PogoWasRight.org

Menu
  • About
  • Privacy
Menu

TSA puts employees linked to security manual fiasco on leave

Posted on December 9, 2009July 3, 2025 by Dissent

The Associated Press is reporting that some Transportation Security Administration (TSA) employees have been put on leave after the recent fiasco where an inadequately redacted copy of their Screening Management Standard Operating Procedures manual was available on the web.  Simply by clicking on the redacted material clicking “cut,” one could unredact the sensitive material.

Although the TSA yanked the manual after its vulnerability was reported by the Wandering Aramean blog and claims that the manual was outdated and does not describe current procedures, the word spread like wildfire throughout the blogosphere and the manual was mirrored on other web sites in unredacted form.

Not surprisingly, Congress immediately threw itself into high gear to hold a hearing.  As the AP reports:

Assistant Homeland Security secretary David Heyman told senators Wednesday that a full investigation into the Internet security lapse is under way and the TSA employees have been taken off duty pending the results of that probe. He did not say how many employees were put on leave.

The Homeland Security Department has also stopped posting documents with security information either in full or in part on the Internet until the TSA review is complete, Heyman told the Senate Homeland Security and Governmental Affairs committee.

It will be interesting to see what they do after the hubbub dies down. As long as they continue to place files on networks connected to the Internet, there will always be a risk that what they think is secure, isn’t. Is it really worth the risk?

Update: CBS reports that five employees have been put on leave.

No related posts.

Category: GovtMisc

Post navigation

← 80,000 Facebook users duped in bait-and-switch
House Passes Data Accountability Bill →

1 thought on “TSA puts employees linked to security manual fiasco on leave”

  1. concerned says:
    December 9, 2009 at 9:27 pm

    …and I note the document is freely available from Wikileaks and elsewhere.

Comments are closed.

Now more than ever

Search

Contact Me

Email: info@pogowasright.org

Mastodon: Infosec.Exchange/@PogoWasRight

Signal: +1 516-776-7756

Categories

Recent Posts

  • Flightradar24 receives reprimand for violating aircraft data privacy rights
  • Nebraska Attorney General Sues GM and OnStar Over Alleged Privacy Violations
  • Federal Court Allows Privacy Related Claims to Proceed in a Proposed Class Action Lawsuit Against Motorola
  • Italian Garante Adopts Statement on Health Data and AI
  • Trump administration is launching a new private health tracking system with Big Tech’s help
  • Attorney General James Takes Action to Protect Sensitive Personal Information of Tens of Millions of People
  • Searches of Your Private Data in the Cloud Amount to Illicit State Action

RSS Recent Posts on DataBreaches.net

  • Are Scattered Spider and ShinyHunters one group or two? And who did France arrest?
  • Why we shouldn’t just repeat ransomware groups’ claims, Sunday edition
  • Aftermath: More than 99% of providers opted to have Change Healthcare notify patients of its massive data breach
  • Qilin Ransomware Affiliate Panel Login Credentials Exposed Online
  • HCA Healthcare settled two lawsuits this week; one was over its 2023 data breach
©2025 PogoWasRight.org. All rights reserved.
Menu
  • About
  • Privacy