• Why not take a moment to introduce yourself to our members?

attempt

Experienced Reefer
Rating - 0%
0   0   0
http://www.theregister.co.uk/content/55/34379.html
Pet supply retailer PetCo disclosed this week that its security and privacy practices are the target of an investigation by the U.S. Federal Trade Commission (FTC), which is following up on an e-commerce security gaffe that left as many as 500,000 credit card numbers accessible from the Web earlier this year
 

reefland

Advanced Reefer
Rating - 0%
0   0   0
Heh.. SQL Injection attacks are very simple to do and finding sites open to it is very simple. Not surprised they got nailed. Anytime you take text (of any kind) and concatinate it to a SQL query string a site is open to SQL Injection. And if done in a login page you can totally bypass any security (SSL or not).

Anyone who writes code like:

SQLString = 'Select name from table where name='+UserName+'''

Opens a site to SQL Injection.
 

clyde

Advanced Reefer
Rating - 0%
0   0   0
a settlement might be a 1.00 off coupon

big freaking deal, who benfits from these classactions etc are the lawyers.
 

Sponsor Reefs

We're a FREE website, and we exist because of hobbyists like YOU who help us run this community.

Click here to sponsor $10:


Top