More reasons to shop at Morrisons...

Soldato
Joined
10 Jul 2010
Posts
7,298
...or work at Morrisons, in this case.

http://www.theregister.co.uk/2014/03/14/morrisons_payroll_data_robbery_100k_details_leaked/
Morrisons' checkout and shelf-stacking staff across the UK will be anxiously worried about their bank accounts this morning, after the supermaket admitted that thieves had spaffed employee payroll details online.

The grocer said on its Facebook page that it had notified all its workers that their personal information had been stolen and then uploaded onto a website.
For a company of this size, I am very surprised this has even happened in the first place. :eek:
 
Spaffed ?? really spoofed ?? Spaffed according to urban dictionary means something very different.

Whos the freak here? op or the Poke ?
 
Just another reason Morrison suck.
They promise good baked goods. Yet their pies and everything else from the baker part is inedible.
 
Has to be someone in the inside, no company would be stupid enough to leave payroll data on a server outside of a DMZ, right?....RIght?
 
Can't really say much about it but the format the c details were uploaded as are not what they are stored as back in payroll. Some one was busy putting it altogether correctly..
 
Hardly surprising, they don't even have online shopping, they are so far behind the times they probably have employees bank details in a filing cabinet.

Just another reason Morrison suck.
They promise good baked goods. Yet their pies and everything else from the baker part is inedible.

Have you tried their tiger bread? It tastes of nothing, literally.
 
Can't really say much about it but the format the c details were uploaded as are not what they are stored as back in payroll. Some one was busy putting it altogether correctly..

Typically the only people that can actually access the data and do that is either in the finance team or the IT department. If it was someone outside of the that then security was lacking and it was the IT Departments fault. Either way both departments are going to be raked over the coals in the next few weeks. And everything is they have done is going to be looked at under a microscope, to say "it sucks to be them right now" is going to be a massive understatement.
 
Just another reason Morrison suck.
They promise good baked goods. Yet their pies and everything else from the baker part is inedible.

Couldn't agree more.
Its packaged off as tasty food, when actually is vomit inducing overpriced pig swill.
 
Typically the only people that can actually access the data and do that is either in the finance team or the IT department. If it was someone outside of the that then security was lacking and it was the IT Departments fault. Either way both departments are going to be raked over the coals in the next few weeks. And everything is they have done is going to be looked at under a microscope, to say "it sucks to be them right now" is going to be a massive understatement.

Or it was the:

Fault of senior management for being made aware of risks and failing to make decisions

Fault of senior management for not making funding available for vulnerability testing / Penetration testing.

Fault of senior management for accepting risks which were unmanageable.

It's not always down to ICT when it's a data leak.
 
Or it was the:

Fault of senior management for being made aware of risks and failing to make decisions

Fault of senior management for not making funding available for vulnerability testing / Penetration testing.

Fault of senior management for accepting risks which were unmanageable.

It's not always down to ICT when it's a data leak.

If the ICT waits for "senior management" to say when they take a **** then it's an awful IT Department. They're are very basic security measures you can take to limit who has access to the data. The server should be completely internal and if can be accessed from the outside world then frankly it boggles the mind. The head of IT shouldn't need the go ahead of senior management to move it somewhere safe. They should have built in authority to do it, of course keeping in senior management and the relative parties involved at all steps. If it doesn't then it's processes fails at every level imaginable
 
Has to be someone in the inside, no company would be stupid enough to leave payroll data on a server outside of a DMZ, right?....RIght?

Outside of a DMZ? Implying you'd want this information held inside a DMZ?

Was that just badly written, or is that actually what you meant?

It's not always down to ICT when it's a data leak.

Well, it is. Wholly.

ICT as a term is faget though.
 
Hardly surprising, they don't even have online shopping, they are so far behind the times they probably have employees bank details in a filing cabinet.



Have you tried their tiger bread? It tastes of nothing, literally.

Only in a select few places. Every other supermarket has nationwide coverage.

Its nationwide now i believe. Thats what all the uproar was about cos they are sharing ocados warehouses.
 
Back
Top Bottom