iTnews
  • Home
  • News
  • Business
  • Strategy

Red-faced ICANN regrets revealing private user financials

By Juha Saarinen on May 1, 2015 9:13AM
Red-faced ICANN regrets revealing private user financials

Culprits' names to be provided to leak victims next month.

Global internet numbering and naming authority ICANN has issued regret over a two-year leak of private financial and technical documents attached to applications from generic top-level domain (gTLD) registrants.

ICANN's admission came after it published the findings of a third-party audit of log files for the 'new gTLD applicant' and 'global domains divisions' portals.

In the first instance, the consulting firm hired by ICANN for the audit went back as far as April 17 2013. For the global domains division, the firm went back to March 17 last year.

The auditors found that 19 users were able to use the advanced search function to glean confidential information on 96 gTLD applicants and 21 registry operators. A total of 330 search result records were viewed by the 19, whom ICANN did not name.

At least some of the information leaked would belong to large global brands who were required to submit financial records to ICANN as part of their gTLD registrations.

ICANN chief information officer Ashin Rangan said his organisation 'deeply regretted the incident' and pledged to harden its digital services.

A misconfiguration of the public/private data sharing setting in the Salesforce.com application used by ICANN enabled access to the confidential information, Rangan told industry website Domain Incite.

ICANN said it had written to the users who accessed the information without authorisation and asked them to explain why they did.

The organisation has also asked the users to confirm they will delete or destroy the data, and that they have not or will not use it, or convey the information to third parties.

Victims of the data breach will be informed by ICANN late next month who their confidential information was viewed by.

Got a news tip for our journalists? Share it with us anonymously here.
Copyright © iTnews.com.au . All rights reserved.
Tags:
domainsgtldicannstrategytelco/isp

Partner Content

The Great Resignation has intensified insider security threats
Promoted Content The Great Resignation has intensified insider security threats
How to turn digital complexity into competitive advantage
Promoted Content How to turn digital complexity into competitive advantage
Avoiding CAPEX by making on-premise IT more cloud-like
Promoted Content Avoiding CAPEX by making on-premise IT more cloud-like
Why Genworth Australia embraced low-code software development
Promoted Content Why Genworth Australia embraced low-code software development

Sponsored Whitepapers

Extracting the value of data using Unified Observability
Extracting the value of data using Unified Observability
Planning before the breach: You can’t protect what you can’t see
Planning before the breach: You can’t protect what you can’t see
Beyond FTP: Securing and Managing File Transfers
Beyond FTP: Securing and Managing File Transfers
NextGen Security Operations: A Roadmap for the Future
NextGen Security Operations: A Roadmap for the Future
Video: Watch Juniper talk about its Aston Martin partnership
Video: Watch Juniper talk about its Aston Martin partnership

Events

  • Micro Focus Information Management & Governance (IM&G) Forum 2022
  • CRN Channel Meets: CyberSecurity Live Event
  • IoT Insights: Secure By Design for manufacturing
  • Cyber Security for Government Summit
By Juha Saarinen
May 1 2015
9:13AM
0 Comments

Related Articles

  • TPG Telecom puts fresh targets on IT simplification
  • NSW gov invests $146m in statewide paging network
  • SEC opens probe against Ericsson
  • Albanese elevates cyber security with new standalone minister
Share on Twitter Share on Facebook Share on LinkedIn Share on Whatsapp Email A Friend

Most Read Articles

Qantas calls time on IBM, Fujitsu in tech modernisation

Qantas calls time on IBM, Fujitsu in tech modernisation

Service NSW hits digital services goal two years early

Service NSW hits digital services goal two years early

SA Police ignores Adelaide council plea for facial recognition ban on CCTV

SA Police ignores Adelaide council plea for facial recognition ban on CCTV

NBN Co says TPG tie-up could help Telstra sidestep spectrum limits

NBN Co says TPG tie-up could help Telstra sidestep spectrum limits

Digital Nation

Crypto experts optimistic about future of Bitcoin: Block
Crypto experts optimistic about future of Bitcoin: Block
COVER STORY: Operationalising net zero through the power of IoT
COVER STORY: Operationalising net zero through the power of IoT
IBM global chief data officer on the rise of the number crunchers
IBM global chief data officer on the rise of the number crunchers
The security threat of quantum computing
The security threat of quantum computing
Integrity, ethics and board decisions in the digital age
Integrity, ethics and board decisions in the digital age
All rights reserved. This material may not be published, broadcast, rewritten or redistributed in any form without prior authorisation.
Your use of this website constitutes acceptance of nextmedia's Privacy Policy and Terms & Conditions.