2013年3月27日星期三

Solidot: 支付宝漏洞曝光交易记录

Solidot

奇客的资讯,重要的东西

支付宝漏洞曝光交易记录
http://solidot.org.feedsportal.com/c/33236/f/556826/s/2a1313b1/l/0L0Ssolidot0Borg0Cstory0Dsid0F340A38/story01.htm
Mar 28th 2013, 02:36

支付宝的交易信息被发现泄露并被搜索引擎抓取,使用搜索引擎可以搜出大量支付宝交易记录,包括付款账户、收款账户、姓名、日期等。目前Google.com.hk仍能搜索出2300多条记录,只要在搜索引擎中输入"site: shenghuo.alipay.com"就可以查看记录。该记录只有账户名、交易时间、用途等,并没有密码等核心数据。有技术人士表示,这些结果被披露,有可能是非授权访问出现的问题,这让后台验证不严的漏洞使得外部的搜索能看到半公开的页面。This entry passed through the Full-Text RSS service — if this is your content and you're reading it on someone else's site, please read the FAQ at fivefilters.org/content-only/faq.php#publishers. Five Filters recommends: Jousting With Toothpicks - The Case For Challenging Corporate Journalism http://www.medialens.org/index.php/alerts/alert-archive/alerts-2013/719-jousting-with-toothpicks-the-case-for-challenging-corporate-journalism.html.



You are receiving this email because you subscribed to this feed at http://blogtrottr.com

If you no longer wish to receive these emails, you can unsubscribe here:
http://blogtrottr.com/unsubscribe/cz0/jPbdSR

没有评论:

发表评论

博客归档