Tiversa is an American
cybersecurity
Computer security, cybersecurity (cyber security), or information technology security (IT security) is the protection of computer systems and networks from attack by malicious actors that may result in unauthorized information disclosure, th ...
firm headquartered in
Pittsburgh
Pittsburgh ( ) is a city in the Commonwealth (U.S. state), Commonwealth of Pennsylvania, United States, and the county seat of Allegheny County, Pennsylvania, Allegheny County. It is the most populous city in both Allegheny County and Wester ...
, Pennsylvania. It was founded by a retired chiropractor and real estate entrepreneur named Robert Boback in 2004.
The company specialized in trawling the
deep web
The deep web, invisible web, or hidden web are parts of the World Wide Web whose contents are not indexed by standard web search-engine programs. This is in contrast to the " surface web", which is accessible to anyone using the Internet. Co ...
, investigating
peer-to-peer network
Peer-to-peer (P2P) computing or networking is a distributed application architecture that partitions tasks or workloads between peers. Peers are equally privileged, equipotent participants in the network. They are said to form a peer-to-peer ...
s, and helping businesses counteract data breaches and other cybersecurity risks. Its main product was EagleVision X1, a piece of software that monitored the deep web -- the parts of the Internet that are not easily accessible to general browsers, such as peer-to-peer networks -- for sensitive data.
History
Before entering the cybersecurity field, Boback was a chiropractor and real estate entrepreneur.
[ He started Tiversa in 2004 as a two-person shop. Tiversa quickly obtained a high-profile board of advisers, including Maynard Webb (former eBay executive and chairman of Yahoo), ]Howard Schmidt
Howard Anthony Schmidt (October 5, 1949 – March 2, 2017) was a partner with Tom Ridge in Ridge Schmidt Cyber LLC, a consultancy company in the field of cybersecurity. He was the Cyber-Security Coordinator of the Obama Administration, operating ...
(Obama
Barack Hussein Obama II ( ; born August 4, 1961) is an American politician who served as the 44th president of the United States from 2009 to 2017. A member of the Democratic Party, Obama was the first African-American president of the U ...
-era cybersecurity chief), and Wesley Clark
Wesley Kanne Clark (born December 23, 1944) is a retired United States Army officer. He graduated as valedictorian of the class of 1966 at West Point and was awarded a Rhodes Scholarship to the University of Oxford, where he obtained a degree ...
(former Supreme Allied Commander
Supreme Allied Commander is the title held by the most senior commander within certain multinational military alliances. It originated as a term used by the Allies during World War I, and is currently used only within NATO for Supreme Allied Com ...
of NATO
The North Atlantic Treaty Organization (NATO, ; french: Organisation du traité de l'Atlantique nord, ), also called the North Atlantic Alliance, is an intergovernmental military alliance between 30 member states – 28 European and two No ...
).[
]
Marine One hack
In 2009, Tiversa claimed to have discovered a major security breach involving then-President Barack Obama
Barack Hussein Obama II ( ; born August 4, 1961) is an American politician who served as the 44th president of the United States from 2009 to 2017. A member of the Democratic Party (United States), Democratic Party, Obama was the first Af ...
's helicopter, Marine One
Marine One is the call sign of any United States Marine Corps aircraft carrying the president of the United States. It usually denotes a helicopter operated by Marine Helicopter Squadron One ( HMX-1) "Nighthawks", consisting of either the larg ...
. The breach involved the leak to Iran
Iran, officially the Islamic Republic of Iran, and also called Persia, is a country located in Western Asia. It is bordered by Iraq and Turkey to the west, by Azerbaijan and Armenia to the northwest, by the Caspian Sea and Turkm ...
of sensitive procurement information about the helicopter as well as the helicopter's blueprints. According to Tiversa's CEO, the breach was caused by a defense contractor employee whose daughter downloaded a peer-to-peer file-sharing client onto a disused laptop which contained the sensitive materials. This discovery made national news, but a whistleblower
A whistleblower (also written as whistle-blower or whistle blower) is a person, often an employee, who reveals information about activity within a private or public organization that is deemed illegal, immoral, illicit, unsafe or fraudulent. Whi ...
later claimed that the Iranian hack was actually fabricated by Tiversa employees.[ Boback, the CEO of Tiversa, denied the allegation.
