BreachExchange mailing list archives

Hacker from Egypt exploits vulnerability in Yahoo!, leaks data


From: security curmudgeon <jericho () attrition org>
Date: Mon, 17 Dec 2012 12:52:54 -0600 (CST)


http://www.humanipo.com/blog/2925/Hacker-from-Egypt-exploits-vulnerability-in-Yahoo-leaks-data

December 17, 2012 ยท by Tefo Mohapi
Hacker from Egypt exploits vulnerability in Yahoo!, leaks data

Prolific Egyptian hacker Virus_Hima has exploited a vulnerability in Yahoo!'s servers and databases, leaking some of the data which was stolen on the Internet.

Virus_Hima, reported to be a well known penetration tester, says his intentions are ethical and that he is seeking to highlight vulnerabilities in big sites such as Adobe, Microsoft, Yahoo!, Google, Apple, Facebook and many more.

According to Virus_Hima, neither Yahoo! nor Adobe responded to his alerts highlighting the vulnerabilities of the site.

In a statement, Virus_Hima said: "So I decided to teach both of them a hard lesson to harden them security procedures. It would make a disaster if such companies vulnerabilities was privately used in the underground and they never know about it! not only their customers been affected but the vendors themselves also suffer from such exploits. Adobe acrobat/flash, Yahoo data leak of that 400k emails, and that hotmail remote password reset vulnerabilities is an example.."

[..]
_______________________________________________
Dataloss Mailing List (dataloss () datalossdb org)
Archived at http://seclists.org/dataloss/
Unsubscribe at http://datalossdb.org/mailing_list

Supporters:

Risk Based Security (http://www.riskbasedsecurity.com/)
Risk Based Security equips organizations with security intelligence, risk
management services and on-demand security solutions to establish
customized risk-based programs to address information security and
compliance challenges. 

Current thread: