Free Republic
Browse · Search
News/Activism
Topics · Post Article

To: Rashputin

I’ve never read that Citi was hacked. Target wasn’t hacked as much as an admin password was “found”, regardless they read passwords directly from databases, not through users password field entry.


22 posted on 05/21/2014 7:54:40 PM PDT by Durus (You can avoid reality, but you cannot avoid the consequences of avoiding reality. Ayn Rand)
[ Post Reply | Private Reply | To 20 | View Replies ]


To: Durus
Three companies, Citibank being one of them, had their DB hacked due to someone starting with a program that captured input from both users and administrators who were logging in over the web (which I would have thought wouldn't be permitted or would be more secure than HTTPS for admins, so go figure, maybe he didn't want to give details).

People with privilege logging in remotely having their passwords captured was the root of the problem.

My daughter is finishing up her Masters in Computer Forensics and Security and got all this from a lecture she attended recently, beyond that I don't recall the specifics. I'll take her word as being correct, you take my word as being BS, we'll both be happy.

25 posted on 05/21/2014 8:39:23 PM PDT by Rashputin (Jesus Christ doesn't evacuate His troops, He leads them to victory.)
[ Post Reply | Private Reply | To 22 | View Replies ]

Free Republic
Browse · Search
News/Activism
Topics · Post Article


FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson