A Quick Guide to Data Breach
Data breach is actually either unintentional or intentional release of private/confidential or secure information to untrustworthy environment. Some other terms used for this include data leak, data spill and also, unintentional information disclosure. Such incidents might range from organized attack by black hats associated with organized crime, national governments or political activities to careless disposal of used data storage media or computer equipment and systems.
The simplest definition for data breach is a kind of security incident to which sensitive, confidential or protected data is transmitted, viewed, copied, stolen or even used by individual unauthorized to do so. Not only that, data breaches may sometimes involve financial info such as bank details or credit card, PHI or Personal Health Information, PII or Personal Identifiable Information, intellectual property or trade secrets of corporations. Believe it or not, a big number of data breaches cases involve vulnerable and overexposed unstructured files, data, documents as well as sensitive information.
This can also include incidents like theft or even loss of digital media similar to hard drives, computer tapes or even laptops or computers that contain media upon which the information is stored unencrypted, posting the information on the internet or on computer. Otherwise accessible from the internet without proper info security precautions, transfer of this info to a system which is not open completely but isn’t formally or appropriately accredited for security at approved level like the transfer of such info to information system of possible hostile agency like foreign nation or competing corporation where the data can be exposed to a more intensive techniques in decryption.
Actually, the idea of trusted environment is somewhat fluid. The departure of trusted staff members with accessibility to sensitive info may become a data breach if only the staff member has retained access to data subsequent to the termination of trust relationship. In distributed systems, this may take place with a breakdown in web of trust.
As a matter of fact, most of these incidents are publicized in media involving private info on individuals like social security numbers and the likes. Losing corporation similar to sensitive corporate info, details of contracts, trade secrets and so on or of government information is unreported all too often. This is mainly because of the reason that there is no compelling reason to do such in the absence of potential damage to the private citizens and even publicity around such event may be more damaging than losing the data itself.
In relation to this, the first move to be made is to call a data breach lawyer in order to settle things and apply the right legal action at the same time.
Source: my site