<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: 114,000 iPad Owners: The Script that Harvested Their E-mail Addresses</title>
	<atom:link href="http://praetorianprefect.com/archives/2010/06/114000-ipad-owners-the-script-that-harvested-their-e-mail-addresses/feed/" rel="self" type="application/rss+xml" />
	<link>http://praetorianprefect.com/archives/2010/06/114000-ipad-owners-the-script-that-harvested-their-e-mail-addresses/</link>
	<description>Information security, a little slower...a little deeper</description>
	<lastBuildDate>Tue, 07 Feb 2012 08:17:21 -0500</lastBuildDate>
	<generator>http://wordpress.org/?v=2.9.2</generator>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
		<item>
		<title>By: ip intel</title>
		<link>http://praetorianprefect.com/archives/2010/06/114000-ipad-owners-the-script-that-harvested-their-e-mail-addresses/comment-page-1/#comment-164295</link>
		<dc:creator>ip intel</dc:creator>
		<pubDate>Tue, 24 Jan 2012 18:11:44 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=4100#comment-164295</guid>
		<description>&lt;blockquote&gt;
  &lt;p&gt;https://dcp2.att.com/OEPClient/openPage?ICCID=123423&amp;IMEI=0
  &lt; #fbid=k76tP4axQYI&lt;/p&gt;
&lt;/blockquote&gt;

&lt;p&gt;ooh cute&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<blockquote>
  <p><a href="https://dcp2.att.com/OEPClient/openPage?ICCID=123423&amp;IMEI=0" rel="nofollow">https://dcp2.att.com/OEPClient/openPage?ICCID=123423&amp;IMEI=0</a>
  &lt; #fbid=k76tP4axQYI</p>
</blockquote>

<p>ooh cute</p>]]></content:encoded>
	</item>
	<item>
		<title>By: ip intel</title>
		<link>http://praetorianprefect.com/archives/2010/06/114000-ipad-owners-the-script-that-harvested-their-e-mail-addresses/comment-page-1/#comment-164293</link>
		<dc:creator>ip intel</dc:creator>
		<pubDate>Tue, 24 Jan 2012 18:09:27 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=4100#comment-164293</guid>
		<description>&lt;p&gt;&quot;43f@adf*fx$&quot; makes more sense.
what are you smoking buddy?&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>&#8220;43f@adf*fx$&#8221; makes more sense.
what are you smoking buddy?</p>]]></content:encoded>
	</item>
	<item>
		<title>By: sdsdfdfsd</title>
		<link>http://praetorianprefect.com/archives/2010/06/114000-ipad-owners-the-script-that-harvested-their-e-mail-addresses/comment-page-1/#comment-12894</link>
		<dc:creator>sdsdfdfsd</dc:creator>
		<pubDate>Sun, 15 Aug 2010 18:38:07 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=4100#comment-12894</guid>
		<description>&lt;p&gt;sd&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>sd</p>]]></content:encoded>
	</item>
	<item>
		<title>By: FDunn</title>
		<link>http://praetorianprefect.com/archives/2010/06/114000-ipad-owners-the-script-that-harvested-their-e-mail-addresses/comment-page-1/#comment-11405</link>
		<dc:creator>FDunn</dc:creator>
		<pubDate>Thu, 08 Jul 2010 13:16:04 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=4100#comment-11405</guid>
		<description>&lt;p&gt;If the data is in clear text, not protected and can simply be parsed I hardly call that a hack.&lt;/p&gt;

&lt;p&gt;That almost sounds like what goes on in any company every day. That data should have been behind a firewall.&lt;/p&gt;

&lt;p&gt;Sounds totally unresponsible on AT&amp;Ts part.&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>If the data is in clear text, not protected and can simply be parsed I hardly call that a hack.</p>

<p>That almost sounds like what goes on in any company every day. That data should have been behind a firewall.</p>

