Other websites pentested by the D35m0nd142 include Yahoo!, Java, Adobe, Twitter and MIT

Jun 11, 2012 12:42 GMT  ·  By

German hacker D35m0nd142 has taken a different approach this time to highlight the flaws that exist in a particular website. He leaked the details of 600 user accounts from Channelv.in, an Indian entertainment site, to demonstrate that it contains serious security holes.

The security expert claims to have gained access to 9,762 accounts, but he only published the small sample to prove that he has access.

Since we last heard from him, D35m0nd142 has been highly active in finding vulnerabilities in public facing websites, and not only.

Besides the cross-site scripting (XSS) and SQL Injection flaws he identified in sites owned by Harvard, Yahoo!, Java, MIT, and Adobe, he also claims to have uncovered admin login bypass and possible cookie tracking issues on a server owned by Twitter.

He failed to provide any details, but he allegedly reported his findings to the affected websites’ owners.