According to a statement coming from the sites representatives, the people responsible for this incident have installed a server that had accessed data containing contact details of the ones seeking a job on the Internet.
The server was discovered by security employees at Monster.com, and closed, announced Monster.com.
The data exposed to the hackers, is limited to names, addresses, phone numbers and e-mails. No sensitive financial information was present on the server that was breached, but the e-mail addresses and phone numbers could be used to obtain further information from the potential job seekers, pretending to be Monster.com officials.
The exact number of the people affected by this incident is not known, only a 1,6 million figure is speculated by journalists, but the company announced that it intends to contact all the people affected and inform them.
"Protecting our users from malicious activity is one of the Monster.com priorities. The opportunist attackers are using more frequently the Internet in illegal ways. This problem affects especially the high traffic web sites, that server a great deal of users at a global level", said a Monster.com spokes person.
The incident was made public, after Symantec warned Monster.com of a massive phishing operation targeting Monster.com users. Still, it now appears that Monster.com knew about this problem a month before this warning, but did not want to make it public, because it could have damaged the image of the company, also another reason for keeping this as a secret was to study how the hackers operated, and to avoid any other problems that could apear if the security hole would not have been filled completely.
Many can imagine that once noticing they have been caught many attackers will attempt to damage the system they have control over in order to cause as much problems as possible before losing control over it.
Recently it has been discovered that the same group of people has managed to breach into the security of USAjobs.gov, gathering a great deal of sensitive information.
As to now, the identity of the attackers is unknown, but it has been discovered that the attacks have been taking place from a server located in the Ukraine, a country that is known in the Internet as one not bothering too much with implementing laws against computer crime and on line fraud. The Ukrainian server was identified as a command center for a bot network that the thieves created using a Trojan virus.
Source: http://www.csamuel.org
Published by George Has
My name is George Has, I'm from Virginia, United States. I have been on the Internet since 1996, and I find it still an interesting place. I am an Internet Marketer, Computer Tech, and Security Specialist. View profile
- A Place in HellA man reaches the end of his rope and tries to join his wife and daughter...in Hell.
- Dungeons & Dragons: Just a GameThere are two great misconceptions about Dungeons and Dragons; one held by outsiders and another held by a few fans. To both of these groups I say, "Hey, it's just a game, folks."
Blood DinerMy Poor Excuse for a Blade knock-off- Why Third-Party Companies Are Increasing Support for PSPThe PSP is getting a small resurgence recently after years of turmoil. The first handheld system from Sony is finally getting some solid support from third-party gaming companies.
Charlize Theron, Stuart Townsend Promote "Battle in Seattle" at DNCStuart Townsend has directed a film about the battle of November 30, 1999, in the streets of Seattle against the WTO (World Trade Organization); Woody Harrelson, Ray Liotta and...
- Runescape: The Noobs
- One of the Most Monstrous Serial Killers of All Time: Richard Kuklinkski, the Iceman
- Virtual Console Quick Picks : Reviews of Every Wii VC Game in 2007
- A Nightmare on Elm Street: A Fan's Review of the Wes Craven Classic
- Message to the Left, and the Right
- Objects of My Scorn: Bill Clinton, Connecticut and More
- Why is Jason Still Alive?
