Softbank theft of consumer data -information security, Computer Network Security

Assignment Help:

Example : Softbank – theft of consumer data for extortion

Softbank of Japan offers broadband Internet services across Japan through 2 subsidiaries – Yahoo! BB and Softbank BB. In the year 2004, the bank announced that the security of 4.5 million customer records which had been compromised: data from both subsidiaries had been illegally copied and disseminated. The leaked details included home phone numbers, customer names, addresses and email IDs, but did not involve passwords, access logs and credit card details.
Softbank became aware of problem only when they were approached by 2 groups of extortionists. The criminals produced genuine customer data and threatened that all of the data would be posted to Internet if they were not paid a large amount of money.

Japanese police made 3 arrests but suspected that there may have been connections to prearranged crime and the political far right. Astonishingly, the police concluded that there had in fact been 2 simultaneous, yet independent, extortion tries against Softbank, they masterminded by employees of the company. All of the people who were accused of extortion had been authorized to access the customer data; but it seemed that Softbank had inadequate procedures to protect against unwarranted copying and dissemination.

The bank immediately announced making strict policies of security, further restricting access to their systems and enforcing strict security on all of their subsidiaries. Profuse apologies were offered to affect the customers and ¥4 billion were paid in compensation. Further, Softbank BB’s president, Masayoshi Son, announced that other senior executives would take a 50 % pay cut for the next 6 months.

In this instance, the threat was to reduce the value of an organization by revealing information which should have been a well kept secret scarce within as well as scarce without. It cost company £20 million in compensation and affected the reputation of it.


Related Discussions:- Softbank theft of consumer data -information security

Selecting a risk control strategy, Selecting a Risk Control Strategy Risk...

Selecting a Risk Control Strategy Risk controls involve selecting one of the 4 risk control strategies for every vulnerability. The flowchart is shown in the figure given below

Describe how lower bounds on arc flows, QUESTION: (a) Suppose the graph ...

QUESTION: (a) Suppose the graph below, use the Flow Decomposition method to list the cycles and paths produced. (b) Describe how Lower Bounds on Arc Flows are eliminated

Draw the waveform for an asynchronous transmission, Question: (a) Draw...

Question: (a) Draw the waveform for an asynchronous transmission with the following specifications: Character "H", one even parity bit, one start bit, one stop bit, and a b

Secure a wireless network, Secure a Wireless Network WIRELES Most onli...

Secure a Wireless Network WIRELES Most online retailers provide some type of privacy statement. Many statements are long, and appear in small print, and many appear to be simi

Network-based ids (nids), Network-Based IDS (NIDS) A NIDS resides on com...

Network-Based IDS (NIDS) A NIDS resides on computer or appliance connected to segment of an organization’s network and looks for signs of attacks. While examining packets, a NID

Explain web defacement, QUESTION (a) Compare and contrast phishing and ...

QUESTION (a) Compare and contrast phishing and pharming attacks (b) Nowadays, web defacement may not always be visual (i) Explain web defacement (ii) What is the main

Compare the suitability and properties of isdn and adsl, Question : An a...

Question : An aircraft manufacturing company is considering linking the network of one of its offices to the network of its Headquarter using either xDSL or ISDN. i. Compare

Ids response behavior, IDS RESPONSE BEHAVIOR Once IDS detects an anomalo...

IDS RESPONSE BEHAVIOR Once IDS detects an anomalous network situation, it has a number of options. IDS responses to external stimulation can be classified as active or passive.

Address resolution , Mapping between a hardware address and a protocol addr...

Mapping between a hardware address and a protocol address is known Address Resolution. A router or host uses address resolution when it requires to transmit a packet to another dev

Write Your Message!

Captcha
Free Assignment Quote

Assured A++ Grade

Get guaranteed satisfaction & time on delivery in every assignment order you paid with us! We ensure premium quality solution document along with free turntin report!

All rights reserved! Copyrights ©2019-2020 ExpertsMind IT Educational Pvt Ltd