Home News Forum Articles
  Welcome back Join CF
You are here You are here: Home | Forum | Would you be a concerned customer, if....


You are currently viewing our boards as a guest which gives you limited access to view most of the discussions, articles and other free features. By joining our Virgin Media community you will have full access to all discussions, be able to view and post threads, communicate privately with other members (PM), respond to polls, upload your own images/photos, and access many other special features. Registration is fast, simple and absolutely free so please join our community today.


Welcome to Cable Forum
Go Back   Cable Forum > Cable Forum Basement > Lifestyle

Would you be a concerned customer, if....
Reply
 
Thread Tools
Old 25-10-2006, 01:13   #1
AdamD
cf.mega poster
 
AdamD's Avatar
 
Join Date: Nov 2004
Services: VM 50Mb
Posts: 1,388
AdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of society
Would you be a concerned customer, if....

A company I used to work for here, was responsible for alot of things

They were basically a company which dealt with other companies work (outsourcing)

Mostly credit card transaction and check processing for various things, like bills for major companies in the UK

Being a computer techie, I noticed several, well, alot of major flaws in how their system was setup, security wise, both computer and office related.

Here's but a few of the flaws

1) All the pc's had a local, administrator logon, which everyone knew the password to and it was a very generic login (like admin/admin)

2) All the pc's had unrestricted/unfiltered access to the net, with no tracking or any kind of filtering enabled (DSL Internet)

3) All the pc's had full read/write access to any other computers harddrives, even the servers

4) NONE of the pc's had any anti virus, spyware OR firewall in place (Anti virus software, namely sophos was only installed after about 5 months, but nothing had been installed prior to my arrival at the company)

5) All the pc's had a form of VNC (remote desktop connection software) in place, all using the same password

6) All pc's were using Windows XP, PRE Service pack 1, never updated

Bearing in mind, these are the same pc's that scanned sensitive data, like checks, credit card information, addresses and all that stuff

The main server down stairs, had the access passwords for all this stored data, stuck to the screen on a piece of paper

The entry alarm code for the main building, was set to 1,2,3,4 for the first 6+ months I Worked there.

My supervisor who was there for the first 7 months of my term, got fired for various things, including harrssment, leaving the offices empty/unattended/unalarmed when it was supposed to be occupied, he was also accused of throwing actuall work away
We were told to advise outside companies if they asked why he was removed that he was fired for harrssment and not that he'd left the building unattended/unsecured or that he was accused of throwing their work away

Did I also mention for the first 8 months of my 9 months employment, stuff was thrown away on a daily basis (Letters, envelopes, reciepts etc) into the NORMAL trash cans, NOT in the sensitive data bags?
AdamD is offline   Reply With Quote
Advertisement
Old 25-10-2006, 01:29   #2
Gareth
cf.mega poster
 
Gareth's Avatar
 
Join Date: Dec 2003
Age: 37
Posts: 7,099
Gareth has a pair of shiny starsGareth has a pair of shiny starsGareth has a pair of shiny starsGareth has a pair of shiny starsGareth has a pair of shiny starsGareth has a pair of shiny stars
Gareth has a pair of shiny starsGareth has a pair of shiny starsGareth has a pair of shiny starsGareth has a pair of shiny starsGareth has a pair of shiny starsGareth has a pair of shiny stars
Re: Would you be a concerned customer, if....

...er, yes - on every count.
Gareth is offline   Reply With Quote
Old 25-10-2006, 01:43   #3
Shaun
Rather fruity
 
Join Date: Jun 2003
Posts: 6,063
Shaun has a nice shiny starShaun has a nice shiny star
Shaun has a nice shiny starShaun has a nice shiny starShaun has a nice shiny starShaun has a nice shiny starShaun has a nice shiny starShaun has a nice shiny starShaun has a nice shiny starShaun has a nice shiny starShaun has a nice shiny starShaun has a nice shiny starShaun has a nice shiny star
Re: Would you be a concerned customer, if....

Sounds like when I worked for Hays Customer Solutions.
Shaun is offline   Reply With Quote
Old 25-10-2006, 01:46   #4
AdamD
cf.mega poster
 
AdamD's Avatar
 
Join Date: Nov 2004
Services: VM 50Mb
Posts: 1,388
AdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of society
Re: Would you be a concerned customer, if....

One of their customers, was/is NTL, they dealt with all the complaint letters and I "think" checks
I don't know if that's still true though, I left there over a year ago
I know they aquired a contract with Ebay shortly before I left, processing UK and European checks
AdamD is offline   Reply With Quote
Old 25-10-2006, 10:13   #5
LSainsbury
cf.mega poster
 
Join Date: Sep 2003
Location: Near Hungerford, West Berkshire
Services: TV: Sky HD, Landline: BT, Mobile: Orange, Internet: Quite Slow!
Posts: 6,331
LSainsbury is cast in bronzeLSainsbury is cast in bronzeLSainsbury is cast in bronzeLSainsbury is cast in bronze
LSainsbury is cast in bronze
Re: Would you be a concerned customer, if....

