Yes.
> Based on our investigation, the data dumps include 1.3 million records of overseas Filipino voters, which included passport numbers and expiry dates. What is alarming is that this crucial data is just in plain text and accessible for everyone. Interestingly, we also found a whopping 15.8 million record of fingerprints and list of peoples running for office since the 2010 elections.
None of this information is particularly secret or sensitive.
1) Fingerprints are left everywhere anyway. You aren't going to be able to hide these.
2) Passport information is recorded in 2930423904239049203 places already. Much like your IP address, social security number, etc. it should be treated like a username and not a password. [i.e. It is the publicly known portion of your identity]
3) If you are treating PII as private, you are doing everything wrong. These are all basically public record at this point and pretending otherwise is silly. The whole reason they are "identifying" is because other people can look at it and recognize you.
Other "sensitive information":
> Among the data leaked were files on all candidates running on the election with the filename VOTESOBTAINED. Based on the filename, it reflects the number of votes obtained by the candidate. Currently, all VOTESOBTAINED file are set to have NULL as figure. > Included in the data COMELEC deemed public was a list of COMELEC officials that have admin accounts. > list of peoples running for office since the 2010 elections.
http://blog.trendmicro.com/trendlabs-security-intelligence/5...
Yes, having a list of candidates that is already public knowledge is sensitive. Similarly, the list of election officials that have that access is also basically public knowledge.
This is being played up as some "great secret trove of knowledge" when the reality is you've given this information to 2903420934239042390 different people and its basically public record. Simply because information identifies you doesn't make it private.