Name.com breach just one of many executed by HTP hackers?
Posted on 09 May 2013.
Internet registrar Name.com has suffered a breach and has been informing users about it via email, requesting them to change their passwords.


"Name.com recently discovered a security breach where customer account information including usernames, email addresses, and encrypted passwords and encrypted credit card account information may have been accessed by unauthorized individuals. It appears that the security breach was motivated by an attempt to gain information on a single, large commercial account at Name.com," says the letter.

"Name.com stores your credit card information using strong encryption and the private keys required to access that information are stored physically in a separate remote location that was not compromised. Therefore, we donít believe that your credit card information was accessed in a usable format. Additionally, your EPP codes (required for domain transfers) were unaffected as they are also stored separately. We have no evidence to suggest that your data has been used for fraudulent activities."

They require users to reset their passwords before logging in, and advise changing the password for other online services if the used the same one.

The breach appears to be related with the Linode hack executed earlier this year.

If the latest edition of the 'zine published by the hacker collective "Hack The Planet" is to be believed, Linode and Name.com (its registrar) are just two of the many institutions and organization successfully targeted by the group in the last six months.

The list also includes web servers of MIT (they claim to have gained administrator access to all .edu domains), Nmap, Sucuri, Wireshark, and others. Apparently, the servers were compromised via vulnerabilities in ColdFusion and the MoinMoin wiki engine.









Spotlight

The synergy of hackers and tools at the Black Hat Arsenal

Posted on 27 August 2014.  |  Tucked away from the glamour of the vendor booths and the large presentation rooms filled with rockstar sessions, was the Arsenal - a place where developers were able to present their security tools and grow their community.


Weekly newsletter

Reading our newsletter every Monday will keep you up-to-date with security news.
  



Daily digest

Receive a daily digest of the latest security news.
  

DON'T
MISS

Thu, Aug 28th
    COPYRIGHT 1998-2014 BY HELP NET SECURITY.   // READ OUR PRIVACY POLICY // ABOUT US // ADVERTISE //