BajaNomad
Not logged in [Login - Register]

Go To Bottom
Printable Version  
Author: Subject: Baja Bound Security Breach
Sweetwater
Senior Nomad
***




Posts: 915
Registered: 11-26-2010
Member Is Offline

Mood: chilly today hot tomale

[*] posted on 2-25-2016 at 09:21 AM
Baja Bound Security Breach


I received a letter this past week regarding a serious data breach at BajaBound.
All personal information was disclosed, including name and drivers license numbers.
Apology extended with an offer to cover ID theft through Kroll. I have no idea who this is or how effective they might be.

I have new Spam in the email account that was breached but no new accounts opened according to Experian.

I don't find the apology to be much use if that data leads to ID theft, does anyone know Kroll?




Everbody\'s preachin\' at me that we all wanna git to heaven, trouble is, nobody wants to die to git there.-BB King
Reality is what does not go away when you stop believing in it. -Philip K Dick
Nothing is worse than active ignorance. Johann Wolfgang von Goethe(1749-1832, German writer, artist and politician)
When choosing between two evils, I always like to try the one I\'ve never tried before. - Mae West
Experience is what keeps a man who makes the same mistake twice from admitting it the third time around.
View user's profile
BajaGeoff
Super Nomad
****




Posts: 1727
Registered: 1-11-2006
Location: San Diego and Campo Lopez
Member Is Offline

Mood: Heading To Baja!!!

[*] posted on 2-25-2016 at 12:58 PM


Hello Sweetwater,

A little clarification here...

The Baja Bound website was not compromised in any way.

However, one of our agents received an email from a client that contained a malicious attachment that was opened. Upon investigation, the attachment looked as though it was intended to collect email addresses.

Because this agent often receives personal client information by email (such as drivers license info) we took the steps necessary to contact our clients that had previously exchanged emails with the agent. So far there has been no indication that any of the information in the email account has been viewed or compromised, and the malicious email only involved a very small number of our clients.

The letter you received was simply a precautionary measure to inform you of the incident and provide complimentary identity protection services to you if you want them.

Let me know if you have any further questions...







View user's profile Visit user's homepage
DanO
Super Nomad
****


Avatar


Posts: 1923
Registered: 8-26-2003
Location: Not far from the Pacific
Member Is Offline


[*] posted on 2-25-2016 at 01:28 PM


Kroll is a big player in data security. Link: http://www.kroll.com/en-us/cyber-security/data-breach-respon...




\"Without deviation from the norm, progress is not possible.\" -- Frank Zappa
View user's profile
Sweetwater
Senior Nomad
***




Posts: 915
Registered: 11-26-2010
Member Is Offline

Mood: chilly today hot tomale

[*] posted on 2-25-2016 at 02:30 PM


Quote: Originally posted by BajaGeoff  
Hello Sweetwater,

A little clarification here...

The Baja Bound website was not compromised in any way.

However, one of our agents received an email from a client that contained a malicious attachment that was opened. Upon investigation, the attachment looked as though it was intended to collect email addresses.

Because this agent often receives personal client information by email (such as drivers license info) we took the steps necessary to contact our clients that had previously exchanged emails with the agent. So far there has been no indication that any of the information in the email account has been viewed or compromised, and the malicious email only involved a very small number of our clients.

The letter you received was simply a precautionary measure to inform you of the incident and provide complimentary identity protection services to you if you want them.

Let me know if you have any further questions...





I have read this letter once again, it states:

As part of our investigation, we also reviewed the documents stored in the email account and discovered an application that contained your personal information, including your name, address, date of birth, and drivers license number.

I haven't claimed a website breach and I am very concerned that personal information was stored in email documents. As I've reviewed my past correspondence, there were no emails sent by me with that information. I was schooled not to include that type of information since nobody knows which servers might end up with access to it. That is a very dangerous process/procedure and I feel it exposes users to this type of potential abuse.

DanO, thanks for the link to Kroll, I'll investigate them closer.

