iTunes Music Store Hole Discovered, Patched
prockcore writes "A vulnerability has been found in Apple's iTunes Music Store. The flaw enabled hackers to hijack other people's accounts by knowing only their email address, and download music with it. Apple has patched the hole."
I doubt that this could have affected it enough to make the estimates of the number of downloads significantly different. But atleast they found it fast enough and fixed it so it didnt get out of hand.
However in my experience of developing applications for a lot of 'big name' organisations. The QA, testing and other checking people have no idea of the issues let alone an understanding of how to really 'break' an application.
My general experience is if I don't QA my own work, as long as it's functionally correct no one else will question it.
It's scary, one of the many reasons I'm very careful when I check my credit card bill
s/hackers/jackasses who think it's cool to defraud and steal, and make the rest of real hackerdom look bad.
jX [ Make everything as simple as possible, but no simpler. - Einstein ]
free music! hmm, if the RIAA can sue Napster for enabling users to download free music, can the RIAA sue Apple or Microsoft if security holes in their music services enable users to download free music?
cpeterso