Sunday, September 2, 2007

Security SNAFU exposes email logins for 100 foreign embassies {El Reg}

That's interesting..and alarming:
Underscoring a major susceptibility threatening thousands of high-profile computer users across the world, a Swedish security consultant has published login credentials belonging to some 100 embassies.

The consultant, Dan Egerstad, says the list is only part of a much bigger problem that allowed him to gain credentials for more than 1,000 email accounts around the world, including at least one belonging to an employee of a company that generates more than $10bn in annual revenue. He declined to offer specific details for fear they would be misused by criminals.

Summary: many weak passwords (1234, cities where embassies are etc.), login credentials are exposed by "a common security application" and so on. A bit depressing, how (Very) Important People can and are dumb.
Link to the Egerstad's list of login credentials included in the article, try one or two if you dare :)

read more | digg story

No comments: