<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: &#8216;Crashgate&#8217; reveals unprotected donor database on Coleman&#8217;s site</title>
	<atom:link href="http://minnesotaindependent.com/24817/crashgate-reveals-unprotected-database-on-colemans-site/feed" rel="self" type="application/rss+xml" />
	<link>http://minnesotaindependent.com/24817/crashgate-reveals-unprotected-database-on-colemans-site</link>
	<description>News. Politics. Media.</description>
	<lastBuildDate>Wed, 30 Nov 2011 23:48:28 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.1</generator>
	<item>
		<title>By: MJB784533</title>
		<link>http://minnesotaindependent.com/24817/crashgate-reveals-unprotected-database-on-colemans-site/comment-page-1#comment-27644</link>
		<dc:creator>MJB784533</dc:creator>
		<pubDate>Wed, 25 Mar 2009 17:16:14 +0000</pubDate>
		<guid isPermaLink="false">http://minnesotaindependent.com/?p=24817#comment-27644</guid>
		<description>The question of whether the site was hacked or if any card data was published on the web is no longer the main point. This information discloses that the Coleman campaign retained the verification code numbers that are usually on the back of the card. The mere fact that they retained these code numbers is itself a violation of Minnesota law AND the agreement contracts with the credit card organizations. Forget about the possible hacking, forget about who might have done or not done it. The fact remains that the retention of these code numbers alone puts the Coleman campaign in violation of the law.

“No person or entity conducting business in Minnesota… shall retain the card security code data, the PIN verification code data, or the full contents of any track of magnetic stripe data,” says state statute 325E.64. “A person or entity is in violation of this section if its service provider retains such data subsequent to the authorization of the transaction.”</description>
		<content:encoded><![CDATA[<p>The question of whether the site was hacked or if any card data was published on the web is no longer the main point. This information discloses that the Coleman campaign retained the verification code numbers that are usually on the back of the card. The mere fact that they retained these code numbers is itself a violation of Minnesota law AND the agreement contracts with the credit card organizations. Forget about the possible hacking, forget about who might have done or not done it. The fact remains that the retention of these code numbers alone puts the Coleman campaign in violation of the law.</p>
<p>“No person or entity conducting business in Minnesota… shall retain the card security code data, the PIN verification code data, or the full contents of any track of magnetic stripe data,” says state statute 325E.64. “A person or entity is in violation of this section if its service provider retains such data subsequent to the authorization of the transaction.”</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Privacy Lives &#187; Blog Archive &#187; InfoWorld: Beyond the Norm: Coleman&#8217;s data leak disaster</title>
		<link>http://minnesotaindependent.com/24817/crashgate-reveals-unprotected-database-on-colemans-site/comment-page-1#comment-27014</link>
		<dc:creator>Privacy Lives &#187; Blog Archive &#187; InfoWorld: Beyond the Norm: Coleman&#8217;s data leak disaster</dc:creator>
		<pubDate>Tue, 17 Mar 2009 09:35:32 +0000</pubDate>
		<guid isPermaLink="false">http://minnesotaindependent.com/?p=24817#comment-27014</guid>
		<description>[...] that evening, the Independent reported Richards&#8217; findings that an unsecured donor database was stored on the Coleman site. A few hours after that, the page containing that database was [...]</description>
		<content:encoded><![CDATA[<p>[...] that evening, the Independent reported Richards&#8217; findings that an unsecured donor database was stored on the Coleman site. A few hours after that, the page containing that database was [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Aneesh</title>
		<link>http://minnesotaindependent.com/24817/crashgate-reveals-unprotected-database-on-colemans-site/comment-page-1#comment-26974</link>
		<dc:creator>Aneesh</dc:creator>
		<pubDate>Mon, 16 Mar 2009 18:22:39 +0000</pubDate>
		<guid isPermaLink="false">http://minnesotaindependent.com/?p=24817#comment-26974</guid>
		<description>Why are they storing unencrypted credit card numbers??  Their webmaster or DBA has failed Security 101.  Even if the database is leaked, the worst that should happen is that *encrypted* CC numbers are leaked, which don&#039;t give away anything unless you know the encryption key (which should not be in that database).</description>
		<content:encoded><![CDATA[<p>Why are they storing unencrypted credit card numbers??  Their webmaster or DBA has failed Security 101.  Even if the database is leaked, the worst that should happen is that *encrypted* CC numbers are leaked, which don&#8217;t give away anything unless you know the encryption key (which should not be in that database).</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Tynan on Tech &#187; Beyond the Norm: Coleman&#8217;s data leak disaster</title>
		<link>http://minnesotaindependent.com/24817/crashgate-reveals-unprotected-database-on-colemans-site/comment-page-1#comment-26760</link>
		<dc:creator>Tynan on Tech &#187; Beyond the Norm: Coleman&#8217;s data leak disaster</dc:creator>
		<pubDate>Thu, 12 Mar 2009 20:57:19 +0000</pubDate>
		<guid isPermaLink="false">http://minnesotaindependent.com/?p=24817#comment-26760</guid>
		<description>[...] that evening, the Independent reported Richards&#8217; findings that an unsecured donor database was stored on the Coleman site. A few hours after that, the page containing that database was [...]</description>
