Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Just read it looking for that extra info and not seeing it? the blog post and this article seem to have the identical information in them. The blog post is in a series, so for background on the "four days in august" you can scroll down.

it's certainly not acceptable that all they are saying is "certain elements of our customers’ information." very unacceptable, if it's credit card numbers or home addresses, they have to reveal that. the current language makes it look like they want to hide some kind of very bad news which is worse. Also their August post indicated that the developer account that was compromised had no access to customer data, so why exactly was that wrong.



Nah, the blog post was eventually updated with all the missing information. The updates weren't there when I originally commented.


Perhaps the attacker determined how the software interacts with customer information, by reading the source code, and was able to exploit the information somehow.


They may have missed it, as I did.

The current update fits pretty well exactly on my screen, so I saw no hints that it was a series. After seeing the usual corporate speak and signoff, I assumed that was it.

I went looking in their history of posts for more information on the August incident but couldn't find anything, as the older installments do not show up individually.




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: