April 14: See update and possible correction at the bottom of this post concerning the storage and encryption of tips. TeaMp0isoN claims that one of the sites they recently “audited” was the web site of Waterloo Crime Stoppers. In a zine about what they describe as a 0day SQLi attack, TeaMp0isoN writes that they found an unprotected…
Category: Miscellaneous
Have you googled your site to see if you’ve been hacked?
It’s 2015, and too many entities still don’t seem to know to do Google searches or Pastebin searches on themselves to find out if they’ve been hacked or their data dumped somewhere. There’s no way this blog can report on them all or even alert them all, but one of today’s examples is WAYEB, the European Association…
Change.org springs a leak, exposes private e-mail addresses [updated]
Earlier this week, Dan Goodin reported: Online petitions service Change.org has a website bug that’s disclosing e-mail addresses that presumably belong to current or former subscribers. Search results suggest the number could be thousands, but a Change.org official said it was about 100. The disclosure bug was active at the time this post was being…
FBI: St. Louis County police union hacker had gun, made threats
Robert Patrick reports: A local man accused of launching an attack that disabled a St. Louis County police union website had a gun when arrested and made several threats about shooting law enforcement, an FBI agent said Thursday. FBI agents arrested Justin E. Payne, 32, Tuesday on a single misdemeanor charge of unauthorized damage to…
GA: Identity thieves strike United Way
Aimee Jones reports: Doris Strickland, director of the Newton County United Way, contacted the Sheriff’s Office Friday to report that the computer she uses at the United Way office for business was hacked through her email. She reported that she changed all her passwords, but discovered nearly $1,400 had been charged at several restaurants on…
Anonymous attacks NYPD union website
Rebecca Harshbarger reports: A cyberattack shut down a website for the NYPD captains union, targeting it with malware, union officials said. Hackers from the group Anonymous, which supported the Occupy Wall Street movement and recently started an online war with ISIS, corrupted the website of the Captain Endowment Association on Friday. […] Richter wrote that…