Gawker Hacked, User Accounts Stolen
In addition to having the database of passwords compromised, Gawker’s hacked website code was also revealed. A post was made with the Gawker website source code, and a link to the source code was available from the popular torrent download website, The Pirate Bay. The source code was available for download for several hours before it was found by Gawker website administrators to take down the code and fix the hacked website.
Gawker is a popular Hollywood celebrity gossip magazine that reports the latest celebrity news and reports. It is considered one of the primary online websites that reports some firsts in the celebrity news industry.
Internet data security requires protection of an online database to avoid issues such as SQL injection. SQL injection is a type of database security issue that allows the hacker to inject SQL code into the website code that retrieves data for the site. With poor security, the database such as the Gawker customer database runs the injected code for the hacker, so information can be retrieved, deleted or changed, depending on the type of code sent to the server.
This type of database hack is typically used to gain access to important information such as passwords, credit card numbers and banking information. SQL injection can be avoided using stored procedures or by “scrubbing” data to avoid the code that allows the server to run malicious code.
While Gawker fixed the hacked website, the site still must find the security issue on the website. Fixing a hacked website returns the site to a working state, so it can function and generate money from readers and reporting the latest celebrity gossip, but unless Gawker finds the security hole, it can happen again.
Gawker Hacked, User Accounts Stolen
Comments