RSS feed [root] /weblog /security




login:

password:

title search:




 


Sun May 07 11:57:54 GMT 2006

HK police information leakage



Look like most Government don't handle data security well. Recently HK police information leakage case is one of great example:

http://www.thestandard.com.hk[..]35&sid=7287851&con_type=1&d_str=20060330
http://www.google.com[..]ge+case&sourceid=opera&ie=utf-8&oe=utf-8

However, this is not only HK problem some other countries facing similar problem also: http://thedailywtf.com/forums/65974/ShowPost.aspx http://thedailywtf.com/forums/71199/ShowPost.aspx

For HK case, look like it just some idiots in Government given out real data for testing, of course the IT service provider should also check the data and keep the data secure even for test data.

But for later case, it is more trick, it turn out Googlebot is too clear to bypass the security trick which call GET HTTP command to delete link everyday. Remember, all client side security is not safe.


(google search) (amazon search)
second
download zip of files only