Posts by Hebe

Last ←Newer Page 1 2 3 4 5 Older→ First

  • OnPoint: MSD's Leaky Servers, in reply to Matthew Poole,

    Would that compromised security reach outside MSD and its files into other areas of government?
    It could potentially do so, yes. The reason I stepped up from WINZ to MSD is that there's quite possibly a trust relationship that extends to domain administrators, and even if there's not that level of trust there's probably sufficient trust to allow cross-domain sharing of files which could then extend a compromise. That's the nature of that particular operational relationship. If there are trust relationships further into other agencies, it could similarly be escalated. At some point this scenario becomes implausible, and I'm not willing to even start speculating on other agencies that might have the necessary relationships to expose this vulnerability, but I imagine there are some very worried InfoSec officers.

    Your answer means I shall upgrade my comment to Fucking Hell. Bad sleeps all round in Welly.

    Christchurch • Since May 2011 • 2899 posts Report

  • OnPoint: MSD's Leaky Servers, in reply to cognitive_hazard,

    I thought it might be from the story. Then I thought, "Nope. Once a drama queen, always a drama queen. Can't be that bad." Now I'm flabbergasted, as m'dear ma used to say.

    Christchurch • Since May 2011 • 2899 posts Report

  • OnPoint: MSD's Leaky Servers, in reply to Matthew Poole,

    . It means that no data on the network can be trusted, unless it checks out when compared to data from backups that were created and stored off the network before the kiosks were installed.

    Jaysus. It's that bad? Would that compromised security reach outside MSD and its files into other areas of government?

    Christchurch • Since May 2011 • 2899 posts Report

  • OnPoint: MSD's Leaky Servers, in reply to cognitive_hazard,

    font updates on the WINZ kiosks, Ironic Sans if I'm not mistaken?

    Heh. Sans Security?

    Christchurch • Since May 2011 • 2899 posts Report

  • OnPoint: MSD's Leaky Servers, in reply to Craig Ranapia,

    I'm a damn sight more angry at the people who directly failed in what should be an absolutely fundamental duty of care to people in the same position today as Emma and her Mum.

    Totally agree, and that is where attention must be focused. And the possibility of information being edited by third parties: astounding.

    Cera access worries me a whole lot less: we have been wanting open government in Christchurch for some time.

    Christchurch • Since May 2011 • 2899 posts Report

  • OnPoint: MSD's Leaky Servers, in reply to Sacha,

    A public-sector CEO suit doesn't have the same public opinion value as a Minister approaching their Best Before date when one must be seen to be dealing to a problem.

    Christchurch • Since May 2011 • 2899 posts Report

  • OnPoint: MSD's Leaky Servers, in reply to Craig Ranapia,

    Funny that’s your go-to response, rather than sacking the people who as far as I understand have had a heads-up on this before and did sweet Fanny Adams.

    Craig, I understand this is a hideous start to the week for you, and I wouldn't contribute to PA if I wasn't thought-provoked and disagreed with. How about about we call a truce and discuss rather than snark? (My tongue can be nasty but I try nowadays to play nicely)

    My view is that MSD's Minister claims credit for successes and responsibility for policy "initiatives" such as the self-service kiosks, so the inverse of taking responsibility for an appalling failure is also the case. Inevitably ducks will be shoved, and the decision-makers will be Key and Joyce. They will push Paula Bennett if it is required to keep National in government: this one is a 'whatever it takes' scandal. The bad management and governance may also track back to Labour's terms of office.

    As for technical competence required to access this information: I am very, very basic when it comes to computer operation, and I would have found those files simple to enter and save on a stick.

    @Keith: Were National Super-related files wide open too?

    Christchurch • Since May 2011 • 2899 posts Report

  • OnPoint: MSD's Leaky Servers, in reply to nzlemming,

    Good.

    What a story; Keith is courageous; everyone must support him because the shit machine will get to work. I will be donating tomorrow.

    Christchurch • Since May 2011 • 2899 posts Report

  • OnPoint: MSD's Leaky Servers, in reply to Mark Hansen,

    It's going to take a lot more than just turning off the kiosks to fix this

    Yes. This could bring down the government. I cannot recall a bigger case of neglectful administration and betrayal of the "clients" in New Zealand politics.

    The more I think about it, the bigger the implications are: would the Justice Ministry, Police, Courts and IRD systems be compromised by this?

    Christchurch • Since May 2011 • 2899 posts Report

  • OnPoint: MSD's Leaky Servers,

    Well done Keith for outing this. Absolutely fucking appalling mismanagement. Bennett must resign.

    Christchurch • Since May 2011 • 2899 posts Report

Last ←Newer Page 1 152 153 154 155 156 290 Older→ First