Telecom Website Hacked...

I've just read on the today's journal that some days ago the italian site of 187 On Line by Telecom Italia was hacked.

This site is responsible for orders and contains all the Telecom customers data... now these data could be stolen and shared.

What is the cause of the hacking... a simple SQL Injection. SQL Injection on a big site of a big company like Telecom? Not good... Telecom, please review all your website infrastructure!!!

Print | posted on Monday, April 19, 2004 4:45 AM

Comments on this post

# Test

Requesting Gravatar...
Left by William.Blog() on Apr 18, 2004 7:00 PM

# re: Telecom Website Hacked...

Requesting Gravatar...
I wish there were some action taken against companies which allowed flaws like this - they can heardly blame MS for things like that! If we take an analogy, it's like leaving a key under the doormat and being surprised when a burglar uses it to steal your stuff...or when a bank leaves the combination to a safe in an open desk drawer. Yet the company probably won't face prosecution for this blantant security lapse...
Left by Scott Galloway on Apr 19, 2004 2:52 AM

# re: Telecom Website Hacked...

Requesting Gravatar...
I agree with you Scott... the ridiculous thing is also that they have a client ID that i sequential, so for the intruders is really easy to extract all the client informations (seems that their archive was from today to 2001).
Left by Stefano Demiliani on Apr 19, 2004 3:05 AM

# A site ready to be Hacked...

Requesting Gravatar...
A site ready to be Hacked...
Left by Stefano Demiliani WeBlog on Apr 19, 2004 8:37 AM

Your comment:

 (will show your gravatar)
 
Please add 5 and 2 and type the answer here: