Your Ad Here

We’re Awarding Goatse Security A Crunchie Award For Public Service

This iPad security breach story from last week continues to spin way out of control, and in our opinion fingers are being pointed in the wrong direction. The FBI is investigating the incident, and a few hours ago AT&T finally communicated with customers to tell them about the breach (I’ve reprinted the AT&T email below).

Here’s what happened: Goatse Security discovered a rather stupid vulnerability on the AT&T site that returned a customer email if a valid serial number for the iPAD SIm card was entered. An invalid number returned nothing, a valid number returned a customer email address. Goatse created a script and quickly downloaded 114,000 customer emails. They then turned all that over to Gawker, after, they say, AT&T was notified and the vulnerability was closed. Gawker published some of the data with the emails removed. Says Goatse: “All data was gathered from a public webserver with no password, accessible by anyone on the Internet. There was no breach, intrusion, or penetration, by any means of the word.”



  • Twitter
  • Facebook
  • email
  • PDF
  • Digg
  • del.icio.us
  • Google Bookmarks
  • RSS

This post is tagged: , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , , ,

Leave a Reply





  • Van Gogh’s Starry Night modded into beautiful interactive light and sound show (video)Van Gogh’s Starry Night modded into beautiful interactive light and sound show (video)

    Here is a type of little projects you would like you have to just play with the second one you've seen it. Greek Artist Petros Vrellis coded an interactive light and sound show into Vincent Van Gogh's Starry Night -- you could control along with your fingers. With a swipe of a single digit (or hand ) you're able to pull the particles of the artists paint daubs to redirect the… »
  • HP rolls out more open webOS components, new Isis browser and a few organizationHP rolls out more open webOS components, new Isis browser and a few organization

    While we thought a tasteful retrospective was find out how to go, it seems like HP's not finished picking over those webOS bones. The corporate has now released the UI widgets for Enyo 2.0 (following its source code release last month ), details on how webOS deals with the Javascript core and a brand new Isis web browser. The browser will apparently add "enhanced support" for… »

Categories

Subscribe

Enter your email address: