Guide to the TechWeb Network


The InformationWeek -- Blogs
Security

Topics:   Security

  • Email this page E-mail this page
  • |  Print this page Print this page
  • |   Bookmark and Share

Afghan Hijacker Gets Job At Heathrow Airport


Posted by George Hulme, May 19, 2008 11:44 AM

When the authorities stopped him while he was driving around Terminal 5 (the new one) at Heathrow Airport, they thought he was an unlicensed cab driver. Turns out he is a convicted hijacker working as a cleaner at the airport. There's more ...

According to this story posted at FoxNews.com, the hijacker had a British Airways employee pass on him. This pass gave him access to various secure areas (and a great way to footprint the security of the airport, if he was so inclined).

The hijacker, Nazamuddin Mohammidy, was part of a group of nine Afghan hijackers who (in 2000) took control, with guns and grenades, of a plane and diverted the flight to Stansted Airport. The hijackers claimed they were fleeing the Taliban.

After the group of hijackers finished their prison time, they all won the right to remain in Britain. And, according to this story, they could do so rent-free and were paid 150,000 a year in British pounds.

Turns out, today, Mohammidy cleans offices and a training center for British Airways. It was a contract position.

Now, I'd wager that, as part of the British Airway's contract with its outsourcer, employees are supposed to be reasonably vetted, including background checks.

This event is the quintessential case study on how contracting and outsourcing pose huge security risks. The only way to possibly protect your organization from this type of situation is to get the list of names of everyone from your contractors and run your own background checks.

Same should be true for any outsourcers given access to applications and sensitive data.

Some people will always slip through, but your net will be much more difficult to get around. And if several people are trying to infiltrate your company, you may only need to nail one to blow the entire plan.

This isn't the first time insiders got to places they shouldn't be in Britain.

So, how does your enterprise vet employees and those of your contractors?

« Honest Public Licensing: Q&A With Fabrizio Capobianco | Main | Eight Things Microsoft Can And Should Do To Be More 'Open' »



Tomorrow's CIO: Do you have what it takes?
Find out at the 2008 InformationWeek 500 Conference
Sept. 14-16, St. Regis Resort, Monarch Beach, Calif.


Sign up now for the weekly InformationWeek Blog Newsletter.


This is a public forum. United Business Media and its affiliates are not responsible for and do not control what is posted herein. United Business Media makes no warranties or guarantees concerning any advice dispensed by its staff members or readers.

Community standards in this comment area do not permit hate language, excessive profanity, or other patently offensive language. Please be aware that all information posted to this comment area becomes the property of United Business Media LLC and may be edited and republished in print or electronic format as outlined in United Business Media's Terms of Service.

Important Note: This comment area is NOT intended for commercial messages or solicitations of business.






  1. Report: BlackBerry Bold Being Delayed For 3G Reception Issues, Too
  2. Apple Promises 3G iPhone Problems Will Be Fixed In September
  3. Peek-A-Boo Look At Intelýs Atom Processor
  4. As Google Android SDK Hits Street, Android Security Team Braces
  5. iPhone Firmware Update 2.0.2 Did Diddly-Squat For Me


  1. Wozniak To Developers: If You Know You're Right, Don't Stop
  2. Actors Paid To Line Up For iPhone Launch In Poland
  3. N.Y. Comptroller Advises To Scrap $2 Billion Network
  4. FEMA's Phone System Hacked
  5. Alaska Air's CIO Weighs In On In-Flight Internet Services
  6. Canada Gets BlackBerry Bold

 
 

  Ars Technica
Boing Boing
Channel 9 Forums
CRN Blogs
Dr.Dobb's Portal: Blogs
Engadget
Gizmodo
GrokLaw
  Lifehacker
Schneier on Security
Slashdot
TechCrunch
Techdirt
Techmeme
Valleywag

  FEBRUARY 2008
JANUARY 2008
DECEMBER 2007
NOVEMBER 2007
OCTOBER 2007
SEPTEMBER 2007
AUGUST 2007
JULY 2007
  JUNE 2007
MAY 2007
APRIL 2007
MARCH 2007
FEBRUARY 2007
JANUARY 2007
DECEMBER 2006
NOVEMBER 2006