Hacker News new | ask | show | jobs
by DocG 1791 days ago
It was a oversight in picture program. Basically you can always request your own photo and the hacker already had names and ID codes and was able to use legimate access to download photos. He did use botnet, with many computers so it seemed legimate traffic. And was apprehended literally the next day.

Stolen pictures were not forwarded, so they even got the leaked data back.

Dunno, not a big deal.

Only thing was he was downloading pictures en masse. Names and ID codes got from elsewhere beforehand. ID code is not a secret here either, you can reconstruct it with high accuracy just by knowing persons birthday and city he lives.

Tho I think this triggered a fast lane for upgrading some legacy stuff that was to be updated soon. So good scare I think.

1 comments

> Stolen pictures were not forwarded, so they even got the leaked data back.

Can we be certain that the hacker didn’t make any copies?