Net Manager
Network Managing, Engineering and Administration with an eye toward security.

Best practices meets the real world!

Wednesday, October 01, 2003  

I very much enjoyed this article entitled: Car shoppers' credit details exposed in bulk. The end of the article talks about the company in question contacting the local FBI office. Let's hope their losses financially were more than $10,000. or else they'll get little help from the Feds (they are hunting Terrorists, after all!). The problem I see with this kind of attitude is that the folks that found the problem were just using HTTP commands in their browser window (no SQL injection or other such nonsense). Basically it was a link to a page that should have not had a link and should have been password protected (have to wonder if it was even behind a SSL cert!?!). I can just see the guy getting arrested for what amounts to clicking on a link.

posted by David | 10/01/2003 02:37:00 PM


Post a Comment

<< Home

News Links
Blog Links


Reading blogs at work? Click to escape to a suitable site!
Get Firefox

Site Meter

Powered by Blogger