{
  "id": 217798,
  "title": "IT department put sticky notes on the laptops to help employees log in",
  "url": "https://urgent.news/2026/08/06/it-department-put-sticky-notes-on-the-laptops-to-help-employees-log-in",
  "topic": "tech",
  "section": "Tech",
  "published": "2026-08-06T12:00:00.000Z",
  "source": {
    "name": "The Register Science",
    "slug": "the-register-science",
    "url": "https://www.theregister.com/security/2026/08/06/it-department-put-sticky-notes-on-the-laptops-to-help-employees-log-in/5283662"
  },
  "original_language": "en",
  "account": "In a case that highlights poor security practices, an IT department at Wytlabs, a marketing and SEO company, inadvertently facilitated a data breach by leaving user credentials exposed. The incident occurred when the company relocated offices, leading to a temporary lapse in security protocols. To ease the transition for new employees, the IT team placed sticky notes on the laptops, containing each user's name and initial login details. This seemingly harmless act turned out to be a critical security oversight. The laptops were subsequently stored in a conference room while the office was being prepared for the move. Unfortunately, this location was accessible to anyone who had access to the space, including a contractor who subsequently stole pictures of the sticky notes. The thief later used these credentials to access the company's network remotely, gaining access to sensitive data. The breach included proprietary planning documents that were stored on shared drives, underscoring the severity of the breach. The most distressing aspect of this incident is the fact that the IT department, responsible for maintaining the company's security, contributed to the leak by improperly handling temporary passwords. Security professionals should always avoid leaving passwords unsecured, even if they are temporary. Instead, they should consider using encrypted channels to transmit credentials and ensure that only the intended recipient can view them.",
  "summary": "Leaving this information exposed allowed someone else to gain access",
  "key_points": [
    "IT department left sticky notes with credentials on laptops.",
    "Sticky notes contained user names and initial login details.",
    "Contractor stole notes and used credentials to access network."
  ],
  "editors_take": null,
  "illustration": null,
  "coverage": {
    "outlets": 2,
    "also_reported_by": [
      {
        "outlet": "The Register",
        "title": "IT department put sticky notes on the laptops to help employees log in",
        "url": "https://urgent.news/2026/08/06/it-department-put-sticky-notes-on-the-laptops-to-help-employees-log-in-220500",
        "published": "2026-08-06T12:00:00.000Z"
      }
    ]
  },
  "ai_generated": true,
  "disclaimer": "Summaries, key points and the editor’s take are written by software from other outlets’ reporting and may contain errors — always check the linked original."
}