Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
Car shoppers' credit details exposed in bulk
Kevin Poulsen, SecurityFocus 2003-09-25

At least 1,000 automobile shoppers who submitted online credit applications to any of 150 different automotive dealerships around the U.S. had their personal and financial details exposed on a publicly-accessible website, according to a computer security consultant who stumbled across the privacy gaffe.

Comments Mode:
Those wascally hackers 2003-09-25
Anonymous (1 replies)
Those wascally hackers 2003-09-26
Anonymous
Shame on you, Security Focus? 2003-09-26
Anonymous (2 replies)
Shame on you, Security Focus? 2003-09-28
Anonymous
Shame on you, Security Focus? 2003-09-29
Anonymous
Car shoppers' credit details exposed in bulk 2003-09-26
Grimm (1 replies)
Shame on their IT security? 2003-09-30
Anonymous
CIO = Buffoon 2003-09-26
Anonymous
Car shoppers' credit details exposed in bulk 2003-10-01
BojanTrojan
Scenario:

You're an IT Director using a CRM package with a serious security bug you've just discovered. Every one of the over 5000 installations of this software are easily compromised with knowledge of this bug.

What do you do?

1. Nothing

2. Alert the vendor and maybe get a medal.

3. Start your own security company and fix the bugs for a fee.

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/articles/7067/22737#22737







 

Privacy Statement
Copyright 2008, SecurityFocus