BitDepthFeatured

The flagellation of TSTT

3 Mins read

Above: Fresco detail from Milan’s Certosa di Garegnano. Image by clodio/DepositPhotos

BitDepth#1433 for November 30, 2023

Now that the furore, at least in the media, about the TSTT hack has largely subsided, perhaps it’s time to think about why the incident loomed so large in the public consciousness.

It can’t be just the fact of the data breach. There were breaches before and breaches right after that didn’t raise that level of alarm.

Eighteen days after the story broke, TSTT CEO Lisa Agard was reported, in the words of a company press release to have “departed.”

Placed in an acting role is Kent Western, abruptly promoted from the post of General Manager, Customer Experience and Marketing, who must now make sense of the situation.

What went wrong, or was so dramatically different from previous data breaches?

The data went public

TSTT chose to downplay the significance of the breach by declaring the 6GB data haul to be insignificant compared to the terabytes of data it manages daily.

But the size of the data exfiltrated in the breach made accessing and working with it possible for even casual users.

Unfortunately, the stolen files were not encrypted. Encryption makes data unreadable without a password and protects with varying levels of complexity.

The size of some of the exfiltrated files and nature of the data encoding, designed to be read by an Oracle database, meant that it was impossible to review the largest files in their entirety using commonly available tools, but there was enough there to send ordinary citizens into a tizzic.

The small size of the files also allowed them to be widely distributed after they eventually were downloaded from the dark web and posted to open internet file sharing sites and that brought further inspection, some of it admittedly both hysterical and ill-advised.

The departed: TSTT’s former CEO, Lisa Agard.

The communication was a hot mess

Even in her final public communication in a full page press statement, TSTT’s CEO seemed to be blaming the poor messaging on everyone except herself.

It’s hard to imagine Agard, a lawyer, allowing any statement from the company to be sent if it did not have her unequivocal approval and what she approved was dense with legal caveats, evasiveness and misdirection.

The releases on October 30 and November 05 were not communication with anxious customers. They were a clumsy attempt to change the conversation, but nobody had time for that.

When news broke just seven days later that a 2021 data breach of Digicel Group data had been found by Jamaican cybersecurity investigators, two things stopped that news from commanding headlines.

Digicel could point to a press release disclosing what had happened days after the data went live and at 164.55GB, it was impenetrably encoded for distribution. The file was archived on the dark web in 337 segments, each 500MB in size.

All of the archive segments had to be downloaded and then reassembled for access. A daunting task at best.

Misunderstanding the stakeholders

TSTT’s communications during the heat of the incident first denied any impact for its customers, then sought to downplay potential exposure.

While the mass release of the personally identifiable information (PII) of hundreds of thousands of customers was troubling enough, the company appeared to forget that the 51 per cent share held by the government is actually being held on behalf of the 1.4 million citizens of Trinidad and Tobago.

Everyone had a stake in this.

Multinational companies like the Irish-owned Digicel and the US-owned Liberty Global (Flow, Columbus) have substantial outposts in the Caribbean, but TSTT’S navel string is buried here.

So customers were disappointed, citizens were uneasy and trust in the company was unnecessarily shaken.

It was worse than an own goal. The TSTT team just kept on firing shots at their nonplussed goalie. It couldn’t have been a good week to be Khamal Georges.

What is TSTT?

TSTT CEO (ag) Kent Western

The Public Utilities Minister declared himself pleased with Kent Western after they met last week, declaring that the ministry and the telecommunications company were now on “the same page.”

The minister seems to think TSTT is another state company over which he needs to exercise greater control. Given that the other state companies that he has dominion over generate staggering losses that doesn’t seem to be a positive development.

That’s probably not good news for anyone. TSTT is supposed to be a business, but nobody is interested in the dormant 49 per cent shareholding held by Liberty Global.

TSTT’s inability to explain itself over a fortnight of media scrutiny does not speak of a company operating with clear directives or oversight.

Implying that Lisa Agard’s departure heralds a new day is misleading and more state intervention is unlikely to improve that situation.

