Feeds

Oz DNA tester’s privacy shocker

Some people shouldn't be let near Web servers

  • alert
  • submit to reddit

Bridging the IT gap between rising business demands and ageing tools

In a facepalm, forehead-slap, hang-your-head-in-shame howler, South Australian DNA testing company Medvet has left its online customer accounts system open to being indexed by Google.

As reported by The Australian, the search engine’s crawlers have dutifully recorded customer invoices including addresses and, in some cases, names.

Medvet’s managing director is reportedly seeking information from the company’s software supplier, rather than staging a public hanging of whoever set up robots.txt on its Website.

Although the SA government-owned company is trying to take action, it seems at sixes and sevens about what to do, telling the Oz it would conduct a full “security vetting” of the system, but not mentioning whether or not it would get in touch with Google to ask whether the search results can be removed.

At the time of writing, The Register was able to confirm that the search results remained in the Google cache (below).

Redacted version of Google cache results for Medvet.

Even without names, the privacy breach is disturbingly creepy: "That's my address, but I didn't order a paternity test / drug test - who did and why?"

While no test results appear in the searches, the privacy breach is serious enough for Australia’s Privacy Commissioner Tim Pilgrim to launch an investigation.

According to The Australian, Medvet was first told of the privacy breach in April. ®

Mobile application security vulnerability report

More from The Register

next story
Malaysian Airlines flight MH17 claimed lives of HIV/AIDS cure scientists
Researchers, advocates, health workers among those on shot-down plane
Mwa-ha-ha-ha! Eccentric billionaire Musk gets his PRIVATE SPACEPORT
In the Lone Star State, perhaps appropriately enough
All those new '5G standards'? Here's the science they rely on
Radio professor tells us how wireless will get faster in the real world
The Sun took a day off last week and made NO sunspots
Someone needs to get that lazy star cooking again before things get cold around here
Boffins discuss AI space program at hush-hush IARPA confab
IBM, MIT, plenty of others invited to fill Uncle Sam's spy toolchest, but where's Google?
Microsoft's anti-bug breakthrough: Wire devs to BRAIN SCANNERS
Clippy: It looks your hands are shaking, are you sure you want to commit this code?
prev story

Whitepapers

Designing a Defense for Mobile Applications
Learn about the various considerations for defending mobile applications - from the application architecture itself to the myriad testing technologies.
How modern custom applications can spur business growth
Learn how to create, deploy and manage custom applications without consuming or expanding the need for scarce, expensive IT resources.
Reducing security risks from open source software
Follow a few strategies and your organization can gain the full benefits of open source and the cloud without compromising the security of your applications.
Boost IT visibility and business value
How building a great service catalog relieves pressure points and demonstrates the value of IT service management.
Consolidation: the foundation for IT and business transformation
In this whitepaper learn how effective consolidation of IT and business resources can enable multiple, meaningful business benefits.