<p>Sounds totally unresponsible on AT&amp;Ts part.</p>]]></content:encoded>
	</item>
	<item>
		<title>By: RSS Tidbits for 5 July 2010 &#171; SKFox.com</title>
		<link>http://praetorianprefect.com/archives/2010/06/114000-ipad-owners-the-script-that-harvested-their-e-mail-addresses/comment-page-1/#comment-11317</link>
		<dc:creator>RSS Tidbits for 5 July 2010 &#171; SKFox.com</dc:creator>
		<pubDate>Mon, 05 Jul 2010 23:16:00 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=4100#comment-11317</guid>
		<description>&lt;p&gt;[...] The script that harvested 114,000 iPad users&#8217; data [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] The script that harvested 114,000 iPad users&#8217; data [...]</p>]]></content:encoded>
	</item>
	<item>
		<title>By: AT&#38;T apologises to iPad 3G owners for security breach</title>
		<link>http://praetorianprefect.com/archives/2010/06/114000-ipad-owners-the-script-that-harvested-their-e-mail-addresses/comment-page-1/#comment-10587</link>
		<dc:creator>AT&#38;T apologises to iPad 3G owners for security breach</dc:creator>
		<pubDate>Mon, 14 Jun 2010 15:13:01 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=4100#comment-10587</guid>
		<description>&lt;p&gt;[...] with law enforcement to investigate.  To get the email addresses, the hackers took advantage of a home grown PHP script, which sent ICC ID numbers from SIM&#039;s to the AT&amp;T server. The server was expecting to be called [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] with law enforcement to investigate.  To get the email addresses, the hackers took advantage of a home grown PHP script, which sent ICC ID numbers from SIM&#39;s to the AT&amp;T server. The server was expecting to be called [...]</p>]]></content:encoded>
	</item>
	<item>
		<title>By: jackie cox</title>
		<link>http://praetorianprefect.com/archives/2010/06/114000-ipad-owners-the-script-that-harvested-their-e-mail-addresses/comment-page-1/#comment-10572</link>
		<dc:creator>jackie cox</dc:creator>
		<pubDate>Mon, 14 Jun 2010 02:08:29 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=4100#comment-10572</guid>
		<description>&lt;p&gt;looks like an inside job by employee/coder at AT&amp;T, purposfully writing vlunerable script for a PR Stunt involving Weev. A Cheap shot aimed at Apple/Google, through another interface.&lt;/p&gt;

&lt;p&gt;Just another windows/microsoft type sleazy goings on, who have a neverending viral problem, fixed by buying new computers and viral software, because of a poor operating system, compared to apple who fixes any breech virtually before it occurs for free.&lt;/p&gt;

&lt;p&gt;It may involve the israel-chinese affair of trying to boot google-apple because of their reluctance to censor data for pseudo-religious/political-business/competition reasons. And a really sleazy alogical jstification shot at not allowing some of apples new single face computers to be sold in isreal&lt;/p&gt;

&lt;p&gt;This is the great nothing, a cheap shot at a bad PR Stunt, taken up in the news media, who does as they are told&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>looks like an inside job by employee/coder at AT&amp;T, purposfully writing vlunerable script for a PR Stunt involving Weev. A Cheap shot aimed at Apple/Google, through another interface.</p>

<p>Just another windows/microsoft type sleazy goings on, who have a neverending viral problem, fixed by buying new computers and viral software, because of a poor operating system, compared to apple who fixes any breech virtually before it occurs for free.</p>

<p>It may involve the israel-chinese affair of trying to boot google-apple because of their reluctance to censor data for pseudo-religious/political-business/competition reasons. And a really sleazy alogical jstification shot at not allowing some of apples new single face computers to be sold in isreal</p>