Reaching the youth media audience

Reaching the youth media audience

Credibility has become personal. Who is delivering the news and what is understood about them is becoming as important as the journalism itself
Read More
Huawei, CTU partner to drive regional digital development

Huawei, CTU partner to drive regional digital development

The agreement will enhance the CTU’s collaborative efforts to address key ICT challenges in the region and symbolises its shared commitment with Huawei to foster a digitally empowered Caribbean.
Read More
IGT offers technology for children on the autism spectrum

IGT offers technology for children on the autism spectrum

Organisations supporting children with autism spectrum disorders and other neurological developmental conditions have been increasingly using technology to assist with their complex communication and learning needs.
Read More
Digicel invites Caribbean businesses to participate in regional digital transformation survey

Digicel invites Caribbean businesses to participate in regional digital transformation survey

"We invite businesses of all sizes and sectors to be at the forefront of digital transformation knowledge and innovation."
Read More
Pinaka Consulting partners with Flexxon

Pinaka Consulting partners with Flexxon

AI is an enabler.  Threat actors are getting better at communication in English using ChatGPT.
Read More
Next-gen news consumers. What do they want?

Next-gen news consumers. What do they want?

It's no longer simply enough to keep producing the same news menu for an aging demographic and milking that diminishing audience.
Read More
Let’s talk backup. Again

Let’s talk backup. Again

Computers have a functional life of around five years, and most media will last roughly that long before either becoming more prone to failure or simply running out of room.
Read More
TSTT to invest $160m in network, deploy VOLTE

TSTT to invest $160m in network, deploy VOLTE

"Trinidad and Tobago’s only indigenous communications solutions provider has successfully returned to a period of profitability."
Read More
Huawei doubles profits in 2023

Huawei doubles profits in 2023

Throughout the past year, its ICT infrastructure business remained solid, and its consumer business met expectations. Both its cloud computing and digital power businesses grew steadily.
Read More
The United States vs Apple

The United States vs Apple

Apple's services, including AppleTV, Apple Music and Apple Pay, account for 22 per cent of the company's revenue and it's drawing the lion's share of the concern articulated in the...
Read More
VISA sees 20% increase in cross-border transactions during Carnival 2024

VISA sees 20% increase in cross-border transactions during Carnival 2024

Visa and its local partners have made significant investments to enable local merchants to securely and efficiently accept payments on the world’s largest payment network.
Read More
The state of Trinidad newsrooms

The state of Trinidad newsrooms

"In a developing country like Trinidad and Tobago where there are no specifications for a tertiary education to be a journalist."
Read More
Reggie’s gone. What we lost

Reggie’s gone. What we lost

The public service he retired from had drifted far from even those post-Colonial dreams
Read More
Reaching the youth media audience Reaching the youth media audience
Huawei, CTU partner to drive regional digital development Huawei, CTU partner to drive regional...
IGT offers technology for children on the autism spectrum IGT offers technology for children on...
Digicel invites Caribbean businesses to participate in regional digital transformation survey Digicel invites Caribbean businesses to participate...
Pinaka Consulting partners with Flexxon Pinaka Consulting partners with Flexxon
Next-gen news consumers. What do they want? Next-gen news consumers. What do they...
Let’s talk backup. Again Let’s talk backup. Again
TSTT to invest $160m in network, deploy VOLTE TSTT to invest $160m in network,...
Huawei doubles profits in 2023 Huawei doubles profits in 2023
The United States vs Apple The United States vs Apple
VISA sees 20% increase in cross-border transactions during Carnival 2024 VISA sees 20% increase in cross-border...
The state of Trinidad newsrooms The state of Trinidad newsrooms
Reggie’s gone. What we lost Reggie’s gone. What we lost

🤞 Get connected!

A once weekly email notification of new stories on TechNewsTT. Just that. No spam.

Possible UI Glitch. Click top right corner to dismiss 👉

Get Connected!

A once weekly email notification of new stories on TechNewsTT.

Just that. No spam.

Related posts
Press Releases

TSTT to invest $160m in network, deploy VOLTE

3 Mins read
“Trinidad and Tobago’s only indigenous communications solutions provider has successfully returned to a period of profitability.”
BitDepthFeatured

The issues arising from new cybercrime laws

3 Mins read
Proper reporting of breach incidents is paramount to balance the needs of all stakeholders, including customers, regulators, and shareholders.”
FeaturedNews Briefs

BlueWaters breach and data dump announced by LockBit3

1 Mins read
Cybersecurity researcher Shiva Parasram confirms that at least one of the links to published data files is a collection of 3.4 GB company information.
Subscribe
Notify of
guest

This site uses Akismet to reduce spam. Learn how your comment data is processed.

2 Comments
Oldest
Newest Most Voted
Inline Feedbacks
View all comments
Shawn cort
Shawn cort
5 months ago

How to get Trinidad and Tobago postal code

×
FeaturedTechnology Reporting

TSTT's week of evasion and half-truths

2
0
Share your perspective in the comments!x
()
x