PDA

View Full Version : E-troubles: Cautionary tales of the Web



Earth Walker
August 22nd, 2001, 12:03 AM
A group of malicious hackers has attacked Microsoft's Hotmail
e-mail system, opening a path that allows anyone with Internet
access to eavesdrop on hundreds of millions of Hotmail messages.
The group, called Root Core, has designed a computer program
that bypasses Hotmail security and allows a person to peek at the
e-mail in any one of 110 million Hotmail accounts.
Root Core posted the mischievous program on its Web site last
week where it was downloaded numerous times, quickly spreading across the Internet.
No one from Microsoft was available for an official comment
Monday, but a spokesman said the software giant was aware of
the problem and that it was trying to stop Root Core from
performimg further damage.
Once a person logs into their own Hotmail account, the Root
Core program can be used to scan a person's e-mails, by
inputting only the person's user name.
The program exploits a flaw in the way Hotmail organizes its
e-mail messages.
By typing in a person's user name the Root Core program will
automatically use the flaw to tap into that person's e-mail box,
presenting their e-mails one-by-one to the mischievous voyeur.
"My advice is that you travel under the assumption that people
are looking at your e-mail," said Al Decker, director of EDSGlobal's
security and privacy services. "You can never have 100% security."
Decker said privacy software like Pretty Good Protection, or other encryption programs should be used by people to try and
protect their e-mail from prying eyes.
This is not the first time that the security of the Hotmail system
has been compromised.
Earlier this year another group of hackers devised a method to
break into Hotmail's database of e-mail addresses and download
millions of Hotmail e-mail addresses.
Those addresses were then sold to companies who sent out
tons of junk e-mails to millions of Hotmail users.
The move prompted Microsoft to quickly revamp it's Hotmail
security and install a new filter that is designed to weed out
the unwanted junk mail.

Tarot Collector
August 22nd, 2001, 12:55 AM
Thank you for the heads up on this.. i hadn't heard.

I use to use hotmail all the time, then I started using yahoo. Maybe I need to login to my dormant hotmail account and get rid of it... i no longer use it for anything.

Again thanks.

-Jesse-

Mariposa De La Luna
August 22nd, 2001, 11:00 AM
I was wondering where all those trashy emails were coming from. Thanks for the heads up!

Mairwen
August 22nd, 2001, 11:06 AM
Originally posted by Tarot Collector
Thank you for the heads up on this.. i hadn't heard.

I use to use hotmail all the time, then I started using yahoo. Maybe I need to login to my dormant hotmail account and get rid of it... i no longer use it for anything.

Again thanks.

-Jesse-

Your hotmail account expires after 90 days of non-use. So, if it's been that long since you logged in, or longer, the account is no longer active.

ladyrowan
August 22nd, 2001, 11:23 AM
Originally posted by Mystique
This is not the first time that the security of the Hotmail system
has been compromised.
Earlier this year another group of hackers devised a method to
break into Hotmail's database of e-mail addresses and download
millions of Hotmail e-mail addresses.
Those addresses were then sold to companies who sent out
tons of junk e-mails to millions of Hotmail users.


Don't I know it!!
Had been using Yahoo & Freeserve email with no junk mail at all. Then I opened a Hotmail account earlier this year, and was inundated every day by dozens of junk messages, quite a few of them hard-core porn. Incidently, it was the hotmail account where i got the 2 scam messages from that I mentioned in another thread (the African ones offering me tons of money if i helped them launder their millions ! hehe)
Every day I was blocking addresses hoping that they'd give up, but the same companys seem to have lots of different addresses to send out from.
It has been slightly better the last couple of weeks, so maybe their new filter is working.

BB