Risk
7/2/2008
01:47 PM
50%
50%

California Expands Identity Theft Prosecution

State law now allows identity thieves to be tried in the victims' jurisdictions, rather than only in the places the crimes occur.

California has passed a law that makes it easier to prosecute identity thieves.

Gov. Arnold Schwarzenegger signed Senate Bill 612 into law this week. It allows prosecutors to charge people with identity theft in the jurisdictions where the victims live. Without the bill, prosecutions could only take place where the crime occurred, which is usually in the perpetrators' towns or cities.

"That may make sense if it's in an old-fashioned property crime like a burglary, or even an auto theft," said Sen. Joe Simitian, a Palo Alto Democrat who sponsored the bill. "If an identity thief in Los Angeles goes online and steals the identity of a half dozen people in San Jose, the crime [had] to be prosecuted in L.A. That makes no sense at all, and, of course, it makes prosecution altogether unlikely."

Simitian said that system favored criminals, rather than helped victims.

"Local prosecutors are likely to be more aggressive on behalf of local victims," he said.

The new law does not require prosecution where the victim lives. Instead, it allows a judge to choose where to try identity-theft cases. Simitian and Republican Sens. Dave Cogdill and Bob Margett introduced the law after a "Governor's 2005 Summit on Identity Theft Solutions" highlighted the problem in a report.

Schwarzenegger said he's committed to protecting Californians' personal information and privacy.

"This commonsense legislation will lead to more prosecutions of this terrible crime, and anyone that commits or even thinks of committing identity theft should know that they will be prosecuted to the fullest extent of the law," he said. Lenny Goldberg of Privacy Rights Clearinghouse said the law puts teeth into existing laws.

"Without prosecution, there's no deterrent," he said.

Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Cartoon
Current Issue
Flash Poll
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2014-4774
Published: 2015-05-25
Cross-site request forgery (CSRF) vulnerability in the login page in IBM License Metric Tool 9 before 9.1.0.2 and Endpoint Manager for Software Use Analysis 9 before 9.1.0.2 allows remote attackers to hijack the authentication of arbitrary users via vectors involving a FRAME element.

CVE-2014-4778
Published: 2015-05-25
IBM License Metric Tool 9 before 9.1.0.2 and Endpoint Manager for Software Use Analysis 9 before 9.1.0.2 do not send an X-Frame-Options HTTP header in response to requests for the login page, which allows remote attackers to conduct clickjacking attacks via vectors involving a FRAME element.

CVE-2014-6190
Published: 2015-05-25
The log viewer in IBM Workload Deployer 3.1 before 3.1.0.7 allows remote attackers to obtain sensitive information via a direct request for the URL of a log document.

CVE-2014-6192
Published: 2015-05-25
Cross-site scripting (XSS) vulnerability in IBM Curam Social Program Management 6.0 SP2 before EP26, 6.0.4 before 6.0.4.5 iFix10, 6.0.5 before 6.0.5.6, and 6.0.5.5a before 6.0.5.8 allows remote authenticated users to inject arbitrary web script or HTML via a crafted URL.

CVE-2014-8926
Published: 2015-05-25
Common Inventory Technology (CIT) before 2.7.0.2050 in IBM License Metric Tool 7.2.2, 7.5, and 9; Endpoint Manger for Software Use Analysis 9; and Tivoli Asset Discovery for Distributed 7.2.2 and 7.5 allows remote attackers to cause a denial of service (CPU consumption or application crash) via a cr...

Dark Reading Radio
Archived Dark Reading Radio
Join security and risk expert John Pironti and Dark Reading Editor-in-Chief Tim Wilson for a live online discussion of the sea-changing shift in security strategy and the many ways it is affecting IT and business.