I'd encourage an open discussion about this incident and wonder how others are dealing with it or ignoring it, as the case may be.....




Everbody\'s preachin\' at me that we all wanna git to heaven, trouble is, nobody wants to die to git there.-BB King
Reality is what does not go away when you stop believing in it. -Philip K Dick
Nothing is worse than active ignorance. Johann Wolfgang von Goethe(1749-1832, German writer, artist and politician)
When choosing between two evils, I always like to try the one I\'ve never tried before. - Mae West
Experience is what keeps a man who makes the same mistake twice from admitting it the third time around.
View user's profile
Bajahowodd
Elite Nomad
******




Posts: 9274
Registered: 12-15-2008
Location: Disneyland Adjacent and anywhere in Baja
Member Is Offline


[*] posted on 2-25-2016 at 05:48 PM


Ahh. The internet. Perhaps there ought to be thread discussing whether the internet has improved or degraded our society.

Such as, would ISIS be able to recruit. Or would Donald Trump be a viable candidate for President?

Just positing.
View user's profile
DawnPatrol
Nomad
**




Posts: 357
Registered: 11-19-2013
Member Is Offline


[*] posted on 2-25-2016 at 05:57 PM


I am not in any way trying to tell Geoff how to run his website, especially one that collects personal data for insurance sales through its portal.

My only remark is that I am in the insurance industry and through my carrier we are NOT allowed to ask for any personal info through emails....

We always request the customer call us with CC info, DOB's, socials, etc..

Alan from San Diego
View user's profile
DanO
Super Nomad
****


Avatar


Posts: 1923
Registered: 8-26-2003
Location: Not far from the Pacific
Member Is Offline


[*] posted on 2-25-2016 at 05:57 PM


Quote: Originally posted by Bajahowodd  
Ahh. The internet. Perhaps there ought to be thread discussing whether the internet has improved or degraded our society.


That's easy. Both. The tougher question is how much of each.




\"Without deviation from the norm, progress is not possible.\" -- Frank Zappa
View user's profile
BajaNomad
Super Administrator
*********


Avatar


Posts: 5006
Registered: 8-1-2002
Location: San Diego, CA
Member Is Offline

Mood: INTP-A

[*] posted on 2-26-2016 at 11:07 AM


http://www.adweek.com/news/technology/digital-savvy-millenni...



When I was young, I admired clever people. Now that I am old, I admire kind people.
– Rabbi Abraham Joshua Heschel

We know we must go back if we live, and we don`t know why.
– John Steinbeck, Log from the Sea of Cortez

https://www.regionalinternet.com
Affordable Domain Name Registration/Management & cPanel Web Hosting - since 1999
View user's profile Visit user's homepage
DENNIS
Platinum Nomad
********




Posts: 29510
Registered: 9-2-2006
Location: Punta Banda
Member Is Offline


[*] posted on 2-26-2016 at 02:05 PM


Quote: Originally posted by Bajahowodd  


Or would Donald Trump be a viable candidate for President?

Just positing.

=============================


What's "viable" mean here?




"YOU CAN'T LITTER ALUMINUM"
View user's profile
Bajahowodd
Elite Nomad
******




Posts: 9274
Registered: 12-15-2008
Location: Disneyland Adjacent and anywhere in Baja
Member Is Offline


[*] posted on 2-27-2016 at 04:57 PM


Quote: Originally posted by DENNIS  
Quote: Originally posted by Bajahowodd  


Or would Donald Trump be a viable candidate for President?

Just positing.

=============================


What's "viable" mean here?


Ask the RNC that question. I personally think he's a narcissist, a liar, a fake, and more.

But, my friend, A long time ago, I posited that he may actually be a Manchurian Candidate, out to destroy any hope of the Repubs in the next election.

After all, he was a life long Dem.
View user's profile
micah202
Super Nomad
****




Posts: 1615
Registered: 1-19-2011
Location: vancouver,BC
Member Is Offline


[*] posted on 2-27-2016 at 07:54 PM


Quote: Originally posted by Bajahowodd  
........my friend, A long time ago, I posited that he may actually be a Manchurian Candidate, out to destroy any hope of the Repubs in the next election.