Wasn't there a thread similar to this a year or two ago?
I seem to recall the list of vulrabilities listed...

---------- Post added at 10:13 ---------- Previous post was at 10:12 ----------

Quote:
One of their customers, was/is NTL, they dealt with all the complaint letters and I "think" checks
NTL was also in the picture on the last one as well...I think!!
__________________
Cheers,
Lee


Please take a look at my photography site and leave me some feedback.
LSainsbury is offline   Reply With Quote
Old 25-10-2006, 10:51   #6
Hugh
Cable Forum Team
 
Hugh's Avatar
 
Join Date: Jun 2006
Services: Triple XL (BB 30Mb), TiVo, V+
Posts: 22,894
Hugh has a golden auraHugh has a golden auraHugh has a golden auraHugh has a golden auraHugh has a golden aura
Hugh has a golden auraHugh has a golden auraHugh has a golden auraHugh has a golden auraHugh has a golden auraHugh has a golden auraHugh has a golden auraHugh has a golden aura
Re: Would you be a concerned customer, if....

AdamD,

did you raise these issues with anyone in the company (besides your supervisor who got fired)?
__________________
Just to make it clear if a post is bold and is from a team member, it's a moderating decision. If it's not bold or not from a team member, it's not.
Hugh is offline   Reply With Quote
Old 25-10-2006, 11:14   #7
Paul
Google it!!
 
Paul's Avatar
 
Join Date: Jun 2003
Location: Essex innit
Age: 38
Services: Sky HD + 16Mb ADSL BT Telephone
Posts: 15,735
Paul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered stars
Paul is seeing silvered starsPaul is seeing silvered starsPaul is seeing silvered stars
Re: Would you be a concerned customer, if....

You should also report them for numerous breaches of the DPA which states that data should be kept secured at all times.
Paul is offline   Reply With Quote
Old 25-10-2006, 11:15   #8
Jules
Happily insane
 
Jules's Avatar
 
Join Date: Jun 2003
Location: Leeds
Age: 50
Services: Don't have a clue any more.
Posts: 7,460
Jules has a pair of shiny starsJules has a pair of shiny starsJules has a pair of shiny stars
Jules has a pair of shiny starsJules has a pair of shiny starsJules has a pair of shiny starsJules has a pair of shiny starsJules has a pair of shiny starsJules has a pair of shiny starsJules has a pair of shiny starsJules has a pair of shiny starsJules has a pair of shiny starsJules has a pair of shiny starsJules has a pair of shiny stars
Send a message via MSN to Jules
Re: Would you be a concerned customer, if....

It all sounds very worrying to me.
Jules is offline   Reply With Quote
Old 25-10-2006, 11:29   #9
AntiSilence
cf.mega poster
 
AntiSilence's Avatar
 
Join Date: Jul 2006
Location: Sutton-In-Ashfield
Age: 34
Services: C#/ASP.NET Web Development
Posts: 3,580
AntiSilence is cast in bronzeAntiSilence is cast in bronzeAntiSilence is cast in bronzeAntiSilence is cast in bronze
AntiSilence is cast in bronzeAntiSilence is cast in bronzeAntiSilence is cast in bronzeAntiSilence is cast in bronzeAntiSilence is cast in bronzeAntiSilence is cast in bronzeAntiSilence is cast in bronzeAntiSilence is cast in bronzeAntiSilence is cast in bronzeAntiSilence is cast in bronzeAntiSilence is cast in bronzeAntiSilence is cast in bronze
Re: Would you be a concerned customer, if....

Sounds as good as the banks throwing all your personal details in the rubbish!
__________________
Flickr: http://www.flickr.com/photos/antisilence/
AntiSilence is offline   Reply With Quote
Old 25-10-2006, 11:35   #10
Chimaera
Inactive
 
Join Date: Jun 2003
Posts: 4,221
Chimaera has a nice shiny starChimaera has a nice shiny star
Chimaera has a nice shiny starChimaera has a nice shiny starChimaera has a nice shiny starChimaera has a nice shiny starChimaera has a nice shiny starChimaera has a nice shiny starChimaera has a nice shiny starChimaera has a nice shiny starChimaera has a nice shiny starChimaera has a nice shiny starChimaera has a nice shiny starChimaera has a nice shiny starChimaera has a nice shiny star
Re: Would you be a concerned customer, if....

