Reply to topic  [ 14 posts ] 
MoD very careless with laptops 
Author Message
I haven't seen my friends in so long
User avatar

Joined: Thu Apr 23, 2009 8:29 pm
Posts: 5975
Reply with quote
Quote:
The Ministry of Defence has lost or had stolen 340 laptops worth more than £600,000 in the last two years, figures reveal today.

Between June 2008 and the end of May this year, 220 of the department's laptops were lost and 120 were stolen. They were worth an estimated £612,000.
Of these 157, less than half were encrypted, although 25 of the computers were later found.


:oops: :roll: :)

More here: Clicky It's on the Daily Mail site. You've been warned.

_________________
"I hadn't known there were so many idiots in the world until I started using the Internet." - Stanislaw Lem


Thu Jul 22, 2010 2:30 pm
Profile
Legend
User avatar

Joined: Fri Apr 24, 2009 2:02 am
Posts: 29240
Location: Guantanamo Bay (thanks bobbdobbs)
Reply with quote
Well consider how many laptops they probably have. In the overall scheme it is probably a very small percentage but that has never let the Daily Mail not run with a story.

_________________
Do concentrate, 007...

"You are gifted. Mine is bordering on seven seconds."

https://www.dropbox.com/referrals/NTg5MzczNTk

http://astore.amazon.co.uk/wwwx404couk-21


Thu Jul 22, 2010 2:39 pm
Profile
I haven't seen my friends in so long
User avatar

Joined: Thu Apr 23, 2009 6:36 pm
Posts: 5161
Location: /dev/tty0
Reply with quote
Some laptops don't need to be encrypted...Dad's got a laptop at home from the MoD which is encrypted, but doesn't need to be, it only does general home stuff and doesn't touch anything to do with the MoD...

Part of the problem is that whoever is in charge of setting the IT policies has got it all wrong. People don't want encryption because it makes file recovery harder, it's an extra step when logging in, whatever. It's far too easy for these people to order in their own laptops. These laptops won't work on the new MoD network, but you can use a special (has to be special to work on the network) USB stick and transfer files as and when you want them...

The security needs to be simplified because people will find their way around things they don't want to do.


Thu Jul 22, 2010 3:13 pm
Profile WWW
I haven't seen my friends in so long
User avatar

Joined: Thu Apr 23, 2009 9:40 pm
Posts: 5288
Location: ln -s /London ~
Reply with quote
forquare1 wrote:
but you can use a special (has to be special to work on the network) USB stick and transfer files as and when you want them...

But there are always exceptions. I could write to unencrypted USB sticks, for example, and had I been lazy I would have always done so, just to avoid the hassle of dealing with the encryption software.

_________________
timark_uk wrote:
Gay sex is better than no sex

timark_uk wrote:
Edward Armitage is Awesome. Yes, that's right. Awesome with a A.


Thu Jul 22, 2010 3:25 pm
Profile
I haven't seen my friends in so long
User avatar

Joined: Thu Apr 23, 2009 6:36 pm
Posts: 5161
Location: /dev/tty0
Reply with quote
EddArmitage wrote:
forquare1 wrote:
but you can use a special (has to be special to work on the network) USB stick and transfer files as and when you want them...

But there are always exceptions. I could write to unencrypted USB sticks, for example, and had I been lazy I would have always done so, just to avoid the hassle of dealing with the encryption software.


IIRC, if you were on DII/F you could only use certain USB sticks.
But yes, if you did work on a non-MoD laptop you could put it onto an unencrypted USB stick.


Thu Jul 22, 2010 3:33 pm
Profile WWW
I haven't seen my friends in so long
User avatar

Joined: Thu Apr 23, 2009 9:40 pm
Posts: 5288
Location: ln -s /London ~
Reply with quote
forquare1 wrote:
EddArmitage wrote:
forquare1 wrote:
but you can use a special (has to be special to work on the network) USB stick and transfer files as and when you want them...

But there are always exceptions. I could write to unencrypted USB sticks, for example, and had I been lazy I would have always done so, just to avoid the hassle of dealing with the encryption software.

IIRC, if you were on DII/F you could only use certain USB sticks.
But yes, if you did work on a non-MoD laptop you could put it onto an unencrypted USB stick.

I wasn't working for the MoD, but on MoD contracts and so we had to comply with the relevant standards. I had unecrypted write permissions as a means of getting software onto flight hardware for testing purposes, but I could write anything to it had I wanted, including various documents that we wouldn't want to be out for public viewing.

_________________
timark_uk wrote:
Gay sex is better than no sex

timark_uk wrote:
Edward Armitage is Awesome. Yes, that's right. Awesome with a A.


Thu Jul 22, 2010 3:40 pm
Profile
Legend

Joined: Sun Apr 26, 2009 12:30 pm
Posts: 45931
Location: Belfast
Reply with quote
Amnesia10 wrote:
Well consider how many laptops they probably have. In the overall scheme it is probably a very small percentage but that has never let the Daily Mail not run with a story.


Even so, 340 laptops in the last two years? It's at least time to put out a politely worded reminder not to be a complete idiot (mistakes do happen)...

_________________
Plain English advice on everything money, purchase and service related:

http://www.moneysavingexpert.com/


Sun Jul 25, 2010 11:25 am
Profile
Legend
User avatar

Joined: Fri Apr 24, 2009 2:02 am
Posts: 29240
Location: Guantanamo Bay (thanks bobbdobbs)
Reply with quote
pcernie wrote:
Amnesia10 wrote:
Well consider how many laptops they probably have. In the overall scheme it is probably a very small percentage but that has never let the Daily Mail not run with a story.


