IT department put sticky notes on the laptops to help employees log in
Leaving this information exposed allowed someone else to gain access
In a recent security breach, an IT department inadvertently exposed sensitive employee information by placing sticky notes with usernames and passwords on laptops during an office move. This lapse in judgment occurred after the company transitioned to a new location, prompting the IT team to repurpose old laptops for new employees.
Despite having a robust password policy and security training for employees, the company's temporary lapse in security resulted in a major data leak. The laptops, containing the credentials, were stored in a conference room while the facilities team prepared the office for the move. This allowed a contractor to access the conference room, take pictures of the sticky notes, and subsequently log in remotely, gaining access to proprietary data, including planning documents.
This incident highlights the critical importance of password security and the dangers of exposing credentials in plain sight. It serves as a cautionary tale for all organizations, emphasizing the need for secure password handling practices, even for temporary accounts.
Written by urgent.news from The Register's reporting — not their text. Machine-written — it may contain errors, so check the original before relying on it.
This story
This is one outlet's version. Read the fullest account.