Massive AT&T Breach Exposes A-Listers' iPad Data

The place for technology related posts.

Moderator: Moderators

Post Reply
User avatar
Sabre
DCAWD Founding Member
Posts: 21432
Joined: Wed Aug 11, 2004 8:00 pm
Location: Springfield, VA
Contact:

Massive AT&T Breach Exposes A-Listers' iPad Data

Post by Sabre »

Article
Apple's Worst Security Breach: 114,000 iPad Owners Exposed
Goatse Security obtained its data through a script on AT&T's website, accessible to anyone on the internet. When provided with an ICC-ID as part of an HTTP request, the script would return the associated email address, in what was apparently intended to be an AJAX-style response within a Web application. The security researchers were able to guess a large swath of ICC-IDs by looking at known iPad 3G ICC-IDs, some of which are shown in pictures posted by gadget enthusiasts to Flickr and other internet sites, and which can also be obtained through friendly associates who own iPads and are willing to share their information, available within the iPad "Settings" application.

To make AT&T's servers respond, the security group merely had to send an iPad-style "User agent" header in their Web request. Such header identify users' browser types to websites.
Ouch
Sabre (Julian)
Image
92.5% Stock 04 STI
Good choice putting $4,000 rims on your 1990 Honda Civic. That's like Betty White going out and getting her tits done.
scheherazade
DCAWD Groupie
Posts: 727
Joined: Wed Dec 05, 2007 11:19 am
Location: nova

Re: Massive AT&T Breach Exposes A-Listers' iPad Data

Post by scheherazade »

Goatse

LOL

-scheherazade
User avatar
Mr Kleen
DCAWD Founding Member
Posts: 15034
Joined: Mon Apr 18, 2005 6:46 pm
Location: Wiesbaden.DE

Re: Massive AT&T Breach Exposes A-Listers' iPad Data

Post by Mr Kleen »

Image
chicken n waffles
Moderator
Posts: 6314
Joined: Wed Oct 19, 2005 1:15 am
Location: Alexandria

Re: Massive AT&T Breach Exposes A-Listers' iPad Data

Post by chicken n waffles »

:rolllaugh:
-Ben
Image
User avatar
Sabre
DCAWD Founding Member
Posts: 21432
Joined: Wed Aug 11, 2004 8:00 pm
Location: Springfield, VA
Contact:

Re: Massive AT&T Breach Exposes A-Listers' iPad Data

Post by Sabre »

scheherazade wrote:Goatse
LOL
haha, I thought the same thing!
Sabre (Julian)
Image
92.5% Stock 04 STI
Good choice putting $4,000 rims on your 1990 Honda Civic. That's like Betty White going out and getting her tits done.
User avatar
complacent
DCAWD Founding Member
Posts: 11651
Joined: Sun Aug 29, 2004 8:00 pm
Location: near the rockies. very.
Contact:

Re: Massive AT&T Breach Exposes A-Listers' iPad Data

Post by complacent »

I'm trying to figure out why this is being called "Apple's" worst breach.

The entirety of the hack was on AT&T, correct?
colin

a tank, a yammie, a spaceship
i <3 teh 00ntz
chicken n waffles
Moderator
Posts: 6314
Joined: Wed Oct 19, 2005 1:15 am
Location: Alexandria

Re: Massive AT&T Breach Exposes A-Listers' iPad Data

Post by chicken n waffles »

^ that's what i gather from the info i've read. apple had no part in this snafu at all.
-Ben
Image
User avatar
Mr Kleen
DCAWD Founding Member
Posts: 15034
Joined: Mon Apr 18, 2005 6:46 pm
Location: Wiesbaden.DE

Re: Massive AT&T Breach Exposes A-Listers' iPad Data

Post by Mr Kleen »

chicken n waffles wrote:^ that's what i gather from the info i've read. apple had no part in this snafu at all.
except for picking AT&T as their dance partner. :lol:
Post Reply