I just read this article about an IRS worker snooping around celebrity tax records. I must admit that it would be tempting to want to know what the celebrities spend their money on *and* claim deductions for. But, this is a classic example of when not having proper access controls can get people in trouble. I am not sure if this person would be doing time if such controls were in place (as the people that want to get into trouble find ways to do just that) but it just might have prevented the personal records of celebrities getting into the wrong hands. But wait a minute, isn't there a saying in Hollywood that "there is no such thing as bad publicity"?
July 30, 2008
If that isn't privilege abuse...
0 TrackBacks
Listed below are links to blogs that reference this entry: If that isn't privilege abuse....
TrackBack URL for this entry: http://blog.imperva.com/mt/mt-tb.cgi/59
Tag Cloud
- analogy
- anti-malware
- application attacks
- application data lifecycle
- application data security
- Application Defense Center
- application security
- beer
- caption
- certification
- coffee
- cyber-warfare
- DAM
- data breaches
- data governance
- data leak prevention
- data security
- database activity monitoring
- database auditing
- database security
- Differentiation
- economy
- encryption
- enterprise application security
- errors
- false negatives
- false positives
- google hacking
- guest post
- hackers
- Hackers
- hacking
- IANS
- InfoSecurity
- infrastructure
- innovation
- insider threat
- irony
- IRS
- J-SOX
- methodology
- off topic
- OpenSphere
- partner
- passwords
- patching
- PCI
- pen testing
- privilege abuse
- Risk Managment
- ROI
- RSA
- SAP
- Sarbanes-Oxley
- SCADA
- SDLC
- secure coding
- secure development lifecycle
- SecureSphere
- security
- security community
- security metrics
- security policy
- Signatures
- Silver Bullet
- SQL Injection
- system design
- technology
- terminology
- thoughts
- threats
- trade shows
- virtual patching
- virtual worlds
- virtualization
- viruses
- vulnerability disclosure
- vulnerability scanning
- WAF
- web activity monitoring
- web application firewall
- web application security
- worms
- zero-day
- zero-day vulnerability









Leave a comment