]
LabMD scandal
In May 2008, a Tiversa executive contacted LabMD (a urology testing laboratory) claiming to have discovered evidence of a major data breach and offered to sell LabMD monitoring services to counteract the breach.[ When the head of LabMD declined to purchase the monitoring services, Tiversa allegedly leaked information about the breach to the U.S. Federal Trade Commission, which pursues cybersecurity issues. The FTC launched a probe into LabMD's practices under section 5 of the Federal Trade Commission Act in 2010, which evolved into a formal administrative complaint in 2013. LabMD's revenues fell and the business itself collapsed in 2014 as clients declined renewal contracts and partners ended their agreements. However, in November 2014, an administrative law judge threw out the complaint against LabMD, citing a lack of reliability in the evidence provided by Tiversa to the FTC. This stemmed from a whistleblower complaint by a former Tiversa employee, Richard Wallace, who claimed that he was the one who breached LabMD's systems and that LabMD's data was never leaked outside of its network. He also alleged that Tiversa was responsible for the FTC complaint against LabMD, which was made in retaliation for LabMD's refusal to purchase Tiversa's monitoring services.][ In sworn testimony, Wallace admitted to fabricating data to instill fear of breaches against "probably every company we've ever done business with".]
Federal probe
Following Wallace's whistleblower complaint, the federal government began probing Tiversa under allegations that it deliberately provided false information about data breaches to the FTC to retaliate against companies that declined to purchase its data protection services. The Department of Justice
A justice ministry, ministry of justice, or department of justice is a ministry or other government agency in charge of the administration of justice. The ministry or department is often headed by a minister of justice (minister for justice in a ...
launched a criminal investigation in 2015 following the whistleblower complaint and the FTC also launched a probe of whether Tiversa had lied about any among the 80 companies that it had reported to them.
Acquisition by Kroll Inc.
In June 2017, Tiversa was acquired by Kroll Inc.
Kroll is an American corporate investigation and risk consulting firm established in 1972 and based in New York City. In 2018, Kroll was acquired by Duff & Phelps. In 2021, Duff & Phelps decided to rebrand itself as Kroll, a process it complet ...
and its employees were hired to maintain the Tiversa investigation systems. In January 2019, the system was still operational and a person in England reported via Twitter
Twitter is an online social media and social networking service owned and operated by American company Twitter, Inc., on which users post and interact with 280-character-long messages known as "tweets". Registered users can post, like, and ...
: "Care to tell me why you are snooping my I.P. address?"
Prominent clients
* Capital One
Capital One Financial Corporation is an American bank holding company specializing in credit cards, auto loans, banking, and savings accounts, headquartered in McLean, Virginia with operations primarily in the United States. It is on the ...
[
* ]Lehman Brothers
Lehman Brothers Holdings Inc. ( ) was an American global financial services firm founded in 1847. Before filing for bankruptcy in 2008, Lehman was the fourth-largest investment bank in the United States (behind Goldman Sachs, Morgan Stanley, a ...
[
* Goldman Sachs][
* ]American Express
American Express Company (Amex) is an American multinational corporation specialized in payment card services headquartered at 200 Vesey Street in the Battery Park City neighborhood of Lower Manhattan in New York City. The company was found ...
[
]
References
External links
* {{Webarchive, url=https://web.archive.org/web/20180420200019/http://www.tiversa.com/, title=Official website, date=April 20, 2018
Data protection
Security companies of the United States
Computer security software companies
Computer security companies
Technology companies established in 2004
American companies established in 2004
Information technology companies of the United States
Corporate crime