ZeroHour
Schneier on Securitypublished ()ingested Bruce Schneier

Dutch Insider Attack on COVID-19 Data

mediumVulnerabilityimportance 30
Full article152 words · extracted from schneier.com · click to collapse

Insider data theft:

Dutch police have arrested two individuals on Friday for allegedly selling data from the Dutch health ministry’s COVID-19 systems on the criminal underground.

[…]

According to Verlaan, the two suspects worked in DDG call centers, where they had access to official Dutch government COVID-19 systems and databases.

They were working from home:

“Because people are working from home, they can easily take photos of their screens. This is one of the issues when your administrative staff is working from home,” Victor Gevers, Chair of the Dutch Institute for Vulnerability Disclosure, told ZDNet in an interview today.

All of this remote call-center work brings with it additional risks.

EDITED TO ADD (2/11) More information (translated from Dutch).

Tags: cybercrime, databases, insiders, Netherlands, risks, theft

Posted on January 27, 2021 at 8:59 AM15 Comments

Sidebar photo of Bruce Schneier by Joe MacInnis.

Text extracted automatically; images, tables and formatting may be missing. Original: https://www.schneier.com/blog/archives/2021/01/dutch-insider-attack-on-covid-19-data.html