Version: 2008

Comments on: Daily Debrief: Forty million card numbers compromised

In Wednesday's edition of the Daily Debrief, CNET's Kara Tsuboi and Dan Farber discuss the latest charges against 11 people accused of hacking into wireless networks to steal credit and debit card information.

Add a Comment (Log in or register) (4 Comments)
  • prev
  • 1
  • next
by ccouvillion August 6, 2008 12:23 PM PDT
Do you not have spell checkers? It's spelled forty.
Reply to this comment
by humanssssss August 6, 2008 1:02 PM PDT
am i not seeing things ... it's forty. there's nothing wrong.
by skswave August 6, 2008 2:19 PM PDT
The real crime here is that for the last three years the PC industry has shipped Millions of PCs and motherboards with Trusted Platform modules. This device provides a very secure container in which to hold the secret keys that can be used to encrypt every wireless link. This technology is in every box, Industry Standard and Vendor neutral. However, The IT proffessionals are failing to implement best practices and turn on these devices to hold the keys. They have continue to not leverage the best solutions to protect our identities and assume we will waste our time fixing them when they get lost. I strongly suggest that dan cover this crime as well. Our PCs are available with and have body armor but body armor is only helpful if you wear it. It was over a year ago when this hack was originally broadly published. How are we doing?? Many organizations turned on WPA to secure the wireless but use keys held in software that can easily be stolen by a virus or a bad employee. If the keys are in a TPM then the keys are safe unless the PC is stolen and usually that gets noticed. Put a seagate FDE drive in the PC to prevent any type of boot and now we have a real security solution for the end point. If Industry doesn't apply the patch of moving keys to hardware then the goverment will force us to do it. We do not need regulation, we need action. If you have a VPN, Wireless, Any type of certificate based access move the Keys to the TPM and move them now. Your OEM has given you the tools to secure your brand, your Job, and your customers data, but like any patch you need to apply it.

Steven Sprague
Wave Systems Corp.
Reply to this comment
by Darkwend August 7, 2008 8:00 AM PDT
Poor and misleading description of wardriving. By definition it only refers to people who search for wireless networks using a portable device. Although it may lead to criminal activities actually wardriving isn't illegal. I know the term "wardriving" may sound like a horrible thing, but in many cases it isn't. Check out the wikipedia article for more info: http://en.wikipedia.org/wiki/Wardriving.
Reply to this comment
(4 Comments)
  • prev
  • 1
  • next
advertisement

15 sites that went kaput in 2009

Web sites launch all the time, but they also shut their doors. We highlight 15 that bit the dust this year.

Top 10 news stories of the decade

Let the debate begin: Was the iPhone more important than iTunes? Was anything bigger than Google finding a great business model? CNET offers its list of the 10 most important stories of the '00s.

About Security

Online security is threatened by more than hacking and phishing attempts. Check here for the latest updates on software vulnerabilities, data leaks, and rapidly spreading viruses--and learn how to protect your systems.

Add this feed to your online news reader

Security topics

advertisement
Click Here
advertisement