Risk
11/21/2008
05:15 PM
Connect Directly
LinkedIn
Twitter
Google+
RSS
E-Mail
50%
50%

Obama's Cell Phone Records Accessed, Verizon Admits

The account in question had been inactive for several months and was a voice flip phone, rather than a smartphone packed with e-mail and other data.

Verizon Wireless president and CEO Lowell McAdam apologized to President-elect Barack Obama on Friday for the actions of an undisclosed number of company employees who accessed and viewed Obama's personal cell phone account.

McAdam said the account had been inactive for several months and that it was a voice flip phone, rather than a smartphone with e-mail and other data.

"All employees who have accessed the account -- whether authorized or not -- have been put on immediate leave, with pay," McAdam said in a statement. "As the circumstances of each individual employee’s access to the account are determined, the company will take appropriate actions. Employees with legitimate business needs for access will be returned to their positions, while employees who have accessed the account improperly and without legitimate business justification will face appropriate disciplinary action."

Verizon declined to provide further comment or explanation.

This isn't the first time records related to Obama have been accessed without authorization. In March, State Department officials apologized after three employees of State Department contractors accessed the passport files of then presidential candidates Hillary Clinton, John McCain, and Obama.

Data related to celebrities has lured many workers to violate laws and workplace rules. UCLA Medical Center employees, for example, were found to have viewed the medical records of actress Farah Fawcett and singer Britney Spears without authorization several years ago.

A report released earlier this year by the California Department of Public Health described an audit of one UCLA Medical Center employee's electronic activities from January 2004 through June 2006 and found "109 patients whose confidential records were breached." The report says that "more than half of the patients were noteworthy individuals, some of whom were admitted under an assumed name (AKA) to provide anonymity while receiving care within the facility's health care system."

Previous
1 of 2
Next
Comment  | 
Print  | 
More Insights
Register for Dark Reading Newsletters
White Papers
Cartoon
Current Issue
Flash Poll
Video
Slideshows
Twitter Feed
Dark Reading - Bug Report
Bug Report
Enterprise Vulnerabilities
From DHS/US-CERT's National Vulnerability Database
CVE-2015-3157
Published: 2015-07-02
** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.

CVE-2015-3443
Published: 2015-07-02
Cross-site scripting (XSS) vulnerability in the basic dashboard in Thycotic Secret Server 8.6.x, 8.7.x, and 8.8.x before 8.8.000005 allows remote authenticated users to inject arbitrary web script or HTML via a password entry, which is not properly handled when toggling the password mask.

CVE-2015-4228
Published: 2015-07-02
Cisco Digital Content Manager (DCM) 15.0.0 might allow remote ad servers to cause a denial of service (reboot) via malformed ad messages, aka Bug ID CSCur13999.

CVE-2015-4233
Published: 2015-07-02
SQL injection vulnerability in Cisco Unified MeetingPlace 8.6(1.2) allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors, aka Bug ID CSCuu54037.

CVE-2015-4238
Published: 2015-07-02
The SNMP implementation in Cisco Adaptive Security Appliance (ASA) Software 8.4(7) and 8.6(1.2) allows remote authenticated users to cause a denial of service (device reload) by sending many SNMP requests during a time of high network traffic, aka Bug ID CSCul02601.

Dark Reading Radio
Archived Dark Reading Radio
Marc Spitler, co-author of the Verizon DBIR will share some of the lesser-known but most intriguing tidbits from the massive report