Mailinglist Archive


Hacker exploits forgotten eBay administrative system
From:Joe Klemmer
Date: Wed, 10 Oct 2007 19:33:25 -0400

Hacker exploits forgotten eBay administrative system
By Ryan Paul | Published: October 09, 2007 - 08:48AM CT 

A hacker infiltrated an eBay server and disabled accounts of several
members on Friday. Representatives of eBay say that the hacker used
vestigial components of an old eBay administrative system that has long
been unused. The code exploited by the hacker has since been taken down,
and eBay claims that no financial information was exposed.

An individual who identifies himself as Vladuz has taken responsibility
for the hack. Many believe that Vladuz was behind a massive disclosure
of user information in the eBay forums last month. Unlike the data
disclosure of last month, in which the hacker used phishing tactics to
trick users into supplying account login information, this latest attack
was made possible by eBay's negligence.

http://arstechnica.com/news.ars/post/20071009-hacker-exploits-forgotten-ebay-administrative-system.html