<p>This is the great nothing, a cheap shot at a bad PR Stunt, taken up in the news media, who does as they are told</p>]]></content:encoded>
	</item>
	<item>
		<title>By: Techs for Planet - AT&#38;T Security Hole Let Hackers Steal Personal Info From Famous iPad Users &#124; 80beats</title>
		<link>http://praetorianprefect.com/archives/2010/06/114000-ipad-owners-the-script-that-harvested-their-e-mail-addresses/comment-page-1/#comment-10534</link>
		<dc:creator>Techs for Planet - AT&#38;T Security Hole Let Hackers Steal Personal Info From Famous iPad Users &#124; 80beats</dc:creator>
		<pubDate>Sat, 12 Jun 2010 07:00:08 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=4100#comment-10534</guid>
		<description>&lt;p&gt;[...] e-mail address when ICC-ID is passed to it,&#8221; Praetorian said in a late Wednesday entry on its security blog [Computer [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] e-mail address when ICC-ID is passed to it,&#8221; Praetorian said in a late Wednesday entry on its security blog [Computer [...]</p>]]></content:encoded>
	</item>
	<item>
		<title>By: YourTechWorld &#187; AT&#38;T Security Hole Let Hackers Steal Personal Info From Famous iPad Users &#124; 80beats</title>
		<link>http://praetorianprefect.com/archives/2010/06/114000-ipad-owners-the-script-that-harvested-their-e-mail-addresses/comment-page-1/#comment-10522</link>
		<dc:creator>YourTechWorld &#187; AT&#38;T Security Hole Let Hackers Steal Personal Info From Famous iPad Users &#124; 80beats</dc:creator>
		<pubDate>Fri, 11 Jun 2010 22:56:50 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=4100#comment-10522</guid>
		<description>&lt;p&gt;[...] e-mail address when ICC-ID is passed to it,&#8221; Praetorian said in a late Wednesday entry on its security blog [Computer [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] e-mail address when ICC-ID is passed to it,&#8221; Praetorian said in a late Wednesday entry on its security blog [Computer [...]</p>]]></content:encoded>
	</item>
	<item>
		<title>By: SpaceTechsOnline.net &#187; Blog Archive &#187; AT&#38;T Security Hole Let Hackers Steal Personal Info From Famous iPad Users &#124; 80beats</title>
		<link>http://praetorianprefect.com/archives/2010/06/114000-ipad-owners-the-script-that-harvested-their-e-mail-addresses/comment-page-1/#comment-10516</link>
		<dc:creator>SpaceTechsOnline.net &#187; Blog Archive &#187; AT&#38;T Security Hole Let Hackers Steal Personal Info From Famous iPad Users &#124; 80beats</dc:creator>
		<pubDate>Fri, 11 Jun 2010 21:00:15 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=4100#comment-10516</guid>
		<description>&lt;p&gt;[...] e-mail address when ICC-ID is passed to it,&#8221; Praetorian said in a late Wednesday entry on its security blog [Computer [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] e-mail address when ICC-ID is passed to it,&#8221; Praetorian said in a late Wednesday entry on its security blog [Computer [...]</p>]]></content:encoded>
	</item>
	<item>
		<title>By: Prefect</title>
		<link>http://praetorianprefect.com/archives/2010/06/114000-ipad-owners-the-script-that-harvested-their-e-mail-addresses/comment-page-1/#comment-10512</link>
		<dc:creator>Prefect</dc:creator>
		<pubDate>Fri, 11 Jun 2010 18:55:39 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=4100#comment-10512</guid>
		<description>&lt;p&gt;Seeing the script helped to make some sense out of what Gawker was reporting, and I had wanted to see the actual request to AT&amp;T to see if there was anything more to it:&lt;/p&gt;

&lt;p&gt;https://dcp2.att.com/OEPClient/openPage?ICCID=Insert number here&amp;IMEI=0&lt;/p&gt;

&lt;p&gt;Apple must have known how this worked at some level, and there owns some culpability for not objecting to the design. But the initial Gawker reporting was over the top and misleading.&lt;/p&gt;

&lt;p&gt;But you&#039;re entitled to your opinion.&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>Seeing the script helped to make some sense out of what Gawker was reporting, and I had wanted to see the actual request to AT&amp;T to see if there was anything more to it:</p>

<p><a href="https://dcp2.att.com/OEPClient/openPage?ICCID=Insert" rel="nofollow">https://dcp2.att.com/OEPClient/openPage?ICCID=Insert</a> number here&amp;IMEI=0</p>

<p>Apple must have known how this worked at some level, and there owns some culpability for not objecting to the design. But the initial Gawker reporting was over the top and misleading.</p>

