[Owasp-singapore] Status update on "Because I Matter" portal

Wong Onn Chee ocwong at usa.net
Wed Apr 22 21:57:58 EDT 2009


Hi folks,

Just want to keep everyone abreast of our progress.

Since successful disclosure and closure of the LTA leak, we are now
working on the following incidents.
Details will be disclosed once the incidents are closed by the site owners.

1) Private Company A - System info leak and exposure of default files
from app server
2) Private Company B - Leakage of customers' HR info
3) University A - self-leakage by staff of their own private info,
including medical records and personal photos
4) Government Site A - security loophole that allows hackers to send
malicious emails to users under the name of the Site.

As part of our code of ethics, we will keep everyone posted after the
above holes are closed.

So just bear with the suspense for the time being. :-)

Regards

Onn Chee



More information about the Owasp-singapore mailing list