BitDepthFeatured

The flagellation of TSTT

3 Mins read

Above: Fresco detail from Milan’s Certosa di Garegnano. Image by clodio/DepositPhotos

BitDepth#1433 for November 30, 2023

Now that the furore, at least in the media, about the TSTT hack has largely subsided, perhaps it’s time to think about why the incident loomed so large in the public consciousness.

It can’t be just the fact of the data breach. There were breaches before and breaches right after that didn’t raise that level of alarm.

Eighteen days after the story broke, TSTT CEO Lisa Agard was reported, in the words of a company press release to have “departed.”

Placed in an acting role is Kent Western, abruptly promoted from the post of General Manager, Customer Experience and Marketing, who must now make sense of the situation.

What went wrong, or was so dramatically different from previous data breaches?

The data went public

TSTT chose to downplay the significance of the breach by declaring the 6GB data haul to be insignificant compared to the terabytes of data it manages daily.

But the size of the data exfiltrated in the breach made accessing and working with it possible for even casual users.

Unfortunately, the stolen files were not encrypted. Encryption makes data unreadable without a password and protects with varying levels of complexity.

The size of some of the exfiltrated files and nature of the data encoding, designed to be read by an Oracle database, meant that it was impossible to review the largest files in their entirety using commonly available tools, but there was enough there to send ordinary citizens into a tizzic.

The small size of the files also allowed them to be widely distributed after they eventually were downloaded from the dark web and posted to open internet file sharing sites and that brought further inspection, some of it admittedly both hysterical and ill-advised.

The departed: TSTT’s former CEO, Lisa Agard.

The communication was a hot mess

Even in her final public communication in a full page press statement, TSTT’s CEO seemed to be blaming the poor messaging on everyone except herself.

It’s hard to imagine Agard, a lawyer, allowing any statement from the company to be sent if it did not have her unequivocal approval and what she approved was dense with legal caveats, evasiveness and misdirection.

The releases on October 30 and November 05 were not communication with anxious customers. They were a clumsy attempt to change the conversation, but nobody had time for that.

When news broke just seven days later that a 2021 data breach of Digicel Group data had been found by Jamaican cybersecurity investigators, two things stopped that news from commanding headlines.

Digicel could point to a press release disclosing what had happened days after the data went live and at 164.55GB, it was impenetrably encoded for distribution. The file was archived on the dark web in 337 segments, each 500MB in size.

All of the archive segments had to be downloaded and then reassembled for access. A daunting task at best.

Misunderstanding the stakeholders

TSTT’s communications during the heat of the incident first denied any impact for its customers, then sought to downplay potential exposure.

While the mass release of the personally identifiable information (PII) of hundreds of thousands of customers was troubling enough, the company appeared to forget that the 51 per cent share held by the government is actually being held on behalf of the 1.4 million citizens of Trinidad and Tobago.

Everyone had a stake in this.

Multinational companies like the Irish-owned Digicel and the US-owned Liberty Global (Flow, Columbus) have substantial outposts in the Caribbean, but TSTT’S navel string is buried here.

So customers were disappointed, citizens were uneasy and trust in the company was unnecessarily shaken.

It was worse than an own goal. The TSTT team just kept on firing shots at their nonplussed goalie. It couldn’t have been a good week to be Khamal Georges.

What is TSTT?

TSTT CEO (ag) Kent Western

The Public Utilities Minister declared himself pleased with Kent Western after they met last week, declaring that the ministry and the telecommunications company were now on “the same page.”

The minister seems to think TSTT is another state company over which he needs to exercise greater control. Given that the other state companies that he has dominion over generate staggering losses that doesn’t seem to be a positive development.

That’s probably not good news for anyone. TSTT is supposed to be a business, but nobody is interested in the dormant 49 per cent shareholding held by Liberty Global.

TSTT’s inability to explain itself over a fortnight of media scrutiny does not speak of a company operating with clear directives or oversight.

Implying that Lisa Agard’s departure heralds a new day is misleading and more state intervention is unlikely to improve that situation.