After all, he was a life long Dem.



....that 'bout makes the most sense of anything :wow:

.
View user's profile
BajaGeoff
Super Nomad
****




Posts: 1727
Registered: 1-11-2006
Location: San Diego and Campo Lopez
Member Is Offline

Mood: Heading To Baja!!!

[*] posted on 2-28-2016 at 03:30 PM


Hello Sweetwater,

I got some clarification on the sentence that read:

As part of our investigation, we also reviewed the documents stored in the email account and discovered an application that contained your personal information, including your name, address, date of birth, and drivers license number.

That portion of the letter was referring to the personal information transmitted by email in order to set up a policy, or an insurance policy being sent to a client by our agent. If you received an email from this agent with a policy attached, that is why you would have received the letter.

As such, all of our insurance policies are now issued with the drivers license number information encrypted, and we have since gone back and deleted every email that was sent by our office that had an insurance policy attached.

If you do have any further questions about this, you can call Kroll at the number provided in the letter, or give a call to the Baja Bound office and we would be happy to assist.











View user's profile Visit user's homepage
Sweetwater
Senior Nomad
***




Posts: 915
Registered: 11-26-2010
Member Is Offline

Mood: chilly today hot tomale

[*] posted on 2-28-2016 at 03:57 PM


Quote: Originally posted by BajaGeoff  
Hello Sweetwater,

I got some clarification on the sentence that read:

As part of our investigation, we also reviewed the documents stored in the email account and discovered an application that contained your personal information, including your name, address, date of birth, and drivers license number.

That portion of the letter was referring to the personal information transmitted by email in order to set up a policy, or an insurance policy being sent to a client by our agent. If you received an email from this agent with a policy attached, that is why you would have received the letter.

As such, all of our insurance policies are now issued with the drivers license number information encrypted, and we have since gone back and deleted every email that was sent by our office that had an insurance policy attached.

If you do have any further questions about this, you can call Kroll at the number provided in the letter, or give a call to the Baja Bound office and we would be happy to assist.









Yup, found the insurance policy documents as you describe and understand now. Thanks for the clarification. Seems that if they downloaded the pdf files, they have good info for identity theft. I'll follow up with Kroll but it seems that putting a fraud alert on my account should cover any ID theft attempts.




Everbody\'s preachin\' at me that we all wanna git to heaven, trouble is, nobody wants to die to git there.-BB King
Reality is what does not go away when you stop believing in it. -Philip K Dick
Nothing is worse than active ignorance. Johann Wolfgang von Goethe(1749-1832, German writer, artist and politician)
When choosing between two evils, I always like to try the one I\'ve never tried before. - Mae West
Experience is what keeps a man who makes the same mistake twice from admitting it the third time around.
View user's profile

  Go To Top

 






All Content Copyright 1997- Q87 International; All Rights Reserved.
Powered by XMB; XMB Forum Software © 2001-2014 The XMB Group






"If it were lush and rich, one could understand the pull, but it is fierce and hostile and sullen. The stone mountains pile up to the sky and there is little fresh water. But we know we must go back if we live, and we don't know why." - Steinbeck, Log from the Sea of Cortez

 

"People don't care how much you know, until they know how much you care." - Theodore Roosevelt

 

"You can easily judge the character of others by how they treat those who they think can do nothing for them or to them." - Malcolm Forbes

 

"Let others lead small lives, but not you. Let others argue over small things, but not you. Let others cry over small hurts, but not you. Let others leave their future in someone else's hands, but not you." - Jim Rohn

 

"The best way to get the right answer on the internet is not to ask a question; it's to post the wrong answer." - Cunningham's Law







Thank you to Baja Bound Mexico Insurance Services for your long-term support of the BajaNomad.com Forums site.







Emergency Baja Contacts Include:

Desert Hawks; El Rosario-based ambulance transport; Emergency #: (616) 103-0262