Contributor

User identities are not the issue in SFO laptop theft.

Opinion
Aug 5, 20082 mins

There seems to be a lot of hand ringing going on over the complete incompetence displayed by a contractor that administers the “Clear” program at San Francisco International.  The concern is for the identity protection of the 33,000 or so applicants that provided thumbprints, drivers licenses, and passports in exchange for an accelerated clearing process though airport security. 

reported stolen from a room at the airport on July 29th and just turned up again in the same room!  In other words, someone took it and returned it.  

A laptop was

wrote about the “Clear” program for the New York Times:

I think Bruce Schneier, frequent writer and blogger on airport security, hit it on the head when he originally

And have we forgotten how prevalent identity theft is these days? If you think having a criminal impersonating you to your bank is bad, wait until they start impersonating you to the Transportation Security Administration.

That is exactly what the identities on that laptop could be used for. So, it is not worthwhile worrying about people’s identities, credit records, etc. in this case. The big concern is that the “Clear” program has been completely compromised.  Those 33,000 identities can be used to help miscreants slip past airport security.  It is the TSA and the airlines, and of course we passengers that have to be concerned about this theft.

Richard Stiennon is chief research analyst at IT-Harvest, the firm he founded in 2005 to cover the 1,600 vendors that make up the IT security industry. He is the author of Surviving Cyberwar (Government Institutes, 2010) and There Will Be Cyberwar: How the Move to Network-Centric Warfighting Set the Stage for Cyberwar. He is a member of the advisory board at the Information Governance Initiative and principal of TrueBit Cyber Partners. He also serves on the R2-TAC, the technical advisory committee for the Responsible Recycling standard for e-waste.

Stiennon was chief marketing officer for Fortinet Inc. and vice president of threat research at Webroot Software. Prior to that, he was vice president of research at Gartner Inc. He has a B.S. in aerospace engineering and an M.A. in war in the modern world from King’s College, London.

The opinions expressed in this blog are those of Richard Stiennon and do not necessarily represent those of IDG Communications Inc. or its parent, subsidiary or affiliated companies.

More from this author