Slashdot Mirror


Oklahoma Government Data Leak Exposes FBI Investigation Records, Millions of Department Files (zdnet.com)

An anonymous reader quotes a report from ZDNet: Researchers have disclosed the existence of a server exposed to the public which not only contained terabytes of confidential government data but information relating to FBI investigations. According to UpGuard cybersecurity researchers Greg Pollock and Chris Vickery, the open storage server belonged to the Oklahoma Department of Securities (ODS), a U.S. government department which deals with securities cases and complaints. The database was found through the Shodan search engine which registered the system as publicly accessible on November 30, 2018.

The UpGuard team stumbled across the database on December 7th and notified the department a day later after verifying what they were working with. To ODS' credit, the department removed public access to the server on the same day. In order to examine the security breach, the team was able to download the server's contents. The oldest records dated back to 1986 and the most recent was timestamped in 2016. In total, three terabytes of information representing millions of files. Contents ranged from personal data to system credentials and internal communication records.
ODS said in a statement to ZDNet: "All state IP addresses, and many city and county addresses, are registered to OMES, but the agency has no visibility into the computer systems at the Oklahoma Department of Securities. For the past eight years the state has been working to consolidate all IT infrastructure under OMES and ODS had the option to consolidate its systems voluntarily and they did not."

28 comments

  1. nah by Anonymous Coward · · Score: 0

    It's not going downhill here....not at all

    nm
    not worth a comment

  2. Re: I don't give a fuck! by Anonymous Coward · · Score: 0

    LMAO

    this is great

  3. Re:It's nice that Rudy has admitted collusion now. by Anonymous Coward · · Score: 1

    The USA fucks over other countries all the time. Keep sucking your own dick.

  4. The comments below by Anonymous Coward · · Score: 0

    The comments below, yet more evidence that slashdot has gone to seed -SAD :]

  5. Tulsa Time by PopeRatzo · · Score: 2

    Am I the only one who's shocked that the "government" of Oklahoma had terabytes of confidential government data to begin with? If you've ever been to Oklahoma, you know what I mean. I would have thought you could fit all the government data in Oklahoma on a couple of 1.44mb floppy disks.

    --
    You are welcome on my lawn.
    1. Re:Tulsa Time by Anonymous Coward · · Score: 1

      More megabits than teeth for sure

    2. Re:Tulsa Time by Anonymous Coward · · Score: 0

      Are you being racist toward Native Americans? Are you stereotyping them as dumb and inept?
      Why, ratzie! I'm surprised at you!

    3. Re:Tulsa Time by Anonymous Coward · · Score: 0

      What racist behavior! So disgusting on a progressive site like Crapdot!

    4. Re:Tulsa Time by CaptQuark · · Score: 1

      I'm more surprised that ZDnet considers the "Oklahoma Department of Securities (ODS)" as a U.S. government department. The federal government doesn't have nor need a Oklahoma Department of Securities.

      ---

    5. Re:Tulsa Time by Aristos+Mazer · · Score: 1

      a) The majority of Oklahomans are not Native Americans.
      b) The Native American reservations aren't part of Oklahoma, so, technically, Ratzo's comments about Oklahoma would leave them out. That would leave out a large percentage of the Native American population.
      In short, Ratzo is being derisively stereotypical only against Oklahomans, not Native Americans specifically. His comments are still hateful toward a group of people generically cast but not racism specifically. But we could charitably read the comments as being about the government of Oklahoma specifically, and in that light, deriding the government is an American birthright.

    6. Re:Tulsa Time by Anonymous Coward · · Score: 0

      Amazing that you take AC's shitpost seriously tho. We should not have to care about "micro-aggressions" bullshit. The whole SJW business is used by the US establishment to divide and conquer e.g. the FBI only has to send a blue haired land whale to disrupt an Occupy protest simply by claiming an orator trying to speak is a white male and should step back.

      i.e. the liberal pro Wall Street, pro Israel "left" is using racial identity politics to the benefit of the ruling class and to distract, euthanize the popular masses.
      I say this as a European leftist, thankfully in a country where racial statistics and surveys are simply illegal so there's not quite such bullshit about figuring out who is a njgger or a sandnjgger and should be privileged because some white dude didn't check their privilege. We did get the #metoo stuff instead.

      Soon it'll be about child drag queens, that's probably the coming moral panic/outrage, you can mix that up with child castration (yes they do this at least with hormones/chemicals)
      What happens when the people is not busy about irrelevant "slights" and "aggressions"? Have a look at what happens on Saturday 19th on the other side of the Atlantic and what they say about the extreme liberal/neoliberal there.

  6. Official Reply by sconeu · · Score: 1

    Will someone please translate that official reply from ODS into plain English?

    --
    General Relativity: Space-time tells matter where to go; Matter tells space-time what shape to be.
    1. Re:Official Reply by sjames · · Score: 1

      A picture is worth 1000 words.

  7. Incorrect source of statement!! by Anonymous Coward · · Score: 0

    You report that 'ODS said in a statement to ZDNet: "[...]For the past eight years the state has been working to consolidate all IT infrastructure under OMES and ODS had the option to consolidate its systems voluntarily and they did not."'

    Which makes NO SENSE, why would ODS be criticizing itself. If you RTFA you'll see that it was **OMES** that said that.

    1. Re: Incorrect source of statement!! by Anonymous Coward · · Score: 0

      Thank you

  8. Re: Trust the cloud? by Anonymous Coward · · Score: 0

    Shut up, nazi.

  9. Re: Trumps fault by Anonymous Coward · · Score: 0

    The message above was brought to you by the Committee to Reelect Donald Trump in 2020.

    Remember voters - Democrats are deranged, mean-spirited wingnuts whose idea of political debate is hurling childish insults. Compared to Democrats President Trump is grown up, kind hearted, and a serious intellectual.

    Vote TRUMP in 2020 - for common decency!

  10. The real question is... by Anonymous Coward · · Score: 0

    is there anything in there that the Mueller investigation hasn't already leaked?

  11. What's UpGuard? by Myself · · Score: 1

    Not much, you?

  12. CEO's head needs to roll by Anonymous Coward · · Score: 0

    Every CEO responsible for this mess along with all the shareholders should be fired or jailed.

    This is exactly why capitalism should fail and we should only trust our data with the government. No company will chose security over profit.

    Hopefully, this helps people wake up!

  13. So where's the torrent? by Vegemeister · · Score: 1

    Those records could be very edifying to the public. I do understand that it might necessarily be a slow-ass I2P torrent, for legal reasons.

  14. Re:It's nice that Rudy has admitted collusion now. by Anonymous Coward · · Score: 0

    Don't tell what the US does, it's whataboutism /s.