Entries in san francisco (6)
2 Men Detained After Pipe Bomb Explodes In San Francisco
Early on Friday morning 2 men in their 20's were detained in connection to a pipe bomb exploding in the Bayview District of San Francisco.
For more on the story check our sources.
UPDATE: On Rogue IT Admin In San Francisco
The story has of course received a large amount of coverage and apparently one of the writers over at InfoWorld has been given more on the story by an insider.
I am not going to post the story on my blog word for word but rather provide a link back to the story at InfoWorld. I think it is a worth while read, especially if you are an IT manager, or in upper management where you work. Also an important lesson for admins as well.
Paul Venezia does an excellent job with the story and I prefer you read it directly from him, since the source contacted him with the information provided. Paul, thanks for the coverage.
Please read the full store here : InfoWorld, Why San Francisco's network admin went rogue.
IT Administrator In San Francisco Locks System, Refuses To Give Password
In San Francisco an IT administrator was arrested after locking the system to other administrators and refuses to give up the password.
The employee, 43-year-old Terry Childs, was arrested Sunday. He gave some passwords to police, which did not work, and refused to reveal the real code.
The system in question is a multi-million dollar computer system for San Francisco that handles sensitive data such as city payroll files, jail bookings, law enforcement documents, and official e-mail for San Francisco.
While the network is currently functioning, administrators have little to no access to the system.
There are those out there that would argue with me, (since we have before) but many would agree that this is a Computer Security and Business Continuity issue.
Computer Security 101, no one person should be able to access the system the way Terry Childs did and lock out other administrators to the degree that he has done.
I am not going to take a deep dive into computer security here now but I urge all IT security departments to review policies. Especially concerning the sharing of passwords, review permissions policies, and look at the scenario, can any one person in my IT department deny global access or lock up my system? Go here for more on Computer Security. Childs created a password that granted him exclusive access to the system.
Though no reason for the malicious insider attack to the system has yet been established it has been reported that mister Terry Childs was cited recently for poor performance.
Even though the system is up and running he could have just as easily brought down part of, if not the entire network and it is being estimated that the cost to repair the damage will be several million dollars.
In this day and age insider threat is very real, and your business continuity plan, and security policies should account for such possibilities of the rouge IT administrator.
For more on this story please see the sources below.
Attending Pandemic Workshop In San Francisco
I am currently at the Pandemic Workshop here in San Francisco hoping to see some new developments and learn something new during the workshop.
I'll comment further on my experience there and how it went when I get back later in the evening.
If you happen to be attending and you know who I am feel free to stop and say hello.
It should be fun and educational, see you there.