Here’s how they did it, below. Facebook has since secured the site against this exploit: Facebook Basic Information Exploit from FBHive on Vimeo.
Category: Other
Ca: Credit card fraud draws two-year sentence
Betty Ann Adams of TheStarPhoenix.com reports that Brandon Brian Therens, a newly graduated University of Saskatchewan student, pleaded guilty to hacking into the university’s computer in 2007 and downloading the credit card information of about 3,600 students. Therens also admitted to other frauds and thefts between May and October 2007: He stole hand-held wireless debit…
Security experts uncover one-stop botnet marketplace
Researchers have uncovered a fully-functional marketplace for the building and selling of botnets. Security firm Finjan said that the site allows criminals to obtain everything from malware and data, to networks of infected PCs. Yuval Ben-Itzhak, chief technology officer at Finjan, described the new site an “eBay for stolen data”. “It is basically a hacker-to-hacker…
Bits ‘n Pieces
In the justice system: Federal prosecutors in Virginia have leveled conspiracy and bank-fraud charges against the alleged leader and nine members of a national organization of high-tech pickpockets called “Cannon to the Wiz” that’s been the scourge of police around the country since at least early 2007. Personal info on over 120 victims was found…
Bits ‘n Pieces
In the justice system: In Ohio, Glenn E. Spencer Jr., a restaurant worker at N Two Deep Fish & Chicken was arrested and charged with using stolen credit card numbers to steal nearly $5,000. It wasn’t clear whether he stole the numbers from customers or co-workers. More. Thea Ann Coogan of California was sentenced to…
Oops: Did Rudder Just Send Your Financial Data to Someone Else? (update 1)
Adam Ostrow reports that financial planning application Rudder appears to have sent user’s confidential financial information to the wrong people, exposing users’ salary, debts, bank balance, and where they shop. Ostrow is trying to obtain some statement from Rudder. As of the time of this posting, there is no statement on their site either denying,…