University Business - June 2006 - (Page 80)

Back Back from the BREACH MOVING DATA OFF-SITE Well aware that data breaches are be- coming more and more commonplace, The University of some IHEs are choosing not just to pro- Notre Dame tect sensitive financial data, but to ac- experienced its first major IT security tually remove it from campus servers breach in January. altogether. tough firewalls and intrusion systems. But instead of if for just about every IHE. Higher One, a firm offering integrated when another virus attacked, IT staff found But that doesn't mean campuses have to financial aid disbursement services, has they couldn't identify where the threat had simply brace for the onslaught and try to seen a great deal of interest lately from originated so cleaning infected departments clean up as best they can. Many schools that schools that want the firm to handle stu- before the infection spread was difficult. have been hit are leading the way in show- ing how to recover from breaches, minimize dent financial records, putting the data damage, and prevent future headlines. Appropriate Alerts behind Higher One's firewalls rather The news isn't all dire. Despite many inci- than within a campus network. dents of data breaches, there has yet to be Locked Doors, I f you're looking for a data-rich any widespread identity theft as a result of Open Windows the exposed information. Attackers some- Unlike corporate networks, which can be target, universities are it, says Sean times find themselves with data, but no idea controlled and monitored through strict IT Glass, chief marketing officer for how to exploit it. policies, IHE setups have to be flexible, al- Higher One. The advantage to a ser- Data can be stolen or lost, but without lowing for multiple types of devices and often vice like ours is that we have to com- an application that can tie that information for decentralized pockets of IT management. into other databases, usually it's not useful, That makes schools tempting to hackers, who ply with banking regulations that de- says Tom Chomicz, a network security en- can crack networks through system flaws, vi- termine how we protect information. gineer at CDW-G, a technology provider ruses, and spyware. Schools don't have to follow those to government and educational institutions. The Privacy Rights Clearinghouse re- mandates. Selling it takes time and connections, and if cently stated that of the 113 data breaches any part of it is encrypted, it's just not worth reported since February 2005, almost half K e n n e s a w State University Ga. it to the attacker. took place at colleges, universities, and uni- chose to go with the company to try and Most hackers don't break into campus net- versity-related medical centers. avoid even the potential for a breach, works specifically to get sensitive data, Cho- The prevalence of breaches is likely to says Earle Holley, vice president for micz adds, but instead to create channels for continue, according to the security firm Sy- sending spam. Purveyors of unsolicited mail mantec. In its annual threat report, released Business and Finance. After he heard pay hackers for these zombie connections, last fall, the company noted that education about incidents at other schools, Hol- so spam can't be traced back to them. Much is now the most attacked industry, ahead of ley found that his university was using like breaking into a bank and emptying the small business, financial services, and gov- encryption to send data out, but that cash drawer but neglecting to peek into the ernment. IHEs are attractive targets due to open vault, hackers take advantage of vulner- their large, diverse networks and stores of on campus, no encryption existed. abilities to exploit networks, yet don't always highly sensitive information. Also, a false Rather than develop a plan to deal with use data that is right in front of them. sense of ownership exists among students breaches, Kennesaw chose to move the At Boston College, for example, letters and faculty. They often install wireless access sensitive data off its servers. had to be sent in March 2005 to 120,000 points or tap into campus networks without alumni describing an exposed database that firewalls in place, the report notes. We feel that it's easier to avoid is- contained Social Security numbers. College Sometimes, even seemingly bulletproof sues with data on campus, notes Hol- officials noted that the attacker's real mo- protection isn't enough. After a worm dis- ley, if we limit what kind of informa- tive seemed to be embedding a program that rupted its systems in 2003, the University tion is on the servers in the first place. could be used to attack other computers. of Washington School of Medicine installed 80 | June 2006 universitybusiness.com Data.indd 80 5/22/06 10:09:31 AM http://universitybusiness.com

Table of Contents for the Digital Edition of University Business - June 2006

Contents
College Index
Advisory Board
Company Index
Editor's Note
2006 AV Buyers Guide
Admissions
Internet Technology
On the Hill
Financial Aid
Going Green while Saving Green
Viewpoint
Back from the Breach
Value Added
Need Help?
