Feeds

Dutch news agency goof leaks VIP phone numbers

Low security in the Low Countries

Top 5 reasons to deploy VMware with Tegile

Security shortcomings by Dutch press agency GPD exposed the private telephone numbers of politicians and other public figures to prying eyes until earlier this week.

Former telephone numbers of controversial anti-immigration MP Geert Wilders and an old (now disconnected) mobile, formerly belonging to prime minister Jan Peter Balkenende, were left exposed by the leak. Current phone numbers exposed by the snafu included those of TV presenters Mart Smeets, Jort Kelder and Felix Meurders, as well as those of hundreds of other celebrities and media figures in The Netherlands.

The exposed numbers were held on a communal database maintained by reporters at the agency. Technology site Tweakers discovered that the database was only protected by an easily-guessed password. Confidential telephone and other information was left open to anyone with enough nous to construct an appropriate Google search.

GPD has acknowledged the error and padlocked its database to protect sensitive information, Dutchnews reports.

Expatica adds that GPD is blaming a configuration error for the snafu, which exposed what ought to have been an internal intranet-only application to the great unwashed.

Dutch news outlet NOS has a story that contains a screen shot from Google returning the prime minister's mobile number (cropped out) here. And there's more on the story (for Dutch speakers) at nu.nl here.

The incident is not the first time GPD has made the news itself as a result of information security shortcomings. In November 2007, two officials from the Ministry of Social Affairs were caught lifting information from the GPD database using the credentials of a former employee. ®

Bootnote

Thanks to Dutch reader Edwin for the tip on this story.

Intelligent flash storage arrays

More from The Register

next story
UK smart meters arrive in 2020. Hackers have ALREADY found a flaw
Energy summit bods warned of free energy bonanza
DRUPAL-OPCALYPSE! Devs say best assume your CMS is owned
SQLi hole was hit hard, fast, and before most admins knew it needed patching
Knock Knock tool makes a joke of Mac AV
Yes, we know Macs 'don't get viruses', but when they do this code'll spot 'em
Feds seek potential 'second Snowden' gov doc leaker – report
Hang on, Ed wasn't here when we compiled THIS document
Mozilla releases geolocating WiFi sniffer for Android
As if the civilians who never change access point passwords will ever opt out of this one
Why weasel words might not work for Whisper
CEO suspends editor but privacy questions remain
prev story

Whitepapers

Why and how to choose the right cloud vendor
The benefits of cloud-based storage in your processes. Eliminate onsite, disk-based backup and archiving in favor of cloud-based data protection.
A strategic approach to identity relationship management
ForgeRock commissioned Forrester to evaluate companies’ IAM practices and requirements when it comes to customer-facing scenarios versus employee-facing ones.
Reg Reader Research: SaaS based Email and Office Productivity Tools
Read this Reg reader report which provides advice and guidance for SMBs towards the use of SaaS based email and Office productivity tools.
Saudi Petroleum chooses Tegile storage solution
A storage solution that addresses company growth and performance for business-critical applications of caseware archive and search along with other key operational systems.
Protecting users from Firesheep and other Sidejacking attacks with SSL
Discussing the vulnerabilities inherent in Wi-Fi networks, and how using TLS/SSL for your entire site will assure security.