• IP addresses are NOT logged in this forum so there's no point asking. Please note that this forum is full of homophobes, racists, lunatics, schizophrenics & absolute nut jobs with a smattering of geniuses, Chinese chauvinists, Moderate Muslims and last but not least a couple of "know-it-alls" constantly sprouting their dubious wisdom. If you believe that content generated by unsavory characters might cause you offense PLEASE LEAVE NOW! Sammyboy Admin and Staff are not responsible for your hurt feelings should you choose to read any of the content here.

    The OTHER forum is HERE so please stop asking.

Pee Sai MAGA! STATE COURT Documents HACKED after Sink-hell Sink-pass etc! PAP Jiak Sai! PMO NEXT!

tun_dr_m

Alfrescian
Loyal
Joined
Aug 8, 2008
Messages
6,070
Points
83
https://www.channelnewsasia.com/new...s-online-case-files-accessed-without-10976490



223 State Courts online case files accessed without authorisation due to loophole
image: data:image/gif;base64,R0lGODlhAQABAAAAACH5BAEKAAEALAAAAAABAAEAAAICTAEAOw==
File photo of the State Courts in Singapore. (Photo: Xabryna Kek)
image: data:image/gif;base64,R0lGODlhAQABAAAAACH5BAEKAAEALAAAAAABAAEAAAICTAEAOw==
By Lydia Lam

28 Nov 2018 02:44PM (Updated: 28 Nov 2018 07:01PM)
Share this content
142 shares



Bookmark
SINGAPORE: Electronic case files in the State Courts' online management system were viewed by up to nine unauthorised people who exploited a loophole in the system, the courts said in a statement on Wednesday (Nov 28).
This was the first time that the State Courts had encountered such an incident, a spokesman said in response to media queries.

The Integrated Criminal Case Filing and Management System (ICMS) is a system used to document criminal cases.

ADVERTISING

inRead invented by Teads
The State Courts were alerted to a possible vulnerability in the system on Nov 1.
A total of 223 electronic case files were accessed over the course of the year (2018). Most of them (89 per cent) were concluded cases, while the rest were ongoing cases.
Data accessed from the files included names, personal identity information, addresses, gender of the accused, information about the offences, as well as the status of the case.

Advertisement


Read more at https://www.channelnewsasia.com/new...s-online-case-files-accessed-without-10976490


"Immediate steps were taken to fix the vulnerability," said the State Courts. "The e-case files had not been tampered with, and the integrity of ongoing proceedings was not affected."
The type of cases accessed by the individuals included criminal cases, coroner's inquiries, magistrate's complaints and a youth court case.
"Our review suggests that this is not a hacking incident and we do not currently have reason to believe that the unauthorised access activities were coordinated," said the State Courts spokesman.
The vulnerability was not found in its other online case filing management systems.
ICMS is used by lawyers, the media and accused persons, with different layers of access for each group of users.
While the State Courts did not have information on the number of ICMS users, the spokesman said there were about 190,000 cases in the system as of Nov 19.
Those who have been accused of crimes can access the ICMS Accused Person portal with a valid account through SingPass authentication.
Preliminary findings show that a few such accused persons exploited a loophole in the ICMS system which allowed them to view court documents in other e-case files.
While the State Courts did not elaborate on what the loophole was, the spokesman said it was patched to prevent unauthorised access to court documents within 12 hours of being alerted to it.
They also reported the matter to the police.
Along with their system vendor Ecquaria Technologies, the State Courts implemented additional measures to protect the security and confidentiality of the information in ICMS by enhancing user access controls within the system.
Investigations by the police are ongoing and letters have been sent to all parties affected.
The State Courts said they have set up a dedicated email ([email protected]) and hotline (6435 5651) to address queries.
They said that they take a serious view of any unauthorised access of information in their case management systems and will do what is necessary to prevent similar incidents from occurring.

Read more at https://www.channelnewsasia.com/new...s-online-case-files-accessed-without-10976490
 
Where are MINDEF cyber warriors?
Time to start a cyber SWAT team ...a cyber special forces team, a cyber riot squad ....that way, more sinkees can be hired.
 
https://www.straitstimes.com/singap...ssed-by-unauthorised-persons-via-state-courts

More than 200 e-case files accessed by unauthorised persons via State Courts' online portal

colin-lh2-28.jpg
Preliminary findings show that a loophole was exploited in the Integrated Criminal Case Filing and Management System and court documents in other e-case files were viewed.PHOTO: SCREENGRAB FROM STATECOURTS.GOV.SG
Published
9 hours ago
Facebook Twitter Email


Cara Wong


SINGAPORE - More than 200 court case files have been accessed by a few accused persons without authorisation through the State Courts' online case management system.
Preliminary findings show that they had exploited a loophole in the Integrated Criminal Case Filing and Management System (ICMS), and viewed court documents in e-case files other than their own, said the State Courts in a statement on Wednesday (Nov 28).
Typically, only accused persons with a valid account can access the ICMS Accused Person access portal to view their case file using SingPass authentication.
The State Courts was first alerted to a possible vulnerability in the system on Nov 1, and discovered that 223 e-case files were accessed by a few accused persons without authorisation.
"Immediate steps were taken to fix the vulnerability. The e-case files had not been tampered with, and the integrity of ongoing proceedings was not affected," the State Courts said.
As of Nov 9, the State Courts and its system vendor, Ecquaria Technologies, have implemented additional security measures to enhance user access controls to protect the security and confidentiality of the information within, said the statement.


Letters will be sent to all affected individuals. A dedicated telephone hotline (6435-5651) and e-mail ([email protected]) have been set up to address queries.
The police are investigating the incident.
 
Back
Top