Arkansas Democrat-Gazette

Virus found in database of job seekers, state says

- ERIC BESSON

Investigat­ors are trying to determine whether personal informatio­n — including Social Security numbers — for an estimated 19,000 Arkansas job seekers was stolen after a virus was detected in a statewide database, a government spokesman said.

Arkansas Department Workforce Services spokesman Steve Guntharp said Thursday that it was not immediatel­y clear whether the virus extracted personal informatio­n before it was detected.

Neither the source nor the source’s intent is known, but the virus’ specific purpose was to “gather informatio­n” rather than shut down or damage the system, Guntharp said.

Officials were relying on early informatio­n shared by America’s Job Link Alliance of Topeka, Kan., the contractor that administer­s the affected online database Arkansas JobLink, Guntharp said.

“The only thing we know is somebody entered their informatio­n in and somehow got that [virus] into the system,” Guntharp said. “We are working right now on trying to determine what the extent of the breach was.”

Although the virus is reportedly software designed to gather informatio­n from the system, it could have been unintentio­nally inserted by a job seeker who unknowingl­y used an infected computer, said Shucheng Yu, interim chairman of the department of computer science at the University of Arkansas at Little Rock.

If it is determined that informatio­n leaked from the database, Workforce Services will notify everyone who has used the system — which

dates to 2001 — by email and a typed letter, Guntharp said. No notificati­on will be issued if it’s determined that no informatio­n was stolen, he said.

Users submit names, addresses, dates of birth, Social Security numbers and other informatio­n when using the free service, Guntharp said. Although accounts are deactivate­d after 90 days of no use, personal informatio­n is stored indefinite­ly, he said.

The Arkansas Democrat-Gazette learned of the breach through an anonymous tip submitted by email early Thursday afternoon.

The contractor informed Workforce Services that similar databases in other states may have been breached as well, Guntharp said.

America’s Job Link Alliance has similar contracts with nine other states, including neighborin­g Oklahoma, according to its website. Voice mails left at the contractor’s main office and with a cellphone number for its director, Christine Bohannon, were not returned.

The contractor notified Workforce Services that it had detected issues earlier in the week via an email sent shortly before 1 p.m. Wednesday.

The email, obtained by the Democrat-Gazette and signed by Bohannon, says the contractor is working with a third party and will produce a full incident report.

Bohannon wrote in the email that errors were detected in at least three state systems. After reviewing database logs, the contractor determined that someone was attempting to access “demographi­cs pages” midday Tuesday, Bohannon wrote.

“Tuesday afternoon we isolated the root cause and implemente­d a fix,” Bohannon wrote.

Arkansas JobLink connects job seekers with prospectiv­e employers. Employers may search for workers and view their resumes but do not submit personal informatio­n in order to use the system, Guntharp said.

One of the frequently asked questions listed on an Arkansas JobLink Web page inquires about why Social Security numbers are required to sign up.

“In order to receive federal dollars and keep this service free, we are required to ask for your social security number,” it says in response. “It is not made available to employers or the public. To avoid identity theft, state-of-the-art software has been installed to prevent hacking into the system.”

Newspapers in English

Newspapers from United States