Disclaimer: This is a personal blog. The views and opinions expressed here represent my own and not those of any institutions or organizations that I currently work for or have worked for. Follow me on twitter here

Friday, April 29, 2011

What's up with DSL Reports? = 9000 accounts breached

Another breach now involving DSL Reports below.

"DSL Reports - the information and review site on high speed Internet services which operates over 200 forums - has been hit with a blind SQL injection attack, which resulted in the compromise of at least 9000 accounts.

Founder Justin Beech posted a notification about the intrusion on the forum dedicated to the site, in which he specified that no login names, zip codes and private posts were compromised.

The attack went on for four hours on Wednesday and it was blocked before it had completed more than 8% of its work. All the same, the attackers managed to obtain a large number of email/password pairs."

More information here

"The ones they obtained were basically random. So they cover the entire 10 year history of the membership but sprinkled randomly. Some are very old accounts, some are new accounts, some inactive or deleted," says Beech.

No comments:

Post a Comment