This IS awesome. |
|
So for those of you that haven't been following the story, here's a quick recap. |
|
Last edited by PhilosopherStoned; 02-19-2011 at 09:03 AM.
Previously PhilosopherStoned
This IS awesome. |
|
When is Anonymous just gonna take over the world? I heart them. |
|
technically, anonymous doesn't have to take over the world. Anonymous is everyone, and no one. |
|
Art
The ability to happily respond to any adversity is the divine.
Dream Journal Shaman Apprentice Chronicles
Did they ever release Gary's emails? Cause I know Penny(Head of marketing) was talking to Anon on IRC about not releasing ALL of the emails. |
|
Lol Anonymous cracks me up. I just read about this yesterday. It's hard to believe a group of "hacktavists" could expose so much information.... From a security company. |
|
The funny thing is that the vulnerability was incredibly naive two times over. First the passwords (even in hashed form) should *never* have been available through an (S)/HTTP request. A hashed password should *never* leave the system. In the article I linked to that gave the details of the breakin, they published URL that gave access to the passwords. It was something like www.example.com?page=21&something_else=2. This means that the CMS was set up to serve the passwords. Bad idea. |
|
Previously PhilosopherStoned
Bookmarks