2007 Worst Year Ever For Breaches
That's interesting. Or is it?
The article cites the two main organizations that monitor data breaches, the Identity Theft Resource Center and Attrition, who say a good part of the problem isn't technology, it's people. People at organizations mishandling sensitive customer data, like Social Security Numbers, on computer systems -- rather than hackers breaking in. That includes lost laptops.
No real news here. This is what I've been saying all along. IT security is only partly about technology. It's also about people.
Though not mentioned in the AP article, there's also an excellent parade of data shame at the Privacy Rights Clearinghouse.