Risk
7/2/2008
01:47 PM
50%
50%

California Expands Identity Theft Prosecution

State law now allows identity thieves to be tried in the victims' jurisdictions, rather than only in the places the crimes occur.

California has passed a law that makes it easier to prosecute identity thieves.

Gov. Arnold Schwarzenegger signed Senate Bill 612 into law this week. It allows prosecutors to charge people with identity theft in the jurisdictions where the victims live. Without the bill, prosecutions could only take place where the crime occurred, which is usually in the perpetrators' towns or cities.

"That may make sense if it's in an old-fashioned property crime like a burglary, or even an auto theft," said Sen. Joe Simitian, a Palo Alto Democrat who sponsored the bill. "If an identity thief in Los Angeles goes online and steals the identity of a half dozen people in San Jose, the crime [had] to be prosecuted in L.A. That makes no sense at all, and, of course, it makes prosecution altogether unlikely."

Simitian said that system favored criminals, rather than helped victims.

"Local prosecutors are likely to be more aggressive on behalf of local victims," he said.

The new law does not require prosecution where the victim lives. Instead, it allows a judge to choose where to try identity-theft cases. Simitian and Republican Sens. Dave Cogdill and Bob Margett introduced the law after a "Governor's 2005 Summit on Identity Theft Solutions" highlighted the problem in a report.

Schwarzenegger said he's committed to protecting Californians' personal information and privacy.

"This commonsense legislation will lead to more prosecutions of this terrible crime, and anyone that commits or even thinks of committing identity theft should know that they will be prosecuted to the fullest extent of the law," he said. Lenny Goldberg of Privacy Rights Clearinghouse said the law puts teeth into existing laws.

"Without prosecution, there's no deterrent," he said.

Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Cartoon
Current Issue
Dark Reading Tech Digest, Dec. 19, 2014
Software-defined networking can be a net plus for security. The key: Work with the network team to implement gradually, test as you go, and take the opportunity to overhaul your security strategy.
Flash Poll
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2014-8802
Published: 2015-01-23
The Pie Register plugin before 2.0.14 for WordPress does not properly restrict access to certain functions in pie-register.php, which allows remote attackers to (1) add a user by uploading a crafted CSV file or (2) activate a user account via a verifyit action.

CVE-2014-9623
Published: 2015-01-23
OpenStack Glance 2014.2.x through 2014.2.1, 2014.1.3, and earlier allows remote authenticated users to bypass the storage quote and cause a denial of service (disk consumption) by deleting an image in the saving state.

CVE-2014-9638
Published: 2015-01-23
oggenc in vorbis-tools 1.4.0 allows remote attackers to cause a denial of service (divide-by-zero error and crash) via a WAV file with the number of channels set to zero.

CVE-2014-9639
Published: 2015-01-23
Integer overflow in oggenc in vorbis-tools 1.4.0 allows remote attackers to cause a denial of service (crash) via a crafted number of channels in a WAV file, which triggers an out-of-bounds memory access.

CVE-2014-9640
Published: 2015-01-23
oggenc/oggenc.c in vorbis-tools 1.4.0 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted raw file.

Best of the Web
Dark Reading Radio
Archived Dark Reading Radio
If you’re a security professional, you’ve probably been asked many questions about the December attack on Sony. On Jan. 21 at 1pm eastern, you can join a special, one-hour Dark Reading Radio discussion devoted to the Sony hack and the issues that may arise from it.