School employee, student information exposed
Advertisement
Text size: small | medium | large
By Amanda Stewart
Published: August 26, 2008
Personal information belonging to more than 2,600 Prince William County students, employees and volunteers was exposed through an Internet file-sharing program for about five weeks this summer, school division officials said Tuesday.
A school employee was working at home on a personal computer this summer and inadvertently exposed the information while using a file-sharing program, officials said.
The data was posted for about five weeks before “a good Samaritan” security specialist noticed it on Aug. 18 and alerted school officials, school division spokesman Ken Blackstone said.
“We then immediately took steps to secure the date and investigate what exactly was exposed and to notify those affected,” Blackstone said.
According to a school division investigation, no one accessed the data while it was exposed.
“We take this situation very seriously and we are very sorry this happened,” Deputy Superintendent Rae E. Darlington said in a statement. “Fortunately, the School Division’s investigation has produced no evidence to date that this information was actually accessed
by anyone during the period in question, other than the security specialist who first alerted us to its presence.”
The exposed student information included names, address and student identification numbers of 1,625 students who have applied to or attended Porter Traditional School since 2004 or attended Montclair Elementary School before the 2004-2005 school year.
Also exposed were names and social security numbers of 65 school division employees and other confidential information about 257 other
school employees.
The names, address and email address of 736 volunteers at Porter Traditional School were also exposed.
School officials sent letters to all of the people affected and set up a hotline to answer their questions.
Anyone affected should have recieved a letter by today, Blackstone said.
School employees, volunteers and parents who received those letters can call 703-791-8157 between 9 a.m. and 3:30 p.m. Monday through Friday or email if they have questions.
“The good thing is we know exactly who these folks are and we were able to send them a letter directly. So, people don’t have to ask ‘Was I affected or not?’,” Blackstone said.
Anyone who was not affected by the exposed data but would like to talk to school officials about the incident is asked not to call the hotline, but to email .
Page 1 of 1
Post a Comment
The commenting period has ended or commenting has been deactivated for this article.

Reader Reactions
Posted by ( cparent ) on August 26, 2008 at 10:37 pm
According to a school division investigation, no one accessed the data
while it was exposed.
“investigation has produced no
evidence to date that this information was actually accessed
by anyone during the period in question, other than the security
specialist who first alerted us to its presence.”
they have no evidence if it was exposed? what evidence could they
produce! anyone who does sec or filesharing knows that they cannot say
if the info was compromised or copied by anyone because its impossible since there is no trace. if the guy who found it got it then does no one think that
hackers searching for ssn arent doin the same searches. again, someone
should ask them if it was on a file sharing program for more than 5
weeks and there is no way to determine how many times it was downloaded
or who may have it now why are they making it seem that the very
sensitive data was not exposed. who knows who may have it now and when
it will resurface. this is serious and should not be shrugged off as it appears is being done.
Report Inappropriate Comment
Posted by ( blue_doggette ) on August 26, 2008 at 2:34 pm
Too bad MJM didn’t consider printing each county employ’s name and their salary equally personal. This situation just upped the ante a little by linking ss#s, addresses, and emails.
The stage was set for the leaking of personal information.
Report Inappropriate Comment
Posted by ( Anny ) on August 26, 2008 at 1:55 pm
I hope it wasn’t Limewire.
Report Inappropriate Comment