		<content:encoded><![CDATA[<p>[...] that evening, the Independent reported Richards&#8217; findings that an unsecured donor database was stored on the Coleman site. A few hours after that, the page containing that database was [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: News Day: Coleman cyber-follies / Middle class pays more /Snowing the recount / Somali youth / Cops hate Sara Jane / more &#171; Mary Turck</title>
		<link>http://minnesotaindependent.com/24817/crashgate-reveals-unprotected-database-on-colemans-site/comment-page-1#comment-26711</link>
		<dc:creator>News Day: Coleman cyber-follies / Middle class pays more /Snowing the recount / Somali youth / Cops hate Sara Jane / more &#171; Mary Turck</dc:creator>
		<pubDate>Thu, 12 Mar 2009 14:42:28 +0000</pubDate>
		<guid isPermaLink="false">http://minnesotaindependent.com/?p=24817#comment-26711</guid>
		<description>[...] campaign, which violated basic on-line security procedures. The unprotected Coleman database was discovered in January, and the campaign was notified by the Minnesota Independent, which has done outstanding reporting [...]</description>
		<content:encoded><![CDATA[<p>[...] campaign, which violated basic on-line security procedures. The unprotected Coleman database was discovered in January, and the campaign was notified by the Minnesota Independent, which has done outstanding reporting [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Whoops</title>
		<link>http://minnesotaindependent.com/24817/crashgate-reveals-unprotected-database-on-colemans-site/comment-page-1#comment-26691</link>
		<dc:creator>Whoops</dc:creator>
		<pubDate>Thu, 12 Mar 2009 07:56:01 +0000</pubDate>
		<guid isPermaLink="false">http://minnesotaindependent.com/?p=24817#comment-26691</guid>
		<description>Smooth move, VISI.</description>
		<content:encoded><![CDATA[<p>Smooth move, VISI.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Sen Coleman: Leaking credit card data of 50,000+ contributers!! &#171; The Fruit Fly</title>
		<link>http://minnesotaindependent.com/24817/crashgate-reveals-unprotected-database-on-colemans-site/comment-page-1#comment-26628</link>
		<dc:creator>Sen Coleman: Leaking credit card data of 50,000+ contributers!! &#171; The Fruit Fly</dc:creator>
		<pubDate>Wed, 11 Mar 2009 21:05:57 +0000</pubDate>
		<guid isPermaLink="false">http://minnesotaindependent.com/?p=24817#comment-26628</guid>
		<description>[...] indicate that people were at accessing the directory that contained this database. How do I know? There’s screenshots that [...]</description>
		<content:encoded><![CDATA[<p>[...] indicate that people were at accessing the directory that contained this database. How do I know? There’s screenshots that [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: We&#8217;ve got more drama in Minnesota than all y&#8217;all combined &#124; Bekiyrah</title>
		<link>http://minnesotaindependent.com/24817/crashgate-reveals-unprotected-database-on-colemans-site/comment-page-1#comment-26608</link>
		<dc:creator>We&#8217;ve got more drama in Minnesota than all y&#8217;all combined &#124; Bekiyrah</dc:creator>
		<pubDate>Wed, 11 Mar 2009 16:14:25 +0000</pubDate>
		<guid isPermaLink="false">http://minnesotaindependent.com/?p=24817#comment-26608</guid>
		<description>[...] brought down his campaign website? Anyway, his dumb, unimpressive fake crash stunt left a database full of info on supporters/donors unprotected and free for anyone to download, including information such as unencrypted credit card [...]</description>
		<content:encoded><![CDATA[<p>[...] brought down his campaign website? Anyway, his dumb, unimpressive fake crash stunt left a database full of info on supporters/donors unprotected and free for anyone to download, including information such as unencrypted credit card [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Coleman Campaign Lying About Database, Broke Minnesota Law, Likely Will Get&#160;Fined &#124; MNpublius.com</title>
		<link>http://minnesotaindependent.com/24817/crashgate-reveals-unprotected-database-on-colemans-site/comment-page-1#comment-26606</link>
		<dc:creator>Coleman Campaign Lying About Database, Broke Minnesota Law, Likely Will Get&#160;Fined &#124; MNpublius.com</dc:creator>
		<pubDate>Wed, 11 Mar 2009 16:00:55 +0000</pubDate>
		<guid isPermaLink="false">http://minnesotaindependent.com/?p=24817#comment-26606</guid>
		<description>[...] indicate that people were at accessing the directory that contained this database. How do I know? There&#8217;s screenshots that [...]</description>
		<content:encoded><![CDATA[<p>[...] indicate that people were at accessing the directory that contained this database. How do I know? There&#8217;s screenshots that [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: thegreatsatan.com &#187; Pure Conjecture: Franken leaking Coleman Donor Information?</title>
		<link>http://minnesotaindependent.com/24817/crashgate-reveals-unprotected-database-on-colemans-site/comment-page-1#comment-26604</link>
		<dc:creator>thegreatsatan.com &#187; Pure Conjecture: Franken leaking Coleman Donor Information?</dc:creator>
		<pubDate>Wed, 11 Mar 2009 15:39:48 +0000</pubDate>
		<guid isPermaLink="false">http://minnesotaindependent.com/?p=24817#comment-26604</guid>
		<description>[...] with a little more digging, it looks like Coleman&#8217;s IT group was just sloppy  Posted by Gabriel &#124; Filed in Corruption, Leftist [...]</description>
		<content:encoded><![CDATA[<p>[...] with a little more digging, it looks like Coleman&#8217;s IT group was just sloppy  Posted by Gabriel | Filed in Corruption, Leftist [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>