Shared Pain & Payoffs
What's New
Direct Connect
Calendar of Events
End Note

University Business - June 2006

https://www.nxtbook.com/pmg/UB/UB_0520
https://www.nxtbook.com/pmg/UB/UB_0320
https://www.nxtbook.com/pmg/UB/UB_0120
https://www.nxtbook.com/pmg/UB/UB_1119
https://www.nxtbook.com/pmg/UB/UB_1019
https://www.nxtbook.com/pmg/UB/UB_0819
https://www.nxtbook.com/pmg/UB/UB_0719
https://www.nxtbook.com/pmg/UB/UB_0619
https://www.nxtbook.com/pmg/UB/UB_0419
https://www.nxtbook.com/pmg/UB/UB_0319
https://www.nxtbook.com/pmg/UB/UB_0119
https://www.nxtbook.com/pmg/UB/UB_1218
https://www.nxtbook.com/pmg/UB/UB_1118
https://www.nxtbook.com/pmg/UB/UB_1018
https://www.nxtbook.com/pmg/UB/UB_0918
https://www.nxtbook.com/pmg/UB/UB_0818
https://www.nxtbook.com/pmg/UB/UB_0718
https://www.nxtbook.com/pmg/UB/UB_0618
https://www.nxtbook.com/pmg/UB/UB_0518
https://www.nxtbook.com/pmg/UB/UB_0418
https://www.nxtbook.com/pmg/UB/UB_0318
https://www.nxtbook.com/pmg/UB/UB_0218
https://www.nxtbook.com/pmg/UB/UB_0118
https://www.nxtbook.com/pmg/UB/UB_1217
https://www.nxtbook.com/pmg/UB/UB_1117
https://www.nxtbook.com/pmg/UB/UB_1017
https://www.nxtbook.com/pmg/UB/UB_0917
https://www.nxtbook.com/pmg/UB/UB_0817
https://www.nxtbook.com/pmg/UB/UB_0717
https://www.nxtbook.com/pmg/UB/UB_0617
https://www.nxtbook.com/pmg/UB/UB_0517
https://www.nxtbook.com/pmg/UB/UB_0417
https://www.nxtbook.com/pmg/UB/UB_0317
https://www.nxtbook.com/pmg/UB/UB_0217EPUB
https://www.nxtbook.com/pmg/UB/UB_0217
https://www.nxtbook.com/pmg/UB/UB_0117
https://www.nxtbook.com/pmg/UB/UB_1216
https://www.nxtbook.com/pmg/UB/UB_1116
https://www.nxtbook.com/pmg/UB/UB_1016
https://www.nxtbook.com/pmg/UB/UB_0916
https://www.nxtbook.com/pmg/UB/UB_0816
https://www.nxtbook.com/pmg/UB/UB_0816CG
https://www.nxtbook.com/pmg/UB/UB0716
https://www.nxtbook.com/pmg/UB/GlobalSellSheet
https://www.nxtbook.com/pmg/UB/UB_0616
https://www.nxtbook.com/pmg/UB/UB_0516
https://www.nxtbook.com/pmg/UB/UB0416
https://www.nxtbook.com/pmg/UB/UB0316
https://www.nxtbook.com/pmg/UB/UB_0216r2
https://www.nxtbook.com/pmg/UB/UBGuide
https://www.nxtbook.com/pmg/UB/UB0116
https://www.nxtbook.com/pmg/UB/UB
https://www.nxtbook.com/nxtbooks/pmg/ub201511
https://www.nxtbook.com/nxtbooks/pmg/ub201510
https://www.nxtbook.com/nxtbooks/pmg/ub201509
https://www.nxtbook.com/nxtbooks/pmg/ub201508
https://www.nxtbook.com/nxtbooks/pmg/ub201508_ConsultantsGuide
https://www.nxtbook.com/nxtbooks/pmg/ub201507
https://www.nxtbook.com/nxtbooks/pmg/ub201506
https://www.nxtbook.com/nxtbooks/pmg/ub201506_AudioVisualSolutions
https://www.nxtbook.com/nxtbooks/pmg/ub201505
https://www.nxtbook.com/nxtbooks/pmg/ub201504
