Tag / 22 entries / page 3 of 3 / feed available

Application Security

22 of the 76 analyses in Data Breaches carry this tag.

HSF · PEC · EGR · SCA — filled where the invariant would have prevented or contained the breach

005

LinkedIn Password Breach

Prevented by: HSF, PEC, EGR

The LinkedIn Password Breach in 2012 affected over 117 million user accounts by exposing passwords hashed with the insecure SHA1 algorithm, unsalted. The breach data was subsequently sold on cybercrime forums, with LeakedSource holding a searchable database. The exposure of user credentials posed significant risks of unauthorized account access.

002

Heartland Payment Systems Data Breach

Prevented by: PEC, EGR

The Heartland Payment Systems data breach in 2008 compromised approximately 130 million payment card records. The breach was executed using SQL injection attacks to install malware, capturing sensitive financial data such as credit card numbers over a prolonged period. Albert Gonzalez, a known cybercriminal, was attributed as the architect of this breach. The incident revealed significant vulnerabilities in Heartland’s transaction processes leading to substantial financial and reputational damage.

RSS feed for this tag →

Now playing Bandcamp