<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>downgrade.org &#187; security</title>
	<atom:link href="http://downgrade.org/tag/security/feed" rel="self" type="application/rss+xml" />
	<link>http://downgrade.org</link>
	<description>The rantings and insight of an ethical hacker, coder and IT samurai.</description>
	<lastBuildDate>Mon, 05 Sep 2011 20:17:17 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.2.1</generator>
		<item>
		<title>Massive World Bank Comprimise</title>
		<link>http://downgrade.org/2008/10/10/massive-world-bank-comprimise</link>
		<comments>http://downgrade.org/2008/10/10/massive-world-bank-comprimise#comments</comments>
		<pubDate>Fri, 10 Oct 2008 16:58:46 +0000</pubDate>
		<dc:creator>Bryan Murphy</dc:creator>
				<category><![CDATA[privacy]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Technology]]></category>
		<category><![CDATA[incidents]]></category>
		<category><![CDATA[incider threat]]></category>
		<category><![CDATA[world bank]]></category>

		<guid isPermaLink="false">http://downgrade.org/?p=298</guid>
		<description><![CDATA[FoxNews (not one of my normal news sites&#8230; I promise) just posted a story entitled &#8220;World Bank Under Cyber Siege in &#8216;Unprecedented Crisis&#8217;&#8220;. The details are fairly chilling and include some amazingly upbeat quotes like&#8230; &#8220;While it remains unclear how much data has been pilfered from the bank, it&#8217;s a lot. According to internal memos, [...]]]></description>
			<content:encoded><![CDATA[<p>FoxNews (not one of my normal news sites&#8230; I promise) just posted a story entitled &#8220;<a title="World Bank Comprimise" href="http://www.foxnews.com/story/0,2933,435681,00.html" target="_blank">World Bank Under Cyber Siege in &#8216;Unprecedented Crisis&#8217;</a>&#8220;.</p>
<p>The details are fairly chilling and include some amazingly upbeat quotes like&#8230;</p>
<p style="padding-left: 30px;">&#8220;While it remains unclear how much data has been pilfered from the bank, it&#8217;s a lot. According to internal memos, &#8220;a minimum of 18 servers have been compromised,&#8221; including some of the bank&#8217;s most sensitive systems — ranging from the bank&#8217;s security and password server to a Human Resources server &#8220;that contains scanned images of staff documents.&#8221;"</p>
<p>And&#8230;</p>
<p style="padding-left: 30px;">&#8220;The World Bank Group&#8217;s computer network — one of the largest repositories of sensitive data about the economies of every nation — has been raided repeatedly by outsiders for more than a year, FOX News has learned.&#8221;</p>
<p>This is certainly disturbing news for a number of reasons.  Most importantly the fact that the <em>worlds</em> financial system is serious peril and this&#8230;</p>
<p style="padding-left: 30px;">In a frantic midnight e-mail to colleagues, the bank&#8217;s senior technology manager referred to the situation as an &#8220;unprecedented crisis.&#8221; In fact, it may be the worst security breach ever at a global financial institution. And it has left bank officials scrambling to try to understand the nature of the year-long cyber-assault, <em>while also trying to keep the news from leaking to the public</em>.</p>
<p>The italicised text is what I find very disturbing.  GLB, SOX and a slew of other laws all have strict disclosure guidelines.  Trying to hide something of this magnitude is not only futile but also illegal.</p>
]]></content:encoded>
			<wfw:commentRss>http://downgrade.org/2008/10/10/massive-world-bank-comprimise/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>

