Now on Demand Ransomware Resilience & Recovery Summit - All Sessions Available
Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Application Security

Security Concerns Prompt Closing of Dividend Applications

ANCHORAGE, Alaska (AP) — Alaska revenue officials shut down online applications for annual oil wealth checks after personal information of other users popped up on applicants’ computer screens.

ANCHORAGE, Alaska (AP) — Alaska revenue officials shut down online applications for annual oil wealth checks after personal information of other users popped up on applicants’ computer screens.

The private information from other applicants included names, addresses and Social Security numbers.

The Alaska Department of Revenue shut down the application process Tuesday, the day it opened for 2019 checks. Revenue Commissioner Bruce Tangeman said Wednesday he is apologizing for the problem every chance he gets.

“The permanent fund dividend is a big deal in Alaska,” he said. “It means a lot to people, and we are very sorry that we’re going through this right now and putting them through this right now.”

The Alaska Permanent Fund was created by a vote of residents in 1976 when a flood of money for state coffers from oil development was on the horizon. The goal was a fund that would be out of reach for day-to-day government spending that would generate income in future years, according to the fund website.

State leaders also wanted to share oil wealth with Alaskans. The first dividends, paid from a portion of fund earnings, were paid out in 1982 and have been distributed annually ever since.

The first checks were for $1,000. The smallest checks were $331.29 in 1984. They peaked in 2015 at $2,072. The 2018 dividend was $1,600.

Alaskans must reapply every year, and the process opens Jan. 1.

Advertisement. Scroll to continue reading.

“A lot of people get on there as soon as it’s available,” Tangeman said. “They like to try to be the first ones in to apply.”

As some Alaskans tried to apply Tuesday, the information boxes on their screens filled with data from previous applicants. It has not been determined whether the system experienced a glitch or a hack, and Tangeman did not want to speculate.

“We want to establish what the problem is. Then we’re going to fix the problem. Then we’re going to do a very deep dive on the security side to make sure it is secure before we put it back up on the website,” he said.

An online counter indicated that fewer than 100 people had applied for dividends when the system was shut down, he said. He is hoping the system will be back on line in a few days.

“It’s all hands on deck, 24-7, getting to the root cause of the problem, fixing it and then making sure the security is in place,” Tangeman said.

Written By

Click to comment

Trending

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join the session as we discuss the challenges and best practices for cybersecurity leaders managing cloud identities.

Register

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.

Register

People on the Move

Bill Dunnion has joined telecommunications giant Mitel as Chief Information Security Officer.

MSSP Dataprise has appointed Nima Khamooshi as Vice President of Cybersecurity.

Backup and recovery firm Keepit has hired Kim Larsen as CISO.

More People On The Move

Expert Insights

Related Content

Application Security

Cycode, a startup that provides solutions for protecting software source code, emerged from stealth mode on Tuesday with $4.6 million in seed funding.

Application Security

Virtualization technology giant VMware on Tuesday shipped urgent updates to fix a trio of security problems in multiple software products, including a virtual machine...

Application Security

Fortinet on Monday issued an emergency patch to cover a severe vulnerability in its FortiOS SSL-VPN product, warning that hackers have already exploited the...

Application Security

PayPal is alerting roughly 35,000 individuals that their accounts have been targeted in a credential stuffing campaign.

Application Security

A CSRF vulnerability in the source control management (SCM) service Kudu could be exploited to achieve remote code execution in multiple Azure services.

Application Security

GitHub this week announced the revocation of three certificates used for the GitHub Desktop and Atom applications.

Application Security

Drupal released updates that resolve four vulnerabilities in Drupal core and three plugins.