Feeds

Met investigates medical school hack

Docs get nasty, libellous emails

Protecting against web application threats using SSL

Updated Police are investigating a security breach at a London university medical school that resulted in users getting a stream of obscene and defamatory emails.

Unidentified hackers sent a series of libellous, obscene and abusive emails, one of which falsely claiming that executive members of the St George's University of London medical school were implicated in a "recent child pornography sting". An earlier message, sent to subscribers of a closed subscription-based list, falsely claimed that an online directory for doctors and nurses maintained by the school had been "closed due to Aids", The Guardian reports.

The Primary Care Electronic Library (PCEL) database involved in the incident acts as a yellow pages for the medical professional, listing contact names and numbers; it does not hold medical records.

In a statement (extract below), St George spokesman emphasised that the affected PCEL database is run off a different system than the St George's University of London (SGUL) main server. The PCEL server has been take offline to allow an investigation into how the attack may have taken place, as well as to prevent any further malfeasance.

Last week an email list within the Primary Care Electronic Library (PCEL) site was compromised. A number of unsolicited emails were consequently sent to members of the list. There are currently on-going investigations into how access was gained to the subscription list. Due to the offensive nature of the emails, the site was immediately taken down pending this investigation.

We would like to assure anyone who received one of these emails that they were not sent by any member of the PCEL team. The content of these emails was extremely offensive and unfounded, and we apologise for any offence caused to those who received these emails. This was an isolated incident, affecting the PCEL server only, which runs independently of the St George’s, University of London (SGUL) main server. No SGUL data, including confidential details of SGUL staff, students or partners, was compromised as a result of this situation.

The PCEL site, SGUL explains, is a "searchable directory of information relating to primary care, ran by a group of academics within SGUL". The database aims to act as a resource for improving patient care by pooling together already publicly available information in one location. ®

Reducing the cost and complexity of web vulnerability management

More from The Register

next story
Spies would need SUPER POWERS to tap undersea cables
Why mess with armoured 10kV cables when land-based, and legal, snoop tools are easier?
Early result from Scots indyref vote? NAW, Jimmy - it's a SCAM
Anyone claiming to know before tomorrow is telling porkies
Apple Pay is a tidy payday for Apple with 0.15% cut, sources say
Cupertino slurps 15 cents from every $100 purchase
Israeli spies rebel over mass-snooping on innocent Palestinians
'Disciplinary treatment will be sharp and clear' vow spy-chiefs
YouTube, Amazon and Yahoo! caught in malvertising mess
Cisco says 'Kyle and Stan' attack is spreading through compromised ad networks
Hackers pop Brazil newspaper to root home routers
Step One: try default passwords. Step Two: Repeat Step One until success
China hacked US Army transport orgs TWENTY TIMES in ONE YEAR
FBI et al knew of nine hacks - but didn't tell TRANSCOM
Microsoft to patch ASP.NET mess even if you don't
We know what's good for you, because we made the mess says Redmond
prev story

Whitepapers

Providing a secure and efficient Helpdesk
A single remote control platform for user support is be key to providing an efficient helpdesk. Retain full control over the way in which screen and keystroke data is transmitted.
WIN a very cool portable ZX Spectrum
Win a one-off portable Spectrum built by legendary hardware hacker Ben Heck
Storage capacity and performance optimization at Mizuno USA
Mizuno USA turn to Tegile storage technology to solve both their SAN and backup issues.
High Performance for All
While HPC is not new, it has traditionally been seen as a specialist area – is it now geared up to meet more mainstream requirements?
Security and trust: The backbone of doing business over the internet
Explores the current state of website security and the contributions Symantec is making to help organizations protect critical data and build trust with customers.