Risk
7/2/2008
01:47 PM
Connect Directly
RSS
E-Mail
50%
50%
Repost This

California Expands Identity Theft Prosecution

State law now allows identity thieves to be tried in the victims' jurisdictions, rather than only in the places the crimes occur.

California has passed a law that makes it easier to prosecute identity thieves.

Gov. Arnold Schwarzenegger signed Senate Bill 612 into law this week. It allows prosecutors to charge people with identity theft in the jurisdictions where the victims live. Without the bill, prosecutions could only take place where the crime occurred, which is usually in the perpetrators' towns or cities.

"That may make sense if it's in an old-fashioned property crime like a burglary, or even an auto theft," said Sen. Joe Simitian, a Palo Alto Democrat who sponsored the bill. "If an identity thief in Los Angeles goes online and steals the identity of a half dozen people in San Jose, the crime [had] to be prosecuted in L.A. That makes no sense at all, and, of course, it makes prosecution altogether unlikely."

Simitian said that system favored criminals, rather than helped victims.

"Local prosecutors are likely to be more aggressive on behalf of local victims," he said.

The new law does not require prosecution where the victim lives. Instead, it allows a judge to choose where to try identity-theft cases. Simitian and Republican Sens. Dave Cogdill and Bob Margett introduced the law after a "Governor's 2005 Summit on Identity Theft Solutions" highlighted the problem in a report.

Schwarzenegger said he's committed to protecting Californians' personal information and privacy.

"This commonsense legislation will lead to more prosecutions of this terrible crime, and anyone that commits or even thinks of committing identity theft should know that they will be prosecuted to the fullest extent of the law," he said. Lenny Goldberg of Privacy Rights Clearinghouse said the law puts teeth into existing laws.

"Without prosecution, there's no deterrent," he said.

Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Cartoon
Current Issue
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2012-3946
Published: 2014-04-24
Cisco IOS before 15.3(2)S allows remote attackers to bypass interface ACL restrictions in opportunistic circumstances by sending IPv6 packets in an unspecified scenario in which expected packet drops do not occur for "a small percentage" of the packets, aka Bug ID CSCty73682.

CVE-2012-5723
Published: 2014-04-24
Cisco ASR 1000 devices with software before 3.8S, when BDI routing is enabled, allow remote attackers to cause a denial of service (device reload) via crafted (1) broadcast or (2) multicast ICMP packets with fragmentation, aka Bug ID CSCub55948.

CVE-2013-6738
Published: 2014-04-24
Cross-site scripting (XSS) vulnerability in IBM SmartCloud Analytics Log Analysis 1.1 and 1.2 before 1.2.0.0-CSI-SCALA-IF0003 allows remote attackers to inject arbitrary web script or HTML via an invalid query parameter in a response from an OAuth authorization endpoint.

CVE-2014-2391
Published: 2014-04-24
The password recovery service in Open-Xchange AppSuite before 7.2.2-rev20, 7.4.1 before 7.4.1-rev11, and 7.4.2 before 7.4.2-rev13 makes an improper decision about the sensitivity of a string representing a previously used but currently invalid password, which allows remote attackers to obtain potent...

CVE-2014-2392
Published: 2014-04-24
The E-Mail autoconfiguration feature in Open-Xchange AppSuite before 7.2.2-rev20, 7.4.1 before 7.4.1-rev11, and 7.4.2 before 7.4.2-rev13 places a password in a GET request, which allows remote attackers to obtain sensitive information by reading (1) web-server access logs, (2) web-server Referer log...

Best of the Web