View Single Post
Old 01-02-2008, 09:50 PM  
TheDoc
Too lazy to set a custom title
 
TheDoc's Avatar
 
Industry Role:
Join Date: Jul 2001
Location: Currently Incognito
Posts: 13,827
Quote:
Originally Posted by minusonebit View Post
None of this means that the hacker did not install something else on the server to store the files elsewhere until they were collected
NObody ever had access to a server and this is impossible through the admin.

Quote:
Originally Posted by minusonebit View Post
nor does it mean that the data was not compromised as a direct result of the NATS breach. No one knows partly because TMM is not being forthcoming with detailed info.
No, we are able to exactly see what they are getting.

Quote:
Originally Posted by minusonebit View Post
So far, all we have out of them is denials as to what supposedly did not happen, what did not get breached and who did not do whatever. They have apparently now had almost a years and a half (18 mos = 1.5 years) to investigate the matter and they still claim to not know what the deal was or exactly how it happened.
I said before this isn't new, nats has been the target of several exploits. I'm sure those exploits is what lead to the first nats pw leaks, duh.. Then NATS getting hit 2 times didn't help either.

Quote:
Originally Posted by minusonebit View Post
This whole "Oh, the CC data is safe, but everything else on the servers is toast!" is just bullshit. Its like this constant splitting of hairs that - "Oh, it wasn't NATS that was breached, it was a server in TMM's office that got breached. Stop pissing on NATS, M1B, you asshole!" At the end of the day, it does not matter whether it was John's server, is blackberry, his laptop or his cordless phone that was incompetently managed, nor does it matter what order the devices were compromised in. At the end of the day, the result is still the same. Data lost and people got fucked.
You are correct and NATS got hacked and they did the legally correct thing and let all Clients know. We can only hope he learned from the lesson, just like 100's of owners learned that security is your responsibility.

I know from each hack/exploit that I have had from the 10+ years in this business I learned and improved each time. Live and learn.
__________________
~TheDoc - ICQ7765825
It's all disambiguation
TheDoc is offline   Share thread on Digg Share thread on Twitter Share thread on Reddit Share thread on Facebook Reply With Quote