website statistics

Kevin Burke, a security expert, has been able to spot a security vulnerability on the website of Virgin Mobile USA which puts 6 millions accounts at risk.
1 Star2 Stars3 Stars4 Stars5 Stars (Rate This)
Loading...

Web security is a tricky thing and you have to take a lot of measures to secure your website, if you have one. Most prominent brands work diligently to keep their websites secure from any possible exploits. However, sadly this doesn’t seem to be the case with the site of Virgin Mobile USA.


Virgin Mobile USA

Virgin Mobile USA is, by no means, a small company. It boasts six million subscribers and is a prominent name in the US telecom industry. Kevin Burke, a security expert has now revealed that he has been able to find a very basic security vulnerability in Virgin Mobile’s website, a vulnerability which has put six million accounts of the subscribers at risk.

The vulnerability that Burke has found is that you can easily break into virtually anyone’s account using the website. All you need to know is the exact phone number. The password can’t be greater than six digits, a limit put by the official site when you sign up.

A well-known fact in the world of web security is that the smaller a password’s length is, the easier it is to guess. A 6-digit password means that there can only be 1 million password combinations for it. And to parse through a million possible passwords is a very easy task for even a basic programmer.

Burke says that using a Python code, he was able to test different password combinations and break into his own account using the Brute force technique. It is as simple as that and can be done to any of the six million Virgin Mobile USA accounts online.

Once you have broken into an account, you can read the entire log of SMS and calls, associate a different handset with that account, change the PIN, even purchase a new handset and change the mailing address. In brief, you are able to virtually screw up the life of the person who actually owns the account.

Burke wrote to Virgin Mobile USA, citing the vulnerability and asking them to take measures to resolve it. So far, the company hasn’t done anything whatsoever and so, Burke was forced to go public with this information.

Source: Kevin Burke

Buy Cheapest Related Product From Amazon.com


Can This Wearable Computer Make It To Our Wrists By 2020?

Ever Imagined A Digital Dinosaur? It’s Waiting In Kickstarter!
You can also press the left/right arrow key on your keyboard to go to previous/next post
  On September 18, 2012(3 years, 8 months ago.)

You May Also Like:

What Do You Think?

Leave a Reply




Loading Facebook Comments ...

FTC Disclosure: Some of the links of this website are "affiliate links." This means if you click on the link and purchase the item, we will receive an affiliate commission.


Recent Search

Recent Tutorials

Even if iPhone is muted, still Siri's voice is loudly chime. Now you can change the setting to silence Siri using your iPhone's mute switch.
Check out how to teach Siri about nicknames and relationships of the important people in your life in order to make your life easier.
Has your iPhone suddenly turned black & white? Check out this tutorial to know possible reasons & how to fix iPhone screen with few taps.
Check out this tutorial to download FREE movies and TV Shows streaming Showbox app and install it on your Android smartphone or tablet.
Parental Controls allows you to put restrictions on apps or content that can or can not be used by anyone else on your Apple iPhone or iPad.
If you want to print from iPhone without using any computer, check this out to connect and print wirelessly right from the Apple device.
Using Siri, anyone can bypass the Passcode even if iPhone or iPad is locked. Check out this to know how you can disable Siri on lock screen.
Floatify will let you quick reply to the messages or emails through notification bar using your Android Lollipop or Marshmallow.
If you do not know to do face swap, check out this tutorial to learn how the new Snapchat face swapping feature actually works.
Facebook has released the Live video streaming feature and we will show you how to go live using the Facebook app for Android or Apple.
Close You Have To Login
User:
Pass:
Login With »Login With TwitterLogin With Facebook