dslreports logo
 
    All Forums Hot Topics Gallery
spc
Search similar:


uniqs
133

Stem Bolt
Ancient Astronaut Theorist
Premium Member
join:2002-11-08
Metropolis

5 recommendations

Stem Bolt

Premium Member

Hatch Bank - Hackers steal 140,000 customer Social Security numbers

quote:
Hatch Bank, a digital-first bank that provides infrastructure for fintech companies offering their own brand credit cards, confirmed hackers exploited a zero-day vulnerability in the company’s internal file transfer software that allowed access to thousands of customer Social Security numbers.
»techcrunch.com/2023/03/0 ··· exploit/

Blackbird
Built for Speed
Premium Member
join:2005-01-14
Fort Wayne, IN

3 recommendations

Blackbird

Premium Member

The vulnerability in Fortra’s GoAnywhere file-transfer software came to light on February 2 after security journalist Brian Krebs publicly shared details of Fortra’s security advisory because the tech company had put the advisory behind a login prompt. ... Hatch Bank said that while Fortra (previously known as HelpSystems) learned of the vulnerability in its GoAnywhere software on January 29, the tech company didn’t notify Hatch Bank until February 3 — one day after Krebs revealed news of the GoAnywhere flaw.

Hmm. Putting a critical security alert about your product behind a user-must-initiate login - what could possibly go wrong with that? Oh... uhmm... I guess we now know...