BetaONE will rise again!


Reply
  #1  
Old 2nd Jul 03, 11:45 PM
Alpine's Avatar
Alpine Alpine is offline
Retired Crew
 
Join Date: Feb 2002
Location: Run Forest, RUN!!
Posts: 3,601
Alpine is on a distinguished road
Send a message via ICQ to Alpine Send a message via AIM to Alpine
Businesses are unprepared for a new law under which they must notify customers if personal data is compromised, say legal experts. A new California law requiring companies to notify customers if their computerised personal data is stolen will be difficult to comply with because companies may not always know when a theft occurs, security and legal experts said on Tuesday.

"Once you have a break-in you really don't know what's been taken,'' said Richard Smith, a security and privacy expert. "This is going to be a big burden for companies to have to send out these notices." Smith and other experts said the law is a good idea, but that the logistic and enforcement issues might make it less than effective initially.

"Companies are not prepared to notify customers. They're all going to wait and see,'' said Bruce Schneier, chief technology officer at Counterpane Internet Security, a network monitoring firm. He predicted it will be difficult to enforce the new California privacy law since computer intrusions typically only come to light if someone tries to use the data, for example, to steal an identity. Under the law, companies must notify California residents if their unencrypted personal data, name and social security number, driver's licence number or credit card number and password, are "acquired'' by an unauthorised person or believed to have been stolen.

"I think most companies don't encrypt their computer data. I don't think they could even tell if somebody hacked in and took information,'' added Nick Akerman, a New York lawyer and former federal prosecutor who specialises in computer fraud and intellectual property law. "I would be very surprised if most companies are prepared for this.'' The law also offers exceptions for companies and data involved in ongoing investigations, a situation Schneier said could be abused.

Source:http://news.zdnet.co.uk/story/0,,t269-s2136942,00.html
Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT +1. The time now is 05:42 PM.


Design by Vjacheslav Trushkin for phpBBStyles.com.
Powered by vBulletin® Version 3.6.5
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.