Softpedia
 

NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home > News > Editor Blogs > Security

February 7th, 2012, 09:45 GMT · By Eduard Kovacs

BLOG

Hackers Leak Tons of Data from University of Washington

SHARE:

Adjust text size:

Hackers leak data from University of Washington Enlarge picture - Hackers leak data from University of Washington
By relying on a vulnerability they found on the official website of University of Washington (washington.edu), hackers called NOBODY and NOLIFE managed to gain access and obtain a large quantity of sensitive data from their databases.

The Hacker News informs that a Pastebin file contains usernames, passwords, email addresses, registration dates and other database information.

“A few days back, Team INTRA hacker 'HaxOr' hacked into the University of Washington using a SQL injection. The SQL injection that was abused was fixed, but that doesn't mean there wasn't more,” the hackers explained.

Lately, hackers proved that most major universities have a hard time making sure that student and staff data is completely secure.

TeamHav0k hackers revealed recently some major XSS vulnerabilities in university sites such as Rochester Institute of Technology, Arizona State University, NYU Poly’s Center for Advanced Technology in Telecommunications, Michigan State University, Aurora University, DeVry University, University of Hawaii, University of Virginia, and Carnegie Mellon University.

TELL US WHAT YOU THINK:

952 hits · 2 comments · Link to this article · Print article · Send to friend · Subscribe to news

MUST-READ RELATED ARTICLES:


TeaMp0isoN Leaks Tons of Data in Support of OpNigeria

Hackers Around the World: Eastern European SEPO

Anonymous Leaks Passwords from Ireland’s Foreign Affairs Site

Universal Music Portugal Hacked, Clear-Text Passwords Leaked

Central Bank of Bahrain Hacked by SEPO

READER COMMENTS:


Comment #1 by: Apixen on 07 Feb 2012, 21:33 UTC reply to this comment

The article submitted here is incorrect. The hacker who gained access to the UW's database is not a Team INTRA member. Actually, it's a user named N0B0DY and another user named N0LIFE whom got accessed to the database.

A team INTRA member has gotten access before, but the SQL injection used before was fixed, but these two new hackers got another vulnerability and used it to gain the most recent passwords.

http://thehackernews.com/2012/02/university-of-washington-vulnerable-and.html

Comment #1.1 by: Eduard K on 08 Feb 2012, 08:32 GMT

Thanks for the clarification. It has been corrected.

Copyright © 2001-2012 Softpedia. Contact/Tip us at

WindowsGamesDriversMacLinuxScriptsMobileHandheldNews

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   UPDATE YOUR SOFTWARE   |   ROMANIAN FORUM