A serious data breach is now always enough to make them learn

Dec 19, 2011 13:05 GMT  ·  By

It seems as for some, a serious hacking operation is not enough to make them learn about the importance of a secured website. After not long ago they fell victim to a data breach as a result of which many of their customers were left exposed, Comodo proves that it learned very little from the incident.

Team Elite discovered that the log-in page from their official website contains a serious cross-site scripting (XSS) vulnerability that can be taken advantage of by a hacker to easily execute arbitrary code.

The information was made public two days ago, but the vulnerability still hasn’t been fixed.

Team Elite representatives claim that all the weaknesses they find on public websites are disclosed to their owners, which means that they must know of the flaw.

Now, we wait for the speech about how they take security seriously.