https://www.nxtbook.com/nxtbooks/pmg/ub201503
https://www.nxtbook.com/nxtbooks/pmg/ub201502
https://www.nxtbook.com/nxtbooks/pmg/ub201501
https://www.nxtbook.com/nxtbooks/pmg/ub201501_FinancialServicesGuide
https://www.nxtbook.com/nxtbooks/pmg/ub201412
https://www.nxtbook.com/nxtbooks/pmg/ub201411
https://www.nxtbook.com/nxtbooks/pmg/ub201410
https://www.nxtbook.com/nxtbooks/pmg/ub201409
https://www.nxtbook.com/nxtbooks/pmg/ub201408
https://www.nxtbook.com/nxtbooks/pmg/ub201408_ConsultantsGuide
https://www.nxtbook.com/nxtbooks/pmg/ub201407
https://www.nxtbook.com/nxtbooks/pmg/ub201406
https://www.nxtbook.com/nxtbooks/pmg/ub201406_AudioVisualSolutions
https://www.nxtbook.com/nxtbooks/pmg/ub201405
https://www.nxtbook.com/nxtbooks/pmg/ub201404
https://www.nxtbook.com/nxtbooks/pmg/ub201403
https://www.nxtbook.com/nxtbooks/pmg/ub201402
https://www.nxtbook.com/nxtbooks/pmg/ub201401
https://www.nxtbook.com/nxtbooks/pmg/ub201401_FinancialServicesGuide
https://www.nxtbook.com/nxtbooks/pmg/ub201312
https://www.nxtbook.com/nxtbooks/pmg/ub201311
https://www.nxtbook.com/nxtbooks/pmg/ub201310
https://www.nxtbook.com/nxtbooks/pmg/ub201309
https://www.nxtbook.com/nxtbooks/pmg/ub201308
https://www.nxtbook.com/nxtbooks/pmg/ub201308_ConsultantsGuide
https://www.nxtbook.com/nxtbooks/pmg/ub201307
https://www.nxtbook.com/nxtbooks/pmg/ub201306_AudioVisualSolutions
https://www.nxtbook.com/nxtbooks/pmg/ub201306
https://www.nxtbook.com/nxtbooks/pmg/ub201305
https://www.nxtbook.com/nxtbooks/pmg/ub201304
https://www.nxtbook.com/nxtbooks/pmg/ub201303
https://www.nxtbook.com/nxtbooks/pmg/ub201302
https://www.nxtbook.com/nxtbooks/pmg/ub201301
https://www.nxtbook.com/nxtbooks/pmg/ub201301_FinancialServicesGuide
https://www.nxtbook.com/nxtbooks/pmg/ub1212
https://www.nxtbook.com/nxtbooks/pmg/ub1112
https://www.nxtbook.com/nxtbooks/pmg/ub1012
https://www.nxtbook.com/nxtbooks/pmg/ub0912
https://www.nxtbook.com/nxtbooks/pmg/ub_cg12
https://www.nxtbook.com/nxtbooks/pmg/ub070812
https://www.nxtbook.com/nxtbooks/pmg/ub0612
https://www.nxtbook.com/nxtbooks/pmg/ub_avguide0612
https://www.nxtbook.com/nxtbooks/pmg/ub0512
https://www.nxtbook.com/nxtbooks/pmg/ub0412
https://www.nxtbook.com/nxtbooks/pmg/ub0312
https://www.nxtbook.com/nxtbooks/pmg/ub0212
https://www.nxtbook.com/nxtbooks/pmg/ub_financeguide0112
https://www.nxtbook.com/nxtbooks/pmg/ub1211
https://www.nxtbook.com/nxtbooks/pmg/ub1011
https://www.nxtbook.com/nxtbooks/pmg/ub0911
https://www.nxtbook.com/nxtbooks/pmg/ub_cg11
https://www.nxtbook.com/nxtbooks/pmg/ub0711
https://www.nxtbook.com/nxtbooks/pmg/ub0611_av
https://www.nxtbook.com/nxtbooks/pmg/ub0611
https://www.nxtbook.com/nxtbooks/pmg/ub0511
