Language Selection

English French German Italian Portuguese Spanish

USC: Applicants' Files May Have Been Read

Filed under
Security

Officials of the University of Southern California said they will contact everyone who used the school's online application system in the past eight years to warn them that a hacker may have been able to read their files.

School security officials said they plan to contact about 270,000 people although they believe the hacker looked at only about 10 files.

"Although we believe that the scope of this is pretty small, we're taking it very seriously and we are taking great care to notify every single person where there is even the potential that their records might have been viewed," said L. Katharine Harrington, USC's dean of admission and financial aid.

The hacker took advantage of a security flaw he discovered while trying to use the USC Web site on June 20, said Robert M. Wood, USC's information security officer.

However, the hacker then reported the flaw to an online security magazine, SecurityFocus, and the publication informed USC.

Wood said the FBI was notified but he doubted that any criminal case will be pursued because there didn't appear to have been any malicious attempt to obtain private information.
FBI officials would not comment.

Since the middle of last year, computer security lapses have been reported at several other schools.

Harvard University, the Massachusetts Institute of Technology and Stanford University all rejected dozens of business school applicants who tried to access admissions Web sites earlier this year in hopes of learning their fate ahead of schedule.

A former University of Texas student was indicted last fall on charges he hacked into the school's computer system and stole Social Security numbers and other personal information from more than 37,000 students and employees. California State University, Chico, had a similar incident in March.

Associated Press

More in Tux Machines

Uselessd: A Stripped Down Version Of Systemd

The boycotting of systemd has led to the creation of uselessd, a new init daemon based off systemd that tries to strip out the "unnecessary" features. Uselessd in its early stages of development is systemd reduced to being a basic init daemon process with "the superfluous stuff cut out". Among the items removed are removing of journald, libudev, udevd, and superfluous unit types. Read more

Open source is not dead

I don’t think you can compare Red Hat to other Linux distributions because we are not a distribution company. We have a business model on Enterprise Linux. But I would compare the other distributions to Fedora because it’s a community-driven distribution. The commercially-driven distribution for Red Hat which is Enterprise Linux has paid staff behind it and unlike Microsoft we have a Security Response Team. So for example, even if we have the smallest security issue, we have a guaranteed resolution pattern which nobody else can give because everybody has volunteers, which is fine. I am not saying that the volunteers are not good people, they are often the best people in the industry but they have no hard commitments to fixing certain things within certain timeframes. They will fix it when they can. Most of those people are committed and will immediately get onto it. But as a company that uses open source you have no guarantee about the resolution time. So in terms of this, it is much better using Red Hat in that sense. It’s really what our business model is designed around; to give securities and certainties to the customers who want to use open source. Read more

10 Reasons to use open source software defined networking

Software-defined networking (SDN) is emerging as one of the fastest growing segments of open source software (OSS), which in itself is now firmly entrenched in the enterprise IT world. SDN simplifies IT network configuration and management by decoupling control from the physical network infrastructure. Read more

Only FOSSers ‘Get’ FOSS

Back on the first of September I wrote an article about Android, in which I pointed out that Google’s mobile operating system seems to be primarily designed to help sell things. This eventually led to a discussion thread on a subreddit devoted to Android. Needless to say, the fanbois and fangrrls over on Reddit didn’t cotton to my criticism and they devoted a lot of space complaining about how the article was poorly written. Read more