Wednesday, May 23, 2012

Trustico? Global Internet Security: WHMCS Hacked! Security Breach

The all-in-one client management, billing and support solution for online businesses has failed in best security practices.? Earlier today WHMCS was a victim of a malicious hack and their database has been accessed and login and credit card details are at risk.

Apparently? the issue isn't with vulnerability with the WHMCS software but due to poor security practices.? Servers have been compromised including licensing servers and ticket system and also the billing system database. ?

All users are being told to change their passwords that are used with WHMCS.com, on all other sites, as well as any server-related credentials that may have been sent to WHMCS in a support ticket in the past. ?

Customers are being urged to cancel their credit cards as they may now be at risk of fraudulent transactions.? Another worrying side effect will be the customer credit card and personal information of customers of businesses using the WHMCS software, which may also have been compromised.? The follow-on effect from this attack may be vast as consumer confidence will fall for every business affected. ?

As another sinister twist the hackers claiming responsibility for this 'social engineering attack' are claiming that they will shortly be publishing a dump of WHMCS's database to the public.? Which will cause further devastation for a lot of businesses.

Security practices seem to have fallen by the wayside as the hackers gained access to the client account by contacting the hosting company for WHMCS.com and providing?the answers to verification questions. The hackers were then able to change the email address and request a mailing of all the access details.? WHMCS.com obviously has a lot to answer for if their verification questions can be guessed by anyone with a small knowledge of the company.

WHMCS.com are in the process now of closing the gate after the lion escaped and are reviewing all their hosting arrangements. ?

If you are serious about your internet security then please contact Trustico??to discuss your security requirements and concerns.

bohemian rhapsody spike lee carson daly heejun han donovan mcnabb donovan mcnabb lottery ticket

No comments:

Post a Comment

Note: Only a member of this blog may post a comment.