Feeds

Massive security breach affects Hotmail users

How's this one going to be fixed, long term?

  • alert
  • submit to reddit

Security and trust: The backbone of doing business over the internet

Updated A catastrophic breach in Hotmail security means that anyone who has one of the freebie mail accounts can have his or her emails read by others. At the same time, the breach means that once people have logged into the system, they can send, receive and delete emails using that account to their heart's content. The breach, just tested by The Register using one of our own writer's Hotmail accounts, and found to work, uses a Web address in which you type a hotmail handle. You then have full access to that Hotmail account, with all rights. When we logged into the server, which was based in Sweden, we were able to send and receive mail from our account. The ISP hosting that site, now appears to have taken the Web interface down. Microsoft brought down Hotmail when it heard about the problem and has apparently said it has fixed the problem. But the fact it existed in the first place must pose serious questions about how safe such freemail accounts are, and whether it is possible for hackers to do the same thing again. End users were still reporting serious problems with Hotmail four hours after we filed our own story, as it attempted to cope with repeated attempts by people to use alternative Web sites that have sprung up across the world. As yet, it is impossible to assess how many end user's Hotmail accounts were hacked into before the problem was addressed.®

New hybrid storage solutions

More from The Register

next story
JINGS! Microsoft Bing called Scots indyref RIGHT!
Redmond sporran metrics get one in the ten ring
Phones 4u slips into administration after EE cuts ties with Brit mobe retailer
More than 5,500 jobs could be axed if rescue mission fails
Phones 4u website DIES as wounded mobe retailer struggles to stay above water
Founder blames 'ruthless network partners' for implosion
Found inside ISIS terror chap's laptop: CELINE DION tunes
REPORT: Stash of terrorist material found in Syria Dell box
OECD lashes out at tax avoiding globocorps' location-flipping antics
You hear that, Amazon, Google, Microsoft et al?
Show us your Five-Eyes SECRETS says Privacy International
Refusal to disclose GCHQ canteen menus and prices triggers Euro Human Rights Court action
prev story

Whitepapers

Providing a secure and efficient Helpdesk
A single remote control platform for user support is be key to providing an efficient helpdesk. Retain full control over the way in which screen and keystroke data is transmitted.
WIN a very cool portable ZX Spectrum
Win a one-off portable Spectrum built by legendary hardware hacker Ben Heck
Storage capacity and performance optimization at Mizuno USA
Mizuno USA turn to Tegile storage technology to solve both their SAN and backup issues.
High Performance for All
While HPC is not new, it has traditionally been seen as a specialist area – is it now geared up to meet more mainstream requirements?
Security and trust: The backbone of doing business over the internet
Explores the current state of website security and the contributions Symantec is making to help organizations protect critical data and build trust with customers.