On BNET: Vote: How will Apple blow it?
BNET Business Network:
BNET
TechRepublic
ZDNet
TalkBack 1 of 24:
Next »
XSS is one way to do it..
But the telephone authentication is still a flawed 2-factor authentication method.



Well, I was really hoping I'd get to it before Lance did, my hat's off to you brother. I would have just attacked it form the phone phreaking side, we know the CEO's phone # for authentication ends in 5930, I had people scanning 310-xxx-5930 all night last night for me. Once we found the phone number all we would have had to done was make one phone call to the telco, temporarily forward the line to our phone number, intercept the code and log in, no XSS or computer skillz needed =)
Posted by: lucky225   Posted on: 06/04/09 You are currently: a Guest | Members login | Terms of Use

Alert moderator to an offensive message

Subscribe to this discussion via Email or RSS

XSS is one way to do it..  lucky225 | 06/04/09
How?  mathcreative | 06/04/09
Well  jdbukis@... | 06/05/09
Ummm..  ShadowGIATL | 06/05/09
he is just a wanna be hack  xXSpeedzXx | 06/05/09
Fail!  Daniel Breslauer | 06/04/09
RE: StrongWebmail CEO's mail account hacked via XSS  lucky225 | 06/04/09
DPA  jdbukis@... | 06/05/09
Your premise fails.  xXSpeedzXx | 06/05/09
RE: StrongWebmail CEO's mail account hacked via XSS  elfman256 | 06/04/09
rofl  jdbukis@... | 06/05/09
Am I good or what:  ye | 06/05/09
RE: StrongWebmail CEO's mail account hacked via XSS  mhanratty | 06/05/09
Correct  phatkat | 06/05/09
Pride Goes Before the Fall  MichP | 06/05/09
Why again do we need XSS in a "secure" mail environment?  croberts | 06/05/09
eh  isulzer | 06/05/09
This is why security is layered.  CobraA1 | 06/05/09
They went into the BIOS  BALTHOR | 06/05/09
RE: StrongWebmail CEO's mail account hacked via XSS  lucky225 | 06/07/09
RE: StrongWebmail CEO's mail account hacked via XSS  lucky225 | 06/07/09
RE: StrongWebmail CEO's mail account hacked via XSS  lucky225 | 06/07/09
RE: StrongWebmail CEO's mail account hacked via XSS  lucky225 | 06/07/09
heh heh...  flared0ne | 06/08/09

What do you think?

SponsoredWhite Papers, Webcasts, and Downloads

advertisement
advertisement

Meet Doc