Thứ Ba, 6 tháng 5, 2008

Sex Offender Registry Hacked

One of the rules of computer coding is to check your input. Especially when your input comes from users. The Oklahoma Department of Corrections missed that day in computer class. DOC trusted anonymous user input on their public-facing Sex Offender Registry website and they blindly executed it and displayed whatever came back.

The result of this bad coding had some rather serious consequences: the names, addresses, and social security numbers of tens of thousands of Oklahoma residents were made available to the general public for a period of at least three years.

Computer Lawyer Tampa Florida Internet

Không có nhận xét nào:

Đăng nhận xét

Bài đăng phổ biến