Slashdot Mirror


Kaspersky Customer Database Exposed

secmartin writes "A hacker has managed to gain access to several databases via a SQL injection vulnerability on Kaspersky's US website. He has posted several screenshots and a list of available tables; judging from the table names, the information available includes data on bugs and user- and reseller accounts. The hacker has indicated that no confidential information will be posted on the Internet, but since a large part of the URLs used was visible in screenshots, it will only be a matter of time before somebody else manages to duplicate this."

15 of 175 comments (clear)

  1. Obligatory xkcd reference by Anonymous Coward · · Score: 0, Funny

    Here's the reference, for those who still haven't seen it:
    http://xkcd.com/327/

  2. Re:Secure? Sure. by Anonymous Coward · · Score: 1, Funny

    Who sed anything about Linux? I sed a *secure* OS. Oh and Im a level 120 yellow mold.

  3. Re:Awesome by Anonymous Coward · · Score: 3, Funny

    Fox news says you can hack a computer wirelessly. I believe a trusted news source way more than a nerd like you.

  4. fuck! that will teach me to pay for software! by Anonymous Coward · · Score: 3, Funny

    I've been "borrowing" our company's corporate AV sw that doesn't require registration and has perpetual license for the past 10 years... Then 6 months ago I decided to go legal and spent $70 for 3 user license. I paid with my credit card, registered with my email address and now this! Never again :)

  5. Re:Secure? Sure. by Anonymous Coward · · Score: 1, Funny

    If you want a virtually 100% secure OS, there is always OS X.

  6. Re:Awesome by MrEricSir · · Score: 1, Funny

    Trend Micro? Even Norton is better than Trend.

    --
    There's no -1 for "I don't get it."
  7. Re:Secure? Sure. by Anonymous Coward · · Score: 2, Funny

    That's because the gaping backdoors are in Apple users, not in Apple software.

  8. Re:Secure? Sure. by Anonymous Coward · · Score: 2, Funny

    I've never fucked a girl, but I hope to, someday. Somehow.

    There, I fixed that for you.

  9. Just got back from buying their retail product. by WiiVault · · Score: 4, Funny

    Great timing eh?

  10. Re:Awesome by Nethead · · Score: 5, Funny

    AC: Fox news says you can hack a computer wirelessly. I believe a trusted news source way more than a nerd like you.

    Isn't 'Fair and Balanced' a router setting?

    --
    -- I have a private email server in my basement.
  11. Comment removed by account_deleted · · Score: 4, Funny

    Comment removed based on user account deletion

  12. Re:Awesome by kybred · · Score: 4, Funny

    I'm all for more security though, most places don't error on the side of caution. Nuke plants tend to (and actually security it generally even 'tougher' at casinos)...

    Of course it is! With nukes plants your merely talking about human lives. With casinos; well, there your talking about money.

  13. Re:Awesome by Poltras · · Score: 5, Funny

    Prepared statements are not exclusive to Java.

    Shhh... He's a Java programmer, don't tell him there are other languages out there, he's gonna screw them up.

  14. Re:Awesome by Anonymous Coward · · Score: 5, Funny

    I work in a secure environment (along the line of a massive casino)

    A bank, I presume?

  15. Re:Awesome by Crayon+Kid · · Score: 2, Funny

    Our filrewall looks at incomming connections and evaluates the strings against SQL injection tactics.

    I'm hoping it wasn't you who wrote the filtering rules...

    --
    i ate crayons when i was a kid and now i have two braincells and the blue ones taste nicer