Search
Search titles only
By:
Search titles only
By:
Log in
Register
Search
Search titles only
By:
Search titles only
By:
Menu
Install the app
Install
Forums
New posts
All threads
Latest threads
New posts
Trending threads
Trending
Search forums
What's new
New posts
New ads
New profile posts
Latest activity
Free Ads
Latest reviews
Search ads
Members
Current visitors
New profile posts
Search profile posts
Contact us
Latest ads
Power Lifting Lever Belt
SkullVamp
Updated:
Saturday at 10:32 PM
Ad icon
port.lk Domain for sale
Lankan-Tech
Updated:
Saturday at 3:55 PM
Colombo
Kaduwela - Two Storey House for Sale
dilrasan
Updated:
Jun 11, 2026
Ad icon
Wechat qr verification
Pawan2005
Updated:
Jun 11, 2026
🚀 GOOGLE AI PRO 18 MONTHS ACTIVATION 🚀
sayuru bandara
Updated:
Jun 10, 2026
Electronics
Vehicles
Property
Search
Reply to thread
Forums
General
ElaKiri Talk!
Kaspersky website hacked
Get the App
JavaScript is disabled. For a better experience, please enable JavaScript in your browser before proceeding.
You are using an out of date browser. It may not display this or other websites correctly.
You should upgrade or use an
alternative browser
.
Message
<blockquote data-quote="nayanasri" data-source="post: 3973583" data-attributes="member: 127103"><p>Free Virus Scan | Free Trials | Site Map</p><p></p><p>Products & Services</p><p></p><p>E-Store</p><p></p><p>Threats</p><p></p><p>Downloads</p><p></p><p>Support</p><p></p><p>Partners</p><p></p><p>About Us</p><p></p><p>About Us</p><p></p><p>Corporate News</p><p></p><p>Corporate News</p><p> </p><p>Subscriptions</p><p></p><p>Why Kaspersky?</p><p></p><p>Board of Directors</p><p></p><p>Management Team</p><p></p><p>Virus Analysts</p><p></p><p>Events</p><p></p><p>Press Center</p><p></p><p>Contact Information</p><p></p><p> </p><p>Home / About Us / Corporate News </p><p> </p><p>The usa.kaspersky.com domain was attacked on Saturday, February 7, 2009. Several attackers with IP addresses from Romanian ISPs launched an SQL injection attack on a subsection of the site. When a new version of this support site was rolled out at the end of January it contained a vulnerability. After conducting the attack, the attackers posted on their blog claiming they had gained access to “personal details” and “activation codes”. However, a thorough analysis conducted by Kaspersky Lab’s web security experts immediately following the attack revealed that although the attack had penetrated the support site, no sensitive data was compromised. No activation codes or personal data were leaked as a result of the attack.</p><p></p><p>Company personnel took immediate action when notified of the issue, and the vulnerability was fixed. The attack didn't affect any other Kaspersky Lab sites or the ecommerce sections on these sites.</p><p></p><p>Kaspersky Lab’s specialists investigated the incident and hired an independent expert, Next Generation Security Software’s David Litchfield, to corroborate the results of the internal investigation, and to confirm that no data was leaked. Litchfield’s report was delivered to Kaspersky Lab on Thursday, February 12, 2009, and confirmed that no data had in fact been compromised from the site.</p><p></p><p>Litchfield’s report states the following:</p><p></p><p>“The usa.kaspersky.com website and database were successfully breached early on Saturday morning on the 7th of February. Kaspersky was deliberately targeted. The attacker, based in Romania, used Google to search for web servers owned by Kaspersky running applications that may be vulnerable to SQL injection. The attacker claims to have been able to access private customer information but has publicly stated that no data was compromised. The attacker's claim to be able to access customer data is correct and, as is apparent from the web server log files, the attacker did attempt to gain access to customer data however, the attempts failed. At no point was customer data accessed. On the Saturday, the attacker published the fact that the usa.kaspersky.com web site was vulnerable to SQL injection. This caused a number of other attackers from various locations to probe the site further. None of these followup attackers accessed any customer data either. On hearing of the threat, Kaspersky immediately took down the vulnerable web server, preventing further and deeper breaches.”