Read a little. Learn a lot. • Tightly-written news, views and stuff • Follow us on TwitterBe a Facebook FanTumble us!

12 Dec 2010 21:11

tags

Tech: Hackers: Gawker used very outdated form of password encryption

  • yeah … Gawker staffer Scott Kidder claimed that users’ passwords should be safe from hacking. “Passwords are encrypted anyway,” he says, “so stealing passwords isn’t even possible.”
  • … but A document from the hackers in their bittorrent explains that the passwords used a very outdated form of encryption that only protected the first eight characters. Yikes. Freaking yikes. source

10 Jun 2010 23:41

tags

Tech: One of the neckbeards behind Goatse Security speaks up

  • It’s pretty egregious that AT&T would have it for such a device that probably has known exploit candidates (attack code) on, say, the Russian (underground) markets.
  • Escher “Weev” Auernheimer of Goatse Security • Talking about how his group uncovered a major flaw with AT&T’s security mechanism, which led to Gawker posting about the results. Why did they go to Gawker and not AT&T? “We did want not engage directly with AT&T in case they tried to serve us (an injunction) or something,” he said. How did they do it? It was a simple brute-force attack that required no hacking. And people offended about the group’s hilarious name? “If someone is offended to where they can’t deal with us … then they’re a douche bag and we don’t want to be employed by them anyway.” A fun read. source