https://www.nxtbook.com/nxtbooks/pmg/ub0411
https://www.nxtbook.com/nxtbooks/pmg/ub0311
https://www.nxtbook.com/nxtbooks/pmg/ub0211
https://www.nxtbook.com/nxtbooks/pmg/ub0111
https://www.nxtbook.com/nxtbooks/pmg/ub_financeguide0111
https://www.nxtbook.com/nxtbooks/pmg/ub1110
https://www.nxtbook.com/nxtbooks/pmg/ub1010
https://www.nxtbook.com/nxtbooks/pmg/ub0910
https://www.nxtbook.com/nxtbooks/pmg/ub_2010financeguide
https://www.nxtbook.com/nxtbooks/pmg/ub_2010consultants
https://www.nxtbook.com/nxtbooks/pmg/ub_2010avguide
https://www.nxtbook.com/nxtbooks/pmg/ub0710
https://www.nxtbook.com/nxtbooks/pmg/ub0610
https://www.nxtbook.com/nxtbooks/pmg/ub0510
https://www.nxtbook.com/nxtbooks/pmg/ub0410
https://www.nxtbook.com/nxtbooks/pmg/ub0310
https://www.nxtbook.com/nxtbooks/pmg/ub0210
https://www.nxtbook.com/nxtbooks/pmg/ub0110
https://www.nxtbook.com/nxtbooks/pmg/ub1109
https://www.nxtbook.com/nxtbooks/pmg/ub1009
https://www.nxtbook.com/nxtbooks/pmg/ub0909
https://www.nxtbook.com/nxtbooks/pmg/ub0709
https://www.nxtbook.com/nxtbooks/pmg/ub_fg09
https://www.nxtbook.com/nxtbooks/pmg/ub0609
https://www.nxtbook.com/nxtbooks/pmg/ub0509
https://www.nxtbook.com/nxtbooks/pmg/ub0409
https://www.nxtbook.com/nxtbooks/pmg/ub0309
https://www.nxtbook.com/nxtbooks/pmg/ub0209
https://www.nxtbook.com/nxtbooks/pmg/ub0109
https://www.nxtbook.com/nxtbooks/pmg/ub1208
https://www.nxtbook.com/nxtbooks/pmg/ub1108
https://www.nxtbook.com/nxtbooks/pmg/ub1008
https://www.nxtbook.com/nxtbooks/pmg/ub0908
https://www.nxtbook.com/nxtbooks/pmg/ub0808
https://www.nxtbook.com/nxtbooks/pmg/ub0708
https://www.nxtbook.com/nxtbooks/pmg/ub0608
https://www.nxtbook.com/nxtbooks/pmg/ub0508
https://www.nxtbook.com/nxtbooks/pmg/ub0408
https://www.nxtbook.com/nxtbooks/pmg/ub0308
https://www.nxtbook.com/nxtbooks/pmg/ub0208
https://www.nxtbook.com/nxtbooks/pmg/ub0907
https://www.nxtbook.com/nxtbooks/pmg/ub0807
https://www.nxtbook.com/nxtbooks/pmg/ub0707
https://www.nxtbook.com/nxtbooks/pmg/ub0607
https://www.nxtbook.com/nxtbooks/pmg/ub0507
https://www.nxtbook.com/nxtbooks/pmg/ub0407
https://www.nxtbook.com/nxtbooks/pmg/ub0307
https://www.nxtbook.com/nxtbooks/pmg/ub0207
https://www.nxtbook.com/nxtbooks/pmg/ub0107
https://www.nxtbook.com/nxtbooks/pmg/ub1206
https://www.nxtbook.com/nxtbooks/pmg/ub1106
https://www.nxtbook.com/nxtbooks/pmg/ub1006
https://www.nxtbook.com/nxtbooks/pmg/ub0906
https://www.nxtbook.com/nxtbooks/pmg/ub0806
https://www.nxtbook.com/nxtbooks/pmg/ub0706
https://www.nxtbook.com/nxtbooks/pmg/ub0606-GG
https://www.nxtbook.com/nxtbooks/pmg/ub0606
https://www.nxtbook.com/nxtbooks/pmg/ub0506
https://www.nxtbook.com/nxtbooks/pmg/ub0406
https://www.nxtbookmedia.com