Privacy and your travel information

Privacy and your travel information

A privacy notice to let individuals understand what data is being collected, the legal reasons, retention period, security to protect data and a contact for any questions should have been...
Read More
TATT announces ambitious three-year strategic plan

TATT announces ambitious three-year strategic plan

The authority's two-decade-old arguments for a fee from over-the-top (OTT) providers has consistently drawn a blank, but it remains on the strategic agenda.
Read More
Brainstorming a high-impact app launch

Brainstorming a high-impact app launch

Write one sentence that states the app’s job in a workflow, then name one primary user role it serves.
Read More
Dukharan deepfaked

Dukharan deepfaked

If a post, video, or article claiming to be me is not hosted on my official website or verified channels, it is a fabrication. Period. I do not endorse get-rich-quick...
Read More
Visa contactless transactions grew 30% during TT’s 2026 Carnival 

Visa contactless transactions grew 30% during TT’s 2026 Carnival 

Digital payments have entered a sustained growth phase in Trinidad and Tobago, fundamentally transforming how locals and visitors experience major cultural celebrations.
Read More
Samsung’s S26 leans in hard on AI

Samsung’s S26 leans in hard on AI

Some users including those with data that requires above average security, may not greet these agentic AI advancements with enthusiasm.
Read More
Why verification technologies will shape the next decade

Why verification technologies will shape the next decade

Trust infrastructure enables identity-backed interactions to cryptographically link each payment to a verified legal identity.
Read More
A 2026 manifesto for Carnival

A 2026 manifesto for Carnival

The idea of Carnival, the spark of the individual, rebellious, expressed as boldly inventive creation still catches fire.
Read More
Digital SME onboarding for CIBC customers coming to TT

Digital SME onboarding for CIBC customers coming to TT

The new system is designed to remove traditional barriers to opening a business account, providing entrepreneurs with a faster, simpler, and more transparent onboarding experience.
Read More
A hiss from a rose

A hiss from a rose

There is likely to be a need for sex re-education to deprogram children who see sex as a wrestling match.
Read More
TATT answers questions about its cybersecurity framework for telcoms, broadcasters

TATT answers questions about its cybersecurity framework for telcoms, broadcasters

Meaningful cybersecurity incidents are those that result in loss or degradation of services, whether isolated or widespread, due to compromised network element.
Read More
News is a niche until it’s not

News is a niche until it’s not

The New York Times produced approximately 230 pieces of content per day on average; The Washington Post, more than 500 per day in 2016
Read More
FT’s second Next Gen News report offers deeper insights

FT’s second Next Gen News report offers deeper insights

Successful producers are reversing the journalism process, dismantling the inverted pyramid of news structure
Read More
Privacy and your travel information Privacy and your travel information
TATT announces ambitious three-year strategic plan TATT announces ambitious three-year strategic plan
Brainstorming a high-impact app launch Brainstorming a high-impact app launch
Dukharan deepfaked Dukharan deepfaked
Visa contactless transactions grew 30% during TT’s 2026 Carnival  Visa contactless transactions grew 30% during...
Samsung’s S26 leans in hard on AI Samsung’s S26 leans in hard on...
Why verification technologies will shape the next decade Why verification technologies will shape the...
A 2026 manifesto for Carnival A 2026 manifesto for Carnival
Digital SME onboarding for CIBC customers coming to TT Digital SME onboarding for CIBC customers...
A hiss from a rose A hiss from a rose
TATT answers questions about its cybersecurity framework for telcoms, broadcasters TATT answers questions about its cybersecurity...
News is a niche until it’s not News is a niche until it’s...
FT’s second Next Gen News report offers deeper insights FT’s second Next Gen News report...

🤞 Get connected!

A once weekly email notification of new stories on TechNewsTT. Just that. No spam.

Possible UI Glitch. Click top right corner to dismiss 👉

Get Connected!

A once weekly email notification of new stories on TechNewsTT.

Just that. No spam.

Related posts
Press Releases

NPICTT and TSTT announce strategic national partnership for digital payments and eKYC

3 Mins read
NPICTT now operates as the national payments infrastructure provider, while its Innovation Centre functions as the entry point for certified digital solutions to be rolled out across the public sector.
Press Releases

TSTT, PSA announce Affinity Plan for 16,000 members

2 Mins read
PSA members have access to bundles that combine mobile, broadband internet, TV/landline, and home security services at discounted rates.
Press Releases

Garvin Medera returns to Digicel

1 Mins read
“This is where I first learned the true weight of connecting people, not just through technology, but through service.”
Subscribe
Notify of
guest

This site uses Akismet to reduce spam. Learn how your comment data is processed.

2 Comments
Oldest
Newest Most Voted
Inline Feedbacks
View all comments
Shawn cort
Shawn cort
2 years ago

How to get Trinidad and Tobago postal code

×
FeaturedTechnology Reporting

TSTT's week of evasion and half-truths

2
0
Share your perspective in the comments!x
()
x