Login

Forgotten your details?

« Back to previous page

Durex data breach

31 March 2010

Reports that a website selling Durex condoms in India has suffered a data breach - with customers details being publicly available on the Internet - appears to be the result of business logic flaws, says IT company,Imperva

"Web application hackers are focusing more and more on attacks that target vulnerabilities in the business logic, rather than in the application code," explained Imperva CTO Amichai Shulman. "Business logic attacks often remain undetected. In fact, most business logic vulnerabilities are hard to anticipate and detect using automated test tools, such as static code analyzers and vulnerability scanners. Often, attack traffic resembles normal application traffic. Attacks are usually not apparent from code and are too diverse to be expressed through generic vulnerability scanner tests."

"With the new Data Protection Act penalties just days away from being implemented by the Information Commissioner's Office in the UK, and other regulators around the world adopting similar `get tough' policies, it looks like data breaches need to look beyond basic vulnerabilities such as SQL injections," said Shulman.

Latest News

Latest Joint Theater level Simulation version rele… More…
08 September 2010

TDM selects The Bunker to host AlarmLink… More…
07 September 2010

MPs to mount inquiry into flood legislation… More…
07 September 2010

BAE Systems wins $50m contract… More…
06 September 2010

RSS Feed symbol | What is RSS?
View all news items…

Latest Events

13-16 September, 2010
Identity Management for Govern…
Location: Washington, DC

13 - 15 September. Clare College, Cambridge, U.K., 2010
BAE Systems GXP -Regional User…
Location: Clare College, Cambridge, U.K.

14-15 September, 2010
Transport Security Expo & Conf…
Location: Olympia, London

View all events…

Key Articles

Invest in UK national security and resilience ind… More…
30 August 2010

Your Cloud won't be covered without disaster recov… More…
30 August 2010

Crisis contingency planning… More…
23 July 2010

Avoiding lock-in is a game of pick and choose… More…
23 July 2010

RSS Feed symbol | What is RSS?
View all articles…


Design: Burnthebook