Slashdot Mirror


Hackers Corrupt Data For Cloud-Based Medical Marijuana System (bostonglobe.com)

Long-time Slashdot reader t0qer writes: I'm the IT director at a medical marijuana dispensary. Last week the point of sales system we were using was hacked... What scares me about this breach is, I have about 30,000 patients in my database alone. If this company has 1,000 more customers like me, even half of that is still 15 million people on a list of people that "Smoke pot"...
" No patient, consumer, or client data was ever extracted or viewed," the company's data directory has said. "The forensic analysis proves that. The data was encrypted -- so it couldn't have been viewed -- and it was never extracted, so nobody has it and could attempt decryption." They're saying it was a "targeted" attack meant to corrupt the data rather than retrieve it, and they're "reconstructing historical data" from backups, though their web site adds that their backup sites were also targeted.

"In response to this attack, all client sites have been migrated to a new, more secure environment," the company's CEO announced on YouTube Saturday, adding that "Keeping our client's data secure has always been our top priority." Last week one industry publication had reported that the outage "has sent 1,000 marijuana retailers in 23 states scrambling to handle everything from sales and inventory management to regulatory compliance issues."

5 of 146 comments (clear)

  1. Re: Top priority? Always? by Anonymous Coward · · Score: 1, Insightful

    Because not everybody is perfect, you smug asshole.

  2. Re:Scrambling? by Anonymous Coward · · Score: 2, Insightful

    You have a very classical 'marijuana needle' view of marijuana users. Most users I know, myself included actually get a sort of zen state of mind and do a lot of work. Cleaning, dishes, cooking, programming, these are all things I and others do much more of in a significantly more focused way.

    The art of chemical mental alternation is a very large domain. College students use various drugs to enhance mental activity. The sales and marketting world several years ago had a significant problem with quaaludes.

    Perhaps less humorous judgmental off the cuff remarks, and a more informed opinion would help you understand.

    Stoners do scramble, they scramble and work and work and work like everyone else. There are no prototypical stoners who just sit around and smoke pot because it is no longer a survivable thing to do, you'll lose your home and starve and we are all far too scared to allow that to happen.

    Being stoned isn't a scooby do moment for everyone, for some people it's a much more zen focused time to accomplish tasks. Scrambling fits directly into their psychological profile along with professionalism in the quality of the work they do, you can only actually find such quality among the obsessives.

  3. The Cloud! by Anonymous Coward · · Score: 3, Insightful

    A gigantic target for hackers with every clients info in one place.
    Great job.

  4. Re:Border control by TechyImmigrant · · Score: 3, Insightful

    You can only perjure yourself in a court of law, under oath.

    You can be charged with lying to a federal officer. Not perjury, but still a problem if it happens to you.

    --
    I should use this sig to advertise my book ISBN-13 : 978-1501515132.
  5. Re:CEO is shown lying by his company's own actions by Cederic · · Score: 3, Insightful

    Keep your systems updated, remove encryption standards that are out of date, close services and ports you don't need, don't use Windows, and if you must, don't give your users Administrator or root rights and if your software tells you otherwise, get different software.

    Ok, you've eliminated maybe 10% of the attack vectors.

    will result in a near zero chance of getting hacked

    Oh, I see. You know nothing about security.

    You WILL get hacked. Expect it, plan for it, invest in delaying it for as long as possible and minimising its impact when it does, but you will get hacked.