Saturday, April 19, 2008

Oklahoma Data Leak

Readarticle: http://thedailywtf.com/Articles/Oklahoma-Leaks-Tens-of-Thousands-of-Social-Security-Numbers,-Other-Sensitive-Data.aspx

I think such simple and stupid mistakes should never have occured in government agencies. What happened to the testing dept for testing all these codes and sites ? Sleeping on the job ? Well, now the databases associated with these events are truely doubtful and corrupted because who knows someone might have done some changes to the databases quietly? I was wondering if someone did a drop database statement to delete off a database or a couple of all database or did some insert , alter table or update table to insert/update/alter the data in the tables and databases, they deserve it since why are they so silly to allow people to allow literal SQL statement parsing and that method of attack done is called the SQL injection method.

Hmm... it seems the databases now are not very reliable since anyone could have corrupted the data unnoticed...

No comments: