On TechRepublic: 12 tech terms that make you sound old
BNET Business Network:
BNET
TechRepublic
ZDNet

By Dawn Kawamoto
Posted on ZDNet News: Dec 12, 2006 6:32:00 PM

In one of the largest known security breaches at a university, the database at the University of California, Los Angeles has been broken into, exposing the private information of about 800,000 people.

Administrators discovered November 21 that the database had been compromised, according to a letter dated Tuesday that was posted to the university's Web site (PDF here). The hacker had exploited a previously undetected software flaw and gained access to the database from October 2005 until the discovery, Norman Abrams, acting UCLA chancellor, said in the letter.

"While we are uncertain whether your personal information was actually obtained, we know that the hacker sought and retrieved some Social Security numbers," Abrams said.

The breach affects UCLA students, staff, applicants and some students' parents. It also included information on current and some former faculty and staff at the University of California, Merced, and at the University of California Office of the President.

Sensitive information stored in the database included Social Security numbers, home addresses, dates of birth and contact information. Financial information, such as credit card numbers or bank accounts, was not housed in the database.

When the illicit activity was discovered, university staff immediately blocked access to Social Security numbers housed in the database and began an investigation, UCLA said. The database normally operates under restricted access and requires a password from authorized users, it said. In addition, the institution said it began notifying all those affected as well as the FBI, which has launched its own investigation.

UCLA's security breach is among the largest to hit a university. Earlier this year, for example, Western Illinois University suffered a hacker attack that compromised the personal information of 180,000 people, and Ohio University found three of its servers, one of which contained 137,000 Social Security numbers, had been compromised.

Last year, the University of Southern California suffered a security breach of a database containing personal information on 275,000 applicants over an eight-year period.

For a number of universities and colleges, balancing security with the free flow of information particular to institutions of higher learning is a challenge, as open computer networks can be more vulnerable than a corporate network, security experts have said.

SponsoredWhite Papers, Webcasts, and Downloads

  • Talkback
  • Most Recent of 17 Talkback(s)
Good news!
I worked at UCLA up until 6 years ago, in database administration no less. Hadn't heard about this story until I stumbled on it here at ZDNet. Followed the link, called UCLA and found out I'm in th... (Read the rest)
Posted by: yyuko@... Posted on: 12/14/06 You are currently: a Guest | | Terms of Use
Any word on the computer setup that was hacked?  olePigeon | 12/12/06
I'm curious  NonZealot | 12/12/06
Stop beating him with the common sense stick  No_Ax_to_Grind | 12/12/06
I guess here at Zdnet,  Boot_Agnostic | 12/12/06
I'm with NonZealot on this...  RicD_ | 12/12/06
Loverock is a zealot, I was just curious. [nt]  olePigeon | 12/13/06
Depends on what you do  Still Lynn | 12/13/06
Unix  No_Ax_to_Grind | 12/12/06
Sure it does, Axey.  OButterball | 12/12/06
Sure it does, Axey.  OButterball | 12/12/06
computer setup that was hacked  ator1940 | 12/12/06
most likely a "user problem"  toadlife | 12/12/06
Probably a user config error.  osreinstall | 12/12/06
Hey that's my ID and password  BXLE | 12/13/06
A head needs to be rolled; Arnold Schwarzenegger  mighetto | 12/13/06
Resignations at Veterans Adminisration over Less  mighetto | 12/14/06
Good news!  yyuko@... | 12/14/06

What do you think?

advertisement
advertisement

White Papers, Webcasts, and Downloads

  • Smart Tech Expert advice on innovations in healthcare and the green technologies that make it happen. Find out more
  • Smart Business Discussion and advice on management issues that revolve around making your world smarter and more useful. More Smart Advice
  • Smart People The best and worst moves in the management and strategy trenches. Learn More