Feeds

Dutch news agency goof leaks VIP phone numbers

Low security in the Low Countries

Security for virtualized datacentres

Security shortcomings by Dutch press agency GPD exposed the private telephone numbers of politicians and other public figures to prying eyes until earlier this week.

Former telephone numbers of controversial anti-immigration MP Geert Wilders and an old (now disconnected) mobile, formerly belonging to prime minister Jan Peter Balkenende, were left exposed by the leak. Current phone numbers exposed by the snafu included those of TV presenters Mart Smeets, Jort Kelder and Felix Meurders, as well as those of hundreds of other celebrities and media figures in The Netherlands.

The exposed numbers were held on a communal database maintained by reporters at the agency. Technology site Tweakers discovered that the database was only protected by an easily-guessed password. Confidential telephone and other information was left open to anyone with enough nous to construct an appropriate Google search.

GPD has acknowledged the error and padlocked its database to protect sensitive information, Dutchnews reports.

Expatica adds that GPD is blaming a configuration error for the snafu, which exposed what ought to have been an internal intranet-only application to the great unwashed.

Dutch news outlet NOS has a story that contains a screen shot from Google returning the prime minister's mobile number (cropped out) here. And there's more on the story (for Dutch speakers) at nu.nl here.

The incident is not the first time GPD has made the news itself as a result of information security shortcomings. In November 2007, two officials from the Ministry of Social Affairs were caught lifting information from the GPD database using the credentials of a former employee. ®

Bootnote

Thanks to Dutch reader Edwin for the tip on this story.

Beginner's guide to SSL certificates

More from The Register

next story
FYI: OS X Yosemite's Spotlight tells Apple EVERYTHING you're looking for
It's on by default – didn't you read the small print?
Microsoft pulls another dodgy patch
Redmond makes a hash of hashing add-on
NOT OK GOOGLE: Android images can conceal code
It's been fixed, but hordes won't have applied the upgrade
Edward who? GCHQ boss dodges Snowden topic during last speech
UK spies would rather 'walk' than do 'mass surveillance'
DEATH by PowerPoint: Microsoft warns of 0-day attack hidden in slides
Might put out patch in update, might chuck it out sooner
'LulzSec leader Aush0k' found to be naughty boy not worthy of jail
15 months home detention leaves egg on feds' faces as they grab for more power
prev story

Whitepapers

Cloud and hybrid-cloud data protection for VMware
Learn how quick and easy it is to configure backups and perform restores for VMware environments.
A strategic approach to identity relationship management
ForgeRock commissioned Forrester to evaluate companies’ IAM practices and requirements when it comes to customer-facing scenarios versus employee-facing ones.
High Performance for All
While HPC is not new, it has traditionally been seen as a specialist area – is it now geared up to meet more mainstream requirements?
Three 1TB solid state scorchers up for grabs
Big SSDs can be expensive but think big and think free because you could be the lucky winner of one of three 1TB Samsung SSD 840 EVO drives that we’re giving away worth over £300 apiece.
Security for virtualized datacentres
Legacy security solutions are inefficient due to the architectural differences between physical and virtual environments.