Risk
11/21/2008
05:15 PM
Connect Directly
LinkedIn
Twitter
Google+
RSS
E-Mail
50%
50%

Obama's Cell Phone Records Accessed, Verizon Admits

The account in question had been inactive for several months and was a voice flip phone, rather than a smartphone packed with e-mail and other data.

Verizon Wireless president and CEO Lowell McAdam apologized to President-elect Barack Obama on Friday for the actions of an undisclosed number of company employees who accessed and viewed Obama's personal cell phone account.

McAdam said the account had been inactive for several months and that it was a voice flip phone, rather than a smartphone with e-mail and other data.

"All employees who have accessed the account -- whether authorized or not -- have been put on immediate leave, with pay," McAdam said in a statement. "As the circumstances of each individual employee’s access to the account are determined, the company will take appropriate actions. Employees with legitimate business needs for access will be returned to their positions, while employees who have accessed the account improperly and without legitimate business justification will face appropriate disciplinary action."

Verizon declined to provide further comment or explanation.

This isn't the first time records related to Obama have been accessed without authorization. In March, State Department officials apologized after three employees of State Department contractors accessed the passport files of then presidential candidates Hillary Clinton, John McCain, and Obama.

Data related to celebrities has lured many workers to violate laws and workplace rules. UCLA Medical Center employees, for example, were found to have viewed the medical records of actress Farah Fawcett and singer Britney Spears without authorization several years ago.

A report released earlier this year by the California Department of Public Health described an audit of one UCLA Medical Center employee's electronic activities from January 2004 through June 2006 and found "109 patients whose confidential records were breached." The report says that "more than half of the patients were noteworthy individuals, some of whom were admitted under an assumed name (AKA) to provide anonymity while receiving care within the facility's health care system."

Previous
1 of 2
Next
Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Cartoon
Current Issue
Dark Reading December Tech Digest
Experts weigh in on the pros and cons of end-user security training.
Flash Poll
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2014-7178
Published: 2014-11-28
Enalean Tuleap before 7.5.99.6 allows remote attackers to execute arbitrary commands via the User-Agent header, which is provided to the passthru PHP function.

CVE-2014-7850
Published: 2014-11-28
Cross-site scripting (XSS) vulnerability in the Web UI in FreeIPA 4.x before 4.1.2 allows remote attackers to inject arbitrary web script or HTML via vectors related to breadcrumb navigation.

CVE-2014-8423
Published: 2014-11-28
Unspecified vulnerability in the management portal in ARRIS VAP2500 before FW08.41 allows remote attackers to execute arbitrary commands via unknown vectors.

CVE-2014-8424
Published: 2014-11-28
ARRIS VAP2500 before FW08.41 does not properly validate passwords, which allows remote attackers to bypass authentication.

CVE-2014-8425
Published: 2014-11-28
The management portal in ARRIS VAP2500 before FW08.41 allows remote attackers to obtain credentials by reading the configuration files.

Best of the Web
Dark Reading Radio
Archived Dark Reading Radio
Now that the holiday season is about to begin both online and in stores, will this be yet another season of nonstop gifting to cybercriminals?