safe and useful space for MoneySaving discussions. Threads that are – or become – political in nature may be removed in line with the Forum’s rules. Thank you for your understanding.

📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!

Customers' Bank details sold on Ebay!!

Gosh, I am just so glad I do not have account with Natwest and Royal Bank. It seems the computer with this data was supposedly sold on ebay. Here is the news piece

Andreja
Personal Challenge - Debt Free Debt: Loan £[STRIKE]995[/STRIKE][STRIKE]858[/STRIKE] )!, credit card[STRIKE] 2500 [/STRIKE] £900
[FONT=georgia, bookman old style, palatino linotype, book antiqua, palatino, trebuchet ms, helvetica, garamond, sans-serif, arial, verdana, avante garde, century gothic, comic sans ms, times, times new roman, serif]After the first four years the dirt doesn't get any worse. [/FONT][FONT=georgia, bookman old style, palatino linotype, book antiqua, palatino, trebuchet ms, helvetica, garamond, sans-serif, arial, verdana, avante garde, century gothic, comic sans ms, times, times new roman, serif]
The only man who sticks closer to you in adversity than a friend is a creditor.

[/FONT]
«1

Comments

  • chuckley
    chuckley Posts: 4,405 Forumite
    Part of the Furniture
    must be an mse forum user. £35 is an amazing bargain :D
  • :rotfl::rotfl::rotfl:
    chuckley wrote: »
    must be an mse forum user. £35 is an amazing bargain :D
    Personal Challenge - Debt Free Debt: Loan £[STRIKE]995[/STRIKE][STRIKE]858[/STRIKE] )!, credit card[STRIKE] 2500 [/STRIKE] £900
    [FONT=georgia, bookman old style, palatino linotype, book antiqua, palatino, trebuchet ms, helvetica, garamond, sans-serif, arial, verdana, avante garde, century gothic, comic sans ms, times, times new roman, serif]After the first four years the dirt doesn't get any worse. [/FONT][FONT=georgia, bookman old style, palatino linotype, book antiqua, palatino, trebuchet ms, helvetica, garamond, sans-serif, arial, verdana, avante garde, century gothic, comic sans ms, times, times new roman, serif]
    The only man who sticks closer to you in adversity than a friend is a creditor.

    [/FONT]
  • Paul_Herring
    Paul_Herring Posts: 7,484 Forumite
    Part of the Furniture 1,000 Posts Name Dropper Photogenic
    Amex details were also on the computer.

    It appears that Graphic Data/Mail Source have lost another computer as well: http://www.belfasttelegraph.co.uk/news/local-national/bank-probe-into-loss-of-customersrsquo-details-on-pound35-ebay-computer-13954378.html
    Conjugating the verb 'to be":
    -o I am humble -o You are attention seeking -o She is Nadine Dorries
  • A Mail Source spokeswoman said the incident was an "honest mistake".She added: "The computer was removed from our secure storage facility in Essex and sold on eBay.
    How honest can you get? :confused:

    Nothing should leave the building without being thoroughly wiped, in fact I would go so far as to say that hard disk drives and non-volatile memory should be physically destroyed. This just makes a mockery of financial responsibility.
    You've never seen me, but I've been here all along - watching and learning...:cool:
  • Paul_Herring
    Paul_Herring Posts: 7,484 Forumite
    Part of the Furniture 1,000 Posts Name Dropper Photogenic
    Nothing should leave the building without being thoroughly wiped, in fact I would go so far as to say that hard disk drives and non-volatile memory should be physically destroyed. This just makes a mockery of financial responsibility.

    Just to make it clear - it isn't a bank that's managed to FUBAR, it's a data company.

    As to what's possibly happened: http://it.slashdot.org/comments.pl?sid=901569&cid=24759849
    You might not have seen the video clip with the article [I don't know if it's visible outside the UK] but the guy said he bought two servers, one booted and had been wiped, the other didn't boot. It didn't boot because it was missing it's ram (or the chip was unseated), so anyway, he sorted that out, booted it up and found the data.

    Soooo... one wonders if the machine didn't get wiped simply because the various techs could boot it and decided it was too much effort to move the drives to another machine?
    (Speculation I know, but...)
    Conjugating the verb 'to be":
    -o I am humble -o You are attention seeking -o She is Nadine Dorries
  • benjus
    benjus Posts: 5,433 Forumite
    Part of the Furniture 1,000 Posts
    How honest can you get? :confused:

    Nothing should leave the building without being thoroughly wiped, in fact I would go so far as to say that hard disk drives and non-volatile memory should be physically destroyed. This just makes a mockery of financial responsibility.

