breach just one of many executed by HTP hackers?
Posted on 09 May 2013.
Internet registrar has suffered a breach and has been informing users about it via email, requesting them to change their passwords.

" recently discovered a security breach where customer account information including usernames, email addresses, and encrypted passwords and encrypted credit card account information may have been accessed by unauthorized individuals. It appears that the security breach was motivated by an attempt to gain information on a single, large commercial account at," says the letter.

" stores your credit card information using strong encryption and the private keys required to access that information are stored physically in a separate remote location that was not compromised. Therefore, we donít believe that your credit card information was accessed in a usable format. Additionally, your EPP codes (required for domain transfers) were unaffected as they are also stored separately. We have no evidence to suggest that your data has been used for fraudulent activities."

They require users to reset their passwords before logging in, and advise changing the password for other online services if the used the same one.

The breach appears to be related with the Linode hack executed earlier this year.

If the latest edition of the 'zine published by the hacker collective "Hack The Planet" is to be believed, Linode and (its registrar) are just two of the many institutions and organization successfully targeted by the group in the last six months.

The list also includes web servers of MIT (they claim to have gained administrator access to all .edu domains), Nmap, Sucuri, Wireshark, and others. Apparently, the servers were compromised via vulnerabilities in ColdFusion and the MoinMoin wiki engine.


Critical bug found in Cisco ASA products, attackers are scanning for affected devices

Several Cisco ASA products - appliances, firewalls, switches, routers, and security modules - have been found sporting a flaw that can ultimately lead to remote code execution by attackers.

Weekly newsletter

Reading our newsletter every Monday will keep you up-to-date with security news.

Daily digest

Receive a daily digest of the latest security news.

Fri, Feb 12th