funsec mailing list archives

Sony - old software and no firewall


From: "Rob, grandpa of Ryan, Trevor, Devon & Hannah" <rMslade () shaw ca>
Date: Thu, 5 May 2011 11:34:48 -0800

Who needs Payment Card Industry Data Security Standards when you have Peurile 
Corporate Intransigence - D$%^ed Silly (in)Security?

http://news.consumerreports.org/electronics/2011/05/data-security-expert-sony-
knew-it-was-using-obsolete-software-months-in-advance.html

"According to Spafford, security experts monitoring open Internet forums learned 
months ago that Sony was using outdated versions of the Apache Web server 
software, which "was unpatched and had no firewall installed." The issue was 
"reported in an open forum monitored by Sony employees" two to three months 
prior to the recent security breaches, said Spafford."

======================  (quote inserted randomly by Pegasus Mailer)
rslade () vcn bc ca     slade () victoria tc ca     rslade () computercrime org
If your plan is for a year, plant rice.  If your plan is for a
decade, plant trees.  If your plan is for a lifetime, educate
children.                                                - Confucius
victoria.tc.ca/techrev/rms.htm http://www.infosecbc.org/links
http://blogs.securiteam.com/index.php/archives/author/p1/
http://twitter.com/rslade
_______________________________________________
Fun and Misc security discussion for OT posts.
https://linuxbox.org/cgi-bin/mailman/listinfo/funsec
Note: funsec is a public and open mailing list.


Current thread: