Newsflash: this just in!
Another entry in the Flippa Catalogue Of Embarrassments is their recent hacking. For those fidgety people who don't have time to read a full article, here is the snapshot:
- Flippa gets hacked by Adam at is-hacked on 14th July, at 23:12. Call it a public service.
- Adam, being the nice guy that he is, informs Flippa of their vulnerability.
- Flippa fixes the security issue and informs Adam of this fact on 15th July at 02:15.
- 16 July 03:38: threat of legal action from Flippa ensues (allegedly). Cheers Flippa!
- It is now 20th July and no Flippa members have been informed of this breach in security.
- Flippa made a blog post announcing the slip up - and then deleted the post! Fortunately, Travis made a copy here.
One of the screenshots that Adam posted shows a very interesting section labelled "Log In As User". Log in as user? As in, log in as somebody else?
Wow!
There is a discussion of the security breach and subsequent Flippa cover up here.
As usual, it will be more interesting to observe how the Flippa team handle the situation than the situation itself. So far, we've seen the (alleged) threat of legal action and the trusty "cover up".
Thanks for the link to discussion on my site.
My suggestion to Flippa users – get cracking with changing those passwords.