Search FCW


Subscribe Now!
Table of Contents
Sprint
Business
BPM
CXOs
Columns
Columnists
Defense
E-Government
Elections 2008
Enterprise Architecture
Funding
Homeland Security
Health IT
IPv6
LOB
Management
Procurement
Privacy
Policy
Program Management
State and Local
Security
Technology
Telework
Training and Certification
Workforce

More Topics
resourcecenter
Home
Letters to the Editor
Current Issue/Download
Print/Online Archives
Editorial Calendar
researchstore
resourcecenter
Communications for Continuity Operations

Oracle Resource Center
NEW! Transforming Data Center
Managed Services
Service Oriented Architecture
Training & Simulation
Networking Communications
Security Directives and Compliance
Data Center Virtualization
Air Force ELSG Contract Guide

More >>



Latest News
ADVERTISEMENT





 

Phishers access USAJobs site; Effect 'slight,' officials say

By Richard W. Walker
Published on August 31, 2007

Comment

Click here to comment on this article


Related story links

USAJOBS

Increase in cyberthreats spurs feds

USAJOBS

Increase in cyberthreats spurs feds


Newsletters

You might also be interested in these FCW newsletters:

Daily
Security

To learn more, click here.


Phishing e-mailers recently gained unauthorized access to a USAJobs database, the Office of Personnel Management said this week. OPM officials said the effect on the site was slight because agency information security personnel and technicians from Monster Worldwide, the technology provider for USAJobs, quickly isolated the problem.

OPM said the phishers used malicious software to obtain contact information — names, e-mail addresses and telephone numbers — from a Monster.com resume database in an attempt to collect sensitive information from job seekers. OPM stressed that no Social Security numbers were compromised.

The incident affected about 146,000 subscribers to USAJobs.gov, according to OPM. The site has about 2 million subscribers. Monster Worldwide has identified the problem and shut down the rogue server that was accessing and collecting the information.

The phishers accessed the résumé data through a private-sector Monster customer’s computer using legitimate employer credentials. The most likely use for this kind of data is to send fraudulent e-mail messages to USAJobs subscribers requesting disclosure of additional information, according to OPM officials.

The agency is working with Monster Worldwide to deploy a long-term remedy to protect data, according to the agency. OPM has posted a notice on the USAJobs Web site alerting users to counterfeit phishing e-mail messages and warning subscribers not to provide information through unsolicited e-mail.


upcoming event

Green Computing Summit, Ronald Reagan Building, Washington, DC
December 2 - December 3, 2008

Trusted Internet Connection and the Comprehensive National Cyber Security Initiative, The Willard Intercontinental Hotel, Washington, DC
December 4, 2008


 

head
fcw
issue
First Name State
Last Name Zip
Title Email