An Unknown Individual Accesses MU Database Containing Staff Information
Quick Facts
- Date: 5/8/2007
- Institution: University of Missouri
- Type of Incident: Penetration
- Number affected: 22,396 (See Update)
- Source: ESI, Pogo Was Right
- Abstract Source: Columbia Missourian
- Update Source: Columbia Tribune
Abstract
The University of Missouri is urging current and former staff members to closely monitor their credit reports after a recent security breach. An unknown individual was able to gain access to an MU database containing personal information on current and former MU employees. Information contained in the database includes names and Social Security numbers. According to MU officials this unknown intruder did intentionally access some of the records in the database. Since the motivation of this individual is not yet know, MU is urging all staff take steps to protect themselves. According to MU Vice President for Information Technology Gary K. Allen, MU takes this incident very serious and has notified local law enforcement.
Update: As more reports come to light, this incident involved the unknown individual(s) gaining access to a report complied from 2004 staff and student information and contained information on 22,396 individuals. This intruder was able to gain access to this report through a Web page used to make inquires into open problem calls from the UM help desk. The report has since been removed from the UM systems. UM has setup a a hotline - 573-884-7222 and 866-241-5619 - as well as a Web site - http://doit.missouri.edu/computersecurity - to help answer questions about this incident.



