Microsoft's India store hacked, usernames & passwords stolen

February 13, 2012
Hacj

New Delhi, February 13: Hackers, allegedly belonging to a Chinese group called Evil Shadow Team, struck at www.microsoftstore.co.in on Sunday night, stealing login ids and passwords of people who had used the website for shopping Microsoftproducts.

While it is troublesome that hackers were able to breach security at a website owned by one of the biggest IT companies in the world, it is more alarming that user details - login ids and passwords - were reportedly stored in plain text file, without any encryption.

Following the hack, the members of Evil Shadow Team, posted a message on the Microsoft website saying "unsafe system will be baptized". The story was first reported by www.wpsauce.com.

Later, the website seemed to have been taken offline by Microsoft. We advise the users at Microsoft India Store to change the password as soon the website comes online. Also, if they have used the same password or login id on any other web service, they should change it immediately.

Last year, hacker groups like Lulzsec had carried out several-profile high profile break-ins, putting focus on the security measures companies put in place. Sony allegedly suffered several security breaches and hackers stole user ids and passwords of customers from its network.

In a message posted on a website called Pastebin, Lulzsec claimed the group was bringing attention to the web security. "Do you think every hacker announces everything they've hacked? We certainly haven't, and we're damn sure others are playing the silent game. Do you feel safe with your Facebook accounts, your Google Mail accounts, your Skype accounts? What makes you think a hacker isn't silently sitting inside all of these right now," the group wrote.

But the incident at Microsoft Store on Sunday hints that lessons have not been learnt. Just like Sony, which later revealed that user ids and passwords were not encrypted at the time of security breach, Microsoft too seemed to have been casual about handling the user details by storing them in a plain text file. We have contacted Microsoft but company has so far not acknowledged or commented on the security breach.


Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
Agencies
July 22,2020

Mathura, Jul 22: A local court in Uttar Pradesh's Mathura on Wednesday sentenced 11 policemen, including the then Deputy Superintendent of Police, to life imprisonment in a case pertaining to the murder of royal Raja Man Singh in 1985.

District Judge Sadhana Rani Thakur announced the life imprisonment sentence a day after holding them guilty of the killing. Three policemen were, however, acquitted. Four men died during the trial.

The policemen were convicted under Section 302 (murder), 148 (rioting) and 149 (Every member of unlawful assembly guilty of offence committed in prosecution of common object) of the Indian Penal Code.

The verdict comes 35 years after Man Singh was killed. He, along with two others, was shot dead in police firing a day after he crashed his jeep into the then Rajasthan Chief Minister Shiv Charan Mathur's helicopter in a fit of anger.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
Agencies
May 6,2020

A man posed as Superintendent of Police (SP), called up a subordinate police official and asked him to get his mobile phone repaired or face the consequences. But, his bluff was later called and the man landed in lockup.

Azamgarh SP Triveni Singh said the 23-year-old youth, Shubham Upadhyay, is the son of a farmer. He was preparing for competitive exams when his phone developed a snag on Saturday. He tried to reach out to local mechanics, but they were unavailable to fix it due to the lockdown.

Upadhyay used a free caller identification app to call up the in-charge of the Kotwali police station, K. K. Gupta, and threatened to shunt him out, if he failed to swiftly get the work done. Gupta grew suspicious and eventually caught the youth.

n his statement to the police, Shubham Upadhyay said, "On Sunday noon, I tried to breach the district borders to reach Lucknow to repair my phone, but since there was heavy police presence and barricading, I returned home. Later, I installed a free caller identification app in my handset and mentioned the name as SP Azamgarh and even uploaded a photo of the cop to appear genuine."

He first called SHO, Kotwali to get the phone repaired and was told the handset would be picked up from the SP office in an hour. Then, he called a businessman to bring his SUV and hand over his mobile to the SHO.

But when Upadhyay called the police again to suggest a separate meeting point, he raised suspicion. When the SHO tried to confirm the venue, Upadhyay got hesitant and said he would send a peon.

"I suddenly realised something was fishy and rang up the public relation officer of SP Azamgarh, who denied any such order from the SP. When the caller's number was scanned, it displayed the name of SP Azamgarh," said SHO Gupta.

A trap was laid and when the SHO reached the venue, he found one Praveen Shukla sitting in the vehicle. Police got the address of the accused from Shukla and reached Upadhyay's home in Bilariya locality and arrested him.

Upadhyay has been booked under IT Act and for threatening a public servant.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
Agencies
January 6,2020

New Delhi, Jan 6: A blind student who is pursuing research in Jawaharlal Nehru University (JNU) was also attacked by the mob that perpetrated violence in the University yesterday.

"I thought that the mob which came yesterday would disperse after raising a few slogans but they indulged in violence. They were targeting ABVP students. They beat me with sticks and rods. When I went to the AIIMS Trauma Centre, I came to know that there are many other injured students there," Surya Prakash, the blind student pursuing research in the University told ANI.

"I talked to my family members. They are really worried about the situation here. I qualified in the National Eligibility Test (NET) last year but I want to study and hence I am continuing research in JNU. How can we do anything in this atmosphere of fear? I am receiving calls from anonymous numbers threatening me not to come in front of the media. They are saying that as I am blind, I would become the face of this case," he added.

Another PhD student, Santosh Bhagat recounted his experience.

"In the evening at around 7 pm, many masked men entered the hostel. They had rods and sticks in their hands. We tried to go out but the attackers had entered the premises by then. I locked my room from inside but the attackers broke the door and entered my room and attacked me. They pushed me from the first floor and I fell down and sustained an injury. Later, I took shelter at one of the Professor's flat. Later, I was taken to the AIIMS Trauma Cantre," Bhagat said.

On Sunday evening, more than 30 students of the university, including JNUSU President Aishe Ghosh, were injured and were taken to the AIIMS Trauma Centre after a masked mob entered the JNU and attacked them and professors with sticks and rods.

The JNU administration and political leaders, cutting across political lines, condemned the attack on students and urged the police to take action against the perpetrators.

Meanwhile, the situation remained tense but peaceful outside JNU on Monday morning as the university guards maintained a strict vigil at the gate, checking I-cards of all those entering the university.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.