He also found a vulnerability in a social media website

Mar 2, 2012 08:39 GMT  ·  By

Abu Nazir, the Polish hacker that leaked around 250,000 account details from a few local forums, now breached SteamKeys.pl, a website that commercializes Steam keys.

As a result of the hack, 1431 account details, including usernames, SHA1 password hashes, and email addresses, were published on Pastebin.

By leveraging an SQL Injection vulnerability, Abu Nazir gained access to a social media site called Fotki (fotki.org.pl). From this domain he didn’t leak any data, instead he published details on the security hole.

After his previous breach, the hacker told us that he will continue targeting Polish websites to show that they contain a lot of vulnerabilities.

“I find the gap, and leave a message to the admin. If admin does not secure the server in a few days, I publish a base,” the hacker told us a few days ago.