United
Loading....
- Yahoo! again - XSS in Uncategorized (357 Visits)
- Yahoo! again - bad settings? in Uncategorized (252 Visits)
- Fanii nostri in Uncategorized (183 Visits)
- Frustrant in Uncategorized (146 Visits)
- La multi ani România, la multi ani românilor in Uncategorized (137 Visits)
- Weblog.ro - Shell via Local File Inclusion in Uncategorized (119 Visits)
- Yahoo! epic fail - permanent xss unleashed in Uncategorized (50 Visits)
- ... in Uncategorized (38 Visits)
- XSS Ownage - hi5 vs. Yahoo! + video in Uncategorized (2 Visits)
- Ce nu se invata la scoala - Tipuri si tehnici spam/Hi5 (4) in Uncategorized (2 Visits)
- Ce servicii de mail folositi? in (121 Visits)
- Azi este ziua userilor hackersblog.org in (120 Visits)
- De reţinut in (117 Visits)
- Inca o pierdere de timp in (107 Visits)
- De tinut minte in (106 Visits)
- Twitter in (78 Visits)
- Un nou membru in (74 Visits)
- Interviu la Radio Lynx in (70 Visits)
- 2009 in (51 Visits)
- Editori noi. in (35 Visits)
- Ce nu se invata la scoala - Tipuri si tehnici spam/mail (2) in (199 Visits)
- Ce nu se invata la scoala - Tipuri si tehnici spam (1) in (139 Visits)
- Ce nu se invata la scoala - (D)DOS (5) in (104 Visits)
Loading....
- B7ackAnge7z (1)
- Nicu Calcea (1)
- andrasi zsolt (1)
- Ovidiu U (1)
- Dumitru (1)
- Andrei Rinea (1)
Posted on May 25th, 2009
…when they share members info’s with anyone.
So let’s see what orange.fr offers to attackers:
245000 accounts containing:
1. E-mail address
2. First and last name
Next screenshot:

Ok, so a large company (Orange in this case) jeopardizes personal data of its users. This is old news already.
Submitted by unu – orange.fr staff was announced by him but still no response from them.

May 25th, 2009 at 2:44 am
[...] showstopper however is the vulnerability on the orange.fr website which was posted today. According to 2fingers over at HackersBlog a SQL injection vulnerability was discovered by fellow [...]
May 25th, 2009 at 8:11 am
gr8 job, people!
May 25th, 2009 at 8:39 pm
Huge leak, how is it possible for a big company like orange to have this vulnerable…
May 26th, 2009 at 12:01 pm
Se lucreaza.
Nous effectuons actuellement des travaux de maintenance sur ce site.
May 26th, 2009 at 1:35 pm
They also seems to have some xss leaks….
http://www.tinyurl.com/qgey92
May 26th, 2009 at 2:12 pm
[...] blog roumain HackersBlog publie ce jour un billet ironiquement intitulé “Orange is so cool ” et remerciant le [...]
May 26th, 2009 at 9:39 pm
[...] http://www.hackersblog.org/2009/05/25/orange-is-so-cool/ Bookmark « WTA.ro – XSS periculos [...]
May 28th, 2009 at 9:10 am
[...] a été divulguée par un site roumain, http://www.hackersblog.org, sur un billet du blog intitulé “Orange is so cool”. Ce genre de faille est très [...]
May 28th, 2009 at 1:00 pm
[...] publicité pour Orange. Le site roumain Hackersblog.org affirme qu’il a pu mettre la main sur 245.000 comptes du site Orange.fr, en exploitant une [...]
May 29th, 2009 at 11:56 am
[...] gente de HackersBlog ha publicado una breve entrada en la que comentan que el sitio web de la operadora móvil francesa, [...]
May 29th, 2009 at 4:54 pm
[...] publicité pour Orange. Le site roumain Hackersblog.org affirme qu’il a pu mettre la main sur 245.000 comptes du site Orange.fr, en exploitant une faille [...]
May 30th, 2009 at 11:41 am
hai mah sa exploatam
June 3rd, 2009 at 2:45 pm
[...] Orange se fait voler 245.000 mots de passe sur son site web. C’est moche ! [...]