Yeah - why not tip off the local press and tell them to go and snoop in that company's bins late at night and see what they can find - identity fraud is big in the news lately, and I'm sure they would welcome a big news story like that on their doorstep.
Chimaera is offline   Reply With Quote
Old 25-10-2006, 11:48   #11
zing_deleted
Guest
 
Posts: n/a
Re: Would you be a concerned customer, if....

not the local press go to the Sun or Mirror could also inform watchdog
  Reply With Quote
Old 25-10-2006, 12:11   #12
Gareth
cf.mega poster
 
Gareth's Avatar
 
Join Date: Dec 2003
Age: 37
Posts: 7,099
Gareth has a pair of shiny starsGareth has a pair of shiny starsGareth has a pair of shiny starsGareth has a pair of shiny starsGareth has a pair of shiny starsGareth has a pair of shiny stars
Gareth has a pair of shiny starsGareth has a pair of shiny starsGareth has a pair of shiny starsGareth has a pair of shiny starsGareth has a pair of shiny starsGareth has a pair of shiny stars
Re: Would you be a concerned customer, if....

or if we're talking about TV shows, how about Panorama for the Beeb or Dispatches for Channel 4. They do the anonymous whistleblower parts pretty well these days.
Gareth is offline   Reply With Quote
Old 25-10-2006, 13:21   #13
AdamD
cf.mega poster
 
AdamD's Avatar
 
Join Date: Nov 2004
Services: VM 50Mb
Posts: 1,388
AdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of society
Re: Would you be a concerned customer, if....

I don't work there now, but yep, I did raise it with them AND the I.T guy

Problem is, well, I posted about this company before when I got suspended from my job, along with another colleague.

Main issue is they don't/didn't like anyone touching the computers, they know I and another guy had an I.T background, so whenever something went wrong with the computers, we were first on the list of suspects

I used to work from 2pm to 10pm, our team never used the computers till after 4:30pm, when the "day staff" went home.

During the day, someone on the day staff deleted all the icons to the programs we use as well as the program files themselves
Bearing in mind, we hadn't touched them until after 4:30pm and the minute we saw the missing icons, we reported it
About 9 computers had stuff deleted from them
Anyways, they suspended me and another guy, even though we and others informed them we weren't on the computers during the day, we were suspended because we were the "only ones who knew how to delete programs/icons" (erm...?)
So pending an investigation, we were off for a week, we came back, I was cleared, but the other guy, who the manager didn't like, was harrassed for about an hour till he eventually walked out and quit.
Which is why I didn't bother raising any potential security or privacy issues with them again.

There's so many incidents I Can think of where there's been or could've been problems, it's unfathomable
Like, all the USB ports on the front of the computers were enabled, as were the floppy drives and the cd rom/dvdrom drives.
On two computers there were copywrighted songs (about 20 mp3's) in a "My downloads" folder, no doubt obtained via Bearshare or something similiar
We even had a bulletin sent round via email to the senior staff saying not to attach stuff to the computer's USB ports, apparently there'd been a breach of data at another site (I bet the clients weren't told that though)
But, nothing changed, the ports were still enabled, people were still putting personal CD's into the machines to "Listen to music"

I don't think i'll go anywhere with it, mainly because i'd be seen as a "disgruntled employee"

(I was fired for recording my line manager slagging off another staff member and calling her names)
heh, I know, bad.
Being fired from that job though was probably one of the best things that could've happened to me.
Quote:
Originally Posted by foreverwar View Post
AdamD,

did you raise these issues with anyone in the company (besides your supervisor who got fired)?
AdamD is offline   Reply With Quote
Old 25-10-2006, 13:58   #14
LSainsbury
cf.mega poster
 
Join Date: Sep 2003
Location: Near Hungerford, West Berkshire
Services: TV: Sky HD, Landline: BT, Mobile: Orange, Internet: Quite Slow!
Posts: 6,331
LSainsbury is cast in bronzeLSainsbury is cast in bronzeLSainsbury is cast in bronzeLSainsbury is cast in bronze
LSainsbury is cast in bronze
Re: Would you be a concerned customer, if....

Quote:
Originally Posted by AdamD View Post
During the day, someone on the day staff deleted all the icons to the programs we use as well as the program files themselves
Bearing in mind, we hadn't touched them until after 4:30pm and the minute we saw the missing icons, we reported it
About 9 computers had stuff deleted from them
Anyways, they suspended me and another guy, even though we and others informed them we weren't on the computers during the day, we were suspended because we were the "only ones who knew how to delete programs/icons" (erm...?)
So pending an investigation, we were off for a week, we came back, I was cleared, but the other guy, who the manager didn't like, was harrassed for about an hour till he eventually walked out and quit.
All this has been posted before....and I'm sure on here...- I remember the bit about the icons !!!

AdamD - are you for real? Have you told us this one before??!!
__________________
Cheers,
Lee


Please take a look at my photography site and leave me some feedback.
LSainsbury is offline   Reply With Quote
Old 25-10-2006, 14:39   #15
AdamD
cf.mega poster
 
AdamD's Avatar
 
Join Date: Nov 2004
Services: VM 50Mb
Posts: 1,388
AdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of societyAdamD is a pillar of society
Re: Would you be a concerned customer, if....

Naw, I did post about the icons going missing and me being fired, but not the security/privacy issues on the computers and in the office, hehe.
AdamD is offline   Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off


Google Search




All times are GMT +1. The time now is 17:11.


Powered by vBulletin® Version 3.8.7
Copyright ©2000 - 2012, vBulletin Solutions, Inc.
Copyright © 2003 - 2012, Cable Forum.
(server1.cableforum.co.uk)

SEO by vBSEO 3.3.2