DC – – – A federal government transparency website had been unwittingly displaying at least 80 full or partial social security numbers (SSN) for weeks before taking them down, CNN reported Sunday.
The error came in a Freedom of Information Act (FOIA) request portal, causing many people who submitted FOIA requests to have their SSNs revealed on the website, CNN reported. In many cases, the website, foiaonline.gov, revealed more information than just an SSN, also publishing dates of birth, immigrant identification numbers, addresses and contact details. The government was unaware of the problem and cited a glitch when CNN reached out for comment.
“Recently it was discovered that [SSN] information in some records was exposed to the public,” an internal email obtained by CNN read. “The PMO [Primary Management Office] has identified the cause of this issue and this afternoon implemented program fixes that resolved the problems. This issue will shortly be publicized by the press. It will also be reported that after our fix, that some names and addresses still do appear in publicly available FOIAonline records. A review by the PMO has found that this information has been marked as publicly viewable by the reporting agencies. It is requested that partner agencies review publicly viewable information to ensure that any personal information is specifically intended to be presented as such.”
The glitch in the website pertained to the ability of users to search databases of existing FOIA requests. In the version of the website prior to July 9, those searching the database would need agency approval before viewing its contents or even a description of its contents in the search results screen. The site received an update to a 3.0 version July 9, and the protection against displaying FOIA request descriptions in the results screen had seemingly disappeared. As a result, potentially any SSN that was displayed in a FOIA request description was publicly viewable.
The Environmental Protection Agency (EPA), which handles IT for the FOIA site, spoke to CNN about how it fixed the problem. more here
SNIP: The EPA, huh? Interesting…
Same people who demand that your medical records be kept electronically. Feel safe, America?
And they want to be my latex salesman…