The Open Risk Data functionality of the Open Risk Manual is in still in active development!

GB WHMCS 2012 Social Engineering (Q12318)

From Open Risk Data
A data breach risk event
Language Label Description Also known as
English
GB WHMCS 2012 Social Engineering
A data breach risk event

    Statements

    0 references
    January 2012
    0 references
    Client management billing platform WHMCS last week notified customers that hacker group UGNazi fooled its Web hosting firm into providing the hackers with administrative credentials. The hackers stole the data, deleted it from the hosting providers systems, and then posted it on the Web. UGNazi also gained access to WHMCSs Twitter account, which it used to publicize a series of posts on Pastebin that contained links to locations from which the billing firms customer records and other sensitive data might be downloaded. A total of 500,000 records, including customer credit card details, were leaked as a result of the hack, according to news reports. WHMCS developer Matt Pugh wrote in a blog: The person was able to impersonate myself with our Web hosting company, and provide correct answers (English)