Wednesday, January 16, 2013

This is why we review our logs ...


Presented here for your amusement ... A variation of the Insider Threat in which our intrepid insider (who works for a "Critical Infrastructure" entity) finds it convenient to FedEx his actual RSA SecureID Token to somebody in China.  He did this so the person can VPN into the corporate network.  And no, he wasn't selling secrets to the Chinese.  And no, it wasn't to a co-worker. :-)

Here's the original report (must of been a fun investigation):

http://securityblog.verizonbusiness.com/2013/01/14/case-study-pro-active-log-review-might-be-a-good-idea/

I'm casting about for an explanation why a sane, experienced and apparently intelligent man could do something this monumentally stupid.   Crystal Meth?

The only thing stupider would be if he wasn't caught ... which he wasn't for quite awhile.



No comments:

Post a Comment