Idea Cellular Web Portal Hacked, Customers Info may be exposed !
Aug 20, 2011
Idea Cellular Web Portal Hacked, Customers Info may be exposed ! Again a critical SQL Injection Vulnerability has been discovered by zSecure Team in a high profile web portal. This time it's Ideacellular web portal which compromises the entire site database. Any malicious smart black hats can create much more devastating attacks using this critical flaw such as: complete access to various database’s as shown in screen-shots under proof of vulnerability which can later be misused to access various confidential information; complete database dump; possibility of uploading shell (not fully certain) and much more. Target Website : http://www.ideacellular.com Attack Type : Hidden SQL Injection Vulnerability Database Type : MySql 5.0.27 Alert Level : Critical Threats : Database Access, Database Dump Credit : zSecure Team Previous Vulnerability Discolsures: Dukascopy, Sify, TimesofMoney, Sharekhan Proof of Vulnerability : About the Company Ide...