Misdirected spyware infects Ohio hospital
- 18 September, 2009 06:29
- Comments 3
It was a bad idea from the start, but even as bad ideas go, this one went horribly wrong.
A 38-year-old Avon Lake, Ohio, man is set to plead guilty to federal charges after spyware he allegedly meant to install on the computer of a woman he'd had a relationship with ended up infecting computers at Akron Children's Hospital.
In late February 2008, Scott Graham shelled out US$115 for a spyware program called SpyAgent and sent it to the woman, according to a plea agreement filed in the U.S. District Court for the Northeastern District of Ohio.
He allegedly sent the spyware to the woman's Yahoo e-mail address, hoping that it would give him a way to monitor what she was doing on her PC. But instead, she opened the spyware on a computer in the hospital's pediatric cardiac surgery department, creating a regulatory nightmare for the hospital.
The complaint does not explain how Graham managed to convince the woman to install the program, but clever attackers often trick their victims into clicking on files by saying that they are interesting videos or some kind of useful software.
Between March 19 and March 28 the spyware sent more than 1,000 screen captures to Graham via e-mail.
They included details of medical procedures, diagnostic notes and other confidential information relating to 62 hospital patients.
He was also able to obtain e-mail and financial records of four other hospital employees as well, the plea agreement states.
Graham, who is set to formally enter a guilty plea on Sept. 30 to one count of illegally intercepting electronic communications, will pay $33,000 to the hospital for damages caused by the incident. He faces a maximum sentence of five years in prison.
"While Scott Graham does take responsibility for his conduct, it was never his intention to harm any organization or entity," said his attorney, Ian Friedman, in a telephone interview.
"He had to learn the hard way that what may be advertised on the Internet doesn't necessary produce what's promised."
Products such as SpyAgent are marketed as legitimate tools to help employers or worried parents keep track of what's going on with their computers, but they can easily be misused to spy on innocent victims, said Eric Howes, director of research services with antivirus company Sunbelt Software.
His company flags SpyAgent as a "commercial keylogger."
"Our enterprise customers are concerned about these kinds of tools being used in an unauthorized fashion on their networks," Howes said.
"They have completely legitimate uses, but if I went home and found a copy of [this type of software] on my computer, I would be concerned. "
Still Howes faulted the hospital's IT staff for allowing someone to download spyware from Yahoo mail and install it on their systems.
"That points to a security failing at that hospital, but then they aren't that different from 99 percent of companies out there," he said.
Many companies block workers from accessing personal Web sites such as Yahoo or Facebook.
The U.S. attorney prosecuting this case, Robert Kern, did not return messages seeking comment. A spokeswoman with the Akron Children's Hospital was unaware of the case and unable to comment.
Join the CIO Australia group on LinkedIn. The group is open to CIOs, IT Directors, COOs, CTOs and senior IT managers.
- Bookmark this page
- Share this article
- Got more on this story? Email CIO
- Follow CIO on twitter
- Setting a strategy for secure mobile printing
- Closing the print security gap - The market landscape for print security
- 10 Mobile Security Requirements for the Bring Your Own Device (BYOD) Enterprise
- Information Security Policies, Standards and Procedure
- Risk management: ensuring the security of your hosted information
-
Australia's first 4G smartphone is the HTC Velocity 4G
-
Swedish e-commerce startup's execs linked to NYC sex crime
-
Face Time - Interview with John Brennan and Robert DiStefano
-
How to implement next-generation storage infrastructure for Big Data
-
Pfizer's Future Depends on IT Transformation
-
Securing SOA and Web Services with Oracle Enterprise Gateway
Companies worldwide are actively deploying service-oriented architecture (SOA) infrastructures using web services, both in intranet and extranet environments. While web services offer many advantages over traditional alternatives (e.g., distributed objects or custom software), deploying networks of interconnected web services still presents key challenges, especially in terms of security and management. -
IBM zEnterprise System Brings Hybrid Computing Capabilities to Midsize Organisations
This paper focuses on the IBM z114 cross-tier solution, which brings IBM AIX Unix and Linux workloads into the mix, with Microsoft Windows support to follow in the future. This blended approach to computing allows workloads running on any of those operating systems to communicate more quickly and effectively with the System z, producing business benefits from the orchestration, or coordination, of management for all of the workloads running across all of the linked platforms. -
Achieve Business and Environmental Goals
HP Web Jetadmin software offers business intelligence capabilities, as part of the Database Connectivity Module, that help IT managers assess printing behaviors and lower their organization’s environmental footprint. HP Eco Solutions reports enable measurement of environmentally relevant capabilities, settings and use patterns. IT can use the results to spotlight opportunities to decrease energy and paper consumption—for a printer, group of printers or an entire fleet. Read more.
-
Ocp
-
Adobe Premiere 6 Bible
-
Software Quality Management IV Improving Quality
-
Operating Systems Concepts with Java 6E + Wileyplus/WebCT Access Card
-
Software Engineering:principles and Practice 3E
-
Illustrator CS for Dummies
-
Excel 2007 Pivottables and Pivotcharts
-
Programming in Cobol/400 2E Wiley International Edition
-
Kimball's Data Warehouse ToolKit Classics:the Data Warehouse Toolkit,2nd Edition;the Data Warehouse Lifecycle Toolkit,2nd Edition;the Data Warehouse E








Comments
Satelite Internet
Which one is best ?
Everyone's mind is thinking to choose a best malware, and anti virus protector. Not on hospital but a lot of college, school, offices and even personal computer is infected.
It's not easy to select one because if for eg; My computer is infected with virus (a.lhj) it can be removed with particular anti virus only, and same for all other. What i mean is there is no complete solution for all antivirus and Malware. As far I know. But I am satisfied with AVIRA antivirus, After i installed it Any virus or malware is bothering me.
thank you
<a href="http://www.protectyourhome.com">ADT Security</a>
Martha
I was really interested to learn exactly how he got caught, but the story never mentions it. Maybe that is the comment they were looking for. Still, this makes you wonder if there are any anti-<a href="http://www.sophos.com/products/malware-protection/">malware</a> measures in place, because a commercial keylogger running in the background should have sent off numerous warning..unless someone set an exception just so the messages would go away...Ah, you just can't plan for human error..
ADT
RE: Spyware
I would be interested to know how he got caught as well. Maybe the traced back the IP? Maybe he turned himself in? I understand the severity of this but up to 5 years....
I actually used to have some problems with spyware as well, but I changed my connection to a <a href="http://www.satelliteinternet.com">satellite internet</a> connection
Post new comment