ZDNet UK


Skip to Main Content

ZDNet.co.uk - Winner of Best Business Website 2007
  1. Home
  2. News
  3. Blogs
  4. Reviews
  5. Prices
  6. Resources
  7. Community
  8. My ZDNet

 

ZDNet UK RSS Feeds


IT Jobs

Security threats Toolkit

Council's security blunder exposes card details

Andy McCue silicon.com

Published: 30 Jul 2007 09:00 BST

  • Email
  • Trackback
  • Clip Link
  • Print friendly
  • Post Comment

A security blunder at Newcastle City Council has exposed the credit and debit card details of up to 54,000 people online.

The breach was discovered on 19 July after the council hired an independent security expert to try and crack its systems. The security exercise found an encrypted file containing names, addresses, and credit and debit card numbers had been mistakenly placed on an insecure server.

An internal investigation also revealed that the file with all the card details had been accessed and uploaded to a computer IP address registered in Israel. Newcastle City Council claims there is no indication of any fraud on the affected cards.

The file contained details of payments for council tax, business rates, parking fines and rents for more than a year between February 2006 and April 2007. The council has informed the banks, police and the Information Commissioner about the breach and said a full investigation into the security breach is underway.

Sentry Posts Blog

Sentry Posts Blog
Guarding the network

What you need to know — and what you and your peers have to tell us — about security management in our new community group blog

Read more +

But a council spokesman said those people whose card details were exposed online will not be contacted individually by the council.

He said: "It's a question of resources. There could be up to 54,000 people affected. It is up to cardholders themselves — it is best for people to keep an eye on their credit and debit card statements and notify the banks of anything suspicious straight away."

Newcastle City Council said it closed down the insecure computer servers straight away, tightened security and is now "fully confident" that it is safe to continue taking credit and debit card payments.

Councillor John Shipley said in a statement: "This is an extremely serious breach, which I was shocked to hear about. My first concern is that every possible measure should be put in place now to protect people whose data might have been compromised, and we have communicated this to the banks and credit card companies."

Newcastle City Council chief executive Ian Stratford added in a statement: "We very much regret that this situation has developed, although we would again stress that there has been no indication of any fraud or loss, and that we spotted this situation through the thoroughness of our own security and checking systems."

  • Email
  • Trackback
  • Clip Link
  • Print friendly Print with Dell

Did you find this article useful?
5 out of 7 people found this useful


Full Talkback thread

0 comments


Company/Topic Alerts

Create a new alert from the list below:





Related Jobs

Business Analyst - Renewables / Energy / Commodities - 300-450 / day

Your role will involve analysing deal proposals, modelling, aiding is confirming credit within the bank, marketing pitches, research papers and ...

Business Analyst Cash Equities Trading Operations London City

This should include extensive experience of both internal Operations processes as well as liaison with external parties (Custodians, Agent Banks, ...

ETRM consultant sought. Grow your career here with Endur!

From there forward, you will be based in central London working within all the major investment banks. You will be based out of central London and be ...

Featured Talkback

What was achieved there is recognised to be of fundamental importance to both winning the war (Churchill visited to say 'thank you' to them) and the development of the computer. Maybe Bill Gates doesn't want to support this museum because it underlines where electronic computing started i.e. here, not the U.S.

By: 1000103773

Read full story:
Bletchley Park faces bleak future

Sentry Posts Blog

Mobile Security Expert: Your Camera Ph...

Mobile Security Expert: Your Camera Phone Got Hacked Author: Eric Everson, Founder MyMobiSafe.com Have you ever heard someone say “I’d like to be a fly on the wall in that room.”?... More

Post a comment

Skype - The Roach Motel

Here is an interesting article from The National Business Review, pointing out once again that you can never delete a Skype account. Never. Period. This is something I am familiar... More

Post a comment

The vPhone: Why Visa Should Go Mobile

The vPhone: Why Visa Should Go Mobile Author: Eric Everson, Founder MyMobiSafe.com With all of the success of Apple’s iPhone, there is a growing case to support a company like Visa... More

Post a comment