DataBreaches.Net

Menu
  • About
  • Breach Notification Laws
  • Privacy Policy
  • Transparency Report
Menu

FBI chief: Corporate hack victims can trust we won’t share info

Posted on March 8, 2018 by Dissent

Nate Raymond reports:

The FBI views companies hit by cyber attacks as victims and will not rush to share their information with other agencies investigating whether they failed to protect customer data, its chief said Wednesday.

Christopher Wray, director of the Federal Bureau of Investigation, encouraged companies to promptly report when they are hacked to help the FBI investigate and prevent future data breaches.

He contrasted the FBI’s approach to that of other regulators and state authorities. Without naming other agencies, Wray referred to “less-enlightened enforcement agencies,” some of which he said take a more adversarial approach.

Read more on Reuters.

No related posts.

Category: Commentaries and Analyses

Post navigation

← Spy v. Spy: An NSA Leak Reveals the Agency’s List of Enemy Hackers
Waltham Forest Council has breached data protection laws →

10 thoughts on “FBI chief: Corporate hack victims can trust we won’t share info”

  1. Anonymous says:
    March 8, 2018 at 9:49 am

    Cough Cough.. HIPAA… Cough Cough… Office of Civil Rights and Health and Human Services… Cough Cough.

    1. Dissent says:
      March 8, 2018 at 10:21 am

      Take something for that cough and wait a second. 🙂

      Is it really the FBI’s role to snitch on companies to HHS? Would we rather have the FBI in the dark or have them informed even if HHS isn’t told by them? It’s the breached entity’s responsibility to disclose to HHS. I don’t see any need to make it the FBI’s responsibility.

  2. Anonymous says:
    March 8, 2018 at 10:30 am

    Not everything is a cyber attack. And yes, I think law enforcement should make sure that patients are notified. If you were a patient, and your info was found to be on google, and the FBI knew, and the covered entity never told the patients, wouldn’t you think that was a problem? =)

    1. Dissent says:
      March 8, 2018 at 10:41 am

      I understand your point and of course, I’d want to be notified. But: if entities don’t reach out for help or share info because they are afraid of being ratted out, then aren’t patient data going to continue to be at risk or even more risk?

      Is this actually once of those “balancing” scenarios? 🙂

  3. Anonymous says:
    March 8, 2018 at 10:31 am

    Like this for example:
    https://www.databreaches.net/ny-treasure-trove-of-grand-street-medical-associates-patient-data-exposed-and-indexed/

    =)

    1. Dissent says:
      March 8, 2018 at 10:43 am

      That’s not a great example. This was reported in the media and to HHS. There was no need for FBI to report anything to HHS at all, was there? The issue here, perhaps, is why didn’t HHS/OCR do anything about this one?

  4. Anonymous says:
    March 8, 2018 at 10:55 am

    “ratted out” or “snitching” reminds me of what I learned when I was younger. I was taught (when I was younger I had to go to a state run rehabilitation center) that, that line of thinking, dives into criminal behavior and thinking. The concept of a “ratting or snitching” on someone means that you know of a crime, but decided not to tell the authorities or to “do the right thing”, by society.

    =)

  5. Anonymous says:
    March 8, 2018 at 10:57 am

    I have a friend on facebook, that has another friend who said they were a patient of record and Grand Street and still wonders why patients were never notified, as they were\are a patient. But this is hearsay. So…. something went wrong.

  6. Anonymous says:
    March 8, 2018 at 11:17 am

    “That’s not a great example. This was reported in the media and to HHS. There was no need for FBI to report anything to HHS at all, was there? The issue here, perhaps, is why didn’t HHS/OCR do anything about this one?”

    But I don’t think patients were notified that information ended up in google, and the FBI has the evidence. The seized it during a raid. They have seized more dataleaks that were found in the public, yet patients seem rarely notified. I would say the FBI is protecting covered entities more then patients.

    1. Dissent says:
      March 8, 2018 at 4:02 pm

      I understand why you say that, but recall that I posted proof of the leak, so HHS could have pursued this one on their own initiative without needing the FBI’s assistance or info at all.

      So I’m just as confused as you as to why this was never disclosed to patients. And of course, we have no way of knowing how many criminals may have accessed the exposed data. Hopefully, none, but do we know if the entity even had logs or analyzed them? There’s too much that wasn’t made public about the response to this incident.

Comments are closed.

Now more than ever

"Stand with Ukraine:" above raised hands. The illustration is in blue and yellow, the colors of Ukraine's flag.

Search

Browse by Categories

Recent Posts

  • India’s Max Financial says hacker accessed customer data from its insurance unit
  • Brazil’s central bank service provider hacked, $140M stolen
  • Iranian and Pro-Regime Cyberattacks Against Americans (2011-Present)
  • Nigerian National Pleads Guilty to International Fraud Scheme that Defrauded Elderly U.S. Victims
  • Nova Scotia Power Data Breach Exposed Information of 280,000 Customers
  • No need to hack when it’s leaking: Brandt Kettwick Defense edition
  • SK Telecom to be fined for late data breach report, ordered to waive cancellation fees, criminal investigation into them launched
  • Louis Vuitton Korea suffers cyberattack as customer data leaked
  • Hunters International to provide free decryptors for all victims as they shut down (2)
  • SEC and SolarWinds Seek Settlement in Securities Fraud Case

No, You Can’t Buy a Post or an Interview

This site does not accept sponsored posts or link-back arrangements. Inquiries about either are ignored.

And despite what some trolls may try to claim: DataBreaches has never accepted even one dime to interview or report on anyone. Nor will DataBreaches ever pay anyone for data or to interview them.

Want to Get Our RSS Feed?

Grab it here:

https://databreaches.net/feed/

RSS Recent Posts on PogoWasRight.org

  • German court awards Facebook user €5,000 for data protection violations
  • Record-Breaking $1.55M CCPA Settlement Against Health Information Website Publisher
  • Ninth Circuit Reviews Website Tracking Class Actions and the Reach of California’s Privacy Law
  • US healthcare offshoring: Navigating patient data privacy laws and regulations
  • Data breach reveals Catwatchful ‘stalkerware’ is spying on thousands of phones
  • Google Trackers: What You Can Actually Escape And What You Can’t
  • Oregon Amends Its Comprehensive Privacy Statute

Have a News Tip?

Email: Tips[at]DataBreaches.net

Signal: +1 516-776-7756

Contact Me

Email: info[at]databreaches.net

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

DMCA Concern: dmca[at]databreaches.net
© 2009 – 2025 DataBreaches.net and DataBreaches LLC. All rights reserved.