Exactly, seriously... Well, they could've put the pin in with the account #...
-----Original Message----- From: [email protected] [mailto:[email protected]] On Behalf Of [email protected] Sent: Wednesday, June 15, 2011 2:10 PM To: James Triplett Cc: [email protected] Subject: Re: [funsec] Citibank hacked by URL fuzzing? On Wed, 15 Jun 2011 14:00:30 EDT, James Triplett said: > Could this be disinformation? Maybe the real vulnerability was even > stupider OK... I'll bite. What could be stupider? C'mon guys - what's the dumbest thing they could have done? ;) _______________________________________________ Fun and Misc security discussion for OT posts. https://linuxbox.org/cgi-bin/mailman/listinfo/funsec Note: funsec is a public and open mailing list.
