MWEB Business ADSL accounts hacked

Well, not sure how accurate the information posted is, but found the email sent to the mailing list as per the hacker, and there are definately usernames and passwords... Charming...
 
hehehe... nice.... but umh... howcome passwords are saved as well?
I have several business Mweb accounts, and if somebody forgets the password, it cannot be retrieved by the support guys.... can reset and choose new, but not get reminder of existing.....
 

I really don't think it is a laughing matter imho. There is a lot of innocent people that are going to get their bw raped if something isn't done about it. Also, I really don't see why Mweb have to get screwed on this. Of all companies, they have been trying to make internet better in SA. There are better ways at getting your message across... hacking is one way, but going and then publishing the confidential data is also screwing the clients, not just the company he/she is attacking.
 
I think the concern here is "We are working with Internet Solutions to reslove the matter” a MWEB spokesperson said."
 
All these companies in SA need to realize that after the world cup, all eyes are on SA! Meaning hackers will keep coming and coming. They need to stop hiring cheap coders and programmers and actually invest a few million rand into increasing security on all their machines/network, TOP to BOTTOM.

These passwords should all be heavily encrypted at the very least...this is basic security 101. Where do they store the Passwords? As a .txt? Come on Mweb, lets step it up!
 
All these companies in SA need to realize that after the world cup, all eyes are on SA! Meaning hackers will keep coming and coming. They need to stop hiring cheap coders and programmers and actually invest a few million rand into increasing security on all their machines/network, TOP to BOTTOM.

These passwords should all be heavily encrypted at the very least...this is basic security 101. Where do they store the Passwords? As a .txt? Come on Mweb, lets step it up!


Programming 101 : Never store an un-encrypted password. :erm:
 
...and Mweb entirely fails to batten down the hatches

A worried colleague just called their tech support to see what's going on, if she needs to change passwords, etc.

Their first line support people know nothing about it. Mweb is surely rushing to ensure that some kind of crisis plan is put into motion so that their customers feel that they have a clue. You do have a plan for this kind of thing, don't you Mweb? Surely? :wtf:

FAIL!
 
Top
Sign up to the MyBroadband newsletter
X