</p><p></p><p>Kaspersky Lab recognizes the fact that this attack could have had much more serious consequences. The company is conducting a thorough security audit of all official Kaspersky Lab sites and developing additional internal review procedures to ensure corporate resources are protected from similar attacks in the future.</p><p></p><p>It should also be noted that Kaspersky Lab’s core competency is in developing anti-malware solutions; although the attack is naturally a cause for concern, it has no impact on the quality of the products offered by the company.</p><p></p><p>13 Feb 2009</p><p> </p><p></p><p></p><p></p><p></p><p>Copyright © 1997 - 2009 Kaspersky Lab</p><p>Industry-leading Antivirus Software</p><p>Site map | Privacy | Contact us | Send us a suspected virus</p></blockquote><p></p>
[QUOTE="nayanasri, post: 3973583, member: 127103"] Free Virus Scan | Free Trials | Site Map Products & Services E-Store Threats Downloads Support Partners About Us About Us Corporate News Corporate News Subscriptions Why Kaspersky? Board of Directors Management Team Virus Analysts Events Press Center Contact Information Home / About Us / Corporate News The usa.kaspersky.com domain was attacked on Saturday, February 7, 2009. Several attackers with IP addresses from Romanian ISPs launched an SQL injection attack on a subsection of the site. When a new version of this support site was rolled out at the end of January it contained a vulnerability. After conducting the attack, the attackers posted on their blog claiming they had gained access to “personal details” and “activation codes”. However, a thorough analysis conducted by Kaspersky Lab’s web security experts immediately following the attack revealed that although the attack had penetrated the support site, no sensitive data was compromised. No activation codes or personal data were leaked as a result of the attack. Company personnel took immediate action when notified of the issue, and the vulnerability was fixed. The attack didn't affect any other Kaspersky Lab sites or the ecommerce sections on these sites. Kaspersky Lab’s specialists investigated the incident and hired an independent expert, Next Generation Security Software’s David Litchfield, to corroborate the results of the internal investigation, and to confirm that no data was leaked. Litchfield’s report was delivered to Kaspersky Lab on Thursday, February 12, 2009, and confirmed that no data had in fact been compromised from the site. Litchfield’s report states the following: “The usa.kaspersky.com website and database were successfully breached early on Saturday morning on the 7th of February. Kaspersky was deliberately targeted. The attacker, based in Romania, used Google to search for web servers owned by Kaspersky running applications that may be vulnerable to SQL injection. The attacker claims to have been able to access private customer information but has publicly stated that no data was compromised. The attacker's claim to be able to access customer data is correct and, as is apparent from the web server log files, the attacker did attempt to gain access to customer data however, the attempts failed. At no point was customer data accessed. On the Saturday, the attacker published the fact that the usa.kaspersky.com web site was vulnerable to SQL injection. This caused a number of other attackers from various locations to probe the site further. None of these followup attackers accessed any customer data either. On hearing of the threat, Kaspersky immediately took down the vulnerable web server, preventing further and deeper breaches.” Kaspersky Lab recognizes the fact that this attack could have had much more serious consequences. The company is conducting a thorough security audit of all official Kaspersky Lab sites and developing additional internal review procedures to ensure corporate resources are protected from similar attacks in the future. It should also be noted that Kaspersky Lab’s core competency is in developing anti-malware solutions; although the attack is naturally a cause for concern, it has no impact on the quality of the products offered by the company. 13 Feb 2009 Copyright © 1997 - 2009 Kaspersky Lab Industry-leading Antivirus Software Site map | Privacy | Contact us | Send us a suspected virus [/QUOTE]
Insert quotes…
Verification
Awruddata maasa keeyada?
Post reply
Top
Bottom