All About Data Breach
Data breach is actually either unintentional or intentional release of private/confidential or secure information to untrustworthy environment. Some other terms used for this include data leak, data spill and also, unintentional information disclosure. The incidents may range from organized attack by black hats that are associated with organized crime, national governments or political activities to careless disposal of used data storage media or computer equipment and systems.
The most basic definition when it comes to data breach is being a security incident wherein sensitive, confidential or protected data is transmitted, viewed, copied, stolen or even used by individual unauthorized to do so. Data breaches might also involve financial information like bank details or credit card, PHI or Personal Health Information, PII or Personal Identifiable Information, intellectual property or trade secrets of corporations. Majority of the data breaches involve vulnerable and overexposed unstructured files, data, documents as well as sensitive information.
In addition to that, this may include incidents like theft or even loss of digital media similar to hard drives, computer tapes or even laptops or computers which has media to which the information stored is unencrypted, posting the information on the internet or on computer. Otherwise accessible from the web without proper information security precautions, transfer of this information to a system which isn’t open completely but isn’t formally or appropriately accredited for security at approved level like transfer of such info to information systems of a possible hostile agency like a foreign nation or competing corporation where the data can be exposed to a more intensive techniques in decryption.
The concept of trusted environment is somewhat fluid actually. Trusted staff members leaving while still having access to sensitive info might be a data breach if the staff member retains access to data subsequent to the termination of trust relationship. In relation to distributed systems, it might take place with breakdown in web of trust.
Majority of these incidents are publicized in media and involves private info on individuals like social security numbers and the likes. The loss of corporate information like sensitive corporate info, details of contracts, trade secrets and so on or of government information is unreported all too often. This is due to the reason that there’s no compelling reason to do such in absence of potential damage to the private citizens as well as publicity around such event might be more damaging than losing the data itself.
In relation to this, the first move to be made is to call a data breach lawyer in order to settle things and apply the right legal action at the same time.