Powered by RealTown Blogs
Matt's Real Estate Technology Blog
Clareity ConsultingReal Estate Information Technology Consultants
Home PageAbout ClareityServicesClientsPublicationsEventsContact

Matt's Real Estate Technology Blog

Archives

January 2008

Jan. 19, 2008 - Password breach notification

Last month, a Clareity staffer was one of hundreds of thousands of people that received an email, phone call, and letter providing breach notification from their long distance company. What had been illicitly accessed? Just the email address, username and password from their online account.


While no 'traditionally' sensitive information, such as bank account or credit card information, could be accessed using that information the company still had to go through an expensive breach notification process. Why? Because it was possible that the username or email address, in combination with the users' passwords could have been used to access other sites online where sensitive information could be accessed, purchases made and so forth! This is just another example of why traditional username/password authentication is obsolete.


Thankfully, in this case, the Clareity staffer had been smart and does not re-use passwords between web sites - but it could have been much worse - and was for many others.

Comments (0) :: Post A Comment! :: Permanent Link
View more entries tagged with: None


Matt Cohen
Matt Cohen has consulted to MLSs, Associations, franchises, brokerages, and many real estate industry software companies for over 12 years. Matt is a well-regarded real estate industry expert on industry trends, software design, product management, project management, and information security. Matt speaks at conferences, workshops and leadership retreats around the country on a wide variety of MLS-related topics.

Twitter
Facebook

Subscribe

Your E-mail Address:

Links

Disclaimer: The opinions expressed on this blog are the responsibility of the author and do not necessarily reflect the opinion of my employer