![Risk.net](https://nginx.production.bb8-risk.uk3.amazee.io/sites/default/files/styles/print_logo/public/2018-09/print-logo.png?itok=1TpHrpuP)
IT weakness might have allowed Countrywide security breach
The man accused of stealing customer data from Countrywide might have been able to download data to an external drive
CALABASAS, CA – The man accused of stealing customer data from home mortgage lender Countrywide was probably able to download and save the data to an external drive, due to an oversight by the company's IT department.
On August 1, Rene Rebollo, a former senior financial analyst at Countrywide, was arrested for his alleged role in stealing customer data and selling it.
Rebollo told US Federal Bureau of Investigation agents that he had known that the computers in the Countrywide office had security features that restricted downloads of data to an external source, but that he had found one that didn’t. FBI affidavits show Rebollo admits collecting names on request by his buyers and downloading them onto his personal thumb drive using that one computer in the office. Rebollo might have specifically collected names of people who recently declined an offer of a loan by Countrywide, for example.
The accused estimates that, over a two-year period, he downloaded approximately 20,000 customer profiles each week and sold files with that many names for US$500, according to the affidavit. The profiles included Social Security numbers and other personal details.
Countrywide's owner, Bank of America, has not responded to a request for information about the type of security it employs to prevent this type of theft. According to a statement from the FBI last week, Countrywide says it is analysing the stolen data to determine whether any customer identities have been compromised. If they have, the company says it will notify the customers affected.
Only users who have a paid subscription or are part of a corporate subscription are able to print or copy content.
To access these options, along with all other subscription benefits, please contact info@risk.net or view our subscription options here: http://subscriptions.risk.net/subscribe
You are currently unable to print this content. Please contact info@risk.net to find out more.
You are currently unable to copy this content. Please contact info@risk.net to find out more.
Copyright Infopro Digital Limited. All rights reserved.
As outlined in our terms and conditions, https://www.infopro-digital.com/terms-and-conditions/subscriptions/ (point 2.4), printing is limited to a single copy.
If you would like to purchase additional rights please email info@risk.net
Copyright Infopro Digital Limited. All rights reserved.
You may share this content using our article tools. As outlined in our terms and conditions, https://www.infopro-digital.com/terms-and-conditions/subscriptions/ (clause 2.4), an Authorised User may only make one copy of the materials for their own personal use. You must also comply with the restrictions in clause 2.5.
If you would like to purchase additional rights please email info@risk.net
More on Regulation
Bank of England wants dynamic Emir for UK clearing houses
Review won’t just photocopy EU legislation, as BoE seeks to make rules simpler and adaptable
Big banks could be sidelined from future rescue deals – FSB
Exacerbation of too-big-to-fail means G-Sibs could already be too large to take extra assets
More guidance, less enforcement: the SEC under Paul Atkins
Current and former insiders expect clearer crypto rules and an end to regulatory violation sweeps
During Trump turbulence, value-at-risk may go pop
Trading risk models have been trained in quiet markets, and volatility is now looming
Bank of England mustering unit to model system-wide stresses
Permanent team at UK supervisor will work on buy- and sell-side interactions
Regis-TR and the Emir Refit blame game
Reporting overhaul was marred by problems at repositories, prompting calls to stagger future go-live dates
Iosco pre-hedging review: more RFQs than answers
Latest proposals leave observers weighing new clampdown on pre-hedging
FCMs welcome CFTC margin rule ring-fencing clarification
Final rule on separate accounts replicates no-action relief as Republicans strip out gold plate