Chile Ministry of Defense
February 26, 2015
•[ hack, misconfiguration, government ]
An anonymous ISIS supporter defaces Chile's Ministry of Defense website (ssdefensa.cl).
Haskell
February 16, 2015
•[ hack, misconfiguration, technology ]
Haskell, an advanced purely functional programming language, confirms a security breach in its Debian Builds component (deb.haskell.org).
Xbox-Scene
February 1, 2015
•[ hack, misconfiguration, technology ]
In approximately February 2015, the Xbox forum known as Xbox-Scene was hacked and more than 432k accounts were exposed. The IP.Board forum included IP addresses and passwords stored as salted hashes using a weak implementation enabling many to be rapidly cracked.
PSX-Scene
February 1, 2015
•[ hack, misconfiguration, technology ]
In approximately February 2015, the Sony Playstation forum known as PSX-Scene was hacked and more than 340k accounts were exposed. The vBulletin forum included IP addresses and passwords stored as salted hashes using a weak implementation enabling many to be rapidly cracked.
Victor Valley College
January 31, 2015
•[ hack, misconfiguration, education ]
The entire Victor Valley College Information Technology Department is placed on paid administrative leave while campus police and an outside company investigate a breach in security protocol.
Hope FM
January 28, 2015
•[ hack, misconfiguration, technology ]
Suspected hackers briefly hijack Hope FM, a popular Christian radio station in Kenya, and play Islamic verses before it went off air.
Nigerian Defence Headquarters
January 24, 2015
•[ hack, misconfiguration, government ]
The Nigerian Defence Headquarters (DHQ) information blog site, defenceinfo.mil.ng is defaced.
Microsoft Outlook
January 19, 2015
•[ hack, misconfiguration, technology ]
Online censorship watchdog Greatfire.org receives reports related to a man-in-the-middle (MITM) attack against Outlook users in China.
Lizard Squad
January 16, 2015
•[ hack, misconfiguration, technology ]
In January 2015, the hacker collective known as "Lizard Squad" created a DDoS service by the name of "Lizard Stresser" which could be procured to mount attacks against online targets. Shortly thereafter, the service suffered a data breach which resulted in the public disclosure of over 13k user accounts including passwords stored in plain text.
Malwarebytes
November 15, 2014
•[ hack, misconfiguration, technology ]
In November 2014, the Malwarebytes forum was hacked and 111k member records were exposed. The IP.Board forum included email and IP addresses, birth dates and passwords stored as salted hashes using a weak implementation enabling many to be rapidly cracked.
Apple iCloud
October 20, 2014
•[ espionage, misconfiguration, technology ]
GreatFire.org, a group that monitors censorship by the Chinese government's national firewall system, reports that China is using the system as part of a man-in-the-middle attack on users of Apple's iCloud service within the country.
ILikeCheats
October 18, 2014
•[ leak, misconfiguration, technology ]
In October 2014, the game cheats website known as ILikeCheats suffered a data breach that exposed 189k accounts. The vBulletin based forum leaked usernames, IP and email addresses and weak MD5 hashes of passwords. The data was provided with support from dehashed.com.
Oregon Employment Department
October 13, 2014
•[ leak, misconfiguration, government ]
851,322 individuals who used Oregon Employment Department's WorkSource Oregon Management Information System (WOMIS) will soon be receiving notices that their information might have been compromised due to a recently discovered vulnerability.
unguband
October 11, 2014
•[ hack, misconfiguration ]
Alicenorin hacks unguband.com and dumps 14,658 emails and clear text passwords.
Pakistan People's Party
October 8, 2014
•[ hack, misconfiguration, government ]
The official website of Pakistan's major political party, Pakistan People's Party, is defaced by two hackers going with the handles of Kai-H4xOrR and Shell Haxor.
Massachusetts Maritime Academy
October 7, 2014
•[ hack, misconfiguration, education ]
Hackers from Moroccan Islamic Union-Mail deface the official website of Massachusetts Maritime Academy (maritime.edu).
City of Clarkston, GA
September 15, 2014
•[ hack, misconfiguration, government ]
Iranian hackers from Ashiyane Digital Security Team deface the official website of United States government City of Clarkston, Georgia (clarkstonga.gov).
We End Violence
September 10, 2014
•[ hack, misconfiguration, education ]
California-based violence prevention education organization We End Violence discovers a potential intrusion into its Agent of Change application server that could have exposed personal information, and, so far, 79,000 California State University students have been impacted.