Monday, July 8, 2013

AT&T web site hacker - Andrew Auernheimer

Andrew Auernheimer was convicted of hacking AT&Ts web site. He accessed a non-password protected site, which allowed him to gain access to 100,000 iPad users email addresses. After he did this he then decided to download the records and give the results to "Gawker". The script he wrote was called "iPad 3G Account Sluper" and it basically collected those email addresses associated with those users. He was also convicted of 3 years in prison.

Apparently he was in prison for about a year, but as of Monday the appeals court said that it did not constitute theft because it was the result of lax security. This was my original question when I read about this. If AT&T did not have a password enabled on this site then why would he be charged and going to prison. I get that he created the script and collected the information, but really how much information can you get from someones email address..you don't have their password information? Plus this information was not password protected and available to anyone on the Internet.

http://news.cnet.com/8301-1009_3-57592084-83/at-t-ipad-hacker-appeals-conviction/

No comments:

Post a Comment