<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Musings on Database Security &#187; privacy</title>
	<atom:link href="http://www.slaviks-blog.com/category/privacy/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.slaviks-blog.com</link>
	<description>Slavik&#039;s Blog</description>
	<lastBuildDate>Wed, 07 Dec 2011 17:07:31 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Tapulous MySQL Error and SQL Injection vulnerability</title>
		<link>http://www.slaviks-blog.com/2010/01/06/tapulous-mysql-error-and-sql-injection-vulnerability/</link>
		<comments>http://www.slaviks-blog.com/2010/01/06/tapulous-mysql-error-and-sql-injection-vulnerability/#comments</comments>
		<pubDate>Thu, 07 Jan 2010 06:36:08 +0000</pubDate>
		<dc:creator>Slavik</dc:creator>
				<category><![CDATA[MySQL]]></category>
		<category><![CDATA[privacy]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[SQL injection]]></category>

		<guid isPermaLink="false">http://www.slaviks-blog.com/?p=205</guid>
		<description><![CDATA[I&#8217;ve talked about displaying errors from the database on the user screen a while ago. In my opinion, this is definitely a big no-no and a security problem just waiting to happen. As some of you know, I have an iPhone (and I like it a lot, but that&#8217;s another story). I&#8217;ve installed a nice [...]]]></description>
		<wfw:commentRss>http://www.slaviks-blog.com/2010/01/06/tapulous-mysql-error-and-sql-injection-vulnerability/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Getting closer to a national breach notification law</title>
		<link>http://www.slaviks-blog.com/2010/01/04/getting-closer-to-a-national-breach-notification-law/</link>
		<comments>http://www.slaviks-blog.com/2010/01/04/getting-closer-to-a-national-breach-notification-law/#comments</comments>
		<pubDate>Mon, 04 Jan 2010 22:14:56 +0000</pubDate>
		<dc:creator>Slavik</dc:creator>
				<category><![CDATA[compliance]]></category>
		<category><![CDATA[privacy]]></category>
		<category><![CDATA[sb1386]]></category>

		<guid isPermaLink="false">http://www.slaviks-blog.com/?p=210</guid>
		<description><![CDATA[In the midst of all the excitement around healthcare reform, the fact that both the house and senate made some progress on their (separate) bills for protecting personal information hasn’t received the attention it deserves.  Sure, I think we’re up to 46 states that now have their own breach notification laws, but simplifying this and [...]]]></description>
		<wfw:commentRss>http://www.slaviks-blog.com/2010/01/04/getting-closer-to-a-national-breach-notification-law/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>You Know Breaches Hit the Big Time When&#8230;</title>
		<link>http://www.slaviks-blog.com/2007/09/09/you-know-breaches-hit-the-big-time-when/</link>
		<comments>http://www.slaviks-blog.com/2007/09/09/you-know-breaches-hit-the-big-time-when/#comments</comments>
		<pubDate>Sun, 09 Sep 2007 11:41:02 +0000</pubDate>
		<dc:creator>Slavik</dc:creator>
				<category><![CDATA[breach]]></category>
		<category><![CDATA[compliance]]></category>
		<category><![CDATA[insider threat]]></category>
		<category><![CDATA[privacy]]></category>
		<category><![CDATA[sb1386]]></category>
		<category><![CDATA[breach-notification]]></category>

		<guid isPermaLink="false">http://www.slaviks-blog.com/2007/09/09/you-know-breaches-hit-the-big-time-when/</guid>
		<description><![CDATA[You know that data breaches have become part of big business reality when the Harvard Business Review publishes a hypothetical case study entitled &#8220;Boss, I Think Someone Stole Our Customer Data&#8221;. The case study does a very good job of illustrating the initial confusion and many gray areas that enterprises face when confronted with a [...]]]></description>
		<wfw:commentRss>http://www.slaviks-blog.com/2007/09/09/you-know-breaches-hit-the-big-time-when/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Chronicle of a Breach Foretold</title>
		<link>http://www.slaviks-blog.com/2007/06/08/chronicle-of-a-breach-foretold/</link>
		<comments>http://www.slaviks-blog.com/2007/06/08/chronicle-of-a-breach-foretold/#comments</comments>
		<pubDate>Fri, 08 Jun 2007 20:14:10 +0000</pubDate>
		<dc:creator>Slavik</dc:creator>
				<category><![CDATA[breach]]></category>
		<category><![CDATA[privacy]]></category>
		<category><![CDATA[universities]]></category>
		<category><![CDATA[educational_institutions]]></category>
		<category><![CDATA[personally_identifiable_information]]></category>
		<category><![CDATA[pii]]></category>
		<category><![CDATA[social_security_numbers]]></category>

		<guid isPermaLink="false">http://www.slaviks-blog.com/2007/06/08/chronicle-of-a-breach-foretold/</guid>
		<description><![CDATA[About a month ago I posted about breaches at educational institutions, and suggested that rectifying the problem could start by simply not hoarding PII (personally identifiable information) unnecessarily. Today I read about this breach at Northwestern University (not the first data breach for them) where social security numbers of 4,000 individuals may have been compromised, [...]]]></description>
		<wfw:commentRss>http://www.slaviks-blog.com/2007/06/08/chronicle-of-a-breach-foretold/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
		<item>
		<title>Breach at University of Western Florida: Are academic institutions sitting ducks?</title>
		<link>http://www.slaviks-blog.com/2007/05/07/breach-at-university-of-western-florida-are-academic-institutions-sitting-ducks/</link>
		<comments>http://www.slaviks-blog.com/2007/05/07/breach-at-university-of-western-florida-are-academic-institutions-sitting-ducks/#comments</comments>
		<pubDate>Mon, 07 May 2007 21:46:26 +0000</pubDate>
		<dc:creator>Slavik</dc:creator>
				<category><![CDATA[breach]]></category>
		<category><![CDATA[insider threat]]></category>
		<category><![CDATA[privacy]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[universities]]></category>

		<guid isPermaLink="false">http://www.slaviks-blog.com/2007/05/07/breach-at-university-of-western-florida-are-academic-institutions-sitting-ducks/</guid>
		<description><![CDATA[While it&#8217;s not headline news yet (and may never achieve such lofty status), a recent database breach at UWF was exposed and later reported in local news. What exactly happened and how many records were compromised is, as usual in such cases, unknown. This made me think: We hear of breaches at universities all too [...]]]></description>
		<wfw:commentRss>http://www.slaviks-blog.com/2007/05/07/breach-at-university-of-western-florida-are-academic-institutions-sitting-ducks/feed/</wfw:commentRss>
		<slash:comments>4</slash:comments>
		</item>
	</channel>
</rss>

<!-- Dynamic Page Served (once) in 0.703 seconds -->