<p>But you&#8217;re entitled to your opinion.</p>]]></content:encoded>
	</item>
	<item>
		<title>By: Prefect</title>
		<link>http://praetorianprefect.com/archives/2010/06/114000-ipad-owners-the-script-that-harvested-their-e-mail-addresses/comment-page-1/#comment-10511</link>
		<dc:creator>Prefect</dc:creator>
		<pubDate>Fri, 11 Jun 2010 18:50:23 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=4100#comment-10511</guid>
		<description>&lt;p&gt;That&#039;s kind of semantics right? Based on that definition, your browser is performing a &quot;hack&quot; right now to read this web site.&lt;/p&gt;

&lt;p&gt;I guess my point is that it doesn&#039;t rise to the level of a criminal intrusion, being more akin to an NMAP scan, which is what popular media thinks of with the world &quot;hack&quot;.&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>That&#8217;s kind of semantics right? Based on that definition, your browser is performing a &#8220;hack&#8221; right now to read this web site.</p>

<p>I guess my point is that it doesn&#8217;t rise to the level of a criminal intrusion, being more akin to an NMAP scan, which is what popular media thinks of with the world &#8220;hack&#8221;.</p>]]></content:encoded>
	</item>
	<item>
		<title>By: &#8216;Brute force&#8217; script snatched iPad e-mail addresses &#171; Lights It Is Renaissance Word</title>
		<link>http://praetorianprefect.com/archives/2010/06/114000-ipad-owners-the-script-that-harvested-their-e-mail-addresses/comment-page-1/#comment-10507</link>
		<dc:creator>&#8216;Brute force&#8217; script snatched iPad e-mail addresses &#171; Lights It Is Renaissance Word</dc:creator>
		<pubDate>Fri, 11 Jun 2010 14:29:59 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=4100#comment-10507</guid>
		<description>&lt;p&gt;[...] e-mail address when ICC-ID is passed to it,&#8221; Praetorian said in a late Wednesday entry on its security blog [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] e-mail address when ICC-ID is passed to it,&#8221; Praetorian said in a late Wednesday entry on its security blog [...]</p>]]></content:encoded>
	</item>
	<item>
		<title>By: FBI probes AT&#38;T&#8217;s iPad 3G e-mail leaks &#124; IT-Networks</title>
		<link>http://praetorianprefect.com/archives/2010/06/114000-ipad-owners-the-script-that-harvested-their-e-mail-addresses/comment-page-1/#comment-10506</link>
		<dc:creator>FBI probes AT&#38;T&#8217;s iPad 3G e-mail leaks &#124; IT-Networks</dc:creator>
		<pubDate>Fri, 11 Jun 2010 14:29:29 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=4100#comment-10506</guid>
		<description>&lt;p&gt;[...] wrote a PHP script that flooded AT&amp;T&#8217;s Web site with possible ICC-ID numbers and logged responses when the [...]&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>[...] wrote a PHP script that flooded AT&amp;T&#8217;s Web site with possible ICC-ID numbers and logged responses when the [...]</p>]]></content:encoded>
	</item>
	<item>
		<title>By: David Davidson</title>
		<link>http://praetorianprefect.com/archives/2010/06/114000-ipad-owners-the-script-that-harvested-their-e-mail-addresses/comment-page-1/#comment-10499</link>
		<dc:creator>David Davidson</dc:creator>
		<pubDate>Fri, 11 Jun 2010 10:30:45 +0000</pubDate>
		<guid isPermaLink="false">http://praetorianprefect.com/?p=4100#comment-10499</guid>
		<description>&lt;p&gt;Just by reading the description of the hack, one can easily visualize in his preferred programming language the way they did the job, just need the pattern of an ICC-ID, the script is pretty uninteresting at this point. It only shows that Gawker will pay anyone, even 4chan tards to discredit Apple in any way (as shown by the title which is false)&lt;/p&gt;
</description>
		<content:encoded><![CDATA[<p>Just by reading the description of the hack, one can easily visualize in his preferred programming language the way they did the job, just need the pattern of an ICC-ID, the script is pretty uninteresting at this point. It only shows that Gawker will pay anyone, even 4chan tards to discredit Apple in any way (as shown by the title which is false)</p>]]></content:encoded>
	</item>
</channel>
</rss>

