Ninjastic
Home
Search
Users
Boards
Addresses
Ctrl + K
Toggle theme
Open menu
Post
Edited versions
Quotes to this post
Post
259926
Topic
20745
Board
Bitcoin Discussion
Re: What if the hacker had write access to the database?
by
ius
on
21/06/2011, 20:49:31 UTC
Quote from: TonyHoyle on June 21, 2011, 08:18:05 PM
Quote from: vrotaru on June 21, 2011, 08:09:05 PM
[20:51:52]
https://mtgox.com/claim?token=foo'%20OR%201='1&email=test@example.com
I *really* hope that's not true, for the sake of everyone that just reset their passwords...
That was reported (and fixed) on the 16th. Users were however not informed about the vulnerability. Two days later the database leaked..