Misconfiguration
WHID 2009-35: Former US Senator Donors Information Leaks
WHID 2009-28: Serious Leakage on Mac clone Maker's site
The Register reports that the online shop of Psystar, a maker of Mac compatible equipment is heavily leaking technical information that canĀ be expoited to hack the site.
WHID 2009-22: Federal Travel Booking Site Spreads Malware (Updated)
WHID 2008-28: Confidential data on thousands of students exposed by test preparatory firm
While moving to a new hosting provider, a system by Princeton Review used by student to prepare for a state assessment program exposed due to misconfiguration approximately 34,000 students from 2nd to 10th grade. The information included names, Florida ID (which is nearly identical to the US social security number) and the students exam report.
The information was available for available online from late June to early August.
Additional information:
- Competitor Tells Paper, Not Rival, About Security Flaw [Security Pro News, Aug 19 2008]
- Student Files Are Exposed on Web Site [New York Times, Aug 18 2008]