Monthly Archives: April 2008

I’ve Been Joe-Jobbed Again

Someone has emailed the entire universe a series of cheap ads for tawdry goods forging my email address in the “from” line. It is not the first time I've been 'joe jobbed' but it seems to be an even more thorough job than in the past.

As a result, I'm getting a flood of mailed bounces, rejections, spam complaints and the like. No doubt many systems will now blacklist my address. And so on.

And it makes finding the real mail a bit of a needle in a haystack problem. Not to mention that if I tried to mail you, misspelled something, and it really bounced, I'll never notice.

If you need to reach me in the next few days, or more, please consider the phone if I don't reply.

Posted in Internet | 4 Comments

The Job Market of the Future

It seems at least one filmmaker with a wicked sense of humor is pretty bearish about the job market. See Job Market In 2009.

Posted in Econ & Money | Comments Off on The Job Market of the Future

Friday McCain-Bashing

Seems like there are an awful lot of things that are younger than John McCain.

He's older than…Iceland?

Posted in Politics: McCain | Comments Off on Friday McCain-Bashing

Blue Jeans Cable Responds to a Demand Letter

The letter reprinted at Blue Jeans Cable Strikes Back – Response to Monster Cable makes for some fun reading.

Here's how it starts,

RE: Your letter, received April Fools' Day

Dear Monster Lawyers,

Let me begin by stating, without equivocation, that I have no interest whatsoever in infringing upon any intellectual property belonging to Monster Cable. Indeed, the less my customers think my products resemble Monster's, in form or in function, the better.

I'm not a patent lawyer, but the trademark and trade dress parts of this letter look pretty good to me, and the patent stuff was fun to read — seven words I never wrote in that particular order before. I even laughed.

(Thanks to OJ for the link.)

Posted in Law: Trademark Law | 2 Comments

Chocolate Considered Dangerous

Women More Likely Than Men To Surrender Security For Chocolate:

Women are four times more likely than men to surrender their computer passwords for chocolate, according to a survey of 576 office workers conducted outside Liverpool Street Station in London by Infosecurity Europe.

According to the survey, 45% of women revealed their passwords to strangers posing as market researchers for a chocolate bar, compared to 10% of men.

Apparently the overall percentage of password-yielding respondents this year (21%) represents an improvement over 2007, when 64% of respondents traded their security for a few moments of chocolaty goodness.

Infosecurity Europe made no mention of whether inducements tailored to men, such as sports tickets, free beer, or explicit pictures, were offered to test the possibility that the noted gender disparity might be reversed under different circumstances.

(via PogoWasRight.org)

Posted in Etc | 6 Comments

Shalala’s Message on U.Miami Employee Medical Data Privacy Breach

This popped into the inbox:

A Message from President Shalala

April 17, 2008

To the University Community:

I wanted to let all of you know that we recently learned that a case containing computer back-up tapes with patient information and employee health benefit information was stolen from an outside storage company vehicle. The truck was on its way to an off-site storage facility. Local law enforcement is investigating the theft. Unfortunately, our employees' basic health information was on those tapes.

Shortly after learning of the incident, the University determined it would be unlikely that a thief would be able to access the back-up tapes because of the highly secured format in which they were written. Even so, we engaged the leading computer security experts in the U.S. to attempt to hack into the data from a similar back-up tape. All of their attempts over a lengthy process were unsuccessful. Based on this information, we believe misuse of the information on the tapes is unlikely.

The tapes were in a transport case that was stolen from a storage company vehicle on March 17 in downtown Coral Gables. The Coral Gables police have told us this is one of a series of vehicle thefts in the same area.

Because accessing the tapes is highly unlikely, we are not required by Florida law to disclose information about the theft, and we are confident that everyone's data is safe, we felt that it was in the best interest of our patients to be completely transparent in this matter. Also, it is the ethical thing to do.

Anyone who has been a patient of a University of Miami physician or visited a UM facility since January 1, 1999, is likely to have their basic information included on the tapes. The data on the tapes included names, addresses, Social Security numbers, or health information. The University will be notifying by mail the 47,000 patients whose data may have included credit card or other financial information regarding bill payment.

Off-site storage is standard practice and is particularly critical in areas susceptible to severe weather. I want you to know the University's permanent records are not affected; all your information remains current, safe, and appropriately available on UM systems.

We have created a Web site to serve as the principal source of information about this incident: www.dataincident.miami.edu. As a back-up for this Web site, we have established a call center at 1-866-628-4492. If you receive any calls asking about the incident, please encourage callers to visit the Web site.

I deeply regret any concern this event may cause, and you have my assurance that everything possible is being done to make UM the safest place for our patients' health information.

There's an online FAQ with a tiny bit more info, including this teaser:

Q: Is my personal information at risk?
A: After consulting with computer security professionals, the University has determined that it is unlikely that the data on the tapes could be accessed by an unauthorized user. Attempts by a leading Miami-based computer security firm to access the information on identical tapes were unsuccessful. Therefore, we believe misuse of the information on these tapes is unlikely.

There's a phone number to call if you want more info. I called it to find out the name of the “leading Miami-based computer security firm” as I'm always interested to know about local folks who do computer security. The call center person referred me to the web site from which I got her phone number.

Update: A kindly correspondent points me to this UM press release which says a lot more about the security issue than the official web site:

the University engaged leading computer security experts at Terremark Worldwide to independently ascertain the feasibility of accessing and extracting data from a similar set of backup tapes.

“For more than a week my team devised a number of methods to extract readable data from the tapes,” said Christopher Day, senior vice president of the Secure Information Services group at Terremark. “Because of the highly proprietary compression and encoding used in writing the tapes, we were unable to extract any usable data.”

Day said that his team also determined that even in the unlikely event that a thief had a copy of the same software used to write the tapes, “It would require certain key data which is not stored on the tapes before the software would make the data readable.”

Alan Brill, senior managing director at Kroll Ontrack, who was asked by the University to review the testing that had been done, said: “While the report shows it is not impossible to access the data, in this case there are many barriers that stand between a thief and being able to actually get usable data from the tapes. If the thief cannot cross all of those barriers simultaneously, they can’t access the data.”

Posted in U.Miami | 1 Comment