Even so, 340 laptops in the last two years? It's at least time to put out a politely worded reminder not to be a complete idiot (mistakes do happen)...

Yes but in comparison to the numbers of laptops bought every year it will be insignificant. Maybe billing the employee £200 for each lost laptop might be an incentive to either not take one off site or be more careful. In the end it is still tax payers money.

_________________
Do concentrate, 007...

"You are gifted. Mine is bordering on seven seconds."

https://www.dropbox.com/referrals/NTg5MzczNTk

http://astore.amazon.co.uk/wwwx404couk-21


Sun Jul 25, 2010 11:53 am
Profile
Site Admin
User avatar

Joined: Fri Apr 24, 2009 6:12 am
Posts: 7011
Location: Wiltshire
Reply with quote
forquare1 wrote:
IIRC, if you were on DII/F you could only use certain USB sticks.
But yes, if you did work on a non-MoD laptop you could put it onto an unencrypted USB stick.


Yes anything ( removable media ) on GSI or above has to be .

_________________
<input type="pickmeup" name="coffee" value="espresso" />


Sun Jul 25, 2010 4:03 pm
Profile WWW
Site Admin
User avatar

Joined: Fri Apr 24, 2009 6:12 am
Posts: 7011
Location: Wiltshire
Reply with quote
pcernie wrote:
Amnesia10 wrote:
Well consider how many laptops they probably have. In the overall scheme it is probably a very small percentage but that has never let the Daily Mail not run with a story.


Even so, 340 laptops in the last two years? It's at least time to put out a politely worded reminder not to be a complete idiot (mistakes do happen)...

I wouldn't mind betting that most of those were sent for repair and not returned. :roll:

_________________
<input type="pickmeup" name="coffee" value="espresso" />


Sun Jul 25, 2010 4:04 pm
Profile WWW
Legend
User avatar

Joined: Fri Apr 24, 2009 2:02 am
Posts: 29240
Location: Guantanamo Bay (thanks bobbdobbs)
Reply with quote
AlunD wrote:
pcernie wrote:
Amnesia10 wrote:
Well consider how many laptops they probably have. In the overall scheme it is probably a very small percentage but that has never let the Daily Mail not run with a story.


Even so, 340 laptops in the last two years? It's at least time to put out a politely worded reminder not to be a complete idiot (mistakes do happen)...

I wouldn't mind betting that most of those were sent for repair and not returned. :roll:

Do you think I could set myself up as a repair contractor on that basis? ;)

_________________
Do concentrate, 007...

"You are gifted. Mine is bordering on seven seconds."

https://www.dropbox.com/referrals/NTg5MzczNTk

http://astore.amazon.co.uk/wwwx404couk-21


Sun Jul 25, 2010 5:57 pm
Profile
Spends far too much time on here
User avatar

Joined: Thu Apr 23, 2009 11:36 pm
Posts: 3527
Location: Portsmouth
Reply with quote
340 machines, at a cost £600000? I make that just over £1700 each. :o :shock:

Must have been bloody nice machines. :?

_________________
Image


Sun Jul 25, 2010 6:33 pm
Profile
Spends far too much time on here
User avatar

Joined: Thu Apr 23, 2009 9:40 pm
Posts: 4876
Location: Newcastle
Reply with quote
Nick wrote:
340 machines, at a cost £600000? I make that just over £1700 each. :o :shock:

Must have been bloody nice machines. :?


Yep.

Mind what is wrong with a secure VPN into a machine within the MOD to access for work? Sure it's slower but if you have to log in (and can't store files locally) then there is an argument for very sensitive files

_________________
Twitter
Charlie Brooker:
Macs are glorified Fisher-Price activity centres for adults; computers for scaredy cats too nervous to learn how proper computers work; computers for people who earnestly believe in feng shui.


Sun Jul 25, 2010 7:51 pm
Profile
I haven't seen my friends in so long
User avatar

Joined: Thu Apr 23, 2009 6:36 pm
Posts: 5161
Location: /dev/tty0
Reply with quote
finlay666 wrote:
Nick wrote:
340 machines, at a cost £600000? I make that just over £1700 each. :o :shock:

Must have been bloody nice machines. :?


Yep.

Mind what is wrong with a secure VPN into a machine within the MOD to access for work? Sure it's slower but if you have to log in (and can't store files locally) then there is an argument for very sensitive files


That's an option and does happen, but what about using the laptop on the train? Sure, you could use a mobile connection, but that's even slower and costs even more public money. Then once you get off the train you enter a business which doesn't offer guests any sort of network access, more mobile connections is more time wasted and more public money gone down the drain.
Then you have to train those who think that a slice of cake printed around a Word document is the best thing in the world how to use the VPN and possisbly teach them to use an device that will generate their password based on the time and then maybe go as far as saying that their account will only work with a given machine (MAC address) and suddenly it's easier and cheaper to do what they are doing now. 340 machines out of how many? Sounds like not a bad figure to me. Sure it could be less, but it could be much, much higher.


Sun Jul 25, 2010 8:53 pm
Profile WWW
Display posts from previous:  Sort by  
Reply to topic   [ 14 posts ] 

Who is online

Users browsing this forum: No registered users and 10 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum

Search for:
Jump to:  
Powered by phpBB® Forum Software © phpBB Group
Designed by ST Software.