    Agreed - it is ludicrous that a company handling highly sensitive financial data would sell used hard disks on ebay AT ALL. It's amazing what can be recovered from hard disks, even if the previous owners think they have been erased.

    When I spoke to my manager at the company I used to work at about taking some of their obsolete computer equipment I was told "fine - but leave the hard disks". The data on those hard disks would have been of no interest to anyone except possibly a couple of competing companies.

    Surely data of that sensitivity should also have been encrypted as an extra security measure.

    I can only assume that the people in charge of Graphic Data either have very limited IT knowledge or have no control over what individual employees get up to with company equipment. Either way it's pretty scary.
    Let's settle this like gentlemen: armed with heavy sticks
    On a rotating plate, with spikes like Flash Gordon
    And you're Peter Duncan; I gave you fair warning
  • Paul_Herring
    Paul_Herring Posts: 7,484 Forumite
    Part of the Furniture 1,000 Posts Name Dropper Photogenic
    benjus wrote: »
    Agreed - it is ludicrous that a company handling highly sensitive financial data would sell used hard disks on ebay AT ALL.

    It would not appear to have been 'deliberate,' according to one news report:
    http://www.computerweekly.com/Articles/2008/08/28/231999/buyer-of-computer-containing-bank-details-decries-lack-of-regulatory.htm
    Graphic Data had initially described the computer as stolen property, said Chapman. But the company later said the computer was not intended to be disposed of by the company and investigations are ongoing to find out how this equipment was removed from one of the company's secure locations.
    Conjugating the verb 'to be":
    -o I am humble -o You are attention seeking -o She is Nadine Dorries
  • Just to make it clear - it isn't a bank that's managed to FUBAR, it's a data company.
    I didn't say it was a bank who'd lost the data - the data company has responsibility for the financial data and it is ludicrous that banks aren't taking the responsibility of ensuring that their suppliers adhere to sound practices and procedures. It's even more luicrous that the data company doesn't follow suitable procedures. Anyone with even the lowest knowledge of computer systems knows that data is recoverable unless either encrypted or overwritten up to 30 times. If the data company knew that the disk contained financial data, then in my mind they have been irresponsible in allowing that data out of their control - intentional or not. At the very least they have allowed a person with too little knowledge access to the server.

    The only way to ensure data privacy is to physically make the disk and non-volatile memory unusable (I'm not talking RAM - that loses its contents when powered off; FLASH memory or battery-backed RAM doesn't).
    Originally Posted by benjus viewpost.gif
    Agreed - it is ludicrous that a company handling highly sensitive financial data would sell used hard disks on ebay AT ALL.
    It would not appear to have been 'deliberate,'
    It doesn't have to be deliberate. My guess is that someone was told to "get all those old computers on ebay" and someone picked up the server :D - it's not unknown.

    However, whatever the reason, the company is grossly negligent in not enforcing proper procedures; it's no different to a governemt minister leaving a laptop on a train.
    You've never seen me, but I've been here all along - watching and learning...:cool:
  • James
    James Posts: 2,059 Forumite
    Part of the Furniture 1,000 Posts Combo Breaker
    What value your personal information and card details?

    Here's the answer from Channel 4 News (You Tube Video - Click here).
  • PROLIANT
    PROLIANT Posts: 6,396 Forumite
    1,000 Posts Combo Breaker
    I fail to see why they are flapping over a PC/Dumb terminal as banks use UNIX/VMS mainframes or SQL/ORACLE database servers for data storage, unless it was a server with a full database on it I doubt very much any data will be retrieved from it. ;)
    Since when has the world of computer software design been about what people want? This is a simple question of evolution. The day is quickly coming when every knee will bow down to a silicon fist, and you will all beg your binary gods for mercy.
This discussion has been closed.
Meet your Ambassadors

🚀 Getting Started

Hi new member!

Our Getting Started Guide will help you get the most out of the Forum

Categories

  • All Categories
  • 351.7K Banking & Borrowing
  • 253.4K Reduce Debt & Boost Income
  • 454K Spending & Discounts
  • 244.7K Work, Benefits & Business
  • 600.1K Mortgages, Homes & Bills
  • 177.3K Life & Family
  • 258.4K Travel & Transport
  • 1.5M Hobbies & Leisure
  • 16.2K Discuss & Feedback
  • 37.6K Read-Only Boards

Is this how you want to be seen?

We see you are using a default avatar. It takes only a few seconds to pick a picture.